11 дней назад
Senior Cybersecurity Architect (NIST/CMMC)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Cybersecurity Architect (NIST/CMMC): Designing and implementing secure, resilient information security architectures, tools, and compliance systems for regulated defense environments with an accent on Zero Trust, defense-in-depth, monitoring, and audit readiness. Focus on threat modeling, incident response, vulnerability remediation, security documentation, and integrating cybersecurity across the full system lifecycle.
Location: On-site at the Torrance, California headquarters, with occasional travel of 5–10% to locations in Texas and New Mexico.
Company
develops advanced defense systems in a fast-moving, regulated environment.
What you will do
- Define and implement security architectures based on Zero Trust, defense-in-depth, and least-privilege principles.
- Develop security reference architectures, patterns, standards, and lifecycle controls for enterprise and program systems.
- Design and maintain security tooling, including firewalls, EDR, IDS/IPS, SIEM, and vulnerability scanners.
- Conduct threat modeling, risk assessments, vulnerability analyses, incident investigations, and remediation activities.
- Develop System Security Plans, POA&Ms, audit documentation, and readiness checks for external audits and DoD reviews.
- Partner with IT, software development, engineering, manufacturing, DevSecOps, operations, legal, and Program Security teams.
Requirements
- 7–10+ years of hands-on experience in cybersecurity engineering, infrastructure security, or a related field.
- Strong expertise in network security, endpoint protection, access control, vulnerability management, incident response, malware analysis, and penetration testing.
- Experience with security tools such as CrowdStrike, Palo Alto, Nessus, Splunk, and Snort, plus cloud security across AWS, Azure, or GCP.
- Deep knowledge of security principles and frameworks including NIST, NIST SP 800-171, CMMC, CIS Controls, and MITRE ATT&CK.
- Ability to obtain and maintain a U.S. security clearance and meet applicable U.S. Government eligibility requirements.
- Strong documentation, troubleshooting, communication, and prioritization skills in high-pressure environments.
Nice to have
- Experience in DoD, aerospace, SCIF, SOC, or other regulated environments.
- Security+, CISSP, CISM, CEH, or a similar senior-level certification.
- Experience with DFARS, CMMC, NIST 800-171 audit readiness, incident response, malware analysis, or penetration testing.
Culture & Benefits
- Work in an early-stage environment with significant ownership and direct impact on defense capabilities.
- Collaborate across technical, operational, manufacturing, and legal functions.
- Receive a comprehensive benefits package.
- Operate in a high-stakes environment focused on execution, ownership, and technical excellence.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →