Cyber security Architect

VBEST Software Inc
New York, United States
4 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Kubernetes Security Artificial Intelligence Amazon Web Services Software System Penetration Testing Microsoft Azure Cloud Computing Security Cloud Engineering Control Objectives for Information and Related Technology (COBIT) Cyber Security Continuous Integration Information Leak Prevention Disaster Recovery
+29 more
Identity and Access Management Python (Programming Language) Key Management Network Security OAuth Open Web Application Security Windows PowerShell Openid Connect Zero Trust Network Access JSON Web Token Sherwood Applied Business Security Architecture Security Assertion Markup Language (SAML) Security Information and Event Management Tokenization Privacy Controls Google Cloud Data Classification DevOps Tools - Open-source Large Language Models Software Security Mitre Att&ck Kubernetes CIS Benchmarks Terraform Serverless Computing Security Orchestration, Automation & Response Static Application Security Testing Microservices Dynamic Application Security Testing

Requirements

  • 8 12 years of experience in cybersecurity, information security, infrastructure security, cloud security, or security architecture.
  • 3+ years of experience designing and reviewing enterprise security architectures.
  • Strong knowledge of network security, application security, cloud security, IAM, cryptography, and security operations.
  • Experience with threat modelling frameworks such as STRIDE, MITRE ATT&CK, or equivalent methodologies.
  • Strong understanding of security principles including least privilege, zero trust, defense in depth, secure-by-design, and separation of duties.
  • Experience conducting security risk assessments and developing risk-treatment plans.
  • Hands-on knowledge of security controls, vulnerabilities, penetration testing, incident response, and disaster recovery.
  • Experience working with architecture frameworks, security policies, control standards, and governance processes.
  • Strong communication skills, with the ability to explain complex security risks to technical and business stakeholders.
  • Demonstrated ability to influence engineering teams and drive security improvements across projects.

Preferred qualifications

  • Experience securing AWS, Azure, or Google Cloud environments.
  • Knowledge of Kubernetes, containers, service meshes, serverless systems, and cloud-native architectures.
  • Experience with DevSecOps tools, CI/CD security, SAST, DAST, SCA, IaC scanning, secrets scanning, and container security.
  • Familiarity with SIEM, SOAR, EDR, XDR, WAF, CSPM, CNAPP, DLP, and vulnerability-management platforms.
  • Experience with API security, microservices security, OAuth 2.0, OpenID Connect, SAML, and JWT.
  • Knowledge of data classification, encryption, tokenization, key management, and privacy engineering.
  • Experience with security automation using Python, PowerShell, Terraform, or similar tools.
  • Familiarity with AI/ML security, LLM application security, prompt injection, data leakage, and model governance.
  • Experience with regulatory and security frameworks such as NIST CSF, NIST SP 800-53, CIS Controls, ISO 27001, SABSA, COBIT, and OWASP.
  • Professional certifications such as CISSP, CCSP, SABSA, CISM, GIAC, AWS Security Specialty, or Azure Security Engineer.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

1:34 min

Essential commands for running and testing Terraform configurations

Hennie Francis · LIVE

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · World Congress 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all