> Markdown version of [/jobs/ext/2689820-cyber-security-architect](https://www.wearedevelopers.com/jobs/ext/2689820-cyber-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber security Architect - **Company:** VBEST Software Inc - **Location:** New York, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Artificial Intelligence, Amazon Web Services, Software System Penetration Testing, Microsoft Azure, Cloud Computing Security, Cloud Engineering, Control Objectives for Information and Related Technology (COBIT), Cyber Security, Continuous Integration, Information Leak Prevention, Disaster Recovery, Identity and Access Management, Python (Programming Language), Key Management, Network Security, OAuth, Open Web Application Security, Windows PowerShell, Openid Connect, Zero Trust Network Access, JSON Web Token, Sherwood Applied Business Security Architecture, Security Assertion Markup Language (SAML), Security Information and Event Management, Tokenization, Privacy Controls, Google Cloud, Data Classification, DevOps Tools - Open-source, Large Language Models, Software Security, Mitre Att&ck, Kubernetes, CIS Benchmarks, Terraform, Serverless Computing, Security Orchestration, Automation & Response, Static Application Security Testing, Microservices, Dynamic Application Security Testing - **Published:** September 3, 2026 - **Apply:** https://www.dice.com/job-detail/3c4d56a8-d1bf-495a-ac65-2fc669fa64ac ## About the Role * 8 12 years of experience in cybersecurity, information security, infrastructure security, cloud security, or security architecture. * 3+ years of experience designing and reviewing enterprise security architectures. * Strong knowledge of network security, application security, cloud security, IAM, cryptography, and security operations. * Experience with threat modelling frameworks such as STRIDE, MITRE ATT&CK, or equivalent methodologies. * Strong understanding of security principles including least privilege, zero trust, defense in depth, secure-by-design, and separation of duties. * Experience conducting security risk assessments and developing risk-treatment plans. * Hands-on knowledge of security controls, vulnerabilities, penetration testing, incident response, and disaster recovery. * Experience working with architecture frameworks, security policies, control standards, and governance processes. * Strong communication skills, with the ability to explain complex security risks to technical and business stakeholders. * Demonstrated ability to influence engineering teams and drive security improvements across projects. Preferred qualifications * Experience securing AWS, Azure, or Google Cloud environments. * Knowledge of Kubernetes, containers, service meshes, serverless systems, and cloud-native architectures. * Experience with DevSecOps tools, CI/CD security, SAST, DAST, SCA, IaC scanning, secrets scanning, and container security. * Familiarity with SIEM, SOAR, EDR, XDR, WAF, CSPM, CNAPP, DLP, and vulnerability-management platforms. * Experience with API security, microservices security, OAuth 2.0, OpenID Connect, SAML, and JWT. * Knowledge of data classification, encryption, tokenization, key management, and privacy engineering. * Experience with security automation using Python, PowerShell, Terraform, or similar tools. * Familiarity with AI/ML security, LLM application security, prompt injection, data leakage, and model governance. * Experience with regulatory and security frameworks such as NIST CSF, NIST SP 800-53, CIS Controls, ISO 27001, SABSA, COBIT, and OWASP. * Professional certifications such as CISSP, CCSP, SABSA, CISM, GIAC, AWS Security Specialty, or Azure Security Engineer. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Instant KAI Sandboxes with vCluster: Multi-Tenant, Multi-Scheduler GPU Sharing](https://www.wearedevelopers.com/videos/100333-instant-kai-sandboxes-with-vcluster-multi-tenant-multi-scheduler-gpu-sharing) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)