$85/hr on C2C
2001 Ross Ave #2800 Dallas TX 75201
Glider Skills:
threat modelling methodologies
infrastructure components
SaaS security
Design Review Security Frameworks
Controls Mapping Infrastructure Security Architecture Key
Skill 1 12 Yrs of Exp security architecture or related security design roles ideally in the financial services sector.
Skill 2 12 Yrs of Exp threat modelling methodologies (e.g. STRIDE DREADPASTA MITRE ATT&CK mapping).
Skill 3 12 Yrs of Exp infrastructure components (servers databases APIs middleware networks containers virtualization).
Skill 4 12 Yrs of Exp cloud and SaaS security principles integrations and shared responsibility models.
Skill 5 12 Yrs of Exp application security concepts and testing practices (SAST/DAST) even if not directly performing them.
Skill 6 12 Yrs of Exp security architectural patterns frameworks and standards (NIST ISO SABSA TOGAF OWASP CIS Benchmarks).
Skill 7 12 Yrs of Exp create and document security design guidelines and reusable patterns.
Skill 8 12 Yrs of Exp-infrastructure security architecture within large enterprise environments.
Skill 9 12 Yrs of Exp-network server storage and cloud infrastructure components
Skill 10 12 Yrs of Exp-compliance and security frameworks like NIST CIS and ISO 27001.
Mandatory skills:
- Threat Modelling & Design Review Security Frameworks & Controls Mapping Infrastructure Security Architecture Key
Responsibilities:
- Perform threat modelling on application and infrastructure designs to identify risks vulnerabilities and attack vectors.
- Review application components and underlying infrastructure (servers databases middleware APIs networks cloud connectors etc.) from a threat perspective.
- Recommend mitigating controls design changes and security enhancements to ensure projects can be securely approved.
- Identify recurring risks and develop standard security design patterns and best practices to be used across the organization.
- Provide architecture-level guidance for both on-premise solutions and SaaS/integrated applications.
- Collaborate with enterprise architects infrastructure teams DevOps and project managers to embed security early in the design phase.
- Ensure adherence to industry frameworks and organizational security policies (e.g. NIST CSF ISO 27001 CIS OWASP).
- Act as a trusted advisor to project teams by balancing business objectives with strong security outcomes.
- Contribute to security architecture governance review boards and approval processes.
- Conduct design reviews and threat modelling for core infrastructure components.
- Map infrastructure designs to relevant security control frameworks (e.g. NIST CIS ISO 27001).
- Define and document reusable security patterns and reference architectures.
- Collaborate with architecture engineering and DevOps teams to embed security in infrastructure.
- Evaluate new technologies and third-party services from a security perspective.
- Contribute to policy and standards development to support security-by-design principles.
Required Skills & Experience:
- Proven experience (7 years) in security architecture or related security design roles ideally in the financial services sector.
- Hands-on experience with threat modelling methodologies (e.g. STRIDE PASTA MITRE ATT&CK mapping).
- Strong understanding of infrastructure components (servers databases APIs middleware networks containers virtualization).
- Knowledge of cloud and SaaS security principles integrations and shared responsibility models.
- Familiarity with application security concepts and testing practices (SAST/DAST) even if not directly performing them.
- Strong knowledge of security architectural patterns frameworks and standards (NIST ISO SABSA TOGAF OWASP CIS Benchmarks).
- Ability to create and document security design guidelines and reusable patterns.
- Strong communication and stakeholder management skills-able to convey complex technical risks in business-friendly language.
- Relevant certifications are a plus (e.g. SABSA TOGAF CISSP).
- Strong experience in infrastructure security architecture within large enterprise environments.
- Deep knowledge of network server storage and cloud infrastructure components.
- Expertise in threat modelling methodologies (e.g. STRIDE DREAD).
- Familiarity with compliance and security frameworks like NIST CIS and ISO communication and documentation skills.
- Ability to influence cross-functional teams and drive secure architectural decisions.
$85/hr on C2C 2001 Ross Ave #2800 Dallas TX 75201 Glider Skills: threat modelling methodologies infrastructure components SaaS security Design Review Security Frameworks Controls Mapping Infrastructure Security Architecture Key Skill 1 12 Yrs of Exp security architecture or relat...
