Senior Cybersecurity Architect

Insight Global
Wilmington, DE, United States
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) Artificial Intelligence Bash Shell Software as a Service Cloud Computing Cloud Computing Security Collaborative Software Cyber Security Continuous Integration White-Box Testing Identity and Access Management Intrusion Detection and Prevention
+27 more
Intrusion Detection Systems Virtual Private Networks (VPN) Python (Programming Language) Key Management Routing Open Web Application Security Windows PowerShell Role-Based Access Control Remote Access Technology Remote File Sharing Zero Trust Network Access Security Information and Event Management Policy as Code Cloud Platform System Software Security Mitre Att&ck Mttr Multi-Cloud Firewalls (Computer Science) Event Driven Architecture Kubernetes Machine Learning Operations Purple Team (Cyber Security) Devsecops Serverless Computing Static Application Security Testing Dynamic Application Security Testing

Job description

We are seeking a Senior Cybersecurity Architect to lead security architecture and engineering across multi-cloud, AI/ML, DevSecOps, and enterprise detection/response to reduce risk at scale. This role will define secure reference architectures, automate controls, and partner with SOC and engineering teams to improve resilience and incident readiness., * Design secure multi-cloud network and workload architectures (segmentation, routing, security controls, and secure connectivity).

  • Implement Zero Trust and least-privilege access through strong identity governance and access control patterns (e.g., RBAC/ABAC and entitlement oversight).

  • Secure cloud-native services (serverless, containers/Kubernetes, and managed platforms) using hardened configurations, policy enforcement, and monitoring.

  • Architect data protection controls for data in transit and at rest, including encryption, key management patterns, and access boundaries.

  • Design and mature detection and response capabilities across endpoint, identity, cloud, and SaaS using SIEM/SOAR/EDR/XDR patterns.

  • Develop incident management architecture, including playbooks, escalation paths, and automated response actions to reduce MTTD/MTTR.

  • Lead or support red/purple team exercises and assessments, translating findings into prioritized remediation and durable architectural fixes.

  • Build security automation with scripting and Infrastructure-as-Code to deliver secure-by-default, repeatable deployments.

  • Secure AI/ML pipelines, models, and APIs, including whitebox testing against emerging AI attack methods and monitoring for leakage/anomalies.

  • Provide security advisory and program leadership by translating technical risk into business impact and driving cross-functional execution.

Requirements

  • 8+ years of cybersecurity engineering/architecture experience delivering enterprise-scale security outcomes.

  • Expertise designing secure cloud architectures and identity/IAM controls in at least one major cloud platform.

  • Experience designing or operating threat detection and incident response capabilities using SIEM/SOAR/EDR/XDR concepts.

  • Strong automation skills using Python/PowerShell/Bash and Infrastructure-as-Code to implement security controls at scale.

  • Ability to communicate clearly with engineers and executives and drive alignment across teams through influence. * Experience securing Kubernetes/container ecosystems, including runtime controls, admission/policy enforcement, and supply chain protections.

  • Experience securing serverless and event-driven architectures with least-privilege, secrets management, and robust telemetry.

  • Hands-on AI security experience, including prompt-injection defenses, model/API protections, and monitoring for exfiltration or unsafe outputs.

  • Experience embedding SAST/DAST/SCA and policy-as-code controls into CI/CD and SSDLC workflows.

  • API security design experience aligned to OWASP-style best practices and abuse prevention patterns.

  • Experience designing enterprise network/remote access security (firewalls, secure gateways, VPN/ZTNA, IDS/IPS) with segmentation.

  • Experience integrating threat intelligence into detection pipelines and operationalizing use-cases aligned to ATT&CK-style frameworks.

  • Experience securing collaboration platforms (e.g., email, file sharing, chat) with MFA, conditional access, and DLP controls.

  • Familiarity with common security frameworks and risk methods (e.g., NIST/ISO-style controls, gap assessments, remediation planning).

  • Relevant certifications (security, cloud, IR, or offensive) are a plus.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.juju.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil Ā· LIVE

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos Ā· LIVE

3:08 min

Aligning engineering processes with core business impact metrics

Chris Riley Ā· WWC 2021

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira Ā· Coffee With Developers

2:07 min

Integrating security practices for devsecops adoption

Nevelina Aleksandrova Ā· LIVE

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia Ā· LIVE

Videos

See all

Related articles

See all