Security Architect

2 weeks ago


Arlington, United States Navy Mutual Full time

Are you looking for a company that offers excellent opportunities combined with a worthwhile mission? Navy Mutual is that company and we are looking for talented people to join our team

What will you be doing?

  • Develops and maintains a security architecture process that enables the enterprise to develop and implement security solutions and capabilities that are clearly aligned with business, technology and threat drivers
  • Works cooperatively with all staff to meet the business and customer needs of Navy Mutual, while managing processes and methods for auditing and addressing information security standards; and facilitates migration of non-compliant environments to compliant environments
  • Informs and conducts security audits within and outside the organization, to ensure compliance with standards and currency with industry security norms
  • Manages and participates in the planning and implementation of security administration for all IT projects; and makes recommendations and assists in the implementation of changes to work methods and procedures to make them more effective or to strengthen security measures
  • Develops security strategy plans and roadmaps based on sound enterprise architecture practices
  • Develops and maintains security architecture artifacts (e.g., models, templates, standards and procedures) that can be used to leverage security capabilities in projects and operations
  • Determines baseline security configuration standards for operating systems (e.g., OS hardening), network segmentation and identity and access management (IAM)
  • Participate in the design and execution of the back-up disaster recovery systems, and contingency operations; and participates in systems back-up regimen as needed
  • Create and maintain a security training program, and perform regular security awareness training for all employees, to educate and ensure compliance with the organization's security policies, standards, and procedures
  • Responsible for maintaining project software and documentation inventory and configuration baselines
  • Establishes and maintains all CM processes and procedures; including library and software development information, impact assessments, incident reports, and software change notices, etc.; on a continuous basis
  • Identifies and implements processes to strengthen, streamline and automate build processes; and serve as an advocate for best practices to drive the development and maintenance of build automation tools
  • Maintain operational configurations of all in-place solutions as per the established baseline control efforts, using automated CM tools
  • Responsible for change management controls and reporting/documentation
  • Manage relationships with contractors and vendors as needed
  • Establishes a taxonomy of indicators of compromise (IOCs) and share this detail with other security colleagues, including the security operations center (SOC), information security managers and analysts, as well as counterparts within the network operations center (NOC)
  • Other duties as assigned
Qualifications:
  • Computer Science or related Bachelor's degree and 5-10 years of relevant experience required.
  • Advanced technical training and experience with auditing and maintaining security of systems and information is required.
  • Experience in using architecture methodologies such as SABSA, Zachman and/or TOGAF.
  • Direct, hands-on experience or strong working knowledge of managing security infrastructure - e.g., firewalls, intrusion prevention systems (IPSs), web application firewalls (WAFs), endpoint protection, SIEM and log management technology.
  • Verifiable experience reviewing application code for security vulnerabilities.
  • Experience securing CI/CD pipelines.
  • Direct, hands-on experience or a strong working knowledge of vulnerability management tools.
  • Documented experience and a strong working knowledge of the methodologies to conduct threat-modeling exercises on new applications and services.
  • Experience designing the deployment of applications and infrastructure into public cloud services.
  • Full-stack knowledge of IT infrastructure:
    • Applications
    • Databases
    • Operating systems - Windows and Linux
    • Hypervisors
    • IP networks - WAN and LAN
    • Storage networks - Fibre Channel, iSCSI and NAS
    • Backup networks and media
  • Direct experience designing IAM technologies and services:
    • Active Directory
    • Lightweight Directory Access Protocol (LDAP)
    • Amazon Web Service (AWS) IAM
  • Strong working knowledge of IT service management (e.g., ITIL-related disciplines):
    • Change management
    • Configuration management
    • Asset management
    • Incident management
    • Problem management
Regulations, Standards and Frameworks Knowledge
  • Payment Card Industry Data Security Standard (PCI-DSS)
  • General Data Protection Regulation (GDPR)
  • Privacy Practices
  • ISO 27001/2
  • NIST Cybersecurity Framework (CSF)
Required Certifications

The security architect will evidence his/her knowledge of security and risk management through ongoing continuing professional education

