Senior Lead Cloud Security Architect
Security architect job in Atlanta, GA
The Senior Lead Cybersecurity Architect is responsible for defining the principles, standards, and design patterns to build secure products and enterprise tools for all of Cox Automotive's multi-cloud and on-premises environments. This position's architecture focus is on securing multi-cloud infrastructure and services and on-premises infrastructure. Peer cybersecurity architects will be focused on application security, software as a service (SaaS), and network security.
This role will use their deep cybersecurity knowledge in the designing and building of secure infrastructure and services in both multi-cloud and on-premises environments. They must be able to collaborate with cross-functional teams throughout the organization and propose well-defined cybersecurity architectural guidelines to be adopted by product and enterprise engineering teams. This role will directly report to the Senior Director of Cybersecurity Architecture at Cox Automotive.
Primary Responsibilities
Identify and recommend relevant cybersecurity policies, standards, procedures, and guardrails.
Drive the definition of cybersecurity guidelines across the product and enterprise architecture group by leading working groups focused on cybersecurity.
Develop secure design patterns in conjunction with the product and enterprise architecture group based on standards that can be adopted and implemented by engineering teams.
Contribute to the development of non-cyber architecture-related governance patterns, policies, and standards.
Provides complex analysis of potential risks to information systems' security and recommends innovative solutions.
Work with cross-functional technical, development and delivery teams to ensure the application of smooth, efficient and scalable release processes.
Engage with business teams and engineering teams to define cybersecurity guardrails that promote efficient and seamless adoption of secure design patterns.
Participate in security events and incident response to identify gaps in current design and propose solutions to prevent threats from reoccurring.
Research and evaluate emerging security trends, threats, and technologies, and recommend appropriate solutions and enhancements.
Collaborate with data users, software and other technical stakeholders to ensure security considerations are factored into and underpin development and operational decision making.
Collaborate with cybersecurity peers to incorporate vulnerability management, governance, risk and compliance, cyber defense, continuous controls monitoring, and identity governance into cybersecurity standards as a cohesive cybersecurity organization.
Minimum Qualifications
Bachelor's degree in a related discipline and 8 years of experience in a related field. The right candidate could also have a different combination, such as a master's degree and 6 years of experience; a Ph.D. and 3 years of experience in a related field; or 12 years' experience in a related field.
At least 4 years focused on cybersecurity.
Must have practical expertise in AWS cloud infrastructure and services and on-premises infrastructure.
Clearly articulate the objective of specific cybersecurity policies and procedures to technical and non-technical stakeholders.
Excellent customer service skills, writing, and executive presentation skills.
Develop a strong and productive working environment with key stakeholders and collaborate closely with other Cox entities' cybersecurity teams to implement cybersecurity best practices.
Consultative nature to work through controversial or complex topics to employees, leaders, and/or senior leadership.
Evaluate risks and recommend actions based on impact and likelihood of the risk to the business.
Knowledge of current cybersecurity and technology architectures such as zero trust, IaaS, PaaS, SaaS, virtualization, and containerization.
Creatively solving complex cybersecurity challenges while exhibiting solid, pragmatic business acumen.
Experience utilizing Agile methodologies.
Initiating change and deploying solutions in Fortune 1000 companies.
Knowledge of cybersecurity frameworks (e.g., ISO 27000, NIST, FFIEC) and industry relevant regulations that will guide architectural requirements (e.g., GDPR, FFIEC, GLBA).
Collaborate with AI agents to create, validate, and assess architectural artifacts
Lead cross-functional teams in designing AI-enhanced solutions, establish standards for AI integration, and assess AI technologies within solution architectures.
Implement AI-driven architectural governance and compliance by defining robust AI governance frameworks and reference architectures.
Improve vendor tool assessments using AI to speed evaluations and minimize mistakes and unknowns.
Preferred Qualifications
Experience in the development and design of cybersecurity standard methodologies to all layers of the hosting and application stack in both cloud and on-premises environments.
Relevant experience with application security, SaaS, network security, DevSecOps, and software-defined networking across a variety of environments and deployments.
Knowledge of Identity and Access Management (IAM), cryptography / key management, secrets management, access controls and security protocols (e.g., multi-factor, SAML, OAuth, OIDC).
Experience with application security implementations and standard methodologies.
Extensive technology knowledge and recognized expertise in several areas including Python, .NET, Java, Spring frameworks, Oracle, serverless, cloud patterns, cloud service and user authentication or similar.
Experience with firewall, web application firewalls, and other edge services as well as deep understanding of DMZ and other network architectures.
AWS Well-Architected Framework.
Experience establishing a strategy for and implementing cloud enterprise solutions in AWS, GCP, or Azure.
A strong understanding of cloud containers and/or serverless platforms (e.g., EKS, ECS, Lambda, Fargate).
Big four consulting or Fortune 500 company experience.
Relevant industry certification (e.g., CISSP, CEH, OSCP, Azure, AWS, CISM, CISA).
USD 144,900.00 - 241,500.00 per year
Compensation:
Compensation includes a base salary of $144,900.00 - $241,500.00. The base salary may vary within the anticipated base pay range based on factors such as the ultimate location of the position and the selected candidate's knowledge, skills, and abilities. Position may be eligible for additional compensation that may include an incentive program.
Benefits:
The Company offers eligible employees the flexibility to take as much vacation with pay as they deem consistent with their duties, the company's needs, and its obligations; seven paid holidays throughout the calendar year; and up to 160 hours of paid wellness annually for their own wellness or that of family members. Employees are also eligible for additional paid time off in the form of bereavement leave, time off to vote, jury duty leave, volunteer time off, military leave, and parental leave.
Applicants must currently be authorized to work in the United States for any employer without current or future sponsorship.
Azure Cloud Security Architect
Security architect job in Marietta, GA
Prominent is looking for an Azure Cloud Security Architect for a contract to hire in Marietta/Alpharetta, Georgia. The successful Candidate will have senior level experience around design, build and deployment of technology initiatives to secure key government client's cloud environment. The selected candidate will be accountable for assisting in strategic planning and architecture and securing enterprise information by identifying network and application security requirements, implementing and testing security controls and procedures. Additionally, this role collaborates with other teams to embed security into the entire lifecycle, integrating DevSecOps principles and automation into the pipeline.
No visa sponsorship is available for this opportunity!
C2C or 1099 not available for this opportunity!
Experience Required:
5+ years firsthand working with multiple Azure security tools and platforms such as Entra ID, Sentinel, Defender, Monitor, Key-Vault, or similar in other platforms.
5+ years managing security policies and initiatives in Azure.
Identity Access and Management (IDAM) concepts, multifactor authentication, SSO/Federation
Privileged Access Management (PAM) and Privileged Identity Management (PIM) key concepts
Demonstrated ability to Define, Design, and configure the Azure security platforms, and function as an overall lead managing end to end security on the Azure GovCloud regions.
Experience automating security baselines and policy enforcement in enterprise Azure environments.
Experience automating “Policy-As-Code” using Terraform and ARM templates, with a focus on reusable module design, policy enforcement, and secure CI/CD integration.
Demonstratable understanding of Information Security and Risk Management capabilities related to cloud computing across Windows and Linux, with demonstrated direct experience with the following domains:
o Identity, Credential and Access Management (ICAM)
o Authentication and Authorization including SSO and Identify Federation
o Zero-Trust Model
o Defense-In-Depth
o Governance and Compliance
o Securing Data
o Securing the Operating System
o Protecting the Network Layer
o Continuous Diagnostics and Mitigation, Alerting, Audit Trail, and Incident Response
o Cloud Core Platform: Compute, Storage, Networking
Prior experience supporting federal, defense, or highly regulated commercial clients helpful along with the following skills:
Familiarity with compliance frameworks such as FedRAMP, CMMC, FISMA and NIST 800-53.
Certifications: CISSP, CCSP, Azure/AWS/Google Training and Certification
Crowdstrike Falcon EDR for Azure
Experience with secure baseline configurations (CIS Benchmarks, DISA STIGs) for Azure environments.
Managing/maintaining FISMA compliance for a government information system in accordance with requirements from NIST.
Demonstrated experience collaborating directly with external clients, business leadership, and auditors.
Direct technical background, to include familiarity with servers, network devices, and security systems.
Application Security Engineer
Security architect job in Atlanta, GA
Apex Systems is looking to hire a Application Security Engineer for our financial client we support.
Qualified candidates will have the following experience and skills:
Strong experience with application security tools: DAST (e.g., Burp Suite, OWASP ZAP), SAST (e.g., Checkmarx, Veracode), and SCA (e.g., Black Duck, Snyk).
Hands-on experience with container security and deployment of scanning tools (e.g., Wiz, Prisma, Aqua Security).
Proficiency in scripting languages (Python, Bash, or PowerShell) for automation and tool integration.
Deep understanding of secure software development lifecycle (SDLC) and common vulnerabilities (OWASP Top 10).
Ability to troubleshoot complex scanning issues and optimize configurations for accuracy and performance.
Strong analytical skills for vulnerability triage and risk prioritization.
Excellent communication skills for consulting with development teams and explaining technical findings.
Locations: MUST BE LOCATED IN ONE OF THE FOLLOWING STATES TO BE CONSIDERED - NC, SC or GA
Onsite expectation: REMOTE
Pay range: $80-$85/HR w2
Note: We are unable to consider C2C or third-party submissions.
If you are interested, please apply here or email an updated copy of your resume to ************************
Apex Benefits Overview: Apex offers a range of supplemental benefits, including medical, dental, vision, life, disability, and other insurance plans that offer an optional layer of financial protection. We offer an ESPP (employee stock purchase program) and a 401K program which allows you to contribute typically within 30 days of starting, with a company match after 12 months of tenure. Apex also offers a HSA (Health Savings Account on the HDHP plan), a SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions, a corporate discount savings program and other discounts. In terms of professional development, Apex hosts an on-demand training program, provides access to certification prep and a library of technical and leadership courses/books/seminars once you have 6+ months of tenure, and certification discounts and other perks to associations that include CompTIA and IIBA. Apex has a dedicated customer service team for our Consultants that can address questions around benefits and other resources, as well as a certified Career Coach. You can access a full list of our benefits, programs, support teams and resources within our ‘Welcome Packet' as well, which an Apex team member can provide.
EEO Employer
Apex Systems is an equal opportunity employer. We do not discriminate or allow discrimination on the basis of race, color, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), age, sexual orientation, gender identity, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, disability, status as a crime victim, protected veteran status, political affiliation, union membership, or any other characteristic protected by law. Apex will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable law. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation in using our website for a search or application, please contact our Employee Services Department at ******************************** or ************.
Apex Systems is a world-class IT services company that serves thousands of clients across the globe. When you join Apex, you become part of a team that values innovation, collaboration, and continuous learning. We offer quality career resources, training, certifications, development opportunities, and a comprehensive benefits package. Our commitment to excellence is reflected in many awards, including ClearlyRated's Best of Staffing in Talent Satisfaction in the United States and Great Place to Work in the United Kingdom and Mexico.
Information Security Engineer
Security architect job in Atlanta, GA
Essential Duties and Responsibilities:
Working with security tools and API integration work including writing scripts and development of automation around detection and remediation activities.
Given the growing nature of the organization, you will work closely with other internal and external groups and may also assist in other security activities as necessary in response to assessments and/or audits.
Implementing and operating vulnerability management and security log collection and monitoring tools, analyzing data from those tools and providing recommendations for security improvements to existing processes and technology, and participating in and leading incident response efforts.
Identification and remediation of OS and network security weaknesses and vulnerabilities
Respond to internal and/or external reports, events, and incidents (e.g. scanning, hacking, phishing)
Qualifications:
Bachelor's in computer science (or equivalent) degrees
Minimum of 5+ years of documented information security work experience
At least 5+ years of system/network security experience, including threat modeling, threat assessments, risk identification techniques, penetration testing
Detailed knowledge of network and Web related protocols (e.g., TCP/IP, IPSec, HTTP, SSL, routing protocols)
Atalla HSM experience (knowledge of transaction encryption) and Imperva, SecureSphere, WAF, and DB experience.
Experience with planning, deployment, and operation of large enterprise security management tools such as IDS/IPS (network and host), advanced anti-malware (network and endpoint), DLP, encryption, anti-virus, firewalls, identity management, NAC, MDM etc.
Demonstrated experience with malware remediation.
Experience in one or more technical forensic tools
Experience with Splunk from systems deployment and endpoint configuration to log analysis and interpretation.
Ability to identify signs of intrusion or infection on a variety of systems.
Expertise in administration of enterprise OS's
Ability to move seamlessly between a hacker / attacker mindset and a security engineer / defender mindset
Hands on experience with Nmap, vulnerability scanners, ZAP, Kali, MetaSploit, Wireshark, Kismet, Aircrack-ng
Penetration testing experience
Application and database security experience, including code reviews
Network and security engineering experience, including log and network traffic capture analysis
IT security certifications (SANS GIAC, CISSP, CCNA Security, CCNP Security, RHCSA or RHCE, MCP or MCSE ) are a plus
Experience with advanced malware technologies is a plus.
MerchantE does not provide visa sponsorship for this position. Candidates must be legally authorized to work in the United States without current or future sponsorship.
SAP Security SME Consultant
Security architect job in Atlanta, GA
" Previous experience in sap security design or basis or development role.
" Proficient understanding of sap systems, identity management, auditing tools, modules, and their integration points to effectively manage and control user access
" Working and security knowledge tied to sap vulnerability assessment and management, siem and threat management.
" Working knowledge of sod (segregation of duties) analysis, sensitive transactions analysis, sap development (includes abap), sap modules, solution manager and transport system, basis component, netweaver, sap-gui, and portals.
" Understanding of rfc connections, fiori and workzone security for top-down business role and design.
" Strong knowledge of information security principles, frameworks and data protection laws to ensure compliance with the organizations information security policies.
" Bachelor's degree in information technology, computer science or a related field.
Good to have: cissp, other security certification, or sap security certification.
Senior Security Engineer
Security architect job in Atlanta, GA
*****NO C2C OR THIRD PARTY INQUIRIES*****
Senior Security Engineer
3x Per Week Onsite Minimum if Hybrid
Top skills/tools, etc. that are MUST haves:
Recent Palo Alto experience
Palo Alto SME
Nice to haves:
Prisma Access
Job Summary
You will provide guidance and technical support to clients deploying our security integrations. You'll act as the technical partner, providing strategic guidance around complex systems to secure a digital environment. Interacting directly with the client, you'll partner closely with client personnel to guide and suggest integrations to better serve their success. Your thorough understanding of our product integrations contributes to the development of new principles and concepts - providing detailed analysis around what's working, what's not, and what could be better. You enjoy implementation work, are proactive about resolving potential concerns, and operate well around strict best practices that enable our clients on their road to a more secure digital world. You're creative, innovative, and you love a challenge - learning how integrations might work better around new products and technologies.
Responsibilities
Communicate with the customer(s), sales teams, peers, engineering and support teams as appropriate
Understand the customer environment, requirements, and security roadmap to implement the appropriate security solution
Configure, implement, and maintain Security Operating Platform
Optimize and migrate policies and objects from the existing environment to our Next-Gen Firewall
Test and validate the migration environment
Coordinate and execute cutover to production
Provide guidance on code upgrades
Facilitate the development of new application and threat signatures
Interact with our Technical Assistance Center (TAC) to understand and diagnose support cases
Some travel may be required, dependent on customer request
You work with the customer's security & network teams to build confidence across the business units impacted by the change to Palo Alto Networks
Experience
High level of experience with Panorama and log collectors
NGFW
Global Protect
BS in Computer Science, MIS, business, or equivalent education/training/experience
Minimum of 5 years' experience with network/security solutions and technologies (BGP, SD-WAN concepts, VXLAN and general routing and switching)
Minimum of 3 years' experience leading security solutions in large environments)
Detailed technical experience in the installation, configuration, and operation of high-end firewall appliances, ideally Palo Alto Networks products
You're experienced in internetworking, LAN, and WAN technologies
You have a good understanding of Internet protocols and applications
Possess the following industry certifications: CISSP, CCNA, CNSE, JNCIE-SEC
You effectively handle multiple projects and work calmly in high pressure
Information Security Engineer
Security architect job in Atlanta, GA
Infosec Engineer - GRC Focus
Hybrid - Atlanta, GA
Contract - 6-month + extensions
We're looking for a hands-on Information Security Engineer with deep GRC expertise to join a leading financial organization. This role combines technical security engineering with governance, risk, and compliance, supporting enterprise-wide compliance initiatives and automation programs.
About the Role:
You'll work across security and compliance domains, implementing and automating controls, integrating GRC platforms, and embedding compliance into enterprise systems. You'll support ISO 27001, NIST, SOC 2, SOX, PCI DSS, GDPR, and HIPAA programs while collaborating with security, IT, and business teams.
Responsibilities:
Lead implementation and automation of GRC platforms (RSA Archer, ServiceNow GRC, BitSight, ProcessUnity, Vanta)
Develop and maintain integrations, scripts, and automation using Python, PowerShell, JavaScript, SQL, or other relevant tools
Support SIEM monitoring, incident response, and technical controls aligned with compliance frameworks
Embed risk and compliance controls into enterprise systems and IT processes
Assist with audits, regulatory assessments, and reporting to demonstrate governance effectiveness
Drive improvements in risk management processes through technology and automation
Requirements:
5+ years' experience in information security engineering or technical GRC roles
Hands-on experience with GRC platforms and automation (RSA Archer, ServiceNow, BitSight, etc.)
Coding/scripting experience (Python, PowerShell, JavaScript, SQL) for integrations and automation
Solid understanding of regulatory and compliance frameworks (ISO 27001, NIST, SOC 2, SOX, PCI DSS, GDPR, HIPAA)
CISSP or equivalent security certification preferred
Proven track record of embedding compliance into enterprise systems and leading automation initiatives
If you're an experienced Infosec Engineer with a GRC background, this is a unique opportunity to combine hands-on engineering with compliance and risk leadership.
Cloud Security Engineer - SRE
Security architect job in Alpharetta, GA
Job Posting Title: Cloud Security Engineer - SRE
Job Profile: Technical Project Management - Advisor II
We are seeking a skilled and motivated Cloud Security Engineer - SRE to join our dynamic team. The ideal candidate will possess a strong technical background in systems administration, cloud computing, and infrastructure as code, with a particular focus on solution engineering/site reliability. This role will involve collaborating with cross-functional teams to enhance our security posture and streamline processes through automation.
Technical Skills
• Programming and Scripting: Strong proficiency in languages like Python, Go, Bash, or Ruby. SREs often need to write automation scripts and build tooling.
• Systems Administration: Deep understanding of operating systems (Linux/Unix), file systems, processes, and system configurations.
• Infrastructure as Code (IaC): Experience with IaC tools like Terraform, Ansible, or Chef to manage infrastructure.
• Cloud Computing: Knowledge of cloud platforms such as AWS, Azure, or Google Cloud Platform, including services like EC2, S3, Kubernetes, and serverless functions.
• Containers and Orchestration: Expertise in containerization (Docker) and container orchestration (Kubernetes, OpenShift).
• Networking: Understanding of networking concepts, including DNS, firewalls, load balancing, and VPNs.
• Monitoring and Observability: Experience with monitoring and observability tools like Prometheus, Grafana, Datadog, or New Relic. Ability to set up and maintain monitoring dashboards, alerts, and logs.
• Continuous Integration/Continuous Deployment (CI/CD): Familiarity with CI/CD tools like Jenkins, GitLab CI, GitHub Actions, or CircleCI.
• A strong understanding of HashiCorp Vault and Terraform will make you stand out.
2. Problem-Solving and Troubleshooting
• Incident Management: Ability to manage and respond to incidents, perform root cause analysis, and implement post-mortem reviews.
• Automation: Focus on automating repetitive tasks to improve efficiency and reduce human error.
• Performance Tuning: Skills in identifying and resolving performance bottlenecks in systems and applications.
3. Collaboration and Communication
• Teamwork: Ability to work closely with cross-functional teams, including software engineers, product managers, and DevOps teams.
• Documentation: Skill in creating clear and comprehensive documentation for systems, processes, and incident reports.
• Communication: Effective communication skills for interacting with stakeholders and explaining technical concepts to non-technical audiences.
4. Reliability and Scalability
• Service-Level Objectives (SLOs) and Service-Level Agreements (SLAs): Understanding of setting, monitoring, and maintaining SLOs and SLAs for system reliability.
• Scalability: Knowledge of best practices for designing and scaling systems to handle increased loads and demands.
• Redundancy and Resilience: Experience in designing systems with redundancy and fault tolerance to minimize downtime.
5. Security and Compliance
• Security Best Practices: Understanding of security principles, such as access control, data encryption, and secure coding practices.
• Compliance: Familiarity with compliance standards like GDPR, HIPAA, or PCI-DSS, depending on the industry.
Minimum Job Qualifications:
• Bachelor degree in business or equivalent work experience
• 10 years of previous program leadership and/or relevant consulting experience
• Knowledge of and demonstrated experience in program management framework, knowledge groups & life cycle
• 5+ years' experience in driving large scale data center consolidation efforts
• Minimum 5 years' experience with matrix management of cross-functional processes and teams
• Proficient with Project Management tools
Cyber Security Engineer (W2 Contract only)
Security architect job in Atlanta, GA
Role: Cybersecurity Engineer III
Contract
Job Responsibilities / Typical Day in the Role
Implement design reviews to evaluate security controls
Identify and communicate opportunities to enhance the security posture of Client
Build and / or manage enterprise security platforms effectively
Communicate effectively across all levels of management to articulate Client security goals and vision.
Identify and communicate opportunities to enhance the security posture of Client
Build and / or manage enterprise security platforms effectively (SAAS, on premise or in Cloud)
Communicate effectively across all levels of management to articulate Client security goals and vision.
Have a team player mentality; strive to contribute to team cohesion however can work independently if the need arises
Plan, design, engineer and implement security-related technologies
Understanding technical security issues, their implications within Client business units and able to effectively communicate them to management and other business leaders.
Configure, troubleshoot, and maintain security infrastructure - including software and hardware in cloud environments, as well as on-premises.
Conduct security audits and assessments to regularly determine the effectiveness of security platforms and identify areas of improvement.
Host and operating systems hardening, auditing, monitoring and logging with appropriate security controls and best practices while meeting security best practices and business goals
Research and explore emerging security technologies and determine their appropriate use within the company.
Prepare, document, and create standard operating procedures and protocols.
Crosstrain and mentor other team members as needed
Must Have Skills / Requirements
Implementing advanced cyber security technology in a complex environment
5+ years of experience; Hands-on experience in security engineering, hands-on experience in building, designing, and maintaining enterprise security tools.
Scripting experience (using Python, Go, or other equivalent languages)
5+ years of experience.
Hands-on Experience with automation technologies
3+ Years of experience; Terraform, Ansible, CloudFormation, etc.
Linux Experience.
5+ years of experience; Ability to construct and maintain complex network infrastructures.
Technology requirements:
Engineer and administer security platforms including SIEM/SOAR systems, endpoint detection and response, vulnerability management, anomaly detection, and cloud analysis.
Experience in managing the Brinqa vulnerability management platform and experience with Groovy programming language
Must have 5+ years of scripting experience (using Python or other equivalent languages)
Hands-on Experience in public cloud infrastructures like AWS (Amazon Web Services)
Nice to Have Skills / Preferred Requirements
Security and Cloud certifications are a plus. (CISSP, Splunk Admin, AWS Solution architect).
Media/entertainment or distributed global network experience.
Soft Skills
Hands-on technical experience with networking and computing system architectures, specifically, the security aspects thereof.
Thorough understanding of information security principles, techniques, principles, policy frameworks, and best practices
Hands-on technical experience with compliance and regulatory frameworks and how they affect architecture designs and review
Information Security Analyst - Lead
Security architect job in Atlanta, GA
Immediate need for a talented Information Security Analyst - Lead . This is a 09+ months contract opportunity with long-term potential and is located in Atlanta,GA(Hybrid). Please review the job description below and contact me ASAP if you are interested.
Job ID:25-93807
Pay Range: $68 - $68.61/hour. Employee benefits include, but are not limited to, health insurance (medical, dental, vision), 401(k) plan, and paid sick leave (depending on work location).
Key Responsibilities:
Act as a liaison between cybersecurity metric owners, data engineers, and governance teams to ensure accurate and timely metric development.
Facilitate metric working sessions to define metric name, definition, calculation, system of record, and critical data elements (CDEs).
Support the documentation and validation of metric logic and data lineage.
Coordinate and lead standing meetings to provide updates, manage timelines, and escalate blockers or data challenges.
Review and validate data quality and completeness of metric inputs in coordination with data engineers.
Support the development of root cause commentary and trend analysis for metrics that breach established thresholds.
Partner with control and process owners to align metrics with applicable frameworks (e.g., NIST CSF, CIS, FFIEC).
Prepare clear, concise executive-level summaries and presentations on metric performance and risk trends.
Maintain oversight of multiple metrics in different stages of the build lifecycle, ensuring governance and consistency.
Contribute to continuous improvement of the metrics program, including standardization, automation, and data quality enhancements.
Key Requirements and Technology Experience:
Key Skills;Metrics governance/Risk Metrics/Performance Metrics .
Bachelor's degree or five years of related experience or an equivalent combination of education and experience
In-depth knowledge of principles, practices, theories, and/or methodologies associated with the professional discipline (e.g., information technology, project management, finance, risk management, etc.)
Understands foundational concepts of other related professional disciplines. Experience managing small projects
Ability to interpret and explain complex information to a range of audiences and build consensus among different stakeholders.
Ability to provide direction and mentor less experienced teammates
Strong organizational skills with the ability to manage multiple priorities simultaneously.
Excellent written and verbal communication skills, including experience drafting executive summaries.
Proficiency in Microsoft Excel, PowerPoint, and collaboration tools (e.g., Teams, SharePoint).
5-7 years of experience in cybersecurity, risk management, technology project coordination, or data analytics.
Familiarity with cybersecurity domains (e.g., vulnerability management, DLP, IAM, cloud security, incident management).
Working knowledge of risk and performance metric design, including KRIs, KPIs, and operational indicators.
Experience gathering and documenting business requirements and translating them into actionable data or metric logic.
Basic understanding of SQL or ability to read data dictionaries and data mappings.
Exposure to cyber control frameworks such as NIST CSF, ISO 27001, or CIS.
Exposure to Agile or iterative project delivery methods.
Cybersecurity/Risk management Vulnerability management
Stakeholder engagement .
Our client is a leading Financial Industry, and we are currently interviewing to fill this and other similar contract positions. If you are interested in this position, please apply online for immediate consideration.
Pyramid Consulting, Inc. provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, colour, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.
By applying to our jobs you agree to receive calls, AI-generated calls, text messages, or emails from Pyramid Consulting, Inc. and its affiliates, and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel and HELP for help. You can access our privacy policy here.
Principal Information Security Architect
Security architect job in Atlanta, GA
Lumen connects the world. We are igniting business growth by connecting people, data and applications - quickly, securely, and effortlessly. Together, we are building a culture and company from the people up - committed to teamwork, trust and transparency. People power progress.
We're looking for top-tier talent and offer the flexibility you need to thrive and deliver lasting impact. Join us as we digitally connect the world and shape the future.
**The Role**
The Principal Information Security Architect provides subject matter expertise for multiple, complex security systems, including developing security architectures and roadmaps, and evaluating, planning and designing security solutions. Additionally, the Principal Architect provides subject matter expertise to Product, IT, Network, and Security teams in the implementation of recommended solutions for identified technical security issues; ensures the implementation of security solutions utilizing advanced technical expertise; serves as architecture lead on major projects with the ability and expertise to develop overall architectural direction; initiates and executes advanced research and development activities of significance to future business security strategies.
**The Main Responsibilities**
+ Drives beneficial security change into the business through the development or review of architectures to ensure that they fit business requirements for security, mitigate risks, conform to the relevant security standards, and balance information risk against the cost of appropriate countermeasures.
+ Develops and designs new security solutions to reduce risk and align business requirements with security standards. Supports vendor relationships; leads vendor reviews through RFx process, working with Procurement and appropriate business partners on requirements and success criteria. Supports development of business case and approval process.
+ Delivers guidelines, best practices, and direction on security standards/policies and roadmaps. Provides subject matter expertise, consultation, and escalation support.
+ Provides support to Security Review process by assisting with complex questions and projects. Work with business units and partners as needed.
+ Acts as liaison between the business and technology from a security perspective, maintains an overview of the environment as a whole and its security aspects, understands business strategy and how it relates to security strategy, acts as a liaison between appropriate regulatory bodies, IT auditors, and business stakeholders, educates IT and enterprise roles on the need for (and consequences of) reducing information-related risk, and ultimately drives organizational change at all levels of the business.
**What We Look For in a Candidate**
Required:
+ Bachelor's degree in computer science, engineering, or related field with 15+ years of relevant experience or
+ Master's degree in computer science, engineering, or related field with 12+ years of relevant experience.
+ Applicable professional/technical certifications must be in place, such as CISSP, GPEN, GWAPT, GISEC, CISM or CISA.
+ Knowledge of information security industry and regulatory obligations (ISO 27001/27002, NIST Framework, FISMA, FedRAMP, and GDPR).
+ Software development experience.
**Compensation**
This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant factors.
Location Based Pay Ranges:
$149,084 - $198,779 in these states: AL, AR, AZ, FL, GA, IA, ID, IN, KS, KY, LA, ME, MO, MS, MT, ND, NE, NM, OH, OK, PA, SC, SD, TN, UT, VT, WI, WV, and WY.
$156,539 - $208,718 in these states: CO, HI, MI, MN, NC, NH, NV, OR, and RI.
$163,993 - $218,657 in these states: AK, CA, CT, DC, DE, IL, MA, MD, NJ, NY, TX, VA, and WA.
Lumen offers a comprehensive package featuring a broad range of Health, Life, Voluntary Lifestyle benefits and other perks that enhance your physical, mental, emotional and financial wellbeing. We're able to answer any additional questions you may have about our bonus structure (short-term incentives, long-term incentives and/or sales compensation) as you move through the selection process.
Learn more about Lumen's:
+ Benefits (****************************************************
+ Bonus Structure
\#LI-Remote
**What to Expect Next**
Requisition #: 340981
**Background Screening**
If you are selected for a position, there will be a background screen, which may include checks for criminal records and/or motor vehicle reports and/or drug screening, depending on the position requirements. For more information on these checks, please refer to the Post Offer section of our FAQ page (************************************* . Job-related concerns identified during the background screening may disqualify you from the new position or your current role. Background results will be evaluated on a case-by-case basis.
Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
**Equal Employment Opportunities**
We are committed to providing equal employment opportunities to all persons regardless of race, color, ancestry, citizenship, national origin, religion, veteran status, disability, genetic characteristic or information, age, gender, sexual orientation, gender identity, gender expression, marital status, family status, pregnancy, or other legally protected status (collectively, "protected statuses"). We do not tolerate unlawful discrimination in any employment decisions, including recruiting, hiring, compensation, promotion, benefits, discipline, termination, job assignments or training.
**Disclaimer**
The job responsibilities described above indicate the general nature and level of work performed by employees within this classification. It is not intended to include a comprehensive inventory of all duties and responsibilities for this job. Job duties and responsibilities are subject to change based on evolving business needs and conditions.
In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.
Please be advised that Lumen does not require any form of payment from job applicants during the recruitment process. All legitimate job openings will be posted on our official website or communicated through official company email addresses. If you encounter any job offers that request payment in exchange for employment at Lumen, they are not for employment with us, but may relate to another company with a similar name.
Chief Product Security Architect
Security architect job in Norcross, GA
You will lead the technical product and data security aspects of the strategic online platform. You will partner with the product, engineering, risk, legal, and ops teams to enhance the information security posture of the platform. You will report to the Chief Security Architect of the platform.
What you'll do:
Work with the Enterprise Architects to lead the design of secure architecture of the platform.
Enhance the secure development lifecycle and automated security testing as part of the CI/CD pipelines.
Perform threat modeling, design reviews, peer code reviews as part of the secure development lifecycle.
Continuously assess the application security maturity and build enhancement plans by utilizing OWASP SAMM and BSIMM.
Work with the Chief Risk Officer and Chief Information Security Officer teams to provide visibility into the security risks and align with the corporate standards.
What you'll need:
Bachelor's Degree in Computer Science or related field. Equivalent work experience will be considered.
Software development background of 5+ years.
Ability to articulate security requirements for build and delivery pipelines.
Recent experience of technical security leadership for an online company is required.
Experience working with fintech companies and financial institutions is desirable
Advantage - expertise in Microsoft Azure services, such as AKS, DevOps, Front Door, Application Gateway, etc.
Soft skills - effective communication (internal, customer, legal counsel), collaboration (internal, external) and effective written skills (white papers, vulnerability specifications etc.)
Active participation in cybersecurity forums/conventions, e.g. DEFCON, Black Hat. Public speaking is a plus
You will lead the technical product and data security aspects of the strategic online platform - ************************************* You will partner with the product, engineering, risk, legal, and ops teams to enhance the information security posture of the platform. You will report to the Chief Security Architect of the platform.
What you'll do:
Work with the Enterprise Architects to lead the design of secure architecture of the platform.
Enhance the secure development lifecycle and automated security testing as part of the CI/CD pipelines.
Perform threat modeling, design reviews, peer code reviews as part of the secure development lifecycle.
Continuously assess the application security maturity and build enhancement plans by utilizing OWASP SAMM and BSIMM.
Work with the Chief Risk Officer and Chief Information Security Officer teams to provide visibility into the security risks and align with the corporate standards.
What you'll need:
Bachelor's Degree in Computer Science or related field. Equivalent work experience will be considered.
Software development background of 5+ years.
Ability to articulate security requirements for build and delivery pipelines.
Recent experience of technical security leadership for an online company is required.
Experience working with fintech companies and financial institutions is desirable
Advantage - expertise in Microsoft Azure services, such as AKS, DevOps, Front Door, Application Gateway, etc.
Soft skills - effective communication (internal, customer, legal counsel), collaboration (internal, external) and effective written skills (white papers, vulnerability specifications etc.)
Active participation in cybersecurity forums/conventions, e.g. DEFCON, Black Hat. Public speaking is a plus
Dolby Careers AI Governance & Security Architect
Security architect job in Atlanta, GA
Join the leader in entertainment innovation and help us design the future. At Dolby, science meets art, and high tech means more than computer code. As a member of the Dolby team, you'll see and hear the results of your work everywhere, from movie theaters to smartphones. We continue to revolutionize how people create, deliver, and enjoy entertainment worldwide. To do that, we need the absolute best talent. We're big enough to give you all the resources you need, and small enough so you can make a real difference and earn recognition for your work. We offer a collegial culture, challenging projects, and excellent compensation and benefits, not to mention a Flex Work approach that is truly flexible to support where, when, and how you do your best work.
The Finance & IT function works to accelerate business growth through ensuring that the company's operations run efficiently and effectively, ultimately enabling the achievement of company goals.
Position Overview
Dolby is looking for a visionary AI Governance & Security Architect to help shape the future of secure and responsible AI adoption. In this role, you'll design and lead enterprise frameworks that ensure ethical, compliant, and resilient AI practices across Dolby globally. You'll integrate cybersecurity, risk management, and AI lifecycle governance to protect sensitive data and models from emerging threats while meeting regulatory and client obligations.
Your work will influence strategic decisions across business functions, embedding responsible AI principles, mitigating AI-specific risks, and enabling innovation in a secure and controlled environment. This position offers opportunities to lead multiple initiatives under the guidance of Information Security leadership.
Responsibilities
Collaborate and Influence: Build strong partnerships across business units to ensure security is embedded from design through implementation in products and services.
Be the Expert: Act as a trusted advisor and subject matter expert across security domains, guiding stakeholders on best practices.
Shape Governance: Define and implement enterprise-wide AI governance frameworks that promote ethical, secure, and compliant AI use.
Set Standards: Develop and enforce AI security standards aligned with regulatory and industry benchmarks (ISO 42001, NIST AI RMF, SANS, CSA, OWASP).
Secure Deployments: Oversee AI/ML solution deployment in on-premises and cloud environments (AWS, Azure, GCP) with robust data protection and encryption.
Assess and Test: Conduct AI security risk assessments, threat modeling, and red team exercises for generative and predictive models.
Respond and Remediate: Support AI security incident response and ensure effective remediation processes.
Educate and Mentor: Provide guidance on AI governance, compliance, privacy, and ethical AI adoption; mentor team members on best practices.
Qualifications
A collaborative mindset and a passion for learning.
Bachelor's degree in Computer Science, Cybersecurity, Data Science, or related field, plus 7+ years of experience in enterprise architecture, information security, or technology governance (or equivalent experience).
Proven success implementing governance frameworks, risk strategies, and compliance programs for emerging technologies.
Deep understanding of AI/ML lifecycle management, from development to monitoring.
Experience working with auditors, regulators, and compliance teams.
Proficiency in cloud-native AI/ML platforms (AWS SageMaker, Bedrock, Azure AI, GCP Vertex).
Familiarity with security frameworks (NIST, ISO 27001, ISO 42001, CIS Controls).
Strong communication skills and ability to engage with stakeholders at all levels.
Ability to work independently in a fast-paced environment while fostering collaboration and creative problem-solving.
Leadership skills to mentor and guide team members effectively.
What Sets your Apart
Exceptional interpersonal skills.
Expertise in risk management principles and processes.
Hands-on offensive security experience.
Experience with security tools or prior roles in engineering, site reliability, or administration.
#LI-SW1
The Atlanta Area base salary range for this full-time position is $152,200 - $209,200, which can vary if outside this location, plus bonus, benefits, and some roles may also include equity. Our salary ranges are determined by role, level, and location. Within the range, individual pay is determined by work location and additional factors, including job-related skills, competencies, experience, market demands, internal parity, and relevant education or training. Your recruiter can share more about the specific salary range and perks and benefits for your location during the hiring process.
Dolby will consider qualified applicants with criminal histories in a manner consistent with the requirements of San Francisco Police Code, Article 49, and Administrative Code, Article 12
Equal Employment Opportunity:
Dolby is proud to be an equal opportunity employer. Our success depends on the combined skills and talents of all our employees. We are committed to making employment decisions without regard to race, religious creed, color, age, sex, sexual orientation, gender identity, national origin, religion, marital status, family status, medical condition, disability, military service, pregnancy, childbirth and related medical conditions or any other classification protected by federal, state, and local laws and ordinances.
Principal Cloud Security Architect
Security architect job in Atlanta, GA
Role OverviewThe Principal Cloud Security Architect evaluates cloud architectures, identity models, permissions, and security controls across large-scale environments. This role focuses on identifying architectural risks, misconfigurations, and long-term security design gaps.
What You'll Do- Assess cloud architectures (AWS, Azure, GCP) for security gaps - Review IAM configurations, network segmentation, and resource policies - Identify misconfigurations, privilege risks, and insecure patterns - Summarize architectural flaws and provide structured mitigation guidance - Validate alignment with security frameworks and best practices - Support recurring assessments of cloud environments and deployment patterns What You BringMust-Have:- Deep experience in cloud security architecture - Strong understanding of IAM, network design, and cloud service models - Ability to document complex architectures in clear, structured form Nice-to-Have:- Experience with multi-cloud, zero-trust, or high-compliance environments
Auto-ApplyGoogle Cloud Security Architect
Security architect job in Atlanta, GA
Who You'll Work With As a modern technology company, our Slalom Technologists are disrupting the market and bringing to life the art of the possible for our clients. We have passion for building strategies, solutions, and creative products to help our clients solve their most complex and interesting business problems. We surround our technologists with interesting challenges, innovative minds, and emerging technologies.
Join the Slalom Cloud Team -a team of trailblazers ensuring we achieve our strategic goals through innovation and investment in the future. You'll collaborate with local market teams, niche experts, and global partners to drive cloud solution sales and empower clients on their cloud transformation journey. As a key member of Slalom's Google Cloud Center of Excellence, you'll leverage our award-winning partnerships and multidisciplinary teams to deliver business value and technical excellence for high-impact security and infrastructure solutions.
What You'll Do
* Stay current with security trends, technologies, and best practices around Google Cloud solutions, leveraging tools like Cloud IAM, Cloud Security Command Center, BeyondCorp, and Cloud Armor.
* Define and guide transformational security strategies for Google Cloud environments, ensuring alignment with Google's Zero Trust and BeyondCorp principles.
* Translate complex regulatory requirements (e.g., GDPR, SOC 2, HIPAA) and technology standards into actionable functional and technical requirements for cloud and hybrid environments, ensuring security and compliance.
* Lead teams through various phases of gap analyses, including security assessments, remediation planning, roadmap development, and implementation of remediation actions using Google Cloud-native tools.
* Deliver on the vision, architecture, execution, and quality assurance of security projects on Google Cloud, driving initiatives that secure enterprise workloads and data.
* Guide stakeholders and senior leaders on aligning security solutions with broader business goals, ensuring the architecture follows Google Cloud's security best practices and roadmap.
* Establish security architecture patterns based on Google Cloud security frameworks and industry standards to meet the unique needs of enterprise clients.
* Collaborate with other Google Cloud architects and security teams to continuously improve security knowledge assets and best practices, ensuring the most effective security solutions for clients.
* Design and architect solutions to secure Generative AI models and applications against adversarial attacks, prompt injection, and their potential misuse for malicious cyber activities.
What You'll Bring
* Proven experience with Google Cloud security architecture, with hands-on experience in tools like Cloud IAM, VPC Service Controls, Cloud DLP, and Cloud Armor.
* Strong background in defining and implementing Zero Trust and BeyondCorp security models within Google Cloud environments.
* Familiarity or direct experience with Identity and Access Management (IAM), Data Protection, Vulnerability Management, and Cloud Security solutions in Google Cloud.
* Extensive experience with security design patterns specific to Google Cloud, as well as hybrid and multi-cloud security architecture.
* Experience in security and risk advisory consulting, particularly related to cloud security transformations.
* Ability to lead the development and implementation of cloud security roadmaps aligned with business goals and compliance needs.
* Familiarity with Google Cloud's Artificial Intelligence (AI) capabilities (e.g., Vertex AI, Generative AI services, Model Armor) including their applications, associated security risks (e.g., prompt injection, data poisoning, privacy concerns), and proven strategies for implementing security controls, governance, and responsible AI practices.
* Relevant certifications are strongly desired but not required, including (but not limited to):
* GCP Professional Security Engineer
* GCP Professional Cloud Architect
* CISSP
* Security+
About Us
Slalom is a fiercely human business and technology consulting company that leads with outcomes to bring more value, in all ways, always. From strategy through delivery, our agile teams across 52 offices in 12 countries collaborate with clients to bring powerful customer experiences, innovative ways of working, and new products and services to life. We are trusted by leaders across the Global 1000, many successful enterprise and mid-market companies, and 500+ public sector organizations to improve operations, drive growth, and create value. At Slalom, we believe that together, we can move faster, dream bigger, and build better tomorrows for all.
Compensation and Benefits
Slalom prides itself on helping team members thrive in their work and life. As a result, Slalom is proud to invest in benefits that include meaningful time off and paid holidays, parental leave, 401(k) with a match, a range of choices for highly subsidized health, dental, & vision coverage, adoption and fertility assistance, and short/long-term disability. We also offer yearly $350 reimbursement account for any well-being-related expenses, as well as discounted home, auto, and pet insurance.
Slalom is committed to fair and equitable compensation practices.
Slalom is committed to fair and equitable compensation practices. For this role, we are targeting the following levels and salary ranges:
East Bay, San Francisco, Silicon Valley:
* Senior Consultant: $131,000-$196,500
San Diego, Los Angeles, Orange County, Seattle, Houston, New Jersey, New York City, Westchester, Boston, Washington DC:
* Senior Consultant: $120,000-$180,000
All other locations:
* Senior Consultant: $110,000-$165,000
In addition, individuals may be eligible for an annual discretionary bonus. Actual compensation will depend upon an individual's skills, experience, qualifications, location, and other relevant factors. The salary pay range is subject to change and may be modified at any time.
EEO and Accommodations
Slalom is an equal opportunity employer and is committed to inclusion, diversity, and equity in the workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veterans' status, or any other characteristic protected by federal, state, or local laws. Slalom will also consider qualified applications with criminal histories, consistent with legal requirements. Slalom welcomes and encourages applications from individuals with disabilities. Reasonable accommodations are available for candidates during all aspects of the selection process. Please advise the talent acquisition team if you require accommodations during the interview process.
SAP GRC/Security Senior Consultant
Security architect job in Atlanta, GA
Job Title: SAP GRC/Security Senior Consultant Company: Turnkey Consulting Location: United States (Considering candidates in any US location that are fully authorized to work in the US - Applicants needing sponsorship will NOT be considered)
About Turnkey Consulting
Turnkey Consulting is a leading advisory and implementation organization with deep expertise in risk management, governance, and compliance & security. Having the ability to provide end-to-end solutions that integrate technology, process, and people. Our business started within the SAP ecosystem, however expansion into being an agnostic partner, now gives us a wider range of solutions to support our customers, while securing their wider estate. Turnkey Consulting helps businesses optimize their risk management, security and compliance programs, protect against Cyber threats, reduce costs, and improve their operational efficiency. With a team of seasoned risk professionals and a commitment to excellence, we empower businesses to proactively protect their critical assets and stay ahead of evolving threats.
Job Summary
The candidate will play a key role in handling client engagements, as well as utilizing strong technical experience to find solutions that best fit our clients' needs. We are looking for a team-player and strong all-rounder with at least 2 implementations and 2 years of practical experience in the following areas
Detailed understanding of the SAP authorization concept in one or more of the following areas: ECC, SAP S/4 HANA, HCM, CRM, SRM, BW, BI, BPC, SAP HANA, SAP BTP
Experience of designing, building and implementing SAP security and authorization solutions
Experience in SAP designing, configuring, and implementing SAP role re-designs specifically for S4 HANA and Fiori
Exposure to various system user interfaces (UI), including SAP but also other relevant SaaS products
Detailed understanding of SAP GRC suite of applications, with a demonstrable specialism in core modules contained within (ideally v12 onward)
Experience of IDM solutions, either SAP's IDM solution, or non-SAP, such as SailPoint or Saviynt would be of advantage.
Experience in implementation and/or administration of SAP BIS would be an advantage
Experience of third-party solutions to secure SAP estates also an advantage
Experience of SAP Fiori catalogs, groups, pages and spaces
Experience of SAP IAG solutions would be an advantage, both IAS and IPS
Experience with scripting languages such as Python and JSON would be an advantage
Our experienced consultants are a key driver of our success as one of the most trusted names in the end-to-end security arena and we are committed to delivering to a consistently high standard. Key responsibilities of the role are:
Task management of large / complex implementations, especially in aApplication security or enterprise risk/identity projects
Implementation of GRC technology and supporting modules
Work with clients to understand "why" they're in need of such solutions, define requirements and configure solutions to best fit those needs
Perform controls and configuration reviews involving relevant application systems and processes
Advise clients on controls in their enterprise systems relating to regulatory or legislative compliance
Review and advise on security redesign and remediation projects
Provide a broader range of information risk management solutions to clients as required
Build relationships with new clients and maintain good relations with our existing client base
Integrate solutions into wider cybersecurity controls estates
We are looking ideally for someone with the following attributes:
The ability to troubleshoot and diagnose problems / issues and provide prompt, robust resolution
An enquiring mind to discover "why" clients need to introduce theintroduce controlling measures.
The ability to manage projects within varied client engagements and lead reviews and implementations
Knowledge of corporate business processes and their control points
Good understanding of various IT regulations and standards, including:including Sarbanes Oxley, COBIT, ISO series & the GDPR
Bachelor's degree
Professional certification (e.g. CISA, M.Inst.ISP, CISSP, ISO)
SAP certification (Security, GRC)
Consulting background
Strong written and verbal communication skills
Integration experience
Ability to act as an SME to install, design, engineer and configure security solutions to meet client needs
Ability to effectively manage own time and priorities effectively and to work both as part of a team and individually.
Able to communicate technical and functional requirements to both the business and IT
Key responsibilities of the role will include:
Project manage large / complex SAP Security implementations, especially for S/4 HANA projects
Implementation of GRC Access Controls and supporting modules
Work with clients to understand requirements and configure solutions to best fit those needs
Perform controls and configuration reviews involving SAP systems
Advise clients on controls in SAP relating to regulatory or legislative compliance
Review and advise on SAP security redesign and remediation projects
Provide a broader range of information risk management solutions to clients as required
Build relationships with new clients and maintain good relations with our existing client base
Integrate solutions into wider cybersecurity controls estates
We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, national origin, religion, sexual orientation, gender identity and/or expression, status as a veteran, and basis of disability or any other federal, state or local protected class. When we collect your personal information as part of a job application or offer of employment, we do so in accordance with industry standards and best practices and in compliance with applicable privacy laws.
Director of Information Security
Security architect job in Lawrenceville, GA
About Us Since our founding in 2005, Georgia Gwinnett College (GGC) has been dedicated to providing an exceptional educational experience to our students. At GGC, we believe that our students' success is our success, and we are committed to creating a culture that supports and uplifts them throughout their academic journey.
As a member of our faculty or staff, you will become part of a dedicated and passionate community of educators and professionals. Together, we work towards a common goal of empowering our students to achieve their full potential, both academically and personally. We take pride in our student body, which represents a multitude of backgrounds, perspectives, and experiences. Whether you are involved in teaching or providing essential services, your contribution will make a significant impact on the lives of our students and the broader community.
In addition to our commitment to student success, we also value the well-being and professional growth of our employees. We offer a comprehensive benefits package, designed to support the needs of our faculty and staff. From competitive compensation to health and wellness programs, and professional development opportunities to work-life balance initiatives, we strive to create an environment where everyone can thrive and feel valued.
