> Markdown version of [/jobs/ext/1316653-cyber-security-architecture-lead](https://www.wearedevelopers.com/jobs/ext/1316653-cyber-security-architecture-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Security Architecture Lead - **Company:** PAUSA PAN LLC - **Location:** Peachtree City, GA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Agile Methodology, Amazon Web Services, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cyber Security, Software Design Patterns, DevOps, Identity and Access Management, IT Management, Information Systems Security Architecture Professional, Network Security, Network Segmentation, OAuth, OpenID, Public Key Infrastructure, Systems Development Life Cycle, Zero Trust Network Access, Sherwood Applied Business Security Architecture, Security Assertion Markup Language (SAML), Software Engineering, Google Cloud, Togaf, Information Technology, Hardware Infrastructure, Cloud Migration, Devsecops, Static Application Security Testing, Dynamic Application Security Testing - **Published:** July 17, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=3762a9cc3e27cf36 ## About the Role * Bachelor's degree in information security, computer science, or related technical field required. * Master's degree preferred. * 7+ years of experience in cybersecurity architecture or engineering roles, with 3+ years in a dedicated security architecture function required. * Preferred certifications include CISSP, CISSP-ISSAP, SABSA, TOGAF, or equivalent cloud security architect credentials (AWS/Azure Security Specialty). * Proven experience designing security architectures in complex enterprise environments, ideally in manufacturing or supply chain sectors. * Deep technical knowledge of cloud (AWS, Azure, GCP), identity and access management, secure networking, endpoint protection, and encryption. * Experience integrating security in Agile and DevOps environments, with working knowledge of SAST, DAST, and CI/CD security tooling. * Familiarity with security requirements in OT/ICS environments and their intersection with enterprise IT. * Strong understanding of Zero Trust principles, network segmentation, PKI, and federation protocols (SAML, OIDC, OAuth2). * Experience in developing threat models, conducting architectural risk assessments, and managing technical risk. * Excellent written and verbal communication skills with ability to translate complex security concepts to non-technical audiences. * Experience working across regions and functions to ensure security is embedded in global operations. ## Description Working closely with security leadership, the architect evaluates technical risks, identifies control gaps, and translates regulatory and threat requirements into sustainable, scalable solutions. The role requires a deep understanding of cybersecurity frameworks, cloud and on-prem infrastructure, application development, and modern identity and access paradigms. A successful candidate will be an experienced technologist with strong interpersonal skills, capable of communicating architecture decisions to both technical and executive audiences. The Security Architect collaborates with IT, product, manufacturing, and MSSP teams to ensure enterprise-wide security posture is robust, measurable, and resilient. The Security Architect serves as the authoritative technical voice on security design decisions, providing governance oversight and approval authority for architecture across IT, OT, and product domains. Responsibilities: A DAY IN THE LIFE: * Design, document, and maintain enterprise-wide security architecture across regions aligned to global cybersecurity strategy and business objectives. * Define and enforce security reference architectures, design patterns, and guardrails for enterprise IT, OT, and product environments. * Provide security architecture oversight for new projects and technologies, including IT infrastructure, cloud migration, application development, and vendor solutions. * Collaborate with each region's IT, product, and operations teams to integrate security early in system development lifecycles (SDLC/DevSecOps). * Serve as global technical SME for emerging threats, cryptographic standards, network segmentation, IAM, Zero Trust, and endpoint protections. * Evaluate the security posture of proposed solutions and provide remediation recommendations. * Support security incident response and forensic investigations by analyzing architectural weaknesses. * Collaborate with global and regional cybersecurity teams to ensure consistent implementation of policies, standards, and controls. * Participate in control design for regulatory compliance programs (e.g., ISO 27001, ISO 21434, NIST CSF, GDPR, NIS2). * Assess and approve MSSP design proposals and validate alignment with architecture standards. * Evaluate and manage relationships with security vendors, MSSPs, and third-party assessors to ensure service quality and contract alignment. * Define and track security architecture KPIs and metrics, providing regular reporting to security leadership and executive stakeholders. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevOps Maturity Check – a way to balance autonomy and alignment](https://www.wearedevelopers.com/videos/58-devops-maturity-check-a-way-to-balance-autonomy-and-alignment) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)