Current jobs related to Information Security Architect-ITDSG - Washington DC - IMF - International Monetary Fund


  • Washington, United States AbbVie Full time

    Company OverviewAbbVie is dedicated to discovering and delivering groundbreaking medications and solutions that tackle significant health challenges today while addressing future medical needs. Our commitment is to make a profound impact on individuals' lives across various critical therapeutic domains, including immunology, oncology, neuroscience, and eye...


  • Washington, Washington, D.C., United States Booz Allen Hamilton Full time

    Role Overview:As an Information Security Architect, you will be responsible for establishing a robust network security framework by strategizing, designing, testing, deploying, and safeguarding the organization's critical missions and IT resources. Your expertise will be essential in assessing and pinpointing IT solutions, crafting secure architectures,...


  • Washington, Washington, D.C., United States Booz Allen Hamilton Full time

    Role Overview:The Information Security Architect is responsible for establishing a robust network security framework by strategizing, designing, testing, executing, and safeguarding the organization's critical missions and IT resources. This role involves assessing and identifying IT solutions, crafting secure architectures, supervising the deployment of...


  • Washington, United States Architect Of The Capitol Full time

    This position is a special sensitive (SS)/high risk position, that has duties and responsibilities that include the following: Cloud and Artificial Intelligence (AI) Management 40% Manages and directs processes and R&D (research and development) to meet the needs of AOC AI and cloud strategy. Analyze AI and cloud technologies to enhance efficiency,...

  • Senior IT Specialist

    2 months ago


    Washington D.C., United States USAJobs Full time

    DutiesThis position is a full-time position in the Office of Information Technology at the Supreme Court of the United States, in Washington, D.C. Under the guidance of the Court Information Security Officer, the incumbent will perform the full range of tasks and activities involved in developing, coordinating, implementing and maintaining standards,...


  • Washington, Washington, D.C., United States Maveris Full time

    Job Title: DevSecOps Security ArchitectMaveris is a leading IT and cybersecurity services company that helps organizations create secure digital solutions to accelerate their mission. We are committed to delivering exceptional, mission-focused solutions to our clients.Job SummaryWe are seeking a highly motivated and experienced DevSecOps Security Architect...


  • Washington, United States General Dynamics Information Technology Full time

    Principal Architect - LinuxSeize the opportunity to make a meaningful impact as a Principal Architect for Linux with General Dynamics Information Technology. A career in systems engineering means designing and implementing the systems that matter most. You will ensure that Linux site design, architecture, and certificate services are functioning properly and...


  • Washington, Washington, D.C., United States General Dynamics Information Technology Full time

    Job Title: Information Security SpecialistGeneral Dynamics Information Technology (GDIT) is seeking an experienced Information Security Specialist to join our team. As an Information Security Specialist, you will play a critical role in ensuring the security and integrity of our clients' information systems.Key Responsibilities:Establish and maintain complex...


  • Washington, Washington, D.C., United States Zachary Piper Full time

    Position Title: Lead Security ArchitectLocation: Washington, DCCompany: Zachary Piper SolutionsSecurity Clearance: Top Secret, SCI EligiblePosition Overview:Zachary Piper Solutions is seeking a Lead Security Architect to become a vital part of a dynamic team dedicated to supporting a government entity. This role necessitates 5 days in the office, situated in...

  • Principal Architect

    6 days ago


    Washington, United States General Dynamics Information Technology Full time

    Principal Architect for LinuxSeize your opportunity to make a meaningful impact as a Principal Architect for Linux with General Dynamics Information Technology (GDIT). A career in systems engineering means designing and implementing the systems that matter most. You will ensure that Linux site design, architecture, and certificate services are functioning...


  • Washington, Washington, D.C., United States Architect of the Capitol Full time

    Job SummaryThis position is located in the Architect of the Capitol, Office of the Chief Engineer, Project Management Division. The selectee will manage building construction, renovation, and/or infrastructure projects, providing expertise, coordination, oversight, and direction for multiple projects throughout the agency.ResponsibilitiesProvides project...


  • Washington, Washington, D.C., United States Highmark Health Full time

    Job SummaryThe Principal Information Security Architect – Enterprise Technology serves as the most senior security architect and advanced technology analyst in the company. This role synthesizes and simplifies complex needs such as business capability, operational efficiency, regulatory, security, and privacy considerations into architecture and system...


  • Washington, Washington, D.C., United States Highmark Health Full time

    Job SummaryThe Principal Information Security Architect – Enterprise Technology serves as the most senior security architect and advanced technology analyst in the company. This role synthesizes and simplifies complex needs such as business capability, operational efficiency, regulatory, security, and privacy considerations into architecture and system...


  • Washington D.C., United States USAJobs Full time

    DutiesThe senior information security engineer develops and applies the tools and approach necessary to protect CBO's network and computer systems. Responsibilities include developing and reviewing security guidelines, policies, and procedures and enforcing compliance with them, while balancing the need to facilitate the work of CBO's analytical staff;...


