Lead Cybersecurity Architect

Insight Global
Garden Grove, CA, United States
7 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
$130,000.0 - $160,000.0
Working hours
Regular working hours

Tech stack

Artificial Intelligence Microsoft Azure Cloud Computing Cloud Computing Security Cloud Engineering Cyber Security Distributed Systems Identity and Access Management Information Systems Security Architecture Professional Network Security Microsoft Security Essentials Public Key Infrastructure
+11 more
Zero Trust Network Access Security Information and Event Management Software Engineering Software Security Mitre Att&ck Multi-Cloud Firewalls (Computer Science) Microsoft InTune CIS Benchmarks Devsecops Cisco

Job description

One of Insight Global’s customers is looking to onboard a Lead Cybersecurity Architect who will provide strategic and technical direction for the company’s enterprise cybersecurity architecture. This person will initially focus on learning the existing environment, identifying the strengths and weaknesses of the current cybersecurity infrastructure, and building relationships across infrastructure, cloud, networking, application, and business teams. They will become involved in projects across the organization, assess current solutions, identify security gaps, and create the appropriate architecture around existing and future technologies. This individual will help strengthen the company’s overall security posture by developing standards, reference architectures, roadmaps, and practical improvements across identity, network, cloud, endpoint, data, application, and emerging technology security. They will also lead complex technical conversations, guide engineering teams, evaluate new technologies, and communicate architectural risks and recommendations to executive leadership in both technical and nontechnical terms. The formal JD specifically includes architecture reviews, risk assessments, technology evaluations, mentoring, documentation, and cross-functional technical guidance. This is a permanent opportunity sitting 2-3 days a week onsite near one of the customer’s main offices.

Requirements

15+ years of progressive experience designing and securing enterprise infrastructure, cloud platforms, networks, identity systems, and distributed environments. Experience leading enterprise cybersecurity architecture initiatives within a large, complex enterprise environment. Extensive experience designing and implementing solutions involving IAM, PAM, IGA, Conditional Access, microsegmentation, ZTNA, SASE/SSE, PKI, EDR/XDR, SIEM, exposure management, and data protection technologies. Strong Microsoft and Azure security experience, including familiarity with technologies such as Entra ID, Defender, Sentinel, Intune, Azure Firewall, Defender for Cloud, and Purview. Deep understanding of Zero Trust Architecture, enterprise networking, cloud security, identity security, and secure connectivity across hybrid or multi-cloud environments. Experience developing security architectures for modern application platforms, including secure software development, DevSecOps, Infrastructure-as-Code, software supply chain security, and cloud-native application security. Ability to create enterprise security standards, reference architectures, technical roadmaps, and architectural documentation. Excellent communication skills with the ability to explain complex cybersecurity concepts to both technical teams and executive leadership. Enterprise industry experience is strongly preferred over a career primarily focused on short-term consulting engagements. These requirements align with the formal JD’s emphasis on Zero Trust, Microsoft security technologies, enterprise networking, cloud and identity security, modern application security, and the ability to influence architecture decisions across multiple engineering disciplines.

Nice to Have Skills & Experience

CISSP certification. Experience evaluating and securing AI-enabled solutions through security architecture, governance, identity controls, and data protection. A networking foundation followed by a transition into cybersecurity architecture. Experience leading microsegmentation and vulnerability or exposure management projects. Experience securing manufacturing, OT/IoT, branch office, or geographically distributed environments. Familiarity with network security environments involving Cisco, Meraki, and Azure. Knowledge of NIST, ISO 27001, CIS Controls, and MITRE ATT&CK. Creative problem-solving skills and the ability to develop practical solutions beyond traditional security approaches. Experience securing AI-enabled solutions, distributed environments, and solutions aligned with established security frameworks and modern attack methodologies.

Benefits & conditions

Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.insightglobal.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

3:00 min

Connecting multi-cloud services for automated data preparation

Linda Mohamed · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:45 min

Prototyping deterministic agents with n8n and PyATS

Alfonso Sandoval Rosas Alfonso Sandoval Rosas · Europe 2026 Virtual

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

Videos

See all

Related articles

See all