Cyber Security Architect
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+6 more
Job description
Swagelok is a global organization and one of the largest employers of manufacturing talent in Northeast Ohio. We are driven by our core values of Quality, Integrity, Respect for the Individual, Customer Focus, Innovation, and Continuous Improvement, which are demonstrated through our daily actions. For over 75 years, our dedication to our core values has been the foundation for our success. Our products have been up into space, down to the bottom of the ocean, and everywhere in between. That same dedication spans to our customers.
Throughout our organization we demonstrate a commitment to these values and those we bring onboard. Whether you want to grow in your role or explore broad opportunities and develop new skills-you’ll thrive in a culture that promotes learning and development.
We strive to be a company where we all can do our best work with a true sense of purpose and belonging.
Be Connected. Be Valued. Be You.
We hope you’ll consider joining our team.
The Cyber Security Architect is responsible for coordinating and architecting information security initiatives across the organization to ensure the availability, integrity, and confidentiality of Swagelok’s information technology resources. This role leads security risk assessments, incident response, and the selection of information security technologies, while serving as a subject matter expert and collaborating with various Swagelok business units on security-related matters. The Cyber Security Architect works closely with cross-functional business and IT leaders to achieve business objectives while maintaining a strong security posture.
Essential Duties and Responsibilites:
-
Designing Secure Systems: Design, build, and oversees an organization’s IT security infrastructure, creating blueprints for robust, layered defenses. Translate security policies into technical, risk-managed designs-covering network, cloud, and application security-to protect against internal and external threats. Ensure that all solutions are documented and maintained.
-
Developing Security Policies: Define, document, and enforce security policies, procedures, standards and guidelines that align with business goals and risk tolerance. Translate high-level business requirements into technical, actionable policies-such as data classification, access control, and incident response plans-that guide the design of a secure infrastructure.
-
Security Strategy: Develops and updates the cyber security strategy and roadmaps in parthernship with the Cyber Security Manager. This will provide guidance and advocacy regarding prioritization of infrastructure investments to improve Swagelok’s IT security posture. Maintain professional knowledge through ongoing education and industry engagement.
-
Risk Assessment & Mitigation: Identify potential vulnerabilities through security audits, and penetration testing; analyzing threats to prevent data breaches. Ensure the mitigation of identified risks. Act as primary point of contact during major information security incidents.
-
Security Tools Implementation: Deploying and managing security technologies such as targeted phishing, business email compromise (BEC), firewalls, intrusion detection systems (IDS/IPS), data loss prevention (DLP), identity management systems and Security Information and Event Management (SIEM).
-
Strategic Planning: Collaborating with IT teams and stakeholders to align security architecture with business objectives, including vendor management and, in some cases, merger/acquisition evaluations. Partner with IT leaders on the principals of Secure by Design to proactively approach to cybersecurity controls and principles into technology products and systems from the initial design phase.
-
Collaboration and Partnership: Maintain a robust partnership between a Cyber Security, Legal counsel, Risk and Data Privacy teams to navigate complex regulatory landscapes, manage risk, protect brand. Monitor and communicate developments in information security legislation relevant to the organization.
-
Develop and Mentor: Cultivate a culture of security awareness, and arranging continuing education of associates to ensure security policies are adhered to at all times. Also expected to mentor and develop associates in their understanding of security concepts, technical.
Requirements
-
Education: BA or BS in Computer Science, cybersecurity or a related field.
-
10 years of relevant IT experience to include 7+years of experience in cybersecurity, especially in a sr. security engineering role.
-
3+ years’ experience with information systems and computer security - firewalls, encryption, and network architecture across cloud, network, and application environments.
-
2+ years’ experience in developing and administering information technology policies; business continuity planning, auditing and risk management .
-
Knowledge of DevSecOps best practices.
-
Proficiency in IoT platforms and/or industrial automation systems.
-
Experience in Azure (preferred), or similar.
-
Knowledge of ISO27001 and NIST frameworks.
-
Knowledge of Zero Trust Architecture principles and best practices.
-
Experience in managing / implementing enterprise security related projects.
-
SAP experience helpful, especially using GRC module
Preferred :
- CISSP certification, CISA/CISM or GIAC certification.
Skills/Knowledge:
-
Strong infrastructure management knowledge related to design and implementation of information systems.
-
Strong written and verbal communication skills.
-
Knowledge of financial management models to measure financial return and performance, calculate Return On Investment (ROI), Return on Assets (ROA), etc.
Working conditions and/or Physical Requirements:
- Working conditions associated with normal office environment.
- Ability to operate standard office equipment (e.g., computer, telephone, copier, printer, etc.).
- Ability to effectively communicate in both small and large groups and settings.
- Ability to traverse between multiple locations in Ohio and Pennsylvania as needed.
- Ability to safely and successfully perform the essential job functions consistent with the ADA, FMLA and other federal, state, and local standards, including meeting qualitative and quantitative productivity standards.
- Ability to maintain regular, punctual attendance consistent with the ADA, FMLA and other federal, state, and local standards.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
The 12 Best Jobs for Software Engineers
9 Ways to Make Money Hacking
Software Developer Salary in Switzerland [2023]
Best Paying Jobs in Technology