$85/hr on C2C
2001 Ross Ave #2800 Dallas TX 75201
Glider Skills:
threat modelling methodologies
infrastructure components
SaaS security
Design Review Security Frameworks
Controls Mapping Infrastructure Security Architecture Key
Skill 1 12 Yrs of Exp security architecture or related security design roles ideally in the financial services sector.
Skill 2 12 Yrs of Exp threat modelling methodologies (e.g. STRIDE DREADPASTA MITRE ATT&CK mapping).
Skill 3 12 Yrs of Exp infrastructure components (servers databases APIs middleware networks containers virtualization).
Skill 4 12 Yrs of Exp cloud and SaaS security principles integrations and shared responsibility models.
Skill 5 12 Yrs of Exp application security concepts and testing practices (SAST/DAST) even if not directly performing them.
Skill 6 12 Yrs of Exp security architectural patterns frameworks and standards (NIST ISO SABSA TOGAF OWASP CIS Benchmarks).
Skill 7 12 Yrs of Exp create and document security design guidelines and reusable patterns.
Skill 8 12 Yrs of Exp-infrastructure security architecture within large enterprise environments.
Skill 9 12 Yrs of Exp-network server storage and cloud infrastructure components
Skill 10 12 Yrs of Exp-compliance and security frameworks like NIST CIS and ISO 27001.
Mandatory skills:
- Threat Modelling & Design Review Security Frameworks & Controls Mapping Infrastructure Security Architecture Key
Responsibilities:
- Perform threat modelling on application and infrastructure designs to identify risks vulnerabilities and attack vectors.
- Review application components and underlying infrastructure (servers databases middleware APIs networks cloud connectors etc.) from a threat perspective.
- Recommend mitigating controls design changes and security enhancements to ensure projects can be securely approved.
- Identify recurring risks and develop standard security design patterns and best practices to be used across the organization.
- Provide architecture-level guidance for both on-premise solutions and SaaS/integrated applications.
- Collaborate with enterprise architects infrastructure teams DevOps and project managers to embed security early in the design phase.
- Ensure adherence to industry frameworks and organizational security policies (e.g. NIST CSF ISO 27001 CIS OWASP).
- Act as a trusted advisor to project teams by balancing business objectives with strong security outcomes.
- Contribute to security architecture governance review boards and approval processes.
- Conduct design reviews and threat modelling for core infrastructure components.
- Map infrastructure designs to relevant security control frameworks (e.g. NIST CIS ISO 27001).
- Define and document reusable security patterns and reference architectures.
- Collaborate with architecture engineering and DevOps teams to embed security in infrastructure.
- Evaluate new technologies and third-party services from a security perspective.
- Contribute to policy and standards development to support security-by-design principles.
Required Skills & Experience:
- Proven experience (7 years) in security architecture or related security design roles ideally in the financial services sector.
- Hands-on experience with threat modelling methodologies (e.g. STRIDE PASTA MITRE ATT&CK mapping).
- Strong understanding of infrastructure components (servers databases APIs middleware networks containers virtualization).
- Knowledge of cloud and SaaS security principles integrations and shared responsibility models.
- Familiarity with application security concepts and testing practices (SAST/DAST) even if not directly performing them.
- Strong knowledge of security architectural patterns frameworks and standards (NIST ISO SABSA TOGAF OWASP CIS Benchmarks).
- Ability to create and document security design guidelines and reusable patterns.
- Strong communication and stakeholder management skills-able to convey complex technical risks in business-friendly language.
- Relevant certifications are a plus (e.g. SABSA TOGAF CISSP).
- Strong experience in infrastructure security architecture within large enterprise environments.
- Deep knowledge of network server storage and cloud infrastructure components.
- Expertise in threat modelling methodologies (e.g. STRIDE DREAD).
- Familiarity with compliance and security frameworks like NIST CIS and ISO communication and documentation skills.
- Ability to influence cross-functional teams and drive secure architectural decisions.
View more
View less