Post job

Security architect jobs in North Carolina

- 245 jobs
  • Application Security Architect

    Motion Recruitment 4.5company rating

    Security architect job in Charlotte, NC

    Outstanding long-term contract opportunity! A well-known Financial Services Company is looking for an Application Security Architect Local Candidates are preferred Contract Duration: 12 Months to start (Strong chance of FTE) w-2 only Successful candidate will: Engage and collaborate with application, service, and platform teams to derive a deep, detailed, and accurate description of their application architectures and the services and platforms they consume. Model the architectures in our threat modeling tool. Apply our threat modeling methodology to identify and prioritize threats to those applications and to apply mitigating controls. Review evidence (designs, configurations, and/or source code) of mitigations to threats. Propose solutions to mitigate threats. Publish and present threat modeling results. Collaborate with Cybersecurity Architecture in the creation of new mitigating controls where a sufficient mitigation does not previously exist for a threat. Required Qualifications: 4+ years of Systems Architecture and/or Systems Development experience 3+ years of Cybersecurity experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education, Cybersecurity certifications. 1+ years of engineering experience with Azure, GCP, or AWS. 1+ years of experience in Python programming. Proficient in at least one Threat Modeling methodology, such as STRIDE, PASTA, OCTAVE, LINDDUN, or VAST Experience using Threat Modeler, Microsoft Threat Modeling tool, or OWASP Threat Dragon to develop threat models Understanding of OWASP Top 10, CAPEC, MITRE ATT&CK and Secure Design principles The ability to juggle multiple threat models actively in the work-in-progress state, working with a sense of urgency, delivering with short cycle times and a high throughput without sacrificing quality. Strong collaboration and communication skills, and the ability to work effectively with cross-functional teams.
    $112k-161k yearly est. 2d ago
  • Bank Information Security Governance Senior

    USAA 4.7company rating

    Security architect job in Charlotte, NC

    Why USAA? At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families. Embrace a fulfilling career at USAA, where our core values - honesty, integrity, loyalty and service - define how we treat each other and our members. Be part of what truly makes us special and impactful. The Opportunity We are seeking a dedicated Bank Information Security Governance Senior. We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position can be based in our Phoenix, AZ; San Antonio, TX; Plano, TX; Colorado Springs, CO; Chesapeake, VA; Charlotte, NC or Tampa, FL offices. Relocation assistance is not available for this position. What you'll do: Supports the first line of defense in ensuring the effectiveness of Information Security (IS) governance, IS risk management, and compliance programs within the Bank Technology Office. Collaborates with Information Technology (IT) and IS teams, business stakeholders, Compliance, Risk Management, Audit Services, and external parties to support IS governance and IS risk and compliance-based initiatives. Acts as a key liaison between the Association's IS function and various Bank business units, ensuring alignment with enterprise security policies and standards. Continuously monitors IS environments to identify emerging risks related to cybersecurity, infrastructure, applications, and third-party services. Provides consultative services across Bank. Provides expert insights on the development, implementation, and continuous improvement of IT governance frameworks (e.g., COBIT, ITIL) tailored to the Bank organization's specific needs and strategic objectives. Analyzes incident trends and control gaps to anticipate potential risk scenarios and recommend preventive measures. Conducts forward-looking risk assessments for new technology initiatives, system changes, and digital transformation projects. Analyzes incident trends and control gaps to anticipate potential risk scenarios and recommend preventive measures. Partners with and leads IT/IS teams to embed IS risk considerations early in the project lifecycle and ensure timely mitigation strategies. Leads the development, implementation, and continuous improvement of IT governance frameworks (e.g., COBIT, ITIL) tailored to the organization's specific needs and strategic objectives. Defines, maintains, and enforces IS policies, standards, and procedures to ensure compliance with relevant laws, regulations, and industry best practices. Ensures IS risk compliance with legal, regulatory, and contractual requirements, coordinating audits and assessments. Provides governance oversight for IS related initiatives, ensuring they adhere to established standards, policies, and risk management practices. Mentors junior members of the IS governance team, providing guidance and support in their professional development. Enhances, and maintains awareness of the risk governance framework and its elements (RCSA). Performs root cause analysis to determine likelihood, impact, and mitigation approaches of identified risks. Prepares metrics reporting and participates in the metrics refresh process. Maintains awareness of cloud computing principles and AI and understands potential IS risks inherent within this discipline. Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures. What you have: Bachelor's degree in Information Technology, Computer Science, Business Administration, or a related field; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree. 6 years experience supporting IS governance, IS risk management, compliance, or IT audit activities In-depth knowledge and application of IT governance frameworks such as COBIT, ITIL, ISO 27001, and NIST, CIS Controls and CMMC Experience working on and implementing IT and/or IS policies, standards, and procedures. Experience leading and coordinating IS audits and assessments and ensuring compliance with regulatory requirements. A strong understanding of regulatory and compliance requirements applicable to the organization. Ability to interpret complex IT/IS environments and detect early warning signals. Experience in identifying potential failure points and simulating risk scenarios. Proficiency in using data to identify trends, anomalies, and emerging risks. Understanding of cloud, cybersecurity, and digital transformation risks. Ability to articulate risk insights and influence stakeholders to take preventive actions. Familiarity with GRC platforms, vulnerability management tools, and risk dashboards. What sets you apart: Information Technology or Security certifications (e.g., CISA, CRISC, CISM, CISSP, CGEIT, CIA, NIST, COBIT, etc.). Familiarity with financial institutions regulations (GLBA, FFIEC Handbooks, PCI DSS) Work experience in highly regulated work environments including other large financial institutions Experience with data-driven analysis using AI tools and collaborating to drive process innovation Highly self-motivated individual capable of working independently and proactively handling their workload with minimal direct supervision. Strong analytical skills and demonstrated experience collaborating effectively with leadership at all levels within an organization. Compensation range: The salary range for this position is: $114,080-$218,030. USAA does not provide visa sponsorship for this role. Please do not apply for this role if at any time (now or in the future) you will need immigration support (i.e., H-1B, TN, STEM OPT Training Plans, etc.). Compensation: USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position. The actual salary for this role may vary by location. Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors. The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job. Benefits: At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals. For more details on our outstanding benefits, visit our benefits page on USAAjobs.com. Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting. USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
    $114.1k-218k yearly Auto-Apply 1d ago
  • Security Engineer

    Millennia 4.1company rating

    Security architect job in Cary, NC

    We are seeking a skilled Security Engineer with strong Networking and Compliance experience to join our team in Millennia. This position is required to reside in the vicinity of our Durham, NC Data Center. In this role, you will be crucial in maintaining the integrity and security of our network systems, ensuring privacy and security controls within processes, assets, and data flow within our healthcare-focused environment Responsibilities: · Maintain and manage all processes systems supporting Millennia's security posture. · Monitor, manage, and implement security infrastructure to support organizational needs · Monitor logs and alerts to identify incidents. Perform and or document Root Cause Analysis and remediation on Security Incidents. · Monitor network performance and troubleshoot issues and Security Incidents. · Plan, manage, and execute system upgrades and weekly patches to all endpoints. · Develop and enforce security policies to protect sensitive patient data. · Conduct regular system audits and vulnerability assessments. · Provide technical support for network-related issues to staff and clients. · Maintain documentation of network configurations and procedures. · Stay updated on industry trends and emerging technologies · Collaborate with IT teams to integrate new technologies into existing systems. · Provide hand-on support to our offices and data center. Qualifications: · Strong knowledge of network and security administration, controls, protocols, and best practices. · Experience with SOC2 or HITRUST, and HIPAA Security and Privacy Rule. · Proven experience as a Network Administrator or similar role. · Proficiency in configuring firewalls, routers, and switches, encryption protocols, and certificates. · Familiarity with cybersecurity principles and incident response strategies. · Excellent problem-solving skills and attention to detail. · Exceptional communication skills and ability to work independently and collaboratively in a team-oriented environment. · Experience with cloud computing platforms (AWS, Azure) is a plus. Relevant certifications (e.g., CCNA, CompTIA Security+) are preferred
    $90k-117k yearly est. 1d ago
  • Chief Information Security Officer

