This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Information Security Architect based in United States.
This role offers the opportunity to shape and strengthen enterprise security architecture within a fast-moving, technology-driven environment. You will serve as a technical authority responsible for designing secure cloud architectures, protecting applications, and embedding security throughout the software development lifecycle. Working closely with engineering, platform, and product teams, you will influence critical architecture decisions and establish scalable security practices. The position focuses heavily on cloud security, CI/CD protection, threat modeling, and emerging technologies, including AI and generative AI platforms. As part of a remote-first culture, you will collaborate with teams across locations while driving meaningful improvements to security posture and risk management. This is an ideal opportunity for an experienced security professional looking to make a strategic impact while continuing to grow in a high-impact architecture role.
Accountabilities
- Design, develop, and maintain security architectures, reference models, secure design patterns, and technical security standards across cloud infrastructure, applications, and development environments.
- Perform security architecture reviews for cloud platforms, enterprise applications, infrastructure services, and technology integrations to ensure alignment with security requirements and risk objectives.
- Conduct threat modeling, security assessments, and technical risk evaluations to identify vulnerabilities and recommend effective mitigation strategies.
- Define and implement cloud security controls, including access management models, network segmentation strategies, logging standards, and workload protection practices.
- Partner with engineering and DevOps teams to integrate security into CI/CD pipelines, including secure development practices, container security, Infrastructure-as-Code protection, secrets management, and software supply chain security.
- Evaluate emerging technologies, including AI platforms and AI-assisted development tools, to identify risks and establish secure adoption frameworks.
- Provide guidance on application security, API protection, authentication standards, encryption, identity management, and secure software development practices.
- Research evolving security threats, vulnerabilities, and industry trends to proactively improve security capabilities.
- Leverage automation and AI-enabled tools to enhance security analysis, architecture reviews, and threat detection processes.
- Support incident response activities, participate in security operations, and provide expert guidance for complex technical security matters.