  • Washington, Washington, D.C., United States Security Solutions Technology Full time

    Job Title: Applications ArchitectWe are seeking an experienced Applications Architect to join our team at Security Solutions Technology.Key Responsibilities:Design and develop scalable and secure web and mobile applicationsCollaborate with cross-functional teams to ensure seamless integration with existing systemsDevelop and implement cloud-based solutions...


  • Washington, United States CoStar Realty Information, Inc. Full time

    Job Title: DevSecOps EngineerCompany Overview:CoStar Realty Information, Inc. is a premier global provider of commercial and residential real estate data, analytics, and online marketplaces. Our mission is to revolutionize the real estate industry by providing unparalleled insights and connections that enhance business operations and personal lives.Position...


  • Washington, Washington, D.C., United States Security Solutions Technology Full time

    Job Description**Job Title:** Cloud Architect**Company:** Security Solutions TechnologyWe are seeking a highly skilled Cloud Architect to join our team and lead the development of modern, cloud-hosted analytics solutions for data storage and data transformation. The ideal candidate will have expertise in building scalable and secure cloud infrastructure, as...


  • Washington, Washington, D.C., United States ST2 ManTech Advanced Systems Intl Full time

    Join Our Team at ST2 ManTech Advanced Systems IntlWe are seeking a committed and proficient Information Security Engineer to become a part of our dynamic team. At ST2 ManTech Advanced Systems Intl, we value our employees and provide a stimulating work atmosphere that fosters professional development and career progression.Key Responsibilities:Evaluating and...


  • Washington, United States Milestone Technologies, Inc. Full time

    IT Security Architect6 Months Contract with possible extensionAtlanta; GA or Washington; DC or Silver Spring; MD (anticipate 3-4 days per week onsite)Overview:The IT Security Architect is a critical technical role responsible for ensuring the secure design and compliance of client's enterprise architecture to effectively and securely support the organization...


  • washington, United States Milestone Technologies, Inc. Full time

    IT Security Architect6 Months Contract with possible extensionAtlanta; GA or Washington; DC or Silver Spring; MD (anticipate 3-4 days per week onsite)Overview:The IT Security Architect is a critical technical role responsible for ensuring the secure design and compliance of client's enterprise architecture to effectively and securely support the organization...

Information Security Architect-ITDSG

3 months ago


Washington DC, United States IMF - International Monetary Fund Full time

Work for the IMF. Work for the World.

The Information Technology Department (ITD) at the IMF is more than just a support function; it is a critical catalyst for change. We champion the seamless integration of cutting-edge technology solutions, ensuring the IMF's mission is propelled by innovation and efficiency.

Within the IT department, the Information Security and Governance (ISG) division and other first-line cybersecurity teams stand as the guardians of integrity and a beacon of trust. We are not just about managing risks; we are about envisioning, enabling, and implementing a secure future for global economic stability. Our teams are dedicated to:

- Crafting and executing a forward-thinking and resilient Cybersecurity Strategy.
- Enacting inclusive governance that balances security needs with operational fluidity.
- Developing policies and standards that stay ahead of the threat landscape.
- Ensuring compliance, resilience, and agility in our cybersecurity posture.
- Engaging in relentless evaluation, management, and tracking of cybersecurity and digital risks linked to the utilization of the Fund's information assets, ensuring a secure operational framework.
- Continuously enriching our annual information security culture, awareness, and education initiative, fostering a security-conscious environment across the organization.
- Administering a compliance management program dedicated to maintaining firm adherence to the Fund's information security policies and standards.
- Preserving a solid enterprise security reference architecture that acts as a safeguard for the Fund's information assets against pertinent threats.
- Engineering, implementing, and sustaining secure and resilient technological solutions, spanning both on-premises and cloud infrastructures, to support the Fund's mission.
- Overseeing cyber threat intelligence, and incident management, digital forensics, and investigations, alongside championing innovation in cybersecurity practices to achieve operational excellence and deliver value promptly.

As we expand our efforts to serve the Fund's staff and its members more effectively, we invite seasoned cybersecurity professionals to our elite cybersecurity teams. We are looking for individuals with the requisite skills and expertise to address the current and forthcoming cybersecurity and business challenges faced by the Fund.

**Job Summary**





The Information Technology Department (ITD)’s Information Security and Governance (ISG) division of the International Monetary Fund (IMF) is seeking to fill an Information Security Architect position.



This role will design, engineer, influence and embed security controls in the early phases of the IMF's System Development Lifecycle process (Shift Left Mindset). S/he is expected to influence, drive, and collaborate with business and technical stakeholders to achieve practical architecture solutions that meet the secure by design and privacy by design principles. The candidate will also identify recurring information security use cases and develop security architecture pattern documents applicable to those use cases.