    Finzly

    Security architect job in Charlotte, NC

    Headquartered in Charlotte, NC, and founded in 2012 by visionary minds shaping the future of banking and payments in the US, Finzly makes bank transformation radically simple. Our core-independent platform is trusted by some of the market's leading financial institutions to transform operations and launch new products and services at speed. We've been recognized with 20+ industry awards in the last two years - including three years in a row as one of the Best and Brightest Places to Work as well as accolades for Best Parallel Core Technology, Best Corporate Payments Solution, Best Payments-as-a-Service Provider, and Best Trading System. Quite simply, Finzly is known for being the best in everything we do, giving you the perfect opportunity to grow your career with impact. About the Role: Finzly is currently seeking a highly motivated Chief Information Security Officer to join our dynamic team based in Charlotte, NC. We are in search of an individual who thrives in a fast-moving environment and contributes to a team that embraces continuous delivery practices and places a strong emphasis on enhancing the customer experience. This role entails extensive collaboration and teamwork across various teams and organizational boundaries, playing a pivotal role in engineering services that consistently exceed customer expectations. Our ideal candidate is a self-driven individual who excels at multitasking and flourishes as part of a collaborative team. Furthermore, we are seeking someone who possesses a genuine enthusiasm for exploring cutting-edge technologies, driving innovation, and thriving in a startup environment. If you're passionate about being part of a forward-thinking team, we encourage you to apply. Responsibilities: Build and maintain effective relationships with business and technology stakeholders. Partner with the stakeholders across the company to raise awareness of risk management concerns. Develop and enhance an information security management framework (such as ISO, SOC2, etc.) Assist with the overall business technology planning by providing a current knowledge and future vision of technology and systems. Mitigate the risks various security threats pose to the organization's mission and goals. Developing secure business and communication practices, objectives, and metrics. Ability to develop and interpret standards, policies, and procedures and analyze systems and procedures, write and review standards and procedures, handle multiple projects. Work with external audit firms to achieve and maintain compliance accreditations. Manage client security assessments and develop internal security training programs and maintain materials for end-users. Stay current on security practices, threat landscape, laws, and regulations. Knowledge of network security threats and ability to implement preventative controls including firewalls, access controls, authentication systems, intrusion detection systems, VPNs, cryptography, etc. Ability to resolve advanced security issues in diverse and fast-paced environments. The ability to build good relationships at all levels and across all business units and organizations, and the ability to influence stakeholders of all levels. Requirements: Minimum of 10 years of experience in a combination of risk management, information security, and IT jobs. 2 to 4 years of CISO experience at any bank with over $20B in asset size. OCC expertise is preferred. Advanced knowledge in the information security domain. Experience implementing an internal information security program preferred. Knowledge of common information security management frameworks, such as ISO/IEC 27001/27002, and NIST. Experience with Zero Trust Security tools like Zscaler is desirable. Familiarity with security tools such as SecureFrame and KnowBe4 is a plus. Excellent written and verbal communication skills and high level of personal integrity Innovative thinking and leadership with an ability to lead and motivate cross-functional teams. Specific experience in Agile (scaled) software development practices. Experience with cloud hosting environments such as AWS, Azure, etc. Experience in implementing SOC2 compliance is an added advantage. Specific experience in Agile (scaled) software development practices. Experience with cloud hosting environments such as AWS and Azure. Experience in implementing a SOC2 compliance is an added advantage. Qualifications: Bachelor's degree in information systems, business administration or a technology-related field is required. Professional security management certification is essential. What We Offer: Full Benefits Package - medical, dental and vision coverage with HSA option Healthcare FSA and Dependent Care FSA Company-paid Life Insurance Company-paid Long-Term Disability Paid Holidays and generous Paid-Time Off Stock Options 401k Savings Retirement Plan Short Term Disability, Critical Illness and Accident Insurance Wellness Programs including Employee Assistance Program Annual Cash Bonus and more!
    $88k-133k yearly est. 3d ago
  • Senior Security Engineer

    Gravity It Resources

    Security architect job in Huntersville, NC

    Direct Hire- Unable to sponsor any candidates now or in the future. NO THIRD PARTIES PLEASE. The Security Engineer oversees the Company's SIEM infrastructure and managing critical security components such as Web Application Firewall (WAF), Domain Management, and Certificate Management. This role collaborates extensively across teams to ensure robust security monitoring, incident response, and proactive threat detection. The role requires oversight of SIEM technologies, WAF management, DNS management, certificate lifecycle management, and incident response. The Experience and Skills You Bring: We are looking for a Security Engineer that is self-motivated and capable of applying their knowledge, experience, and potential to a variety of applications across the entire organization. Our continued success relies on the onboarding of team members that operate with a high degree of integrity and quality in everything they do. We are looking for an experienced engineers to spearhead the implementation of our exciting new ideas. You won't be just fixing bugs or maintaining existing codebase - you will be building exciting new features, analyzing metrics, building security automation tools, and making important technical and product decisions. Your Primary Duties and Responsibilities: o Continually monitor and adjust cybersecurity tools o Assisting in creating annual Security Awareness training program o Monitoring security tools, automation platforms, tracks for compliance to CIS standards and Google best practices o Managing centralized logs, security dashboard and Google security tools and monitors for suspicious events o Performing vulnerability tests, risk analyses and security assessments o Assisting with conducting/responding to internal and external security audits, and analyzing security breaches to determine root cause o Writing and maintaining corporate security policies o Training fellow employees in security awareness and procedures Minimum Qualifications: o 5+ years of experience in working with GCP or equivalent cloud platform specializing in security services, automation and compliance o Understanding of CICD tools including Docker, Kubernetes, Terraform, Ansible. o Experience working with Linux operating systems, Bash/Python scripting o Excellent interpersonal skills required to interact at all levels of the organization and effectively present informational training and respond to inquiries. o Unmatched communication skills, teamwork skills, and a strong attention to detail o Minimum Bachelor's degree in IT or Computer Science o 3+ years of cybersecurity, threat intelligence or IT security experience, with one or more of the following cyber-security functions; Cyber Threat Intelligence, Threat Hunting, System Administration, Intrusion Detection/Prevention, Monitoring, Incident Response, Vulnerability Management Preferred Qualifications: o Experience with CISSP, Google Cloud , Whitehat o CompTIA Security Professional certificates.
    $91k-124k yearly est. 3d ago
  • Principal Security Architect

    Stratascale

    Security architect job in North Carolina

    About Us As a digital and cybersecurity services company, Stratascale exists to help the Fortune 1000 transform the way they use technology to advance the business, generate revenue, and respond quickly to market demands. We call it Digital Agility. To learn more about how we're shaping the future of digital business and a more secure world, visit stratascale.com. Job Description SummaryThe Principal Security Architect for Security Architecture is a client-facing leader within the Cybersecurity Business Unit for Stratascale. The Principal Security Architect will work with our Client Advisors, Cybersecurity Advisors, other Principal Security Architects, and subject matter experts within the Business Unit to identify, qualify, and build service-centric solutions for our clients. The Principal Security Architect will engage with Stratascale's Enterprise Clients to uncover, develop, and win security services (both project-based professional services and managed services) opportunities by building strong client relationships at technical, architect, and executive levels. The Principal Security Architect will consult with client stakeholders and influencers on security products and services to enable business and address client risk concerns and objectives. Role Description Work closely and with autonomy with Stratascale clients to drive the services' pre-sales function. This will include working out the scope, deliverables, timelines, as well as drafting levels of effort. Accurately scope and define service engagements to ensure alignment with client needs, project objectives, and resource availability. This includes conducting thorough assessments, identifying key deliverables, estimating timelines, and determining the necessary technical and personnel resources required to complete fixed fee projects. Developing statements of work, creating statement of work templates, and aligning scope and client needs to existing offerings while also adjusting to client needs. Responsible for driving gross margin generated by professional services and product sales, contributing to the business unit goals Take ownership of client engagement for new opportunities, representing various service opportunities by engaging where appropriate, following up with prospects to discover, defend, and acquire new business. Collaborate and engage with clients to ensure account retention for the security solutions and services business in existing accounts Collaborate, develop, and execute strategy for top prospects with the sales team to discover, grow, and acquire new business Collaborate and engage with multiple levels of contacts within an organization, including but not limited to CISO, CIO, IT Directors, CTO, and Architects as needed Build solid relationships and trust with the technical decision makers, and executive stakeholders, and own all aspects of technical closure of sales opportunities Educate clients with product and services training, demos, and solution deep dives Collaborate with Enterprise Cybersecurity Advisor and drive all aspects needed of the sales process Drive business based on region/territory strategic account planning in collaboration with the account executive and extended teams as appropriate Demonstrate leadership to ensure that the company's recommended solutions are comprehensive, achieve client expectations, and meet client business needs Develop relationships with tier 1 and tier 2 vendors and services partners Ongoing training and learning to understand the company services offerings in all security solution practice areas by attending company training and expanding knowledge through self-study Educate and develop sales teams on technical selling, product training, services, and technology trends by setting up formal training and relationship building as needed Behaviors and Competencies Initiative: Can lead strategic and complex initiatives, inspire others to take initiative, and foster a culture of continuous improvement. Communication: Can lead and model exceptional communication at all levels of the organization, develop and implement communication strategies, and coach others to improve their communication skills. Customer Service: Can lead strategic customer service initiatives, inspire others to prioritize customer service, and foster a culture of continuous customer service improvement. Research: Can lead strategic research initiatives, inspire others to prioritize effective research, and foster a culture of continuous learning and knowledge expansion. Organization: Can design and implement efficient organizational structures and processes, mentor others in organizational skills, and lead by example in maintaining high standards of organization. Self-Motivation: Can lead strategic self-improvement initiatives, inspire others to be self-motivated, and foster a culture of continuous self-improvement. Adaptability: Can drive strategic transformations, inspire others to embrace change, and foster a culture of continuous adaptation. Time Management: Can consistently achieve goals ahead of schedule, lead team efforts in time management, and strategize the best ways to use time for various tasks. Detail-Oriented: Can foster a culture of detail orientation, inspiring others to maintain high standards of accuracy and completeness in their work. Analytical Thinking: Can lead and innovate in the application of analytical thinking, solve complex problems, influence others, and contribute to best practices. Skill Level Requirements The ability to understand customer needs, provide tailored solutions, and build strong, long-term customer relationships through a consultative approach. - Expert The skill of securely handling sensitive data, ensuring privacy and compliance with data protection regulations. - Expert The ability to effectively utilize applications like Word, Excel, PowerPoint, and Outlook to enhance productivity and perform various tasks efficiently. - Expert Comprehension of the inner workings of a company, including its market positioning, competitive dynamics, and operational processes, to inform decision-making and drive sustainable growth. - Expert Ability to oversee and direct projects to completion, ensuring goals are met, resources are utilized efficiently, and stakeholders are satisfied. - Expert Other Requirements Completed Bachelor's Degree or relevant work experience required 10+ years of experience in a similar role Advanced certification in a relevant technical area required Ability to travel 10% The estimated annual pay range for this position is $210,000 - $300,000, which includes a base salary and bonus. The compensation for this position is dependent on job-related knowledge, skills, experience, and market location and, therefore, will vary from individual to individual. Benefits may include, but are not limited to, medical, vision, dental, 401K, and flexible spending. . Equal Employment Opportunity - M/F/Disability/Protected Veteran Status
    $210k-300k yearly Auto-Apply 60d+ ago
  • Infrastructure Security Architect

