Cyber Senior Solutions Architect
Amarillo, TX - USA
Job Summary
Location: Amarillo TX - Pantex Plant
Job Title: Cyber Senior Solutions Architect
Career Level From: Specialist
Career Level To: Senior Specialist
Organization: Chief Information Security Off ()
Job Specialty: Cyber Security
As a Senior Solutions Architect with a dedicated cybersecurity specialization you will be a pivotal leader shaping the future of our enterprise security this critical role you will ensure that robust cybersecurity controls are strategically integrated into all designs for applications platforms and Enterprise Information Technology (IT) systems from inception. This involves a deep commitment to building security directly into our Enterprise Architecture.
You will play a critical role in:
- Strategic Cyber Security Vision:Developing and articulating a clear forward-looking cybersecurity vision that balances comprehensive security requirements with critical business functionality and productivity goals. This requires a strong big-picture thinking approach to guide our security roadmap and architectural decisions.
- Enterprise Architecture Cyber Integration:Serving as one of the primary security authorities within our Enterprise Architecture review process ensuring all new and existing system designs rigorously adhere to established cybersecurity standards and architectural principles.
- Zero Trust Architecture (ZTA) Leadership:You will be instrumental in driving our Zero Trust transformation journey as a key solutions architect for cybersecurity.
- Cybersecurity Framework Implementation:Leading the architectural interpretation and implementation of other security best practices review process ensuring alignment with leading security frameworks.
- Proven experienceindevelopingandintegratingrobust cybersecurity designs for systems and networks particularly those with multilevel security requirements or necessitating the processing of multiple classification levels of data applicable primarily to government organizations.
- Demonstrated abilitytoeffectively documentandstrategically addressan organizations information security cybersecurity architecture and systems security engineering requirements throughout the entire acquisition life cycle.
- Track record of successfully employingsecure configuration management processes.
- Adeptness at ensuringthat acquired or developed systems and architectures consistentlyadhereto organizational cybersecurity architecture guidelines.
- Skilled in identifyingandprioritizingcritical business functions through effective collaboration with organizational stakeholders.
- Capability to performcomprehensive security reviewsidentifycritical gaps in security architecture andformulateeffective security risk management plans.
- Proficiency in defininganddocumentingthe security posture impact resulting from the implementation of new systems or new interfaces between existing systems.
- Expertise in evaluatingsecurity architectures and designs todeterminethe adequacy of proposed or provided security solutions in response to requirements outlined in acquisition documents.
- Competence in determining(and documenting) the precise protection needs (i.e. security controls) for complex information systems and networks.
- In-depth knowledgeof business continuity and disaster recovery continuity of operations plans including their development and implementation.
- Demonstrated ability to serveas the primary liaison between enterprise architects and systems security engineers effectivelycoordinatingwith system owners common control providers and system security officers on the appropriate allocation of security controls (system-specific hybrid or common).
- Comprehensive knowledgeof application firewall concepts and functions (e.g. single point of authentication/audit/policy enforcement message scanning for malicious content data anonymization for Payment Card Industry (PCI) and Personally Identifiable Information (PII) compliance data loss protection scanning accelerated cryptographic operations Secure Socket Layer (SSL) security Representational State Transfer (REST)/JavaScript Object Notation (JSON) processing).
- Strong understandingandapplicationof industry-standard and organizationally accepted analysis principles and methods.
- Solid graspof enterprise IT architectural concepts and patterns (e.g. baseline validated design and target architectures).
- Proven capabilitytodesignrobust security architectures and frameworks.
- Skillindetermininghow a security system should function (including its resilience and dependability capabilities) and how changes in conditions operations or the environment will affect these outcomes.
- Familiarity withandability to applyprogram protection planning principles (e.g. IT supply chain security/risk management policies anti-tampering techniques and requirements).
- Knowledgeable inthe installation integration and optimization of complex system components.
- Understanding ofhuman-computer interaction principles as they relate to secure system design.
- Proficiency inremote access technology concepts and their secure implementation.
- Thorough knowledgeof communication methods principles and concepts that support the network infrastructure ensuring secure data flow.
- Bachelors degree in engineering/science/information technology discipline: Minimum 4 years of relevant experience. Typical engineering/science/information technology experience ranging from 6 to 10 years.
- OR Masters degree in engineering/science/information technology discipline: Minimum 2 years of relevant experience.
- OR Applicants without a bachelors degree may be considered based on a combination of at least 12 years of completed education and/or relevant experience.
- Not applicable
- Eight or more years of progressive experience in cybersecurity architecture solutions architecture or a related field with a demonstrated focus on strategic security planning and implementation.
- Proven experience in designing implementing and managing Zero Trust Architecture (ZTA) principles and controls within complex enterprise environments.
- Masters degree in Information Technology Cybersecurity or related discipline.
- Relevant industry cybersecurity certifications (e.g. Certified Information Systems Security Professional (CISSP)-Information Systems Security Architecture Professional (ISSAP) Sherwood Applied Business Security Architecture (SABSA) The Open Group Architecture Framework (TOGAF) with security specialization Zero Trust certifications).
- Demonstrated experience in implementing and operationalizing security frameworks such as U.S. National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF) NIST Special Publications (SP) 800-207 (Zero Trust Architecture) or similar leading standards.
Required Experience:
Senior IC