Business-Related Skills

The security architect is expected to contribute his or her insights to colleagues in the security team and the CISO, as well as colleagues within internal audit, risk management and other line-of-business teams. To ensure that security-related matters are adequately conveyed, the following skills are required:
  • Strategic planning skills - The security architect must interpret business, technology and threat drivers, and develop practical security roadmaps to deal with these drivers.
  • Communication skills - The security architect will be required to translate complex security-related matters into business terms that are readily understood by colleagues. The security architect should anticipate presenting analyses in person and in written formats.
  • Financial analysis - As part of the due diligence of security technologies, the security architect will be expected to evaluate the financial costs of recommended technologies. Specifically, the security architect will need to quantify purchasing and licensing options, estimate labor costs for a given service or technology, and estimate the total cost of operation (TCO), the ROI, or the payback period for services or technologies replacing existing capabilities.
  • Project management - Security services and technology implementations will require solid project management skills. The security architect will be expected to draft project plans for security service and technology deployments and coordinate with stakeholders across the organization.
Other details
  • Pay Type Salary
  • Employment Indicator Normal FT
  • Required Education Bachelor's Degree
  • Job Start Date Monday, June 17, 2024


Apply Now

  • Arlington, United States Base One Technologies Full time

    Senior Security Architect Required Education/ExperienceRequires a Bachelor’s Degree and at least 12 years of prior relevant experience or Master’s Degree and 8 years of prior relevant experience. Primary ResponsibilitiesOur Govt client has an immediate need for a Senior Security Architect for a new customer on a highly-visible and strategic Cybersecurity...


  • Arlington, United States Base One Technologies Full time

    Senior Security Architect Required Education/ExperienceRequires a Bachelor's Degree and at least 12 years of prior relevant experience or Master's Degree and 8 years of prior relevant experience. Primary ResponsibilitiesOur Govt client has an immediate need for a Senior Security Architect for a new customer on a highly-visible and strategic Cybersecurity...


  • Arlington, United States Eclaro Full time

    Job Description:Our Enterprise Security Architect team supports the Group Security Strategy for all of Client. You'll be focused on one security domain (Corporate Security), while also working with stakeholders throughout the Bank, to drive the strategy for your domain. As a future-thinking team, we are looking for individuals like you to help operationalize...


  • Arlington, United States INA Solution Inc Full time

    Job DescriptionJob DescriptionTitle-Network Security ArchitectLocation: Arlington, VADuration: 6 months contract with possible extensionBachelor's degree, cyber security disciplines; Corporate / Physical Security is the primary domain, but experience within Identity & Access is beneficial.Strong knowledge of cyber capabilities Cyber certifications are an...


  • Arlington, United States INA Solution Inc Full time

    Job DescriptionJob DescriptionTitle- Security Architect Duration: Contract Location: Arlington, VADescription:We are seeking a professional to design and implement a Security Domain Strategy for Corporate Security, develop security capability roadmaps, and facilitate communication with stakeholders to ensure alignment and integration of advanced...


  • Arlington, United States World Technologies, Inc Full time

    Cyber Security Solution Architect delivers security architecture expertise, and best practices oversight across complex multi-cloud, multi-partner environments. It entails deep-level architecture reviews, crafting advisory and design reference architectures and secure design patterns. This person is responsible for designing, architecting, and supporting the...


  • Arlington, United States Pyramid Consulting, Inc Full time

    Immediate need for a talented Security Domain Architect. This is a 06+ Months Contract opportunity with long-term potential and is located in Arlington, VA (Hybrid). Please review the job description below and contact me ASAP if you are interested.Job ID:24-27772Pay Range: $100/hour. Employee benefits include, but are not limited to, health insurance...


  • Arlington, United States Gee Group - SNI Companies Full time

    SNI Companies has partnered with a growing organization in search of Senior Cloud Security Architect!We are currently seeking a seasoned Senior Cloud Security Architect with extensive experience to elevate our security capabilities and strategic initiatives. As a pivotal member of our team, you will lead the assessment, integration, and optimization of...