    Southstate Bank

    Security architect job in Vass, NC

    The SouthState story is one of steady growth, deep community roots, and an unwavering commitment to helping our customers move forward. Since our beginnings in the 1930s to becoming a trusted financial partner across the South and beyond - we are known for combining personal relationships with forward-thinking solutions. We are committed to helping our team members find their success while maintaining the integrity of our values: building trust, fostering lasting relationships and pursuing excellence. At SouthState, individual contributions are recognized, potential is cultivated and team members are inspired to achieve their greater purpose. Your future begins here! SUMMARY/OBJECTIVES The Infrastructure Security Architect is responsible for providing guidance on developing secure and resilient infrastructure architectures in regulated financial institutions. This position involves designing and maintaining layered infrastructure and security frameworks following NIST SP 800-53 and NIST SP 800-100, and integrating security and resiliency measures across compute, network, virtualization, cloud, storage, and backup environments, as well as throughout the systems development life cycle. The architect ensures that administrative, technical, and physical controls are implemented to maintain the confidentiality, integrity, and availability of customer information as required by FDIC/Interagency Guidelines, while supporting system availability and performance. This role is responsible for the design and security oversight of secure on-premises and cloud infrastructure, specifically within Microsoft Azure. Key technologies oversight includes Palo Alto next-generation firewalls, VMware NSX, CyberArk PKI/certificate management, Cisco ASA remote-access VPN, Zerto disaster-recovery orchestration, and Cohesity backup/recovery platforms. The security architect leads cross-functional teams, establishes policies, standards, and procedures, provides mentorship to engineers, and works in close collaboration with business executives to ensure infrastructure and security projects align with organizational objectives and comply with regulatory requirements. ESSENTIAL FUNCTIONS Develop and maintain robust infrastructure and security architectures that integrate compute, network, storage, and virtualization with layered security controls, following NIST guidance. Design and manage macro and micro segmentation across data centers and hybrid clouds, leveraging VMware NSX distributed firewalling for micro segmentation, encryption, and centralized policy. Architect secure Azure and hybrid environments, demonstrating expertise in designing cloud and hybrid solutions across compute, network, storage, monitoring, and security. Deployment of Palo Alto firewalls, including design, configuration, security oversight, and troubleshooting. Implement CyberArk certificate management to secure machine identities and integrate CyberArk solutions. Provide secure remote access using Cisco ASA and AnyConnect, ensuring policy-based access and multifactor authentication. Conduct risk assessments, develop infrastructure and security plans, and ensure controls meet regulatory requirements (NIST, FDIC, GLBA, PCI, Sarbanes-Oxley Act (SOX)). Lead cross-functional architecture reviews, mentor engineers, and coordinate with networking, infrastructure, development, and operations teams. Coordinate with vendors (Microsoft Azure, Palo Alto, VMware, CyberArk, Cisco, Zerto, Cohesity, etc…) for support and integration; communicate priorities to executives and stakeholders. Ensure strict compliance with the Bank's policies and procedures, code of conduct, and regulatory guidelines. Assist other employees by interacting with them through healthy and positive interactions. Continuously update skills by participating in professional training and conferences. Security implementation for Infrastructure as Code (IaC): Develop and maintain automation scripts using Terraform, ARM templates, to ensure efficient cloud deployments. Hybrid Cloud & Integration: Architect hybrid cloud solutions integrating on-premises systems with Azure services like Azure Files, ExpressRoute, and VPN Gateway. Emerging Technologies: Stay up to date with advancements in AI, ML, Open Banking APIs, and Blockchain to explore innovative banking solutions. All other tasks, responsibilities, or duties, as directed by management. Reasonable accommodation(s) may be made to enable individuals with disabilities to perform the essential functions. COMPETENCIES Technical Leadership: Upholds industry best practices and standards; maintains awareness of advancements in technology; formulates effective troubleshooting methodologies; exhibits comprehensive understanding of system and security architecture, as well as extensive expertise in cloud computing, virtualization, and cybersecurity. Innovation & Problem Solving: Staying aware of technological trends and applying creative thinking; uses analytical thinking and strategic alignment to overcome challenges. Business Acumen & Communication: Translates technical concepts into business terms; collaborates with business leaders to identify opportunities; communicates effectively and establishes clear vision. Regulatory & Risk Awareness: Understands and applies NIST and FDIC/GLBA requirements to align infrastructure and security architecture with compliance mandates. Mentorship & Delegation: Delegates tasks effectively, empowers team members, and mentors' junior staff. Excellent communication and people skills. Must be able to remain composed under pressure and respond to customer and coworker concerns regularly upholding the IT Vision and Mission statements. Ability to use the computer efficiently and the capacity to learn new software programs as they are rolled out by the Bank. Must possess basic English language skills to write and speak clearly, and effectively with coworkers, customers, and senior leaders. Must be well-organized, accurate, and attentive to detail. Qualifications, Education, AND CERTIFICATION Requirements Education: Bachelor's degree in computer science, Information Systems, Cybersecurity, Engineering, or a related field ; Master's degree preferred. Experience: 8+ years of progressive experience in infrastructure and security architecture and design, preferably in financial services or other regulated industries. Demonstrated experience designing secure and resilient architectures for Azure and hybrid cloud environments. Experience with Palo Alto firewalls (PCNSE-level), VMware NSX micro segmentation, CyberArk certificate management, Cisco ASA/AnyConnect remote-access VPN, Zerto replication, and Cohesity data-protection platforms. Experience designing and operating network segmentation strategies, virtualization and compute infrastructure, firewall policies, encryption solutions, and certificate management. Demonstrated expertise in leading cross-functional teams, overseeing project management initiatives, and effectively communicating with executive stakeholders. Deep understanding of NIST SP 800-53, NIST SP 800-100, and FFIEC/FDIC guidelines. Strong knowledge of network protocols, routing, switching, virtualization, containers, zero-trust architecture, compute infrastructure, and identity management. Experience with automation tools and scripting (PowerShell, Python, Terraform/Ansible) for infrastructure as code and security policy automation. Familiarity with DevSecOps, CI/CD pipelines, vulnerability management, and SIEM integration. Certifications: Candidates should hold or be working toward some of the following certifications: Microsoft Certified: Azure Solutions Architect Expert VMware Certified Design Expert (VCDX) Palo Alto Networks Certified Network Security Engineer (PCNSE) CyberArk Sentry or Guardian Certifications Cisco Certified Network Associate (CCNA) Security Other relevant certifications: CISSP, CISM, CCSP, CISA, or other global security credentials. TRAINING REQUIREMENTS/CLASSES On the job training and any additional training as needed. Required annual compliance training. Workday Learning as assigned by manager for technical and leadership training. New Employee Orientation as well as continual update of processes of banking systems. PHYSICAL DEMANDS Must be able to sit for extended periods of time. Must be able to effectively access and interpret information on computer screens, documents, and reports. WORK ENVIRONMENT This position is located in a cubicle environment that may be loud throughout the day. Telecommuting roles no matter if hybrid or 100% full time telecommuting must have a secure home office environment that is free from background noise and distractions. They must also have a reliable private internet connection that is not supplied by use of cellular data (hot spot). Cable or fiber connections are preferred. Requirements are subject to change, as new systems and technology is delivered. Travel may be to come to meetings as needed. In accordance with Colorado law: Colorado pay for this position is anticipated to be between $148,907.00 - $237,865.00 , actual offers to be determined based on applicant's skills, experience and education.While the anticipated deadline for the job posting is 12-20-2025, we encourage you to submit your application as we may still consider qualified candidates beyond this date. Benefits | SouthState Careers Equal Opportunity Employer, including disabled/veterans.
    $148.9k-237.9k yearly Auto-Apply 12d ago
  • Information Security Architect

