> Markdown version of [/jobs/ext/154124-security-architect-hybrid](https://www.wearedevelopers.com/jobs/ext/154124-security-architect-hybrid). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Architect - Hybrid - **Company:** BOMBEAZY, LLC - **Location:** Washington, DC, United States - **Experience:** Expert - **Salary:** $200,000.0 - $240,000.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cyber Security, Identity and Access Management, Information Systems Security Architecture Professional, Network Security, Cloud Services, Zero Trust Network Access, Sherwood Applied Business Security Architecture, Software Engineering, Data Logging, Google Cloud, Enterprise Software Applications, Cloud Platform System, Software Security, Multi-Cloud, Togaf, Information Technology, Cloud Migration, CIS Benchmarks, Devsecops - **Published:** May 21, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=c6cfe236f9554ed0 ## About the Role Do you have experience in Zero trust architecture design?, * Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related discipline (or equivalent professional experience). * 7+ years of experience in cybersecurity, information security, enterprise architecture, or security architecture roles. * Demonstrated experience establishing or managing an enterprise Security Architecture capability. * Strong knowledge of Zero Trust Architecture (ZTA) principles and implementation strategies. * Experience conducting security architecture reviews and evaluating enterprise technology solutions. * Deep understanding of enterprise security domains, including: * Identity and Access Management (IAM) * Network Security * Cloud Security * Application Security * Data Protection and Encryption * Security Monitoring and Logging * Endpoint Security * Vulnerability and Risk Management * Experience with enterprise security frameworks and standards such as NIST, ISO 27001, CIS Controls, SABSA, or TOGAF. * Strong analytical, problem-solving, and risk assessment capabilities. * Excellent communication and stakeholder engagement skills with the ability to present technical recommendations to leadership and cross-functional teams. Required Certifications Candidates should possess one or more of the following certifications: * Certified Information Systems Security Professional (CISSP) * Certified Information Security Manager (CISM) * Systems Security Certified Practitioner (SSCP) * Relevant cybersecurity architecture certifications, * Experience implementing security controls in cloud environments such as AWS, Azure, or Google Cloud Platform. * Knowledge of DevSecOps practices and secure software development lifecycle (SDLC) methodologies. * Experience supporting digital transformation, cloud migration, or enterprise modernization initiatives. * Familiarity with cybersecurity automation, orchestration, and advanced security technologies. * Experience working in regulated or highly secure environments. Core Competencies * Security Architecture & Engineering * Zero Trust Architecture (ZTA) * Security-by-Design Principles * Enterprise Risk Management * Strategic Technology Evaluation * Cybersecurity Governance * Technical Leadership * Cloud & Infrastructure Security * Communication & Collaboration * Emerging Technology Assessment ## Description The Security Architect is responsible for establishing, developing, and operationalizing a mature enterprise Security Architecture capability that ensures security is embedded into all technology solutions through a security-by-design and Zero Trust mindset. This role provides strategic and technical leadership in the evaluation, review, and implementation of enterprise technologies, ensuring alignment with cybersecurity standards, organizational risk management objectives, and emerging threat landscapes. The Security Architect will oversee the Security Architecture function, drive the implementation of Zero Trust Architecture (ZTA), perform periodic security architecture reviews, and provide expert recommendations regarding the adoption and implementation of emerging cybersecurity technologies., * Support the development and implementation of a robust and mature Security Architecture capability across the enterprise. * Operationalize Security Architecture as a mature and robust enterprise function to ensure all systems, applications, infrastructure, and cloud environments are designed with a security-by-design and Zero Trust mindset. * Establish and maintain enterprise security architecture standards, frameworks, patterns, reference architectures, and governance processes. * Lead and oversee the enterprise Security Architecture capability, ensuring consistent integration of cybersecurity requirements into technology initiatives and business solutions. * Conduct periodic Security Architecture Reviews and provide evaluation findings and recommendations for new or updated enterprise systems, applications, infrastructure, and cloud services. * Review proposed technology solutions to identify security risks, architectural gaps, and compliance concerns, and recommend remediation strategies. * Drive the implementation and maturity of Zero Trust Architecture (ZTA) principles, including identity-centric security, least privilege access, segmentation, continuous verification, and secure access controls. * Provide recommendations for the implementation and integration of emerging cybersecurity technologies, tools, and security capabilities. * Collaborate with enterprise architects, infrastructure teams, application development teams, cloud engineers, and cybersecurity stakeholders to ensure secure solution delivery. * Develop and maintain secure architecture documentation, design standards, technical security requirements, and implementation guidance. * Evaluate enterprise technologies and platforms for compliance with organizational security standards, industry frameworks, and regulatory requirements. * Support cloud security architecture initiatives across hybrid, multi-cloud, and on-premises environments. * Participate in risk assessments, threat modeling exercises, and security design reviews. * Provide technical leadership, mentoring, and guidance to security engineers, architects, and project teams. * Stay informed on emerging threats, vulnerabilities, technologies, and industry best practices to continuously improve enterprise security posture. ## Related Videos - [Leverage Cloud Computing Benefits with Serverless Multi-Cloud ML ](https://www.wearedevelopers.com/videos/78-leverage-cloud-computing-benefits-with-serverless-multi-cloud-ml) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Trust Issues: Because Zero-Trust Isn’t Optional Anymore](https://www.wearedevelopers.com/videos/100089-trust-issues-because-zero-trust-isn-t-optional-anymore) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)