Назад
Company hidden
2 дня назад

Security Architect - Cloud & Application

150 000 - 150 000$
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Architect - Cloud & Application (Cybersecurity): Designing security architecture for enterprise cloud and application systems with an accent on threat modeling, IAM, OpenShift, AWS, Vault, and IBM MQ security. Focus on mapping controls to threats, building security testing frameworks, validating multi-region disaster recovery, and defining secure integration patterns.

Location: Albany, NY, United States. Candidates must be legally authorized to work in the United States.

Salary: $150,000 yearly.

Company

hirify.global provider.

What you will do

  • Conduct STRIDE-based threat modeling for the FICC target-state architecture and map security controls to threats and mitigations.
  • Define security testing frameworks covering pre-deployment, integration, resilience, and continuous testing.
  • Validate multi-region disaster recovery security designs, including split-brain prevention and audit trail requirements.
  • Design HashiCorp Vault integration patterns, OpenShift authentication methods, and ACL policies.
  • Assess IBM MQ RDQM, AWS, A3P, PingFederate, and cloud connectivity security controls.
  • Produce implementation guidance, control mappings, developer security checklists, and recommendations for HiPAM-to-Vault migration.

Requirements

  • 12–15 years of relevant cybersecurity or security architecture experience.
  • Strong experience with STRIDE and DREAD threat modeling for enterprise architectures.
  • Strong IAM design experience and knowledge of OpenShift RBAC, namespace isolation, SCCs, network policies, and admission controllers.
  • Hands-on HashiCorp Vault integration experience and strong understanding of IBM MQ security, including mTLS and CONNAUTH.
  • Experience with AWS security architecture, SCPs, account boundaries, multi-region disaster recovery, audit trails, and split-brain prevention.
  • AWS Security Specialty certification and financial services security context, including SIFMU awareness, are required or preferred as specified in the source description.

Nice to have

  • Application architecture and architecture principle design experience.
  • Experience with AWS Well-Architected Tools and deployment management.
  • Experience with performance testing and NFR gathering, including log analysis, user interviews, reverse engineering, and NFR documentation.
  • Experience with PingFederate, secure IBM MQ RDQM messaging architectures, OpenShift applications, and HiPAM-to-Vault migration assessments.

Culture & Benefits

  • Permanent employment.
  • Inclusive workplace committed to equal consideration for qualified applicants.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →