Tech Stack
AssemblyAWSAzureCloudFirewallsGoogle Cloud Platform
About the role
- Lead development, implementation, and maintenance of security strategy within Service Provider organization
- Conduct risk assessments and threat modeling to identify and prioritize risks
- Create security architecture framework using experience in Service Provider environment
- Maintain policies, standards, and guidelines related to information security
- Collaborate with cross-functional teams to implement security controls (encryption, authentication, authorization)
- Conduct security reviews of vendors and third-party partners
- Perform regular security and risk reviews and recommend remediation activities
- Advise senior leadership on security best practices and emerging threats
Requirements
- Minimum of 10 years of experience in security architecture design and implementation within a Service Provider organization
- Experience with security frameworks such as NIST CSF, ISO 27001, or CIS Controls
- Deep understanding of security technologies, such as firewalls, intrusion detection and prevention systems, vulnerability scanners, and endpoint protection
- Strong knowledge of cloud security concepts and technologies, such as Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP)
- Relevant industry certifications such as CISSP, CISM, or CCSP (preferred)
- Bachelor's or Master's degree in Computer Science, Information Security, or a related field (preferred)