**Major Duties and Responsibilities**





1\. Drives and supports the solution architecture development process from context to physical architecture and ensures that all relevant security controls are embedded early in the SDLC phase.



2\. Works with technical and business stakeholders to identify architectural attributes that may influence threat and attack vectors.





3\. Collaborates with business and technical stakeholders to develop data flows, user profiles, data dictionaries, release notes, technical specification and process flows as input for threat modeling activities.





4\. Reviews high level conceptual and logical architectural artifacts and presents findings to the IMF’s Enterprise Architecture Review Board.





5\. Performs threat modeling activities and communicates outcomes to platform engineers, Information Security Risk Management and the Application Security teams.





6\. Develops technical road maps towards achieving mid to long-term enterprise security architecture goals like zero trust architecture, automated threat modeling, secure by default, policy as code and pattern as code.





7\. Attends project and enhancement meetings to advise and provide input on security architecture related issues.





8\. Develops and ensures security reference architectures and patterns are up-to-date, standards-based, relevant, and agile to meet evolving business and technology needs and knowledge gaps.





9\. Research new information security capabilities and technology for continuous improvement of self and the organization.





10\. Collaborates with the information security assurance team on developing practical and applicable information security baselines and referencing those baselines in Enterprise Security Architecture documentation.





11\. Drives and documents security architecture artifacts for protecting the IMF’s crown jewels and strictly confidential assets.





12\. Collaborates with IMF’s DevOps team to define guardrails and process flows for configuration, development, delivery, and deployment pipelines.





13\. Collaborates with the IMF Enterprise Architecture Division to create visibility of activities between ISG and EA division to ensure continuous synchronization.





14\. Manages the implementation of an awareness program for promoting information security architecture principles and their application with business and IT stakeholders.





**Minimum Qualifications**





Advanced degree in information security, computer science, engineering, mathematics, or related field of study plus a minimum of 4 years of progressive information security work experience; or a bachelor’s degree in information security, computer science, engineering, mathematics, or related field of study and minimum of 10 years of progressive information security work experience.





- Candidates should possess one or more of the following certifications. — CISSP, CISM, SABSA, CISSP-ISSAP, CSSLP, CCSK, or GSSP.





**Work management skills**



- Familiarity with a broad range of technologies supplemented by in-depth knowledge in specific areas of relevance. Ability to quickly grasp how new technologies work and how they might be applied to achieve business goals.



- Excellent insight of business and technology trends and their impact (risks and opportunities) to business enablement.



- Analytical skills that enable synthesis and correlation of inputs from many sources and allow for strategic thinking and tactical implementation.



- Ability to establish and maintain effective partnerships and working relations in a multi-cultural, multi-ethnic environment with sensibility and respect for diversity.



- Excellent management, organizational and interpersonal skills to influence others towards a shared vision and positive results with or without the line of command.



- Excellent written and verbal communication skills that are compelling, convincing and reassuring, with the ability to articulate complex technical ideas to non-technical stakeholders.



- Personal drive, ownership and accountability to meet deadlines and achieve agreed-upon results.



**Technical Skills**



- Deep and hands-on understanding and expertise in at least 4 of the following 6 areas – Infrastructure, Application, Network, Cloud Security, Identity & Access Management and Security Automation.



- An understanding of Azure Cloud and Microsoft 365 security controls, solutions, and future roadmaps.



- Advanced knowledge Azure Key Vault, Azure Kubernetes Service, Azure Active Directory, Defender for Cloud, Azure monitor, Azure API Management, Application gateway.



- Understanding of application security assessment methods: OWASP Top 10, OWASP Application Security Verification Standard (ASVS), OWASP Mobile Application Security Verification Standard (MASVS), Attack and Defense techniques.



- Understanding and ability to perform threat modeling on a diverse category of architecture (Referencing STRIDE, DREAD, MITRE ATT&CK Frameworks)



- Experience implementing and designing DEVSECOPS and Security Automation delivery pipelines with automation tools like SAST, DAST, SCA, Container Security tooling.



- Familiarity with cloud security concepts like landing zones, Isolation concepts, NSGs/VCNs, conditional access, CI/CD pipelines.



- Familiarity with Datacentric Architectural concepts (Data storage, data lakes, raw and transformational data vaults, data isolation, ETL/ELT ingestion pipelines).





*This vacancy shall be filled by a 3-year Term appointment in accordance with the Fund’s new employment rules that took effect on May 1, 2015.*

**Department:**

ITDSG Information Technology Department Information Security & Governance**Hiring For:**

A11, A12*The IMF is committed to achieving a diverse staff, including age, creed, culture, disability, educational background, ethnicity, gender, gender expression, nationality, race, religion and beliefs, and sexual orientation. We welcome requests for reasonable accommodations for disabilities during the selection process.*