Job responsibilities
- Guides the evaluation of current cybersecurity principals, processes, and controls, and leads the evaluation of new technology using existing standards and frameworks
- Regularly provides technical guidance and direction to support the business and its technical teams, contractors, and vendors
- Influences peers and project decision-makers to consider the use and application of leading-edge technologies
- Communicates succinctly at both a practitioner and executive level
- Adds to team culture of diversity, equity, inclusion, and respect
Required qualifications, capabilities, and skills
- Formal training or certification on architectural security patterns and/or frameworks concepts and 5+ years applied experience
- Hands-on practical experience delivering enterprise level cybersecurity solutions and controls
- Advanced knowledge of cybersecurity architecture, applications, and technical processes with considerable, in-depth knowledge in one or more technical disciplines (e.g., public cloud, artificial intelligence, machine learning, mobile, etc.)
- Ability to tackle design and functionality problems independently with little to no oversight
- Practical cloud experience in AWS or Kubernetes or Azure/M365
- Basic knowledge of application security or MITRE ATT&CK or Threat Modelling
- Ability to evaluate current and emerging technologies to select or recommend the best solutions for the future state architecture
Preferred qualifications, capabilities, and skills
- Broad knowledge of controls in the industry(NIST, ISO, PCI, SOC)
- Identity and Access Management (SAML, OAuth, certs, TLS)
- One of the following: CISM / CISSP / OCSP / GDSA / GMLE / GWEB / GCPN / AWS Cloud Practitioner
- Modern Development
- Detection and monitoring