> Markdown version of [/jobs/ext/277272-lead-architect-cyber-network](https://www.wearedevelopers.com/jobs/ext/277272-lead-architect-cyber-network). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead Architect - Cyber Network - **Company:** Frontier Airlines - **Location:** Denver, CO, United States - **Experience:** Expert - **Salary:** $137,643.0 - $182,696.0 - **Contract:** Permanent contract - **Skills:** Java (Programming Language), Amazon Web Services, Microsoft Azure, Bash Shell, C Sharp (Programming Language), Cloud Computing Security, Cyber Security, Computer Programming, Identity and Access Management, Python (Programming Language), PCI Data Security Standards, Public Key Infrastructure, Windows PowerShell, Phishing, Security Information and Event Management, Systems Architecture, Software Vulnerability Management, Cyberark, Falcon Platform, SentinelOne Expertise, Cisco, Qualys - **Published:** May 19, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=0997d77c3eedd71a ## About the Role * CISSP certification (active) * 10+ years combined experience in networking, security engineering, and systems architecture * Expertise with Palo Alto NGFW, Zscaler ZIA/ZPA, Cisco FTD, and other enterprise network security platforms * Strong proficiency in vulnerability management and endpoint security tooling (e.g., Qualys VMDR, SentinelOne, CrowdStrike) * Hands-on experience with incident response and enterprise security operations * Working knowledge of compliance frameworks: PCI DSS, ISO 27001, HIPAA, SOC 2, SOX * Strong scripting and automation skills (PowerShell, Bash, Python, or similar) Preferred Qualifications * Cloud security experience across Azure and AWS (Azure Fundamentals, AWS Cloud Practitioner certifications) * Experience deploying and managing large-scale identity and PKI systems * Demonstrated ability to lead multi-regional teams and deliver enterprise-grade security programs * Experience supporting GRC functions and interfacing with auditors, customers, and compliance teams Preferred Qualifications * Cloud security experience across Azure and AWS (Azure Fundamentals, AWS Cloud Practitioner certifications) * Experience deploying and managing large-scale identity and PKI systems * Demonstrated ability to lead multi-regional teams and deliver enterprise-grade security programs * Experience supporting GRC functions and interfacing with auditors, customers, and compliance teams Knowledge, Skills and Abilities Preferred Technical Skills * Preferred Technical Skills * Security Operations: SentinelOne, CrowdStrike, Google SecOps/Chronicle * Vulnerability Management: Qualys VMDR/TotalCloud * Networking: Palo Alto NGFW, Cisco FTD, Zscaler ZIA/ZPA * Programming & Automation: Bash, PowerShell, C#, Java, Python * Compliance: NIST, SOC 2, PCI, ISO 27001, HIPAA, SOX, Light physical effort required by handling objects up to 20 pounds occasionally and/or up to 10 pounds frequently. ## Description The Lead Architect of Cyber Network is a key member of the Security Engineering organization responsible for designing, securing, and optimizing enterprise network and security infrastructure. This role leads advanced engineering initiatives across firewalls, endpoint security, identity, email security, and cloud platforms while partnering across IT, GRC, and business units to ensure systems remain resilient, compliant, and aligned with organizational risk objectives. The ideal candidate brings deep expertise in security architecture, vulnerability management, and incident response, with the ability to mentor teams and drive enterprise-wide security improvements., Endpoint, Email, and Identity Security * Engineer and manage large-scale endpoint security deployments including EDR/EPP tools such as SentinelOne, CrowdStrike, and CyberArk EPM (60,000+ endpoints). * Implement advanced email security technologies to reduce phishing risk and improve message hygiene, achieving measurable reductions in user-reported phishing attempts. * Enhance organization-wide DLP coverage using tools such as Zscaler ZIA/ZPA. Vulnerability & Threat Management * Lead vulnerability management programs using Qualys VMDR/TotalCloud, achieving near-100% asset coverage and driving vulnerability reduction of 70%+. * Develop metrics, dashboards, and reporting structures to communicate risk and compliance status to leadership. * Collaborate with Security Operations to identify, analyze, and remediate threats across server, endpoint, and network environments. Incident Response & Risk Management * Serve as a senior incident responder, leading containment, investigation, root-cause analysis, and coordinated remediation during major security events. * Partner with GRC, legal, compliance, and business stakeholders to ensure alignment with PCI DSS, ISO 27001, SOC 2, HIPAA, SOX, and FDA requirements. * Contribute to IT and organizational risk management programs by embedding security requirements into project design, architecture, and operational change management. Leadership & Collaboration * Lead and mentor cross-functional security engineering teams supporting networking, PKI, endpoint, and email security. * Oversee global teams delivering SIEM, XDR, HIPS, and other threat mitigation capabilities. * Support customer-facing activities including RFP reviews, security questionnaires, and contract assessments. ## Related Videos - [Crew Management System for Airlines: Plan duties for pilots & flight attendants worldwide](https://www.wearedevelopers.com/videos/1444-crew-management-system-for-airlines-plan-duties-for-pilots-flight-attendants-worldwide) - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Computer Vision from the Edge to the Cloud done easy](https://www.wearedevelopers.com/videos/263-computer-vision-from-the-edge-to-the-cloud-done-easy) - [Your Infrastructure Is Not a Playground: AI Agents for Infra Done Right](https://www.wearedevelopers.com/videos/2084-your-infrastructure-is-not-a-playground-ai-agents-for-infra-done-right) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)