Security Architect

The Judge Group
Boston, MA
Full-time

Role : Security Architect

Location : Boston, MA 02108

Type : Long term Contract

Position Summary

The primary responsibility is to implement business and technical controls that meet specific security requirements and to define processes and standards that maintain approved security configurations in the new Financial Solution.

This role ensures confidentiality, integrity, availability, risk management, and compliance of the business solution.

This includes :

  • Design and recommend protocols and procedures for monitoring the product vendor’s performance against Service Level Agreement standards regarding data security, annual security audits, and disaster recovery testing.
  • Define security policies, processes and standards related to end- user roles, data access for application users, and how users will be provisioned and de-provisioned.
  • Provide input on selection, deployment, and oversight of security technologies. The Security Architect will participate in recommending strategies for :
  • Monitoring compliance with vendor and IT security policies and applicable laws.
  • Defining procedures for investigating and reporting security incidents.
  • Contribute in developing, testing, and documenting security procedures, including disaster recovery, business continuity, backups, and incident response.
  • Monitoring and assessing business continuity and disaster recovery programs, network penetration, and other tests to assess application vulnerability;
  • Working with the BEST Compliance Lead, participate in risk and compliance assessment reviews of the new Financial solution and supporting services and infrastructure.

Required Skills

  • In-depth exposure to technical configurations, technologies, and processing environments in one or more projects of similar size and complexity to BEST.
  • In-depth knowledge and understanding of information risk concepts and principles as a means of relating business needs to security controls.
  • Knowledge of and experience in developing and documenting security architecture and plans, including strategic, tactical and project plans.
  • Documented experience with common information security management frameworks, such as International Organization for Standardization (ISO) 2700x and the ITIL, SOX, COBIT and National Institute of Standards and Technology (NIST) frameworks.
  • Experience in architecting and implementing cloud-based security solutions.
  • Strong knowledge of security tools and capabilities, such as : IDM and SSO.
  • Extensive experience in integrating security tools and 3rd party vendor solutions.
  • Exceptional planning, organization, communication, prioritization, and business analysis skills.
  • In-depth knowledge of risk assessment methods and technologies.
  • Proficiency in performing risk, business impact, control, and vulnerability assessments.
  • Excellent technical knowledge of mainstream operating systems and a wide range of security technologies, such as network security appliances, identity, and access management (IAM) systems, anti-malware solutions, privilege access management (PAM), data loss prevention (DLP), encryption at-rest and in-transit, multi-factor authentication (MFA), end-point-security, vulnerability scanning and patch management, automated policy compliance tools, and desktop security tools.
  • Experience in developing, documenting, and maintaining security policies, processes, procedures, and standards.
  • Knowledge of network infrastructure, including routers, switches, firewalls, and the associated network protocols and concepts.
  • Strong analytical skills to analyze security requirements and relate them to appropriate security controls.
  • Documented written and verbal communication skills.

Preferred Skills

Experience with Software as a Service cloud implementations particularly those in which legacy on premise applications have been migrated to cloud delivery options.

Security solution design and development leveraging multiple security teams with disparate roles and responsibilities using a cloud SaaS solution.

Experience in migrating security solutions from legacy on-premises environment into a cloud solution within a highly regulated environment.

Experience in performing / supporting security audits and compliance validation. Documented ability to interact with personnel at all levels and across all business units and organizations, and to comprehend business imperatives.

Minimum Entrance Requirements

  • Bachelor's degree in computer science, system analysis or a related study, or equivalent experience.
  • Minimum of five years of design and implementation experience in IT, with a deep knowledge in a minimum of two of the following technical disciplines : infrastructure and network design, application development, application programming interfaces (APIs), middleware, servers and storage, database management, data security, and system administration and operations
  • Experience in generation of Security materials, including but not limited to compliance adherence, security operational procedures, security implementation plans, and network and security diagrams.
  • Minimum of three years of security architecting design and implementation with security certifications, such as : SIA Security +
  • 30+ days ago
Related jobs
Promoted
MITRE
Bedford, Massachusetts

MITRE’s Enterprise Computing, Information, and Security (ECIS) is seeking an experienced Storage Infrastructure Architect with a background in designing, implementing, and supporting storage,virtualization,and cloud technology offerings. CompTIA Security+ or equivalent security certification. The R&...

Promoted
Abacus Technology Corporation
Hanscom Air Force Base, Massachusetts

Coordinate and conduct governance and portfolio management activities associated with ensuring compliance with the enterprise architecture; and/or ensure the rigorous application of information security/cybersecurity policies, principles, and practices to all components of the enterprise architectur...

Russell Tobin
Waltham, Massachusetts

Collaborate with cross-functional teams, including server, access security, and web applications teams, to ensure seamless integration and upgrade of IGA tools. Lead and execute the implementation and enhancement of IGA systems across various industries, ensuring compliance and security standards ar...

Quantum Search Partners
Boston, Massachusetts
Remote

The Cybersecurity Architect will develop and maintain security frameworks and architectures, technical standards and guidelines across the security domains of identity, network infrastructure and endpoints. Solid understanding of architecture-based security issues and network infrastructure security...

New Relic, Inc.
Boston, Massachusetts
Remote

Principal Software Engineer - Platform Security/Compliance Architect - (Remote). Principal Software Engineer - Platform Security/Compliance Architect - (Remote). You will collaborate with cross-functional teams, including engineering, security, legal and compliance to ensure our software complies wi...

Orbia
Boston, Massachusetts

Drive the network security architecture and engineering of the Orbia security controls to protect all endpoints across the workplace and hosting (cloud Infra as a service and on-premises) technology footprint. Function as a primary product owner/subject matter expert for cybersecurity owned network ...

The Judge Group
Boston, Massachusetts

Excellent technical knowledge of mainstream operating systems and a wide range of security technologies, such as network security appliances, identity, and access management (IAM) systems, anti-malware solutions, privilege access management (PAM), data loss prevention (DLP), encryption at-rest and i...

PamTen
Boston, Massachusetts

A minimum of 10 years of experience in information security or cyber security; with at least 5 years of exposure to various security frameworks, preferably NIST. Activities include the evaluation, procurement and deployment of security-related products and the development and coordination of securit...

Wipro
Quincy, Massachusetts

Wipro Limited (NYSE: WIT, BSE: 507685, NSE: WIPRO) is a leading technology services and consulting company focused on building innovative solutions that address clients’ most complex digital transformation needs.We leverage our holistic portfolio of capabilities in consulting, design, engineering, o...

InterSystems
Cambridge, Massachusetts

Certifications such as Certified Cloud Security Professional (CCSP), Certified Information Systems Security Professional (CISSP), or Certified Cloud Architect (CCA) are preferred. A cloud security architect must be conversant with a breadth of technologies used to protect data, workloads, and system...