Located in the thriving community of Gwinnett County, GGC offers a rich cultural and social landscape that enhances the overall college experience. Our backdrop is a beautiful, modern 260-acre campus located just 30 miles northeast of downtown Atlanta. Our students and employees benefit from the close proximity to various local amenities, including shopping, dining, entertainment, and outdoor recreational opportunities. This vibrant community serves as an extension of our campus, providing a stimulating environment for personal and professional growth.
Join GGC and become part of a dynamic team that plays a pivotal role in shaping the lives and celebrating the achievements of our students. Together, let's make a positive impact and empower the next generation of leaders.
Job Summary
Based on industry standards and best practices, the Director of Information Security sets the vision and leads the strategy for a comprehensive enterprise cybersecurity and IT risk management program. The Director will provide direction and oversight to ensure confidentiality, integrity, and availability of data, systems, and services; manage organizational risk; and ensure alignment with GGC's mission, goals, and business needs. This position reports to the Chief Information Officer (CIO) and serves as a member of the IT Leadership Team. The Director is responsible for developing and executing security governance, incident response, and awareness programs, and for fostering a culture of security throughout the college. This position collaborates with colleagues frequently and regularly interacts with internal and external stakeholders. This position leads and develops one or more direct reports.
Working outside standard business hours will be required on an as-needed basis.
Responsibilities
* Lead and develop a comprehensive information security and IT risk management program that ensures the confidentiality, integrity, and availability of GGC data and infrastructure.
* Lead and develop education, training, and awareness programs for all college constituents on institutional policy, guidelines, federal and state laws and regulations, and best practices in information security. Serve as a spokesperson for cybersecurity and provide guidance to college leaders and other stakeholders. Regularly share data, reports, and updates with stakeholders.
* Lead the development and implementation of the college's security governance, including policies and procedures, in consultation with IT leadership, technology professionals, and other stakeholders.
* Lead security information and event management, security operations, and other related functions. Lead, mentor, and develop security operations staff and related personnel, fostering a collaborative and high-performing team.
* Collaborate with ITS, audit, public safety, and academic and business units to comply with USG security policies, regulations, and college standards; collaborate with Legal Affairs and Purchasing to embed risk assessment and data security in supplier agreements and renewals.
* Proactively lead incident management and response by systematically detecting, analyzing, containing, and eradicating threats, restoring systems,and coordinating communication and documentation of incidents. Employ a 24/7/365 on-call schedule as needed. Conduct post incident analysis and propose cost-effective solutions to prevent or mitigate future incidents.
* Collaborate with colleagues inside and outside IT to embed cybersecurity best practices in technical solutions.
* Use standard tools and processes to lead projects to successful completion through effective planning for user experiences, change management, communication, and documentation.
* Additional duties as assigned.
Required Qualifications
* 4 Year / Bachelor's Degree in a related field
* 8+ years of relevant experience
* 5+ years of supervisory experience
Preferred Qualifications
* Graduate degree in a related field
* Professional security management certification, such as a Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information
* Systems Auditor (CISA) or similar credential.
* Knowledge of auditing, information security and regulatory standards, best practices, and assessment methodologies.
* Experience with service management, project management, change management processes and procedures, and well-honed documentation skills.
* Experience directing, leading, and mentoring IT professionals.
* Experience working in higher education, preferably a campus in the University System of Georgia.
Proposed Salary
109,000 - 139,000
Salary offer will be dependent on candidate's experience and qualifications, internal equity considerations, budget availability, and salary administration guidelines.
Knowledge, Skills, & Abilities
* Ability to develop and propose solutions in a clear, concise, and organized manner.
* Excellent presentation and communication skills, both verbal and written, with the ability to convey complex technology concepts clearly to non-technical audiences.
* Ability to handle the pressures of work, maintain composure, and demonstrate good judgment.
* Broad technical knowledge and experience administering enterprise technologies.
* Up to date knowledge of federal, state, and other applicable compliance requirements.
* Effective customer service skills.
* Knowledge of, and experience in, using modern endpoint management platforms; knowledge of, and experience with, Active Directory/Microsoft Entra ID (formerly Azure Active Directory).
* Knowledge of, and experience with, Windows Administration including Office 365, Privileged Identity Management, Microsoft Defender and Sentinel, Identity Governance and Administration, and Information Protection.
* Knowledge of, and experience with, Vulnerability Scanning and Management Solutions, such as Tenable Nessus and BitSight Technologies.
* Ability and initiative to engage in continuous professional development.
* Knowledge of enterprise level networking and security best practices.
* Knowledge and application of cybersecurity best practices.
* Skills in change leadership as well as project, time, and change management.
* Ability to develop, implement, and scale solutions.
* Ability to foster a work environment based on trust, respect, and competence.
* Ability to forge effective collaborations with a wide range of internal and external stakeholders.
* Ability to lead productive meetings and produce deliverables and outcomes that meet organizational needs.
* Ability to demonstrate attention to detail and manage competing priorities effectively.
* Ability to manage relationships with vendors for quotes, maintenance renewals and other activities.
USG Core Values
The University System of Georgia is comprised of our 26 institutions of higher education and learning as well as the System Office. Our USG Statement of Core Values are Integrity, Excellence, Accountability, and Respect. These values serve as the foundation for all that we do as an organization, and each USG community member is responsible for demonstrating and upholding these standards. More details on the USG Statement of Core Values and Code of Conduct are available in USG Board Policy 8.2.18.1.2 and can be found on-line at **************************************************************************
Additionally, USG supports Freedom of Expression as stated in Board Policy 6.5 Freedom of Expression and Academic Freedom found on-line at ************************************************
Conditions of Employment
Hiring is contingent upon eligibility to work in the United States and proof of eligibility will be contemporaneously required upon acceptance of an employment offer. Offers of employment are contingent upon completion of a background investigation including a criminal background check demonstrating your eligibility for employment with Georgia Gwinnett College (GGC). Eligibility of employment is determined by GGC in its sole discretion, and includes but is not limited to confirmation of credentials and employment history reflected in your application materials; and, if applicable, a satisfactory credit check. Applicants may be subject to a pre-employment drug test.
Offers are subject to the applicable federal laws, state laws, statutes, rules and regulations of this institution, and to the bylaws and policies of the Board of Regents (BOR) of the University System of Georgia (USG), which are available for your inspection upon request.
Equal Employment Opportunity
Georgia Gwinnett College is an equal employment, equal access, and equal opportunity employer. It is the policy of Georgia Gwinnett College to recruit, hire, train, and promote persons without regard to race, color, national or ethnic origin, age, disability, gender, religion, sexual orientation, gender identity or veteran status as required by applicable state and federal laws (including Title VI, Title VII, Title IX, Sections 503, and 504, ADEA, ADA, E.O. 11246, and Rev. Proc. 75-50).
For individuals requiring disability-related accommodations for participation in any event including the application, interview process, or to obtain print materials in an alternative format, please contact HR at ************** or email **********.
Background Check
* Position of Trust + Education
Other Information
Due to the volume of applications, applicants may not receive a reply from the College unless an applicant is selected for an interview. Review of applications will continue until positions are filled. Georgia is an open records state.
Easy ApplySystem Security Engineer
Security architect job in Atlanta, GA
DMI is a leading provider of digital services and technology solutions, headquartered in Tysons Corner, VA. With a focus on end-to-end managed IT services, including managed mobility, cloud, cybersecurity, network operations, and application development, DMI supports public sector agencies and commercial enterprises around the globe. Recognized as a Top Workplace, DMI is committed to delivering secure, efficient, and cost-effective solutions that drive measurable results. Learn more at *************
About the Opportunity
DMI, LLC is seeking a System Security Engineer to join us.
Duties and Responsibilities:
Security Assessment & Authorization (SA&A)
Lead the preparation, submission, and lifecycle maintenance of full Certification & Accreditation (C&A) packages for ISB systems (e.g., Azure, Consolidated Statistical Platform, OCIO ISB Infrastructure Services).
Develop and maintain documentation in Archer.
Coordinate with CSPO to ensure federal SA&A elements are accurate, complete, and compliant.
Enhanced Security Control Evaluation Audits (ESCA)
Provide complete and accurate security control evidence for CSPO audits.
Resolve findings and update documentation (BSI, BCP, SSP, ATT, PIA, ATO) in Archer based on CSPO review and feedback.
Security Evaluation & Approvals
Verify and validate security control implementations across ISB managed systems.
Track vulnerabilities, remediation plans, and mitigation activities.
Review and approve system configuration changes via ServiceNow or similar change control platforms.
Ensure alignment with NIST 800-53a assessment procedures.
Risk Management Framework (RMF)
Apply ITIL processes to document security-related policies and procedures.
Maintain accountability, records retention, and documentation consistent with RMF requirements.
Physical Security - Data Center Access
Manage and maintain Access Control Lists (ACLs) for data center smart card physical security.
Federal Regulation & Compliance
Ensure compliance with:
Federal IT security laws
OMB circulars
Presidential Decision Directives (PDDs)
FISMA requirements
Other federal regulations and guidance
Monitor CSPO alerts and implement required updates to ISB managed systems
Qualifications
Years of Experience and Certifications:
3+ years of experience.
Proficiencies in Microsoft Word, Excel, and Adobe PDF tools.
Certified Information Systems Security Professional (CISSP) is required.
Required and Desired Skills:
Advanced Information Security experience, including deep knowledge of NIST and/or ISO frameworks.
Expertise with NIST 800-53, including control interpretation, assessment, and documentation (this constitutes ~75% of the role).
Demonstrated experience writing and maintaining Security Control responses and compliance documentation.
Experience with ServiceNow or similar change control systems (can be learned on the job).
Experience with Archer governance, risk, and compliance (GRC) tools (can be learned on the job).
Clearance Requirements: Successful completion of a Public Trust background investigation and/or a Public Trust clearance.
Min Citizenship Status Required: Must be a U.S. Citizen
Physical Requirements: No physical requirement is needed for this position.
Location: Remote, US
Working at DMI
DMI is a diverse, prosperous, and rewarding place to work. Our culture is shaped by five core values that guide how we work, grow, and succeed together:
Do What's Right - We lead with honesty and integrity.
Own the Outcome - We take responsibility and deliver.
Deliver for Our Customers - We are relentless about delivering value.
Think Bold, Act Smart - We innovate with purpose.
Win Together - We collaborate and celebrate our success.
These values aren't just ideals-they show up in how we support every part of your well-being:
Convenience/Concierge - Virtual health visits, commuter perks, pet insurance, and entertainment discounts that make life easier.
Development - Annual performance reviews, tuition assistance, and internal career growth opportunities to help you thrive.
Financial - Generous 401(k) matches, life and disability insurance, and financial wellness tools to support your future.
Recognition - Annual awards, service anniversaries, referral bonuses, and peer-to-peer shoutouts that spotlight your achievements.
Wellness - Healthcare coverage, wellness programs, flu shots, and biometric screenings to support your health.
DMI values employees for their talents and contributions, and we take pride in helping our customers achieve their goals. Because when we live our values, we all win together.
***************** No Agencies Please *****************
Applicants selected may be subject to a government security investigation and must meet eligibility requirements for access to classified information. US citizenship may be required for some positions.
Auto-ApplySenior Security Analyst
Security architect job in Duluth, GA
Neptune Technology Group Inc. is a technology company serving water utilities across North America. Since 1892, we have continually focused on the evolving needs of water utilities - revenue optimization, operational efficiencies, and improved customer service. With our portfolio of smart water meters, data collection systems and software, we make data actionable for our customers - so they can remain focused on the business of water. For additional information, please visit the company website at ******************
Senior Security Analyst
Position Summary
As a Senior Security Analyst, you will be a key member of Neptune's 24×7 Security Operations program, supporting incident response, SIEM management, and threat detection across a hybrid environment (on-prem, cloud, SaaS). You'll work closely with the SOC Manager to execute detection, response, and reporting processes that protect Neptune and meet compliance requirements.
Responsibilities:
Threat Detection & Monitoring
* Monitor and analyze security alerts from SIEM and EDR platforms
* Investigate anomalies and suspicious activity across endpoints, networks, and cloud environments
* Maintain high-fidelity alerting and reduce false positives through tuning
Incident Response & Management
* Execute playbooks for triage, containment, and remediation of security incidents
* Assist in forensic investigations and contribute to post-mortem reports
* Participate in tabletop exercises and readiness drills
SIEM & Security Logging
* Maintain SIEM health and ensure reliable telemetry across all assets
* Develop and refine detection rules and correlation logic
* Support automation and orchestration workflows for incident handling
Identity & Access Management
* Monitor identity-related events for anomalies and privilege escalation attempts
* Support IAM lifecycle processes and enforce least privilege principles
Threat Intelligence & Modeling
* Integrate threat intelligence feeds into detection workflows
* Assist in threat modeling to identify potential attack paths
Reporting & Metrics
* Document incidents and provide timely updates to SOC Manager for reporting to parent company
* Track and report operational metrics (MTTD, MTTR, alert volumes, etc.)
Security Standards & Architecture
* Apply secure-by-design principles in collaboration with engineering teams
* Support zero trust initiatives and network segmentation projects
Relevant Platforms (experience with several is expected):
* SIEM/SecOps: e.g. Google SecOps (Chronicle)
* EDR & Identity: e.g. CrowdStrike, Microsoft AD/Entra
* Network Security: e.g. FortiGate NGFW, FortiSASE
* Secure Browsing: e.g. Prisma
* Patching & Config: e.g. Automox
* Secrets Management: e.g. Keeper
* Asset Management: e.g. Axonius, Cyclops
* Email & Data Security: e.g. Mimecast, Microsoft Purview
Minimum Qualifications:
* Bachelor's degree (or equivalent experience)
* 3+ years in Security Operations or Incident Response
* Hands-on experience with SIEM, EDR, and threat detection
* Familiarity with NIST, ISO, MITRE ATT&CK, and zero trust principles
* Strong analytical and communication skills
Preferred Qualifications:
* Security certifications (e.g., GCIH, GCIA, CISSP)
* Experience with cloud security (AWS, Azure, GCP)
* Exposure to SOAR automation and scripting
* Travel Requirements: Typically requires overnight travel less than 10% of the time.
Travel Requirements: Typically requires overnight travel less than 10% of the time.
Location: Duluth, GA, Tallassee, AL
Security Systems Engineer / Estimator
Security architect job in Norcross, GA
Security Systems Engineer / Estimator
About Us We're looking for a highly motivated and skilled Security Systems Engineer / Estimator to join our team. This is a full-time, on-site position focused on designing, engineering, estimating, and supporting integrated electronic security solutions.
What You'll Do
System Design & Engineering
Design and configure integrated security systems (CCTV, access control, intrusion detection, intercoms).
Prepare scopes of work (SOWs), bills of materials (BOMs), cost estimates, and design narratives.
Analyze blueprints, drawings, and specifications to deliver compliant solutions.
Provide accurate and competitive proposals in response to RFPs.
Support CAD teams with drawings, device details, and schedules.
Pre-Sales & Client Engagement
Partner with sales during pre-bid opportunities, site walks, and customer meetings.
Act as a technical resource for discovery and client-facing discussions.
Present technical information clearly to clients and internal teams.
Build lasting client relationships with expert advice and support.
Project Execution & Support
Work with project managers and operations teams for smooth project handoff.
Provide technical support during installation, commissioning, and post-deployment.
Troubleshoot hardware, software, and networking issues.
Ensure compliance with industry standards and client requirements.
Continuous Improvement
Stay current on emerging technologies, trends, and vendor offerings.
Attend manufacturer training and pursue relevant certifications.
Help drive adoption of new processes and tools.
What You'll Bring
Education & Experience
Associate or Bachelor's degree in Electrical Engineering, IT, or related field, or equivalent work experience.
3-5+ years in security system engineering, design, or estimating.
Experience in pre-sales design/estimating and client proposals.
Technical Expertise
Hands-on with Lenel, Genetec, Avigilon, Milestone, Axis, Hanwha, Panasonic, HID, Software House.
Basic knowledge of IP networking, PoE, subnetting, and system integration.
Familiar with electrified door hardware, locking devices, relay connections, and voltage limitations.
Understanding of wireless communications, switches, routers, firewalls is a plus.
Ability to read and interpret blueprints and wiring diagrams.
Skills & Competencies
Proficiency in Microsoft Office Suite.
Strong problem-solving, troubleshooting, and attention to detail.
Excellent communication skills, written and verbal.
Self-motivated, reliable, and deadline-driven.
Strong organizational and time management abilities.
Preferred Certifications
LenelS2, Genetec, Avigilon, Milestone, Software House.
AutoCAD or system design software (Bluebeam, System Surveyor).
Knowledge of cybersecurity principles for physical security systems.
Join Our Team
Join a team that invests in you! ESOP ownership, 401(k) match, medical & dental coverage, paid time off, holiday pay, and more. We're an Equal Opportunity Employer and federal contractor committed to fair, merit-based hiring. Apply today!
Auto-Apply