  • Arlington, United States Gee Group - SNI Companies Full time

    SNI Companies has partnered with a growing organization in search of Senior Cloud Security Architect!We are currently seeking a seasoned Senior Cloud Security Architect with extensive experience to elevate our security capabilities and strategic initiatives. As a pivotal member of our team, you will lead the assessment, integration, and optimization of...


  • Arlington, United States Gee Group - SNI Companies Full time

    SNI Companies has partnered with a growing organization in search of Senior Cloud Security Architect!We are currently seeking a seasoned Senior Cloud Security Architect with extensive experience to elevate our security capabilities and strategic initiatives. As a pivotal member of our team, you will lead the assessment, integration, and optimization of...


  • Arlington, United States Gee Group - SNI Companies Full time

    SNI Companies has partnered with a growing organization in search of Senior Cloud Security Architect!We are currently seeking a seasoned Senior Cloud Security Architect with extensive experience to elevate our security capabilities and strategic initiatives. As a pivotal member of our team, you will lead the assessment, integration, and optimization of...


  • Arlington, United States ManTech International Corporation Full time

    Lead special projects or investigation into specific technology or solution issues and to shepherd research and piloting of new capabilities with project engineers and/or partner organization as required. Analyze, define, and document requirements fo Security Engineer, Architect, Security, Project Engineer, Cyber Defense, Engineer


  • Arlington, United States Gotham Technology Group Full time

    Role requires 4 days on-site in Arlington, VA. Role is contract-to-hire (3 month contract duration). A background in financial services would be beneficial.Job Summary:We are currently seeking a seasoned Senior Cyber Security Architect/Engineer with extensive experience to elevate our security capabilities and strategic initiatives. As a pivotal member of...


  • Arlington, United States NTT DATA Full time

    **Req ID**: 283284 We are currently seeking a Cloud Security Architect to join our team in Arlington, Virginia (US-VA), United States (US). **Cloud Security Architect** We are seeking a highly skilled and experienced Cloud Security Architect to join our team. As a Cloud Security Architect, you will be responsible for designing, securing, implementing, and...


  • Arlington, United States GCB Services LLC Full time

    Job DescriptionJob DescriptionJob Summary:We are currently seeking a seasoned Senior Cyber Security Architect with extensive experience to elevate our security capabilities and strategic initiatives. As a pivotal member of our team, you will lead the assessment, integration, and optimization of security tools, driving our overarching security posture to new...


  • Arlington, Virginia, United States Gee Group - SNI Companies Full time

    SNI Companies has collaborated with a growing organization in search of a seasoned Senior Cloud Security Architect.We are currently looking for an experienced professional to enhance our security capabilities and strategic initiatives. As a key member of the team, you will be responsible for assessing, integrating, and optimizing security tools to strengthen...


  • Arlington, United States SAIC Full time

    Description SAIC is looking for a talented Enterprise Architect to our ABMS Family of Systems as part of the Air Force Combatant Command Business Group to spearhead alignment for technology road map development and strategic planning. The ideal candidate possesses expertise in Enterprise Architecture development, IRAD investment planning, Systems Development...


  • Arlington, Virginia, United States AES Corporation Full time

    We are seeking a skilled and seasoned Senior Security Network Engineer to join our network team. The successful candidate will play a critical role in architecting, designing, deploying, monitoring, maintaining, and refreshing secure global IT/OT network infrastructures to protect digital assets from leakage, unauthorized access, and cyber-attacks. The...


  • Arlington, Virginia, United States AES Corporation Full time

    We are seeking a skilled and seasoned Senior Security Network Engineer to join our network team. The successful candidate will play a critical role in architecting, designing, deploying, monitoring, maintaining, and refreshing secure global IT/OT network infrastructures to protect digital assets from leakage, unauthorized access, and cyber-attacks. The...


  • Arlington, United States GCyber Full time

    GCyber is hiring a Lead Network Architect to support a large Network Infrastructure Operations and Sustainment program for a high visibility DoD customer with equipment and personnel in geographically disparate locations. This position requires an understanding of best practices of network security and may require the development, deployment, and integration...