> Markdown version of [/jobs/ext/511803-enterprise-security-architect-sr](https://www.wearedevelopers.com/jobs/ext/511803-enterprise-security-architect-sr). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Enterprise Security Architect Sr + - **Company:** Autos, Etc., Ltd - **Location:** Auburn Hills, MI, United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Java (Programming Language), Artificial Intelligence, Amazon Web Services, Software System Penetration Testing, Microsoft Azure, Big Data, Mobile Application Development, Software as a Service, Cloud Computing Security, Cyber Security, Databases, Data Mining, Data Security, DevOps, Domain Name System (DNS), Multi-Factor Authentication, Federated Identity Management, Github, Identity and Access Management, Internet Protocol, Intrusion Detection and Prevention, Information Systems Security Architecture Professional, Key Management, Network Security, Simple Mail Transfer Protocols, Node.Js, OpenShift, Open Web Application Security, Public Key Infrastructure, Scrum Methodology, Cloudera, Salesforce.Com, Secure Coding, Web Application Security, Information Technology Security Auditing, Security Software, Single Sign-On, Software Engineering, Systems Integration, TCP/IP, Software Vulnerability Management, Google Cloud, Apache Cassandra, Office365, ReactJS, Apache Spark, IT Architecture, Software Security, Generative AI, Data Lakes, Kubernetes, Information Technology, SAP S/4HANA, Apache Kafka, Graphql, Devsecops, Jenkins, Static Application Security Testing, Microservices, Dynamic Application Security Testing - **Published:** June 6, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=bf61f78927c794f0 ## About the Role Do you have a Master's degree?, Years of Experience: 10+ years' experience in a combination of Security Architecture, Security Operations, Data Security and Auditing with at least 5 years of experience in Information Technology architecture, planning and execution in complex environments. Required Education: * Bachelor's degree in computer science, Information Technology, or related field or equivalent work experience Desired Education: * Master's degree in computer science, Information Technology, or related field or equivalent work experience Skills: * Excellent verbal, written, and other interpersonal communication skills-ability to convey complex technical concepts effectively to a variety of audiences * Ability to analyze processes, procedures, and architectures for information security for security implications * Ability to communicate security designs, priorities, and concepts to working level and business level colleagues * Solid analytical/problem solving skills with capability to identify solutions to unusual and complex problems. * Proven experience in a multinational environment * Outstanding team and collaboration skills * Integration - joining people, processes or systems * Ability to work independently with minimal supervision * Ability to inform, educate, and influence managers and employees to support goals and initiatives problems. * Excellent planning, organization, and time management skills., * Certified Information Security System Professional (CISSP) certification or equivalent. * Proven experience as a technical architect in multiple fields of IT (e.g. network, storage, server, client, web/application, cloud, etc.) with the ability to understand security best practices and implications across all fields. * Strong experience across multiple cybersecurity domains including cloud security, application security, identity & access management, network security, and data protection." * Hands-on experience implementing modern security architectures. * Excellent knowledge of cybersecurity risk evaluations for applications and systems. * Adept in translating security requirements into actionable controls and measures. * Background in securing on-prem, cloud and hybrid systems in theory and practice, including secure architecture design concepts. * Understanding of DevOps principles, "shift left" philosophy. * Experience implementing DevSecOps pipelines and automated security testing (SAST, DAST, SCA) * Strong experience with common web application security concepts, such as the OWASP Top 10, and their practical implementation. * Understanding of application development secure coding techniques. * Experience with multi-factor authentication,single sign-on, identity federation, identity management and related technologies for both cloud and on-prem environments, and SaaS solutions. * Experience with vulnerability management methodologies and implementations. * Solid understand of intrusion detection and prevention solutions and techniques. * Experience with encryption technology and industry best practices for practical implementation including Key Management (e.g. PKI, HSM, etc.) * Security audit and assessment experience (e.g., ISO27001, NIST 800-53, etc.) * Experience and knowledge with Internet protocols, (e.g., TCP/IP, UDP, DNS, SMTP, etc.) Desired Skills: * Experience with the design of systems across countries/geographic regions * Experience in the automotive industry with specific expertise in securing those environments * Strong understanding of investigation and breach best practices * Software Development Life Cycle (SDLC) experience * Strong knowledge in the following topics + API security + Containers, Kubernetes, OpenShift + Big data analytics or data mining solutions (e.g., Apache Kafka, Apache Spark and databases like Apache Cassandra or Cloudera data lake) + Security best practices with major platforms such as Microsoft O365,SAP S/4HANA, and Salesforce. + Securing Public Cloud platforms (AWS, GCP, Azure) + Experience assessing and securing AI/ML and Generative AI solutions, including risks such as model leakage, prompt injection, data poisoning, and misuse. + Experience integrating AI capabilities securely into enterprise architectures, + Understanding of native app development and deployment to iPhone and Android platforms + Agile/SCRUM + Knowledge of AEM, FeatureHub + Knowledge of GraphQL and microservices * Knowledge of Java, React, Node.js, Jenkins, GitHub Work Flexibility: * Ability to travel as needed including international/overseas travel * Flexibility regarding start time due to early morning conference calls * Ability to support off-hour Incident Response in case of Priority 1 Security Incidents ## Description Under the general supervision of the Sr Manager Cybersecurity, the Enterprise Security Architect, Sr will assure that security principles and company security policies are adhered to in the design and delivery of systems and software including ongoing lifecycle. Within this capacity, the Lead Enterprise Security Architect will support cybersecurity architecture activities across assigned projects and initiatives supporting Volkswagen Group of America." Primary focus will be supporting secure design, implementation, and deployment activities for assigned systems and projects.", * Design, develop, review and implements security designs for new or existing technology system(s). * Establishing and maintain trust relationships with the business and project teams through active engagement, clear accountability and expectations, and frequent communication. * Collaborate with other teams and departments to fit security requirements with other constraints, such as business requirements or technology limitations. * Support business and project teams with cybersecurity architecture guidance, planning and executing cybersecurity related tasks. * Provide cybersecurity review and recommendations for system and application designs and architectures as relates to adherence to security principles and company security policies, and develop a security risk management plan for noncompliance. * Provide input on security requirements to be included in statements of work and other appropriate procurement documents. * Create and maintain architecture design artifacts such as diagrams and documentation. * Interpret output of activities such as penetration tests and application security scans, translating into actionable remediation requirements. * Assist in identifying cybersecurity gaps and recommending remediation solutions, staying abreast of emerging security technologies and trends and apply them where appropriate. * Provide technical guidance to project team members in areas of security best practice and company security policies. Cybersecurity Monitoring & Incident Handling - 15% of time * Coordinate with the Region Americas Security Operations Centers (RA SOC) to ensure new or modified solutions/systems are monitored continuously for security threats. * Participate in the documentation process detailing the necessary monitoring processes, event analysis methodologies, response processes, communication requirements, and playbooks for incident response for the new or modified product/system/solution. * Provide technical support and guidance during priority security incident(s). * Analyze market and industry trends and adjust cybersecurity strategy accordingly. * Maintain and expand knowledge of best practices and emerging threat landscape. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [DevOps Maturity Check – a way to balance autonomy and alignment](https://www.wearedevelopers.com/videos/58-devops-maturity-check-a-way-to-balance-autonomy-and-alignment) - [Bringing AI Model Testing and Prompt Management to Your Codebase with GitHub Models](https://www.wearedevelopers.com/videos/1536-bringing-ai-model-testing-and-prompt-management-to-your-codebase-with-github-models) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)