Security Architect - Hybrid

BOMBEAZY, LLC
Washington, DC, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
$200,000.0 - $240,000.0
Working hours
Shift work
Job source

Tech stack

Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security Cyber Security Identity and Access Management Information Systems Security Architecture Professional Network Security Cloud Services Zero Trust Network Access Sherwood Applied Business Security Architecture Software Engineering
+11 more
Data Logging Google Cloud Enterprise Software Applications Cloud Platform System Software Security Multi-Cloud Togaf Information Technology Cloud Migration CIS Benchmarks Devsecops

Job description

The Security Architect is responsible for establishing, developing, and operationalizing a mature enterprise Security Architecture capability that ensures security is embedded into all technology solutions through a security-by-design and Zero Trust mindset. This role provides strategic and technical leadership in the evaluation, review, and implementation of enterprise technologies, ensuring alignment with cybersecurity standards, organizational risk management objectives, and emerging threat landscapes.

The Security Architect will oversee the Security Architecture function, drive the implementation of Zero Trust Architecture (ZTA), perform periodic security architecture reviews, and provide expert recommendations regarding the adoption and implementation of emerging cybersecurity technologies., * Support the development and implementation of a robust and mature Security Architecture capability across the enterprise.

  • Operationalize Security Architecture as a mature and robust enterprise function to ensure all systems, applications, infrastructure, and cloud environments are designed with a security-by-design and Zero Trust mindset.
  • Establish and maintain enterprise security architecture standards, frameworks, patterns, reference architectures, and governance processes.
  • Lead and oversee the enterprise Security Architecture capability, ensuring consistent integration of cybersecurity requirements into technology initiatives and business solutions.
  • Conduct periodic Security Architecture Reviews and provide evaluation findings and recommendations for new or updated enterprise systems, applications, infrastructure, and cloud services.
  • Review proposed technology solutions to identify security risks, architectural gaps, and compliance concerns, and recommend remediation strategies.
  • Drive the implementation and maturity of Zero Trust Architecture (ZTA) principles, including identity-centric security, least privilege access, segmentation, continuous verification, and secure access controls.
  • Provide recommendations for the implementation and integration of emerging cybersecurity technologies, tools, and security capabilities.
  • Collaborate with enterprise architects, infrastructure teams, application development teams, cloud engineers, and cybersecurity stakeholders to ensure secure solution delivery.
  • Develop and maintain secure architecture documentation, design standards, technical security requirements, and implementation guidance.
  • Evaluate enterprise technologies and platforms for compliance with organizational security standards, industry frameworks, and regulatory requirements.
  • Support cloud security architecture initiatives across hybrid, multi-cloud, and on-premises environments.
  • Participate in risk assessments, threat modeling exercises, and security design reviews.
  • Provide technical leadership, mentoring, and guidance to security engineers, architects, and project teams.
  • Stay informed on emerging threats, vulnerabilities, technologies, and industry best practices to continuously improve enterprise security posture.

Requirements

Do you have experience in Zero trust architecture design?, * Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related discipline (or equivalent professional experience).

  • 7+ years of experience in cybersecurity, information security, enterprise architecture, or security architecture roles.
  • Demonstrated experience establishing or managing an enterprise Security Architecture capability.
  • Strong knowledge of Zero Trust Architecture (ZTA) principles and implementation strategies.
  • Experience conducting security architecture reviews and evaluating enterprise technology solutions.
  • Deep understanding of enterprise security domains, including:
  • Identity and Access Management (IAM)
  • Network Security
  • Cloud Security
  • Application Security
  • Data Protection and Encryption
  • Security Monitoring and Logging
  • Endpoint Security
  • Vulnerability and Risk Management
  • Experience with enterprise security frameworks and standards such as NIST, ISO 27001, CIS Controls, SABSA, or TOGAF.
  • Strong analytical, problem-solving, and risk assessment capabilities.
  • Excellent communication and stakeholder engagement skills with the ability to present technical recommendations to leadership and cross-functional teams.

Required Certifications

Candidates should possess one or more of the following certifications:

  • Certified Information Systems Security Professional (CISSP)
  • Certified Information Security Manager (CISM)
  • Systems Security Certified Practitioner (SSCP)
  • Relevant cybersecurity architecture certifications, * Experience implementing security controls in cloud environments such as AWS, Azure, or Google Cloud Platform.
  • Knowledge of DevSecOps practices and secure software development lifecycle (SDLC) methodologies.
  • Experience supporting digital transformation, cloud migration, or enterprise modernization initiatives.
  • Familiarity with cybersecurity automation, orchestration, and advanced security technologies.
  • Experience working in regulated or highly secure environments.

Core Competencies

  • Security Architecture & Engineering
  • Zero Trust Architecture (ZTA)
  • Security-by-Design Principles
  • Enterprise Risk Management
  • Strategic Technology Evaluation
  • Cybersecurity Governance
  • Technical Leadership
  • Cloud & Infrastructure Security
  • Communication & Collaboration
  • Emerging Technology Assessment

Benefits & conditions

$200,000 - $240,000 a year - Full-time, Contract, Pulled from the full job description

  • Paid time off
  • Flexible schedule

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

10:19 min

Continuous learning strategies and emerging industry trends

Kurt Eder · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

3:00 min

Connecting multi-cloud services for automated data preparation

Linda Mohamed · LIVE

7:50 min

Prioritizing cybersecurity and zero trust in development

Ash Ryan Arnwine Ash Ryan Arnwine +3 · WWC 2024

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

2:15 min

Avoiding lock-in across multi-cloud and autonomous setups

Wei Hu Wei Hu · WWC 2025

Videos

See all

Related articles

See all