Cloud Security Architect
Job Description
Job Description
Are you a cloud security expert with deep experience across AppSec, InfoSec, infrastructure, and DLP? Do you want to help shape, design, and execute secure architectures across Azure and AWS while managing complex enterprise security initiatives? If so, then you might be Fivesky's next Cloud Security Architect !
Who you are:
- Bachelor's degree is required in Computer Science or Computer Engineering, or Computer Information Systems.
- Experienced in Cloud Security Architecture or as an Information Security Engineer, specifically with enterprise-grade systems.
- Deeply familiar with cloud platforms like Azure and AWS, including services across IaaS and PaaS environments.
- Comfortable working in regulated, enterprise environments with complex security and compliance requirements.
- Able to create processes, develop and design plans, and manage security team execution.
- Experienced in stakeholder collaboration, documentation, and the delivery of security solutions at scale.
It would be awesome if you had:
- Experience onboarding complex applications and leading cloud migration efforts from on-prem to cloud.
- Proven ability to design and implement security solutions aligned to industry best practices and regulatory standards.
- A history of writing and maintaining cloud security documentation, standards, and Security Reference Architectures.
- Hands-on experience acting as an SME for AppSec, InfoSec, or infrastructure security across cloud environments.
- Conduct collaborations across architecture and engineering teams in large organizations.
What you will do:
- Create processes, develop and design plans and manage security team execution.
- Work closely with stakeholders and present documentation and security solutions
- Act as an SME when it involves AppSec, InfoSec, or Infrastructure security around Cloud, designing and architecting solutions for your organization.
- Collaborate with other teams involved in architecture design.
- Identify potential risks of projects, document and address those risks and work with other teams to resolve the issue.
- Work with design, testing, and integration of security controls within an Enterprise environment.
- Provide hands-on direction with application, technology risk management, and/or infrastructure security assignments.
- Assess current security processes and offer recommendations to all levels within the organization up to the C Suite.
- Perform thorough documentation of the development and implementation of processes.
- Define strategy for the secure use of cloud services. Develop security requirements governing the use of individual cloud services and collections of cloud services in a design pattern.
- Document security controls, requirements, designs, and configurations.
- Engage proactively with customers to better understand their needs and risks.
- Assess current risk associated with cloud services, and the change in risk posture over time as cloud security controls are implemented.
- Advise Data Loss Policy development as per company's evolving business needs and configure DLP policies to prevent data loss in email and web traffic.
- Perform DLP three-tier installations and version upgrades for production, along with conducting periodic health checks and performance assessments.
- Create procedures and workflows for production deployment and publish fixes in knowledge base.
- Configure Network scans on appropriate DLP detection servers to identify stored sensitive information at-rest and quarantine data classified as Restricted.
- Generate data indexes/fingerprints remotely to be later used in detection rules within DLP policies for exact data match (EDM) detection.
- Integrate/Extend DLP capabilities to cloud applications for monitoring protected data-in-motion and data-at-rest using Cloud Access Security (MCAS/CASB).
- Automate various aspects of security procedures using scripting languages based on Operating system in use.
- Configure detection server settings to route network traffic through specific TCP ports for different network protocols.
- Build DLP detection rules to monitor information being stored and transferred over different TCP ports from endpoint devices.
- Configure prevent actions for protocols like FTP, SMTP, SMB, SFTP, etc., including web block, email encryption and quarantine response rules for outgoing traffic.
- Troublehoot Network issues relating to Firewall, traffic routing, network proxy, gateway — involving application and transport layer network protocols.
- Develop Proxy auto config (PAC) files to route network traffic through defined proxy servers and configure IP addresses of specific 'Network Prevent' DLP detection servers to use ICAP protocol.
- Understand network diagrams and network technologies like VPN tunneling, Network Address Translation (NAT), OSI model, LAN/WAN, SSL, packet trace analysis, etc., for structuring the DLP network architecture and network traffic routing.
- Collaborate with Operations team to support troubleshooting of production issues and perform root cause analysis on data loss due to detection fails on network or email traffic from the DLP system.
Who we are:
- Fivesky is a fast-growing, global technology solution provider. We partner with the world's largest financial service firms to deliver networking/infrastructure, cybersecurity, and cloud-based solutions for complex, global projects.
- At Fivesky, our employees are our greatest asset, and we strive to build a strong team culture centered on highly competitive compensation, professional development, career advancement, and fun.
- This is an FTE position in Arlington, VA or unanticipated client sites within the US . The compensation package is based on experience and qualifications. The base salary range for this role is $ 173,056 - $180,000 per year. Benefits include: PTO/ paid sick leave, holidays, Health, Dental and Vision insurance, Retirement.
- Fivesky is an equal-opportunity employer. Fivesky prohibits discrimination and harassment of any type and affords equal employment opportunities to employees and applicants without regard to race, sex, age, color, religion, national origin, sexual orientation, disability status, genetic information, protected veteran status (United States positions), or any other characteristic protected by law.
- Mail Resumes to:Fivesky, LLC, 1 Pennsylvania Plaza, Suite #2222, New York, NY 10119
(FS-RID-0467)
Recommended Jobs
Senior Manager, Contracts Administration
Program Overview About The Role **Position is contingent upon award** Peraton is currently seeking Senior Managers, Contracts Administration to lead workstream contracts teams in support o…
Radiologic Technologist (Mon-Wed)- nights (3 12's)
Job Description A Radiologic Technologist uses radiation and electromagnetism to create diagnostic images of the body, and may also administer radiation therapy. They prepare patients for imaging …
Regional Sales Associate (Roofing)
CentiMark Corporation has an exceptional opportunity for an additional, full-time Regional Sales Representative to support our Sales Teams in the Virginia Mountain Region. This individual will…
Custodian Janitor
Job Description Job Description We are seeking a Custodian Janitor to join our team! You will be responsible for maintaining a clean and orderly environment. Responsibilities: Keep building…
Veterinary Assistant, Overnight
The Virginia Veterinary Center in Short Pump, VA is hiring a full- time Veterinary Assistant to join our ER team! This position would be on our overnight team, 7pm - 7am. We offer a shift differentia…
Data Center Lead
Description We are seeking 2 experienced Data Center Leads to support our customer's fitout in Ashburn, VA. These leads will oversee structured cabling teams, manage hardware installations, and en…
Operator I Conversion-3rd Shift
Mativ is a global leader in specialty materials headquartered in Alpharetta, Georgia. The Company offers a wide range of critical components and engineered solutions that connect, protect, and purify…
Assistant Manager
Job Description Job Description Reports to General Manager -Perform all duties of Inshoppers and drivers. -Manages a staff of approximately 3 to 50 employees. Assigns, oversees and evaluat…
Sales Lead
Job Description Job Description Sales lead opening with a growing digital marketing & advertising agency This Jobot Job is hosted by: Melanie Courtney Are you a fit? Easy Apply now by click…
Coder III
Overview At Augusta Health, your work matters — and so do you. Whether you're delivering direct patient care, supporting operations, or innovating behind the scenes, every role contributes to our mi…