> Markdown version of [/jobs/ext/740072-cyber-security-architect](https://www.wearedevelopers.com/jobs/ext/740072-cyber-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Security Architect - **Company:** The Depository Trust & Clearing Corporation - **Location:** Tampa, FL, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Computing Platforms, Software as a Service, Cloud Computing, Cyber Security, Information Leak Prevention, Monitoring of Systems, High-Level Architecture, Identity and Access Management, Intrusion Detection and Prevention, Virtual Private Networks (VPN), Information Systems Security Architecture Professional, Network Security, Ping (Networking Utility), Akamai, Zero Trust Network Access, Web Application Security, Security Information and Event Management, Systems Integration, SSL Certificate Management, Data Logging, Okta, Firewalls (Computer Science), Cisco - **Published:** June 29, 2026 - **Apply:** https://www.dice.com/job-detail/c3dd1951-f3e7-4ef3-9d7e-10f18eb21063 ## About the Role * Bachelors' Degree and/or equivalent experience * 8+ years of experience in cybersecurity architecture, network security, or security engineering roles. Talents Needed for Success: * Demonstrated experience designing and implementing Zero Trust architectures in large enterprise environments. * Strong expertise in: + Identity-based access controls (SSO, MFA, conditional access) + Secure network and application connectivity concepts + Hybrid and cloud-based access architectures * Experience integrating ZTNA/SSE platforms with: + Identity providers (e.g., Entra ID, Okta, Ping) + SIEM/SOAR solutions + Endpoint security and posture signals * Ability to operate effectively across strategy, governance, and hands-on execution. Preferred / Recommended Qualifications * Architecture and/or implementation experience with multiple of the following platforms: + Zscaler + Cisco security and networking platforms + Akamai enterprise security and access solutions * Familiarity with: + Software-defined perimeter and segmentation strategies + TLS inspection, certificate management, and privacy considerations + SaaS governance and shadow IT risk controls * Professional certifications such as CISSP, CCSP, GIAC, or relevant vendor certifications preferred. Key Competencies * Enterprise security architecture and design * Zero Trust and identity-centric access models * Governance and control alignment * Vendor and stakeholder management * Technical depth with strong documentation discipline * Clear communication across technical and non-technical audiences Working Relationships * Collaborates closely with Network Engineering, Identity & Access Management, Cloud Platforms, Endpoint Security, SOC, GRC, and Application teams. * Provides architectural leadership and guidance across technology and risk organizations. ## Description Being a member of IT Cybersecurity and Platform Strategy team, you will lead the design, governance, and implementation of enterprise Zero Trust Network Access (ZTNA) and Secure Service Edge (SSE) capabilities. This role is a hybrid of architecture leadership, governance oversight, and hands-on technical engagement, supporting secure access modernization across a complex, regulated financial services environment., * Define and maintain enterprise ZTNA and SSE target-state architectures, roadmaps, and transition strategies aligned with DTCC security principles. * Establish and document Zero Trust architecture standards, including identity-centric access, least-privilege enforcement, continuous verification, and segmentation. * Develop and maintain architecture artifacts, including: + Reference architectures and solution patterns + High-Level Designs (HLDs) and Low-Level Designs (LLDs) + Architecture Decision Records (ADRs) * Serve as the design authority for secure access and connectivity initiatives. Governance, Risk & Control Alignment * Translate enterprise security, regulatory, and risk requirements into enforceable architectural guardrails for ZTNA/SSE platforms. * Ensure access architectures support: + Policy consistency and traceability + Exception management and approvals + Periodic access reviews and recertification + Audit and regulatory evidence requirements * Participate in architecture review boards, security design reviews, and governance forums as the ZTNA/SSE subject-matter expert. Hands-On Technical Leadership * Lead and actively participate in: + Platform design and configuration + Proof-of-concepts and pilot implementations + Migration initiatives (including VPN modernization) * Architect and guide implementation of SSE capabilities, including: + Zero Trust Network Access (ZTNA) + Secure Web Gateway (SWG) + Cloud Access Security Broker (CASB) + Firewall-as-a-Service (FWaaS), where applicable + Integration with Data Loss Prevention (DLP) services * Design secure access models for: + Workforce access to internal and cloud-hosted applications + Third-party and vendor access + Privileged and high-risk access scenarios Multi-Vendor Platform Architecture * Design and maintain solutions across a multi-vendor ZTNA/SSE ecosystem, including: + Zscaler + Cisco security and secure access platforms + Akamai enterprise access and edge security services * Perform comparative technical evaluations and develop vendor-neutral architectural decision frameworks. * Lead vendor engagements, technical deep dives, and roadmap assessments. Operational Readiness & Continuous Improvement * Ensure operational integration with: + SIEM/SOAR platforms + Logging, telemetry, and monitoring systems + Incident detection and response workflows * Define and track access-related KPIs and metrics, including: + Reduction in legacy VPN reliance + Application onboarding progress to ZTNA + Policy exception volumes + Access anomaly detection and response effectiveness * Drive continuous optimization of security posture, performance, and user experience. ## Related Videos - [What the Heck is Edge Computing Anyway?](https://www.wearedevelopers.com/videos/593-what-the-heck-is-edge-computing-anyway) - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Computer Vision from the Edge to the Cloud done easy](https://www.wearedevelopers.com/videos/263-computer-vision-from-the-edge-to-the-cloud-done-easy) - [Trust Issues: Because Zero-Trust Isn’t Optional Anymore](https://www.wearedevelopers.com/videos/100089-trust-issues-because-zero-trust-isn-t-optional-anymore) - [Your Infrastructure Is Not a Playground: AI Agents for Infra Done Right](https://www.wearedevelopers.com/videos/2084-your-infrastructure-is-not-a-playground-ai-agents-for-infra-done-right) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)