    Forhyre

    Security architect job in Carolina Beach, NC

    Job Description We are looking for a Lead Information Security Architect who will be responsible for developing and maintaining a comprehensive information security architecture program and representing information security requirements for all technology solutions and business processes covering multiple technical disciplines, such as systems & networking infrastructure, DevOps, security, business applications, cloud security, and data architecture. The role oversees cybersecurity for our company's digital products, including software, firmware or products that contain code. This includes implementing a product security program designed to address cybersecurity across all stages of the product life cycle. This role identifies and oversees the mitigation of technical and operational threats; analyzes the security, supportability, and feasibility of new technology; and ensures conformance with regulatory guidelines and industry best practices. This position requires an extremely high level of analytical problem-solving skills to diagnose and resolve complex technical issues in addition to superlative process management and communication skills. Note: U.S. citizens and those authorized to work in the U.S. are encouraged to apply. We are unable to sponsor at this time. To be Successful in this Role Develop an architectural vision to support the continued growth of the product suite Working knowledge of Data Security Best Practices: At Rest, In Flight, In Use Experience with privacy-enhancing technologies and encryption techniques. Working knowledge of cloud security architecture strategies, frameworks, and reference models Proven ability to develop effective partnerships with senior management and peer organizations. Must be able to explain technical concepts and problems to nontechnical senior executives Ability to build Risk Models and analyze security weaknesses in complex technology deployments. Provide security expertise and direction on projects related to cloud architecture and design, implementation, maintenance, governance, and risk management Work with governance teams to establish automated processes and best practices for AWS, Azure IAM policies, roles, identity federation, etc. Conduct automated (preferred) or manual security validation of cloud templates and/or cloud infrastructure Collaborate with business units and corporate partners to ensure they build solutions consistent with the organization's policies, programs, architectural recommendations, and information security standards Develop, establish, enforce, and sustain the Information Security Architecture, including standards and guidelines for infrastructure solutions and technologies, integration methodologies and practices, development processes, hardware platforms, and enterprise data design. Partner with stakeholders in building and implementing a robust, scalable, and agile information security architecture Partner with stakeholders in assessing the IT application & infrastructure portfolios today and design and execute the future state strategy to meet business objectives going forward. Make recommendations on the strategic use of technology for leveraging business results and work with stakeholders to incorporate these recommendations into appropriate roadmaps and life cycle plans. Anticipate and ensure alignment with long-term business requirements, ensuring identified change is reflected in the appropriate roadmaps, providing thought leadership both internally and externally Minimize the number of architectural components and total cost of ownership while maintaining maximum of functional flexibility, reliability, and security. Must be able to balance the role of strategist with urgency while simultaneously managing and delivering results in a growing and fast-paced environment. Must demonstrate the ability to manage via influence and have the credibility and interpersonal skills to become respected as a thought leader. Must be capable of articulating pragmatic, sensible, and simple solutions while executing across multiple business and technical perspectives. Act as a role model for service mentality, building long-term relationships with key internal customers and stakeholders, while remaining receptive to the customer's needs Facilitate and steward the documenting of the architecture design and analysis work, including the capture and mapping of the relationships between architecture components. You Will Have 8+ years' experience dedicated to information security architecture required with expert knowledge in building defense in-depth reference architecture Required industry security certification (e.g., CISSP, CISM, CISA, CCSP, etc.) Familiarity with information management practices, system development life cycle management, IT services management, agile and lean methodologies, infrastructure, and operations. Knowledge of business ecosystems, SaaS, infrastructure as a service (IaaS), platform as a service (PaaS), SOA, APIs, open data, microservices, event-driven IT and predictive analytics. Hands-on experience with Cloud Technologies AWS, Azure & GCP Good understanding of security management solutions, including IDS, IPS, SIEM, Vulnerability Scanning, Denial of Service, and Continued Compliance Experience with attacks and mitigation methods, with experience working in two or more of the following: Network protocols and secure network design; Operating system internals and hardening (e.g. Windows, Linux, OS X, Android); Web application and browser security; Security assessments and penetration testing; Authentication and access control; Applied cryptography and security protocols; Security monitoring and intrusion detection, Incident response and forensics; Development of security tools, automation or frameworks Experience in managing and contributing to incident response Extensive experience in developing strategic information security plans, including the development of baseline security standards, information system hardening guides, and information security requirements documentation. Excellent analytical skills, organizational, time management, and problem-solving skills are essential.is work, including the capture and mapping of the relationships between architecture components.
    $102k-151k yearly est. 17d ago
  • Security Architect ( Cloud )

    Cncsinfotech

    Security architect job in Raleigh, NC

    We provide creative and technology services and solutions in the areas of web design, customized web applications, IT Staffing and e-commerce solutions, Mobile App development and much more services to organizations in the All over the world. With well defined and documented processes and practices, we ensure successful implementation of all our projects. Our teams are highly trained in best practices of web and application developments and are managed by certified project managers who ensure highest levels of process control and management Job Description Security Architect Locations: Raleigh, NC Full Time Travel Required: Up to 10% or 1 day a week Work with IBM Cloud PaaS Offering Management on defining security roadmap Engage with clients as sponsor users to implement new security capabilities Architect technical security requirements for external compliance certifications Participate and enforce IBM PSIRT, IBM CSIRT, and IBM Secure Engineering processes Provide security technical guidance to Bluemix services and SaaS offerings that run on top of Bluemix PaaS Create external facing collateral for use by client facing teams and clients Participate in IBM Cloud Security interlocks Present in client facing/external conferences e.g., Interconnect etc. Support Bluemix sales by presenting to clients (on the phone, F2F) Mentor security team members You will work with the best of the teams in Cloud Dev, Cloud Security, Cloud Offering Management, Cloud Sales. You will be outgoing, team player, willing to mentor and lead team members, must have great sense of humor. You will have demonstrated communication skills, experience with working with customers and be able to bring customer requirements back to the team. Your extensive experience in security and compliance audit is of great advantage. This is a high performing, leading edge team that offers exciting opportunities in Cloud security. If you have it in you, then you are at the right place. Apply below immediately. Required Technical and Professional Expertise: At least 8 years of experience in technical security architecture and design skills At least 5 years of experience in External customer facing experience and skills At least 3 years experience in Compliance Standards Preferred Technical and Professional Experience: At least 3 years of experience in Cloud Security and compliance standards. Certified Information Systems Security Professional (CISSP) certification is preferred Additional Information All your inform ation will be kept confidential according to EEO guidelines.
    $102k-151k yearly est. 60d+ ago
  • Enterprise Security Architect

    Corebridge Financial Inc.

