Lead Cybersecurity Architect

Insight Global
Garden Grove, United States of America
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
$ 160K

Job location

Garden Grove, United States of America

Tech stack

Artificial Intelligence
Azure
Cloud Computing
Cloud Computing Security
Cloud Engineering
Computer Security
Distributed Systems
Identity and Access Management
Information Systems Security Architecture Professional
Network Security
Microsoft Security Essentials
Public Key Infrastructure
Zero Trust Network Access
Security Information and Event Management
Software Engineering
Software Security
Mitre Att&ck
Multi-Cloud
Firewalls (Computer Science)
Microsoft InTune
CIS Benchmarks
Devsecops
Cisco networks

Job description

One of Insight Global's customers is looking to onboard a Lead Cybersecurity Architect who will provide strategic and technical direction for the company's enterprise cybersecurity architecture. This person will initially focus on learning the existing environment, identifying the strengths and weaknesses of the current cybersecurity infrastructure, and building relationships across infrastructure, cloud, networking, application, and business teams. They will become involved in projects across the organization, assess current solutions, identify security gaps, and create the appropriate architecture around existing and future technologies. This individual will help strengthen the company's overall security posture by developing standards, reference architectures, roadmaps, and practical improvements across identity, network, cloud, endpoint, data, application, and emerging technology security. They will also lead complex technical conversations, guide engineering teams, evaluate new technologies, and communicate architectural risks and recommendations to executive leadership in both technical and nontechnical terms. The formal JD specifically includes architecture reviews, risk assessments, technology evaluations, mentoring, documentation, and cross-functional technical guidance. This is a permanent opportunity sitting 2-3 days a week onsite near one of the customer's main offices.

Requirements

15+ years of progressive experience designing and securing enterprise infrastructure, cloud platforms, networks, identity systems, and distributed environments. Experience leading enterprise cybersecurity architecture initiatives within a large, complex enterprise environment. Extensive experience designing and implementing solutions involving IAM, PAM, IGA, Conditional Access, microsegmentation, ZTNA, SASE/SSE, PKI, EDR/XDR, SIEM, exposure management, and data protection technologies. Strong Microsoft and Azure security experience, including familiarity with technologies such as Entra ID, Defender, Sentinel, Intune, Azure Firewall, Defender for Cloud, and Purview. Deep understanding of Zero Trust Architecture, enterprise networking, cloud security, identity security, and secure connectivity across hybrid or multi-cloud environments. Experience developing security architectures for modern application platforms, including secure software development, DevSecOps, Infrastructure-as-Code, software supply chain security, and cloud-native application security. Ability to create enterprise security standards, reference architectures, technical roadmaps, and architectural documentation. Excellent communication skills with the ability to explain complex cybersecurity concepts to both technical teams and executive leadership. Enterprise industry experience is strongly preferred over a career primarily focused on short-term consulting engagements. These requirements align with the formal JD's emphasis on Zero Trust, Microsoft security technologies, enterprise networking, cloud and identity security, modern application security, and the ability to influence architecture decisions across multiple engineering disciplines.

Nice to Have Skills & Experience

CISSP certification. Experience evaluating and securing AI-enabled solutions through security architecture, governance, identity controls, and data protection. A networking foundation followed by a transition into cybersecurity architecture. Experience leading microsegmentation and vulnerability or exposure management projects. Experience securing manufacturing, OT/IoT, branch office, or geographically distributed environments. Familiarity with network security environments involving Cisco, Meraki, and Azure. Knowledge of NIST, ISO 27001, CIS Controls, and MITRE ATT&CK. Creative problem-solving skills and the ability to develop practical solutions beyond traditional security approaches. Experience securing AI-enabled solutions, distributed environments, and solutions aligned with established security frameworks and modern attack methodologies.

Benefits & conditions

Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.

Apply for this position