Job responsibilities
- Guides the evaluation of current cybersecurity principals, processes, and controls, and leads the evaluation of new technology using existing standards and frameworks
- Regularly provides technical security guidance and direction to support the business and its technical teams, contractors, and vendors.
- Works with stakeholders and senior leaders to recommend business modifications during periods of vulnerability
- Serves as function-wide subject matter expert in one or more areas of focus (Key management, HSM operations, Tokenization,..etc)
- Influences peers and project decision-makers to consider the use and application of leading-edge technologies
- Adds to team culture of diversity, equity, inclusion, and respect
Required qualifications, capabilities, and skills
- Formal training or certification on Cybersecurity concepts and 5+ years applied experience
- Hands-on practical experience high quality threat models and knowledge of MITRE framework and kill chains
- Proficient in Cryptographic Security Controls (Key Management Systems, Tokenization, encryption solutions).
- Proficient knowledge of cybersecurity architecture, applications, and technical processes with considerable, in-depth knowledge in one or more technical disciplines (e.g., public cloud, artificial intelligence, machine learning, mobile, etc.)
- Manage to evaluate current and emerging technologies to recommend the best solutions for the future state architecture
- Proficient in Payment HSMs and PCI , AWS cloud experience.
- Solid knowledge of PKI and digital certificates
- Proven track record in working with diverse teams to achieve goals and drive enterprise-wide transformative security technology initiatives.
- Familiarity with post-quantum cryptography standards and related migration efforts
- Expertise in key management best practices
Preferred qualifications, capabilities, and skills
- Experience with Confidential Computing.
- MS or PhD in computer science with a focus on security.