- Company Name
- Finezi Inc.
- Job Title
- Cybersecurity Architect
- Job Description
-
Job Title: Cybersecurity Architect
Role Summary:
Design and enforce scalable security architectures across on‑prem, hybrid, SaaS, and cloud environments. Align security solutions with business goals, regulatory mandates, and risk tolerance, providing expert guidance to engineering, product, and IT teams while driving adoption of best‑practice security principles.
Expectations:
- Translate business and regulatory requirements into actionable security architecture and standards.
- Influence and mentor cross‑functional teams without direct authority.
- Publish and maintain architecture artifacts, guardrails, and documentation.
- Manage security trade‑offs and feasibility assessments for new initiatives.
- Lead architecture reviews, risk decisions, and remediation planning.
Key Responsibilities:
1. Serve as a subject‑matter expert in cyber security architecture.
2. Partner with stakeholders to elicit and scope requirements, converting them into clear architecture guidance.
3. Evaluate technical feasibility, trade‑offs, and scalability of proposed solutions.
4. Own and evolve enterprise security reference architectures and design patterns for identity, network, endpoint, application, data protection, logging, and remote access.
5. Establish and enforce security architecture principles (least privilege, defense‑in‑depth, secure‑by‑design, segmentation).
6. Conduct design reviews, documenting decisions, residual risks, and control recommendations.
7. Define measurable, testable security requirements and control objectives across platforms and services.
8. Collaborate with cybersecurity technology teams to shape product roadmaps, maturity tracks, and capability improvements.
9. Maintain architecture documentation, standards, patterns, diagrams, and decision records.
10. Coach and mentor engineering and cyber teams to elevate security competency.
Required Skills:
- 10+ years in IT/security or cybersecurity.
- Proven experience designing security architectures for enterprise‑scale environments (identity, network segmentation, data protection, monitoring).
- Proficiency in control design and implementation (IAM, MFA, encryption, logging/monitoring, vulnerability management, endpoint protection).
- Ability to partner with engineering and infrastructure teams in iterative delivery models.
- Strong communication ability to translate complex concepts to diverse audiences.
- US citizenship required.
Required Education & Certifications:
- Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Information Systems, or related field.
- Relevant certifications (e.g., CISSP, CISM, ISO 27001 Lead Implementer, CCSP) are desirable.