    Security architect job in Durham, NC

    Who We Are At Corebridge Financial, we believe action is everything. That's why every day we partner with financial professionals and institutions to make it possible for more people to take action in their financial lives, for today and tomorrow. We align to a set of Values that are the core pillars that define our culture and help bring our brand purpose to life: * We are stronger as one: We collaborate across the enterprise, scale what works and act decisively for our customers and partners. * We deliver on commitments: We are accountable, empower each other and go above and beyond for our stakeholders. * We learn, improve and innovate: We get better each day by challenging the status quo and equipping ourselves for the future. * We are inclusive: We embrace different perspectives, enabling our colleagues to make an impact and bring their whole selves to work. Who You'll Work With The Information Technology organization is the technological foundation of our business and works in collaboration with our partners from across the company. The team drives technology and digital transformation, partners with business leaders to design and execute new strategies through IT and operations services and ensures the necessary IT risk management and security measures are in place and aligned with enterprise architecture standards and principles. About The Role The Enterprise Security Architect will help to lead the design, implementation, and oversight of secure systems and architectures across our organization. This role is critical to embedding security into enterprise processes, aligning with industry standards, and building a scalable security foundation. The ideal candidate will bring deep technical expertise, strong communication skills, and the ability to work independently or collaboratively to drive security initiatives and foster a security-first culture. Responsibilities * Design, document, and maintain secure architecture patterns, diagrams, and reference architectures to guide security implementations across the organization. * Conduct comprehensive security reviews of applications, systems, and networks, identifying vulnerabilities and recommending secure design strategies. * Perform threat modeling and risk assessments to identify potential vulnerabilities and recommend appropriate mitigating controls. * Partner with enterprise and line-of-business architects to integrate security seamlessly into designs and processes. * Translate complex technical security concepts into clear, actionable insights for C-level executives, business leaders, non-technical stakeholders, and technical engineering teams. * Recommend mitigating controls, security tools, and remediation strategies to address security gaps and minimize risk. * Stay current on security threats, vulnerabilities, and technologies to enhance the organization's security posture. * Promote a security-first culture by mentoring technical teams, educating stakeholders, and embedding security best practices into organizational workflows. Skills and Qualifications * 7+ years of hands-on experience in infrastructure, systems, networks, applications, or cloud security. * 5+ years of enterprise architecture experience required. * Ability to create and review diagrams using tools such as Visio or Lucidchart. * Familiarity with secure architecture patterns, reference architectures, and frameworks. * Expertise in SaaS, PaaS, and IaaS environments, including platforms like AWS, Azure, M365, and Salesforce. * Experience working with various identity and access management (IAM) solutions such as CyberArk, Okta, Ping Identity, Entra ID/Azure AD, and other tools supporting SSO, MFA, and PAM. * Familiarity with tools like Jira, Confluence, and ServiceNow for workflow management and documentation. * Expertise in threat modeling, vulnerability management, and risk assessments. * Working knowledge of regulatory requirements and compliance standards such as NYDFS, CCPA, GLBA, PCI-DSS, HIPAA, SOX, and GDPR. * Relevant certifications such as CISSP, CCSP, or equivalent. * Ability to work independently or collaboratively in a team-oriented environment. * Bachelor's degree in a relevant field or proven record of experience in Information Technology and Cyber Security roles. Technical Skills * Familiarity with protocols such as SAML, OAuth, OIDC, FIDO, PKI, JWT, LDAP, and Kerberos. * Strong knowledge of common network protocols, including TCP/IP, HTTP/HTTPS, DNS, SMTP, SNMP, SSH, and VPN technologies. * Expertise in encryption technologies (e.g., TLS, AES, RSA) and key management practices (e.g., KMS, HSM, PKI). * Familiarity with firewalls, IDS/IPS, WAF, VPN, Routers, Switches, Load Balancers, Zero-Trust, microsegmentation, and SD-WAN security solutions, CASB, Proxy, SSE. * Experience with SIEM tools such as Splunk, QRadar, or ArcSight and logging/monitoring best practices. * Knowledge of Docker, Kubernetes, EKS, ECS, and OCP, including their security considerations. * Proficiency in integrating security into DevOps pipelines with tools such as Jenkins, GitHub, Artifactory, Terraform, and Vault. Common Security and Architecture Frameworks * Security Frameworks: * NIST Cybersecurity Framework (CSF) * ISO 27001 and 27002 * CSA CCM (Cloud Controls Matrix) * CIS Controls * Architecture Frameworks: * SABSA (Sherwood Applied Business Security Architecture) * TOGAF (The Open Group Architecture Framework) * AWS Well-Architected Framework Preferred Certifications * TOGAF (The Open Group Architecture Framework) * SABSA Foundation or Practitioner * CISSP-ISSAP (Concentration in Security Architecture) * Certified Cloud Security Professional (CCSP) * GIAC Security Architecture (GDSA) * AWS Certified Solutions Architect - Associate or Professional * AWS Certified Security - Specialty * Microsoft Certified: Azure Solutions Architect Expert Soft Skills * Strong analytical and problem-solving abilities. * Excellent interpersonal and collaboration skills. * Strong organizational and time management skills. * Adaptability and a commitment to continuous learning of new technologies and methodologies. * Attention to detail and dedication to delivering high-quality results. * High level of integrity and ethical conduct. Industry-Specific Experience * Experience in financial services, insurance, or other regulated environments. * Proven ability to design and implement security controls that align with industry regulations and standards. * Experience conducting security assessments and audits in regulated industries. * Familiarity with industry-specific threats and vulnerabilities to tailor security solutions. Compensation The actual compensation offered will ultimately be dependent on multiple factors, which may include the candidate's geographic location, skills, experience and other qualifications. In addition, the position is eligible for a discretionary bonus in accordance with the terms of the applicable incentive plan. Corebridge also offers a range of competitive benefits as part of the total compensation package, as detailed below. Work Location This position is based in Corebridge Financial's Houston, TX or Durham, NC office and is subject to our hybrid working policy, which gives colleagues the benefits of working both in an office and remotely. #LI-SAFG #LI-CW1 #LI-Hybrid Why Corebridge? At Corebridge Financial, we prioritize the health, well-being, and work-life balance of our employees. Our comprehensive benefits and wellness program is designed to support employees both personally and professionally, ensuring that they have the resources and flexibility needed to thrive. Benefit Offerings Include: * Health and Wellness: We offer a range of medical, dental and vision insurance plans, as well as mental health support and wellness initiatives to promote overall well-being. * Retirement Savings: We offer retirement benefits options, which vary by location. In the U.S., our competitive 401(k) Plan offers a generous dollar-for-dollar Company matching contribution of up to 6% of eligible pay and a Company contribution equal to 3% of eligible pay (subject to annual IRS limits and Plan terms). These Company contributions vest immediately. * Employee Assistance Program: Confidential counseling services and resources are available to all employees. * Matching charitable donations: Corebridge matches donations to tax-exempt organizations 1:1, up to $5,000. * Volunteer Time Off: Employees may use up to 16 volunteer hours annually to support activities that enhance and serve communities where employees live and work. * Paid Time Off: Eligible employees start off with at least 24 Paid Time Off (PTO) days so they can take time off for themselves and their families when they need it. Eligibility for and participation in employer-sponsored benefit plans and Company programs will be subject to applicable law, governing Plan document(s) and Company policy. We are an Equal Opportunity Employer Corebridge Financial, is committed to being an equal opportunity employer and we comply with all applicable federal, state, and local fair employment laws. All applicants will be considered for employment based on job-related qualifications and without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, disability, neurodivergence, age, veteran status, or any other protected characteristic. The Company is also committed to compliance with all fair employment practices regarding citizenship and immigration status. At Corebridge Financial, we believe that diversity and inclusion are critical to building a creative workplace that leads to innovation, growth, and profitability. Through a wide variety of programs and initiatives, we invest in each employee, seeking to ensure that our colleagues are respected as individuals and valued for their unique perspectives. Corebridge Financial is committed to working with and providing reasonable accommodations to job applicants and employees, including any accommodations needed on the basis of physical or mental disabilities or sincerely held religious beliefs. If you believe you need a reasonable accommodation in order to search for a job opening or to complete any part of the application or hiring process, please send an email to ******************************************. Reasonable accommodations will be determined on a case-by-case basis, in accordance with applicable federal, state, and local law. We will consider for employment qualified applicants with criminal histories, consistent with applicable law. To learn more please visit: *************************** Functional Area: IT - Information Technology Estimated Travel Percentage (%): Up to 25% Relocation Provided: No American General Life Insurance Company
    $102k-151k yearly est. Auto-Apply 37d ago
  • SAP Security Analyst/Admin

    The Maven Group 4.5company rating

    Security architect job in Raleigh, NC

    Direct Hire REMOTE but must reside within 3 hours of Raleigh US Citizens, Green Card, Perm Resident (no sponsorship) This primarily remote role involves SAP Security Administration tasks of planning, coordination, execution, and production support. Currently on ECC, and should be moving to S4 Hana in the next couple years. The candidate needs to possess a complete understanding of industry practices regarding application principles, concepts, practices, and standards. The candidate will interact with senior internal and external personnel on significant matters often requiring coordination between organizations. Qualifications/Requirements: • Bachelor's degree with 5+ years of professional SAP technical experience • Minimum 5 years of experience in SAP Security • Experience with SAP NetWeaver, ABAP, and related technologies • Knowledge of database management systems (MS SQL Server) • Legal authorization to work in the U.S. (no visa sponsorship). • Experience with GRC Access Control 10.x minimum (with 12.0 preferred). • Strong communication and collaboration skills to work effectively with cross-functional teams. Preferred Qualifications: • Experience with SAP ECC HANA and MSSQL databases. • Some knowledge of SAP Basis (doesn't have to be current or hands on, just enough to interface with our outsourced Basis vendor). • Experience with HANA/FIORI Security. • Strong problem-solving, analytical, and communication skills. • Familiarity with cross-functional team dynamics. • Ability to work independently and with global teams.
    $86k-110k yearly est. 60d+ ago
  • Security Architect

    Insight Global

    Security architect job in Charlotte, NC

    Insight Global is seeking a Cybersecurity Architect who is passionate about cybersecurity and has the analytical and multi-tasking abilities to thrive in a fast-paced environment. As a Cybersecurity Architect, you will ensure the technical feasibility and successful delivery of secure technology solutions. This role involves leading agile development, managing technical risks, providing expert technical guidance, and balancing agility with quality through effective security protocols. You must possess a strong technical background to ensure you are designing modular and scalable security architectures. Experience leading large cross-organizational cybersecurity projects and a well-rounded technical background in current cybersecurity technologies are essential. What You'll Do: - Architect, design, and deliver large-scale, reliable, maintainable, high-quality cybersecurity solutions and systems aligned with company guidelines and best practices. - Maintain comprehensive documentation and patterns for cybersecurity design, implementation, and maintenance, ensuring compliance with regulatory standards and internal policies. - Work with other cybersecurity SMEs to resolve the company's most difficult cybersecurity problems, develop groundbreaking solutions, and push the boundaries of cybersecurity technology in alignment with strategic business objectives. - Lead the craftsmanship, availability, resilience, and scalability of cybersecurity solutions. - Accountable for the technical feasibility and delivery of secure products. Address difficult and ambiguous cybersecurity problems spanning the interactions among multiple systems, products, organizations, people, and functions. - Model tech solutions by iteratively translating cybersecurity needs and business constraints into working designs. - Advisory Role: Advise on the best possible technical and innovative cybersecurity approaches. Balance agility and quality with the right security protocols. Lead and provide expert guidance and mentorship to Lead, and Senior engineers, lead technical discussions, and make architectural decisions that positively impact the product and company's direction. We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to ********************.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: **************************************************** Skills and Requirements - Deep expertise in IAM or Cloud Security - Bachelor's degree in computer science, Information Systems, or a related field preferred. - 10+ years of experience in cybersecurity architecture and related fields. - Certifications in relevant areas (e.g., TOGAF, CISSP, CISM, CEH) desired. - Deep knowledge of network application and mobility security, security systems design, policy development, compliance, and incident response. - Experience in thought leadership and creating high-quality cybersecurity solutions. - Ability to work well across business units, building relationships to deliver on joint objectives and key results. - Expertise in building cybersecurity platforms. Experience working within Agile/Scrum/Kanban development teams.
    $101k-150k yearly est. 3d ago
  • SAP Security & GRC admin - Only local consultants

    E Pro Consulting 3.8company rating

    Security architect job in Charlotte, NC

    E*Pro Consulting service offerings include contingent Staff Augmentation of IT professionals, Permanent Recruiting and Temp-to-Hire. In addition, our industry expertise and knowledge within financial services, Insurance, Telecom, Manufacturing, Technology, Media and Entertainment, Pharmaceutical, Health Care and service industries ensures our services are customized to meet specific needs. For more details please visit our website ****************** Job Description FULL TIME PERM JOB-GC/GC EAD/US Citizens As a key contributor of the Finance Systems Roadmap Security and Controls team, individual will be responsible for working with project teams to obtain security and control requirements for an end state SAP ERP solution. Business requirements will be used to configure a role based security design within various SAP applications. These SAP applications include ECC, BI, BPC, PI, Enterprise Portal, CE, Bank Analyzer, Solution Manager, and GRC. Individual will be responsible for day to day system security configuration tasks and user administration throughout all project lifecycles and production support. Individual should have strong communication skills, ability to lead or participate in project workshops, and ability to share or transfer technical knowledge to less experienced team members Qualifications Relevant Years of Experience: 4+ Total IT experience: 5-7 years (or lesser with technical knowledge) Must Have Technical Qualifications: - Strong communication skills to facilitate working in a dynamic project environment - Role design, configuration, testing, and deployment methodology within SAP application architecture - Detailed knowledge of ABAP and Java based authorizations within SAP applications - SAP ECC Profile Generator (single roles, master / derived roles, composite roles) - SAP BI analysis authorization concepts - SAP BPC security and administration - SAP Central User Administration configuration and administration - SAP GRC configuration and administration - SAP Enterprise Portal UME administration Additional Information All your information will be kept confidential according to EEO guidelines.
    $75k-103k yearly est. 60d+ ago
  • Director Business Information Security Officer

    Surescripts 4.6company rating

    Security architect job in Raleigh, NC

    Surescripts serves the nation through simpler, trusted health intelligence sharing, in order to increase patient safety, lower costs and ensure quality care. We deliver insights at critical points of care for better decisions - from streamlining prior authorizations to delivering comprehensive medication histories to facilitating messages between providers. Job Summary: The Director Business Information Security Officer (BISO) reports to the VP, Chief Information Security Officer (CISO) and acts as the primary liaison between Surescripts business units and the Information Security team. The BISO is responsible for understanding the unique business needs and risks of the organization and aligning them with security strategies and initiatives. The BISO plays a critical role in ensuring new products are launched with information security requirements embedded that align with company and information security policies and standards. The BISO will aid in the development, implementation and awareness of information security policies, manage risk, and ensure compliance with regulatory requirements. The BISO plays a crucial role in fostering a culture of security awareness and ensures that security measures are integrated into business processes. The BISO will be responsible for day-to-day operations to support and augment the CISO's overall responsibilities. The BISO plays a key leadership role in supporting the business and external customers. The BISO ensures business decisions are not obstructed by cybersecurity but instead are made using sound security principles and supporting corporate security policies and plans. Responsibilities: * Serve as a trusted advisor to the business on information security matters. * Work closely with Information Security leadership overseeing Identity and Access Management, Fraud and Crisis Management, merger and acquisition activities and any new business initiatives. * Keep abreast of current activity within the IAM and Fraud and Crisis teams and partner with team members for success. * Foster strong, collaborative relationships with internal business partners and external entities to maintain a strong network. * Enforce and influence strong security culture set forth by the CISO, ensuring uniformity across business units and employees. * Advise organization on enterprise-wide process and technology security recommendations. * Proactively gather and share pertinent information to effectively lead/engage in daily information security operations. * Lead the development and execution of crisis management plans and procedures. * Collaborate with external health care technology vendors, pharmacy partners, law enforcement, governmental entities and / and IT teams to ensure secure e-prescribing processes are being followed. * Assist with creating the Information Security department budget, monitoring expenditures, and ensuring alignment with the overall department budget. * Review customer contracts for appropriate information security language and requirements in partnership with Commercial Legal and Procurement. * Hold security leadership and teams accountable to consistently learn and share advanced knowledge and practices that promote excellence with the information security teams. * Maintain an up-to-date level of knowledge relating to security threats, vulnerabilities, and mitigations set forth to reduce the corporate attack surface. * Lead security projects and ensure they are delivered on time and within budget. * Proactively identify and remove complexity and obstacles that hinder efficient security controls enterprise wide. * Stay abreast of new laws, regulations, and standards, and assess their impact to the business. * Perform security due diligence for mergers, acquisitions, divestitures, and any new business initiatives. * Serve as the CISO representative when the CISO is not available, including making decisions usually made by the CISO. Qualifications: Basic Requirements: * Bachelor's degree in business administration, information assurance, or related technical field * 10+ years of related, progressive experience in cybersecurity management with at least 8+ years in an operationally focused security practitioner role. * 5+ years' experience working with business leadership and with fiscal responsibilities. * 3+ years' experience working with product and/or data teams to ensure that security is woven into each product based on company policies and standards. * 3+ years of experience handling tough conversations with customers. * 3+ years of people management/leadership experience. * Strong written and verbal communication skills across all levels of the organization. * Driven to build a strong, cohesive team and positive enterprise-wide security culture. * Proven high integrity, trustworthiness and confidence, and ability to represent the company and security leadership with the highest level of professionalism. * Ability to effectively manage stress in a constantly changing environment. * Strategic vision and ability to successfully collaborate with and influence others. * Strong project management and organizational skills. * Proven experience with National Institute of Technology (NIST) standards or California Consumer Privacy Act (CCPA) or Health Information Portability and Accountability Act (HIPAA) or HITRUST or SOC2 * Demonstrated understanding and comprehension of a wide range of cybersecurity solutions. Preferred Qualifications: * Master's or other advanced degree (MBA, information assurance, computer science, etc.) * 8+ years of related security systems administration. * Relevant certification/s such as CISSP, CISM, CRISC, CISA, or similar. * Experience with agile methodology and ability to negotiate to get work prioritized. * Experience using AI for business improvements. * Experience in a similar role with large, complex organization/s. * Experience in the healthcare industry. Travel: Within the U.S. as needed for meetings etc. #LI-HYBRID Surescripts embraces flexibility through its Flexible Hybrid Work model for most positions. This model allows employees to work virtually while still utilizing our offices as collaboration centers. With alignment and agreement from your leadership, you can come and go from the office as needed. To be considered for employment, applicants must have a valid U.S. work authorization allowing work without restrictions with Surecripts in the U.S. At this time, we are unable to provide support or provide sponsorship for immigration benefits such as work visas. Additionally, we do not participate in academic training programs or work-study programs through an academic institution that require employer endorsement of F-1/CPT or F-1/STEM. What You're Like You're technical. Analytical. Imaginative. Maybe you're building your own crypto-mining rig-or not. Either way, your mind works to anticipate vulnerabilities and protect the company and its information against those vulnerabilities. You do the right thing because it's the right thing without seeking to point fingers or brag. And of course, you're always willing to keep learning. What We're Like We're a team of friendly folks who do serious work. Our best work is done by rising to the occasion under stress, but we keep each other cool under pressure. We're a tight team but we also look for ways to partner across the business. Our style is casual and laid back, but we shoulder our responsibility to protect patient data from sophisticated adversaries, which sometimes means delivering a difficult truth. What the Work is Like Our challenge is to protect our customers' data and our company. This requires anomaly analysis, risk reviews, pen testing of our controls, red-teaming and tabletops, policy and procedure work, documentation, and audits. We also engineer and maintain our security products and tools. It's not always a typical 9-to-5 gig, of course, but then again, you work in information security, so you already know that. Why Wait? Apply Now We're a midsize company. This means you're not just another employee ID number. Here, you can build real relationships and feel supported by truly awesome people with diverse backgrounds and talents in an innovative and collaborative work culture. We strive to create an environment where you can be yourself, share your ideas and work your way. We offer opportunities for employee development, as well as competitive compensation packages and extensive benefits. At Surescripts, base pay is one part of our Total Rewards Package (which may also include bonus, benefits etc.) and is determined within a range. The base pay range for this position is $199,900 - $244,300 per year. Your base pay may vary within or outside of this range depending on a number of factors, including (but not limited to) your qualifications, skills, experience, and location. Benefits include, but are not limited to, comprehensive healthcare (including infertility coverage), generous paid time off including paid childbirth and parental leave and mental health days, pet insurance, and 401(k) with company match and immediate vesting. To learn more, review the Keep You and Yours Healthy, Balancing Work and Life, and Where Talent Takes Shape links under the Better Benefits. Better Work. Better Life section of our careers site. Physical and Mental Requirements While performing duties of this job, an employee may be required to perform any, or all of the following: attend meetings in and out of the office, travel, communicate effectively (both orally and in writing), and be able to effectively use computers and other electronic and standard office equipment with, or without, a reasonable accommodation. Additionally, this job requires certain mental demands, including the ability to use judgement, withstand moderate amounts of stress and maintain attention to detail with, or without, a reasonable accommodation. Surescripts is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate on the basis of race, color, religion, age, national origin, ancestry, disability, medical condition, marital status, pregnancy, genetic information, gender, sexual orientation, parental status, gender identity, gender expression, veteran status, or any other status protected under federal, state, or local law.
    $199.9k-244.3k yearly Auto-Apply 29d ago
  • Information Security (Guardium)

    Ask It Consulting

    Security architect job in Raleigh, NC

    Ask IT Consulting Inc. visualizes itself as a leader in IT services and staffing in coming years. With strong dedication and commitment of our employees, we would surpass all our competitors establishing the wider channel of media marketing building a better connection with clients. Job Description Hi, This is Sumit with Ask ITC Inc. which is backed by a $500 million Microtek group company, provides an industry leading blend of technology, business consulting, and outsourcing services. Ask IT is a minority-owed enterprise; it has been founded on providing the highest quality possible and on the devotion to customer satisfaction. Position : Information Security (Guardium) Location : Raleigh NC Duration 12 + Months Short Description: The NCDOT IT Information Security Office (ISO) requires a senior information security professional, specializing in database vulnerability and threat management (VTM) utilizing and administrating IBM Guardium. Complete Description :* The NCDOT IT Information Security Office (ISO) requires a senior information security professional, specializing in database vulnerability and threat management (VTM) and monitoring for all NCDOT IT database systems. A majority of this resource's responsibilities will be vulnerability tool administration, setup and scheduling, vulnerability assessment and risk ranking for critical IT database systems. This resource should possess senior technical skillsets as well as senior soft skills as this resource will lead database VTM efforts and strategy for the agency. This resource should possess senior skillsets in preparing reports and presentations to senior management on the status, rate of improvement and overall efficacy of database VTM and monitoring efforts across an enterprise. This resource must have experience administrating, utilizing and designing implementations of IBM Guardium on mainframe DB2 and distributed systems. Thanks and Regards, Sumit Gupta Technical Recruiter | ASK IT Consulting Inc. Women Owned Minority Certified Enterprise Address: # 33 Peachtree Court Holtsville, NY 11742 Phone: *************** Ext- 4401 Fax: *************** E: sumit.guptaaskitc.com|W: **************
    $101k-152k yearly est. 60d+ ago
  • VP & Chief Information Security Officer

    Flexential

    Security architect job in Charlotte, NC

    Reporting to the Chief Information Officer, the Vice President & Chief Information Security Officer (CISO) is a key executive leader who acts as a strategic business partner and enabler of scalable growth, not just a technical guardian. This leader will design and execute an adaptive, automated, and business-integrated cybersecurity strategy that protects the company's information assets while proactively positioning security as a competitive advantage. The CISO will evolve the company's security posture by embedding automation and a "secure by design" culture into all operational and product development processes. Reporting to the highest level of leadership, this role is responsible for translating technical risks into quantifiable business impacts, ensuring continuous compliance, and driving a company-wide security mindset. The CISO will build a resilient and innovative security organization that accelerates, rather than hinders, a high-growth business, all while building and maintaining trust with customers, partners, and the market. Key Responsibilities and Essential Job Functions Enterprise Security Strategy & Governance: * Design and implement a scalable security strategy and governance model that aligns with business objectives, is adaptable, and anticipates the unique risks and requirements of hypergrowth. * Design and execute a forward-looking cybersecurity strategy that supports innovation while maintaining customer trust and competitive differentiation, proactively positioning security as a competitive advantage that builds and sustains stakeholders' trust at scale. * In partnership with Compliance Team, maintain and enhance compliance posture across multiple frameworks including SOC 2, ISO 27001, HIPAA, PCI DSS, GDPR, and CCPA 2.0. * Establish automated, risk-based security governance frameworks and controls that scale effortlessly with the business, enabling decentralized and informed decision-making. Operational Security & Resilience * Lead enterprise-wide threat detection, vulnerability management (TVM), and incident response programs with measurable effectiveness metrics. * Instantiate security-as-code and automated frameworks for architecture, engineering, and operations to eliminate manual toil and support hypergrowth. * Improve an operationalized proactive cyber resilience program focused on minimizing business impact during and after a security event. * Lead the evolution of the SOC, leveraging automation and threat intelligence to achieve 24/7 coverage with maximum efficiency, and transition it towards a data-driven security-as-a-service model. * Define and track business-oriented security metrics and key risk indicators (KRIs) that directly inform business leaders on risk exposure and the effectiveness of security investments. * Drive continuous improvement in mean time to detect (MTTD) and mean time to respond (MTTR). Compliance & Risk Management * Build a continuous compliance framework, using automation to maintain real-time audit readiness and demonstrate control effectiveness with minimal friction for product and engineering teams. * Embed security and privacy by design into the product development lifecycle, enabling rapid innovation while meeting and exceeding customer expectations. * Lead enterprise risk assessment programs and maintain a comprehensive risk register with clear mitigation strategies. * Develop a risk quantification program to translate technical risks into business impacts and inform data-driven investment decisions for the executive team and board. Leadership & Strategic Engagement * Act as a strategic business partner to the CEO, C-suite, and board, using deep business acumen to align security with Flexential's growth objectives. * Equip the sales and customer success teams to confidently communicate our security story, turning our security posture into a key enabler for winning and retaining enterprise customers. * Scale security culture throughout the organization by empowering all teams to own their security, moving from a centralized security gatekeeper model to a decentralized security enablement model. * Represent Flexential externally with customers, prospects, regulators, auditors, and industry organizations as a cybersecurity thought leader. * Build strategic relationships with peer CISOs, industry groups, and security vendor partners. People Leadership & Organizational Development * Build and mentor a high-performing security organization that is structured for scale, leveraging automation and delegation to maximize impact and embed security ownership across engineering and product teams. * Cultivate an innovative and collaborative security culture that empowers the business to move fast securely, positioning the security team as an accelerator, not a roadblock. * Create psychological safety that allows teams to learn from setbacks and continuously improve. * Establish clear goals, performance metrics, and accountability frameworks aligned with organizational objectives. * Implement structured career development paths and succession planning within the security organization. Required Qualifications * Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or related field. * 10+ years of progressive experience in information security, risk management, or IT leadership roles. * 5+ years in a senior leadership position, preferably as a CISO, VP of Security, or equivalent executive role. * Demonstrated success building and scaling enterprise security programs in high-growth or complex environments. * Deep knowledge of compliance and regulatory frameworks including SOC 2, ISO 27001, HIPAA, PCI DSS, GDPR, and CCPA. * Proven experience managing multi-million-dollar budgets and demonstrating ROI on security investments. * Exceptional executive presence with demonstrated ability to communicate effectively with boards, C-suite executives, customers, and technical teams. * Experience leading incident response and crisis management in enterprise environments. Preferred Qualifications * Master's degree in Cybersecurity, Business Administration, Risk Management, or related discipline * Industry-recognized certifications such as CISSP, CISM, CISA, CCISO, CGEIT, or equivalent * Experience in hybrid cloud, SaaS, colocation, or data center environments * Track record of supporting revenue growth through security as a sales enabler and customer differentiator * Background in regulated industries or managing security for service provider environments * Experience with security transformation initiatives and modern security architecture patterns (Zero Trust, SASE, etc.) Physical Requirements * Prolonged periods of sitting at a desk and working on a computer in an office environment * Ability to travel up to 20% for customer meetings, audits, conferences, or industry events * Flexibility for after-hours availability to respond to security incidents, crises, or critical business needs * Ability to work effectively in a fast-paced, dynamic environment with competing priorities Base Pay Range: Annualized salary range offered for this position is estimated to be $235,000 - $275,000. However, the actual pay range depends on each candidate's experience, location, and qualifications. Variable Pay: Discretionary annual bonus, based on personal and company performance. Flexential participates in the E-Verify program. Please click here for more information. #LI-Hybrid This position has the following safety hazards: ☒ Ergonomics ☒ Trip/Fall ☒ Driving (must possess valid driver's license and insurance) Not meeting every single requirement? No problem! We are looking for candidates who possess unique skills that set them apart from the rest. If you're enthusiastic about this role and believe you have the skills and abilities that would make you successful, don't hesitate to apply today! Benefits of working at Flexential: * Medical, Telehealth, Dental and Vision * 401(k) * Health Savings Accounts (HSA) and Flexible Spending Accounts (FSA) * Life and AD&D * Short Term and Long-Term disability * Flex Paid Time Off (PTO) * Leave of Absence * Employee Assistance Program * Wellness Program * Rewards and Recognition Program Benefits are subject to change at the Company's discretion. EEO Statement: Flexential is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity or expression, pregnancy, age, national origin, disability status, genetic information, protected veteran status, or any other characteristic protected by law.
    $88k-133k yearly est. Auto-Apply 24d ago
  • Information Systems Security Officer (ISSO)

    Contact Government Services, LLC

    Security architect job in Charlotte, NC

    ISSOEmployment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements. CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities. Skills and attributes for success:- Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. - Maintain responsibility for managing cybersecurity risk from an organizational perspective. - Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership.- Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies.- Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO).- Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes.- Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF.- Provide subject matter expertise for cyber security and trusted system technology. - Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems.- Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. - Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring.- Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems. Qualifications:- Bachelor's Degree.- A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc.- eMASS experience.- Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher.- Strong desktop publishing skills using Microsoft Word and Excel.- Experience with industry writing styles such as grammar, sentence form, and structure.- Ability to multi-task in a deadline-oriented environment. Ideally, you will also have:- CISSP, CASP, or a similar certificate is preferred.- Master's Degree in Cybersecurity or related field.- Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking.- Demonstrated ability to work well independently and as a part of a team.- Excellent work ethic and a high commitment to quality. Our Commitment:Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems. For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work. Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come. We care about our employees. Therefore, we offer a comprehensive benefits package.Health, Dental, and VisionLife Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Join our team and become part of government innovation!Explore additional job opportunities with CGS on our Job Board:**************************************** more information about CGS please visit: ************************** or contact:Email: ******************* #CJ
    $61k-83k yearly est. Auto-Apply 60d+ ago
  • Information Security Manager

