Senior Security Architect
Greater Chicago Area, IL
Local to Chicago - Hybrid Role - Mandatory 3 days on-site.
$70 / hr. on C2C
6 Months
Client
Contract position- Submission slots for this role are limited and expected to fill quickly.
We are seeking a highly experienced Senior Security Architect to design and lead the implementation of strategies that reduce the risk of lateral movement across our enterprise network. You will play a critical role in securing our infrastructure by developing secure configurations, segmenting networks, and aligning with industry-leading frameworks and practices.
Responsibilities :
- Develop and implement security architecture strategies to mitigate risks from lateral movement techniques.
- Design, document, and enforce network segmentation and access control policies.
- Collaborate with IT, cloud, and infrastructure teams to integrate security into architecture and operations.
- Lead and participate in security assessments, audits, and architecture reviews.
- Provide technical leadership and mentor junior security staff.
- Stay up to date with evolving threats, tools, and security research.
- Identify and remediate insecure configurations in Windows and Linux environments.
- Support detection and response through effective logging, alerting, and forensic readiness.
Qualifications :
Bachelor's degree in Computer Science, Information Security, or related field.8+ years in information security, with strong experience in network security and architecture.Strong understanding of lateral movement techniques (e.g., Pass-the-Hash, Kerberoasting) and mitigation strategies.Proven experience with security frameworks (e.g., NIST 800-53, CIS Controls, ISO 27001).Experience performing vulnerability assessments and managing remediation efforts.Strong leadership and communication skills, including cross-functional collaboration.Required Skills :
Deep knowledge of Windows and Linux system architecture and hardening.Expertise in Active Directory, Azure AD, and role-based access control (RBAC).Familiar with network security tools (e.g., SIEM, IDS / IPS, firewalls).Experience with Azure Log Analytics, KQL, custom alerting, and log pipelines.Proficiency in Python, PowerShell, and Shell scripting.Understanding of protocol analysis, network monitoring, and attack surface reduction.Familiar with high availability, clustering, and secure administrative practices.Working knowledge of SQL Server, Oracle, and enterprise IT infrastructure.Preferred Certifications :
CISSP, CISM, or TOGAF(Bonus) : OSCP, GIAC, AZ-500, or equivalent hands-on certs