Cyber Security Architect
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+11 more
Job description
This person will be a security architect that will help provide security assessments and threat models for MBFS Applications going to the Azure cloud as well as local data centers., Mercedes-Benz Financial Services (MBFS) is committed to delivering a secure and trusted customer journey. To strengthen our regional cybersecurity posture, MBFS is seeking a Cyber Security Architect to deploy, operationalize, and mature application-level security capabilities in alignment with the global Architecture & Engineering (AE) strategy.
This role serves as a senior technical authority responsible for identifying, assessing, and remediating application security risks while partnering closely with development teams, cloud engineers, and business stakeholders to ensure secure, scalable, and compliant solutions.
Key Responsibilities
Application & Cloud Security Engineering
Deploy, operate, and mature application security tools, capabilities, and standardized requirements across the region.
Identify, analyze, and document application-level vulnerabilities using structured and repeatable approaches.
Provide hands-on support for secure application design, remediation efforts, and secure SDLC practices.
Support the deployment, security, and monitoring of applications hosted in Microsoft Azure.
Secure Azure workloads including App Services, Azure Functions, AKS, and Virtual Machines.
Architect and review secure network configurations, including NSGs, private endpoints, and firewalls.
Implement secrets management using Azure Key Vault.
Leverage Defender for Cloud, Azure Policy, Log Analytics, and Microsoft Sentinel for governance, monitoring, and continuous improvement.
Threat Modeling, Risk Management & Secure Design
Perform secure profiling and threat modeling using STRIDE, C4 modeling, and MITRE methodologies.
Develop data flow diagrams and comprehensive threat models for critical applications.
Translate identified threats into actionable, prioritized security recommendations.
Track, coordinate, and report on remediation activities and overall application risk posture.
Communicate risks, mitigation strategies, and compliance readiness to both technical and non-technical stakeholders.
Identity, Access & Security Enablement
Design and guide secure authentication and authorization architectures using:
OAuth 2.0
OpenID Connect (OIDC)
SAML 2.0
Implement and support integrations with Microsoft Entra ID (Azure AD).
Advise teams on JWT validation, managed identities, service-to-service authentication, RBAC, Conditional Access, and secure API authorization.
Deliver targeted application security training and awareness sessions to development and engineering teams., Required Skills : Client: Mercedes Benz Financial Services (MBFS) Location: Onsite - Alliance / Forth Worth, TX (3-4 days onsite (Fridays remote)) Contract: 12 months + (Potential for extension or fulltime conversion) Position Overview: This person will be a security architect that will help provide security assessments and threat models for MBFS Applications going to the Azure cloud as well as local data centers. Key Responsibilities: Threat Modeling Risk and vulnerability assessment and remediation Skills and Qualifications: CISSP is a MUST Azure Certifications or working on completing Azure Certification Position Overview Mercedes Benz Financial Services (MBFS) is committed to delivering a secure and trusted customer journey. To strengthen our regional cybersecurity posture, MBFS is seeking a Cyber Security Architect to deploy, operationalize, and mature application level security capabilities in alignment with the global Architecture & Engineering (AE) strategy. This role serves as a senior technical authority responsible for identifying, assessing, and remediating application security risks while partnering closely with development teams, cloud engineers, and business stakeholders to ensure secure, scalable, and compliant solutions. Key Responsibilities Application & Cloud Security Engineering Deploy, operate, and mature application security tools, capabilities, and standardized requirements across the region. Identify, analyze, and document application level vulnerabilities using structured and repeatable approaches. Provide hands on support for secure application design, remediation efforts, and secure SDLC practices. Support the deployment, security, and monitoring of applications hosted in Microsoft Azure. Secure Azure workloads including App Services, Azure Functions, AKS, and Virtual Machines. Architect and review secure network configurations, including NSGs, private endpoints, and firewalls. Implement secrets management using Azure Key Vault. Leverage Defender for Cloud, Azure Policy, Log Analytics, and Microsoft Sentinel for governance, monitoring, and continuous improvement. Threat Modeling, Risk Management & Secure Design Perform secure profiling and threat modeling using STRIDE, C4 modeling, and MITRE methodologies. Develop data flow diagrams and comprehensive threat models for critical applications. Translate identified threats into actionable, prioritized security recommendations. Track, coordinate, and report on remediation activities and overall application risk posture. Communicate risks, mitigation strategies, and compliance readiness to both technical and non technical stakeholders. Identity, Access & Security Enablement Design and guide secure authentication and authorization architectures using: OAuth 2.0 OpenID Connect (OIDC) SAML 2.0 Implement and support integrations with Microsoft Entra ID (Azure AD). Advise teams on JWT validation, managed identities, service to service authentication, RBAC, Conditional Access, and secure API authorization. Deliver targeted application security training and awareness sessions to development and engineering teams.
Basic Qualification :
Additional Skills :
Background Check : Yes
Drug Screen : Yes Notes : Selling points for candidate : Project Verification Info :”The information provided below is for Client Systems AV use only and is not to be distributed publicly, or to any third party. Any distribution of the below information will result in corrective action from Client Systems Vendor Management. MSA: Restricted Client Letter: Will Provide” Exclusive to Client :No Face to face interview required :Yes Candidate must be local :No Candidate must be authorized to work without sponsorship ::No Interview times set : :No Type of project : Master Job Title, Client: Mercedes Benz Financial Services (MBFS)Location: Onsite - Alliance / Forth Worth TX (3-4 days onsite (Fridays remote))Contract: 12 months + (Potential for extension or fulltime conversion)Position Overview: This person will be a security architect that will help provide security assessments and threat models for MBFS Application MBFS is seeking a Cyber Security Architect to deploy operationalize and mature application level security capabilities in alignment with the global Architecture & Engineering (AE) strategyThis role serves as a senior technical authority responsible for identifying assessing and remediating application security risks while partnering closely with development teams cloud engineers and business stakeholders to ensure secure scalable and compliant solutionsKey ResponsibilitiesApplication & Cloud Security EngineeringDeploy Operate and mature application security tools capabilities and standardized requirements across the regionIdentify analyze and document application level vulnerabilities using structured and repeatable approachesProvide hands on support for secure application design remediation efforts and secure SDLC practicesSupport the deployment security and monitoring of applications hosted in Microsoft AzureSecure Azure workloads including App Services Azure Functions AKS and Virtual MachinesArchitect and review secure network configurations including NSGs private endpoints and firewallsImplement secrets management using Azure Key VaultLeverage Defender for Cloud Azure Policy Log Analytics and Microsoft Sentinel for governance monitoring and continuous improvementThreat Modeling Risk Management & Secure DesignPerform secure profiling and threat modeling using STRIDE C4 modeling and MITRE methodologiesDevelop data flow diagrams and comprehensive threat models for critical applicationsTranslate identified threats into actionable prioritized security recommendationsTrack coordinate and report on remediation activities and overall application risk postureCommunicate risks mitigation strategies and compliance readiness to both technical and non technical stakeholdersIdentity Access & Security EnablementDesign and guide secure authentication and authorization architectures using:OAuth 20OpenID Connect (OIDC)SAML 20Implement and support integrations with Microsoft Entra ID (Azure AD)Advise teams on JWT validation managed identities service to service authentication
Requirements
CISSP is a MUST
Azure Certifications or working on completing Azure Certification
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Loading talks and stories from around this role…