    Infovisa

    Security architect job in Cornelius, NC

    FLSA Status: Exempt Immediate Supervisor: CISO Date Revised: February 18, 2025 The Information Security Manager is a hands-on/ working manager position that defines, implements and monitors security policy for on-prem, cloud, and remote access deployments. The primary duty of the job is to maintain a security posture that allows the business to thrive while preventing a security breach. The IS Manager hires, retains, and trains an IS Engineer to assist with day-to-day duties. The IS team maintains on-premises firewall rules and active directory as well as overseeing vulnerability management. In the cloud, the IS Manager is responsible for designing security measures, and the IS team is responsible for their implementation and monitoring. The IS team also designs, implements, and maintains a remote access VPN for associates when working outside the corporate offices. Essential Functions: Demonstrate an understanding of all applications deployed, and data stored within the enterprise. Demonstrate an understanding of security measures that are in place and their role in securing the enterprise. Assess the threat of zero-day vulnerabilities and third-party risk to the enterprise. Take action to remediate such vulnerabilities. Effectively report status to executive management in terms of the threat level and associated risk. Assess risks related to general threat landscape. Identify, design and implement controls to mitigate those threats and prevent security breaches. Measure, monitor, and report on vulnerabilities that have been identified within the enterprise. Maintain on-premises firewall rules; maintain cloud security settings and restrictions; maintain remote access rules and restrictions. Identify new security related vendors as needed and assist in evaluating new and existing vendors from a security perspective. Participate and communicate effectively in external audits, third-party vulnerability scans, and regulatory examinations. Maintain, comply with, and develop Infovisa's policies, procedures, and strategies to provide a safe and efficient environment for Infovisa software to run and associates to work. Liaison with IT-ISAC, InfraGard, and other industry groups. Manage projects and create detailed technical documentation. Hire, train, mentor and manage associates on the security team. Qualifications: 10 years of information security experience required. Three years of management experience. Displays strong technical aptitude with IT Security, VPN, Endpoint Detection and Response, IIS, networking concepts and technologies, and other third-party and internally developed tools and technologies. Prefer familiarity with Check Point technologies. Prefer one or more applicable network security certifications. Valid driver's license. Four-year degree in information technology / systems, or computer science. Preferred Talents: Analytical and detailed. Effective communicator technically, in the board room, and with customers and coworkers. Organized. Independent with good judgment. Proven ability to multitask and prioritize projects. Self-directed and takes initiative. Working Environment: Mostly indoor work with occasional exposure to outdoor elements or hazards. Medium workload - lifting and/or carrying up to 20 pounds frequently and exerting up to 75 pounds of force occasionally. Some travel required. Weekend, evening and on-call. About Infovisa Infovisa is a leading provider of financial technology solutions delivered to forward-thinking trust, wealth management, and retirement professionals. Infovisa's solutions empower its clients to acquire new customers, invest assets effectively, manage trust and investment portfolios efficiently, and flexibly report results to customers. For more information about Infovisa, visit ***************** Follow us on LinkedIn. We are interested in every qualified candidate who is lawfully eligible to work in the United States. However, we are unable to sponsor visas. Infovisa, Inc. is an Equal Opportunity Employer.
    $98k-143k yearly est. Auto-Apply 60d+ ago
  • Information Security Manager

    Infovisa, Inc.

    Security architect job in Cornelius, NC

    Job Description FLSA Status: Exempt Immediate Supervisor: CISO Date Revised: February 18, 2025 The Information Security Manager is a hands-on/ working manager position that defines, implements and monitors security policy for on-prem, cloud, and remote access deployments. The primary duty of the job is to maintain a security posture that allows the business to thrive while preventing a security breach. The IS Manager hires, retains, and trains an IS Engineer to assist with day-to-day duties. The IS team maintains on-premises firewall rules and active directory as well as overseeing vulnerability management. In the cloud, the IS Manager is responsible for designing security measures, and the IS team is responsible for their implementation and monitoring. The IS team also designs, implements, and maintains a remote access VPN for associates when working outside the corporate offices. Essential Functions: Demonstrate an understanding of all applications deployed, and data stored within the enterprise. Demonstrate an understanding of security measures that are in place and their role in securing the enterprise. Assess the threat of zero-day vulnerabilities and third-party risk to the enterprise. Take action to remediate such vulnerabilities. Effectively report status to executive management in terms of the threat level and associated risk. Assess risks related to general threat landscape. Identify, design and implement controls to mitigate those threats and prevent security breaches. Measure, monitor, and report on vulnerabilities that have been identified within the enterprise. Maintain on-premises firewall rules; maintain cloud security settings and restrictions; maintain remote access rules and restrictions. Identify new security related vendors as needed and assist in evaluating new and existing vendors from a security perspective. Participate and communicate effectively in external audits, third-party vulnerability scans, and regulatory examinations. Maintain, comply with, and develop Infovisa's policies, procedures, and strategies to provide a safe and efficient environment for Infovisa software to run and associates to work. Liaison with IT-ISAC, InfraGard, and other industry groups. Manage projects and create detailed technical documentation. Hire, train, mentor and manage associates on the security team. Qualifications: 10 years of information security experience required. Three years of management experience. Displays strong technical aptitude with IT Security, VPN, Endpoint Detection and Response, IIS, networking concepts and technologies, and other third-party and internally developed tools and technologies. Prefer familiarity with Check Point technologies. Prefer one or more applicable network security certifications. Valid driver's license. Four-year degree in information technology / systems, or computer science. Preferred Talents: Analytical and detailed. Effective communicator technically, in the board room, and with customers and coworkers. Organized. Independent with good judgment. Proven ability to multitask and prioritize projects. Self-directed and takes initiative. Working Environment: Mostly indoor work with occasional exposure to outdoor elements or hazards. Medium workload - lifting and/or carrying up to 20 pounds frequently and exerting up to 75 pounds of force occasionally. Some travel required. Weekend, evening and on-call. About Infovisa Infovisa is a leading provider of financial technology solutions delivered to forward-thinking trust, wealth management, and retirement professionals. Infovisa's solutions empower its clients to acquire new customers, invest assets effectively, manage trust and investment portfolios efficiently, and flexibly report results to customers. For more information about Infovisa, visit ***************** Follow us on LinkedIn. We are interested in every qualified candidate who is lawfully eligible to work in the United States. However, we are unable to sponsor visas. Infovisa, Inc. is an Equal Opportunity Employer. Powered by JazzHR RoeJ7o0DcN
    $98k-143k yearly est. 16d ago
  • Sr. Security Analyst

    Procom Consultants Group 4.2company rating

    Security architect job in Durham, NC

    Procom is a leading provider of professional IT services and staffing to businesses and governments in Canada. With revenues over $500 million, the Branham Group has recognized Procom as the 3rd largest professional services firm in Canada and is now the largest “Canadian-Owned” IT staffing/consulting company. Procom's areas of staffing expertise include: • Application Development • Project Management • Quality Assurance • Business/Systems Analysis • Datawarehouse & Business Intelligence • Infrastructure & Network Services • Risk Management & Compliance • Business Continuity & Disaster Recovery • Security & Privacy Specialties• Contract Staffing (Staff Augmentation) • Permanent Placement (Staff Augmentation) • ICAP (Contractor Payroll) • Flextrack (Vendor Management System) Job Description Sr. Security Analyst On behalf of our client, Procom Services is searching for a Sr. Security Analyst for a contract opportunity in Durham, NC. Sr. Security Analyst Job Details Responsible for user account administration in a multi-platform environment and ensure that administration procedures are aligned with overall Information Security policies and standards. Assist in the development of access controls to safeguard customer systems against accidental or unauthorized modification, destruction or disclosure. Maintain user access to securable customer system resources (UNIX, OS390 Mainframe, iSeries, Windows / Active Directory, Outlook Exchange) performing tasks such as: creation / configuration of user logon Ids and updating access control lists, access provisioning and access removals and access terminations. Perform detailed analysis of access requests/processes and provide recommendations for improvement to senior team members and Information Security management. Educate information / resource owners in the implementation of necessary information security controls. Perform standard and non-standard processing of security authorization requests. Work with resource owners to determine appropriate security policies for securable customer resources. Provide on-call support for after-hours system access issues and troubleshoot system access problems and failures. Report suspected information security misuse to manager or director. Assist resource owners and IT staff in understanding and responding to security access exceptions. Sr. Security Analyst Mandatory Skills - Bachelor's degree in Computer Science. - 2 years of security administration experience, or related technical system administration experience. - In lieu of degree 5 years of security administration experience. - Familiarity with audit and risk-related methodologies; such as COBIT and HIPAA. - Systems administration experience within other aspects of IT - Demonstrated security administration experience on two or more platforms (UNIX, OS390 Mainframe, iSeries, Windows / Active Directory, Outlook Exchange) - Demonstrated experience working with a managed services organization. - Demonstrated experience working with a request ticketing system, such as Triole. - Strong analytical and problem-solving skills. - Ability to present and discuss technical information to users with varying technical expertise. - Proven ability to work under stress in emergencies. Flexibility to handle pressure from many directions simultaneously. - Must be detail-oriented with a high level of accuracy. - Excellent written and verbal communication skills. - Demonstrated ability to develop and maintain collaborative working relationships across multiple teams. - Strong customer focus and the ability to manage customer expectations. - Must have strong team-oriented interpersonal skills and the ability to effectively interface with a wide variety of people. - Demonstrated commitment to continuous process improvement. - CISSP, CISA, or other security / audit / field related certifications a plus Sr. Security Analyst Start Date ASAP Sr. Security Analyst Assignment Length 7+ months Additional Information All your information will be kept confidential according to EEO guidelines. Please send your resume in Word format only.
    $75k-95k yearly est. 1h ago

Learn more about security architect jobs

Do you work as a security architect?

What are the top employers for security architect in NC?

SMBC

Cncsinfotech

Sumitomo Mitsui Banking Corporation

Top 10 Security Architect companies in NC

  1. Ally

  2. SMBC

  3. SHI International

  4. Cisco

  5. Motion Recruitment

  6. Cncsinfotech

  7. Sumitomo Mitsui Banking Corporation

  8. Archer

  9. Deloitte

  10. Citizens Financial Group

Job type you want
Full Time
Part Time
Internship
Temporary

Browse security architect jobs in north carolina by city

All security architect jobs

Jobs in North Carolina