Overview
Join our innovative team as a Cloud Network and Security Architect, where you will lead the design, implementation, and management of cutting-edge cloud infrastructure and security solutions. This dynamic role offers the opportunity to shape our organization’s cybersecurity posture, ensuring robust protection across cloud platforms and network environments. You will be at the forefront of developing scalable, secure, and compliant IT architectures that support our digital transformation initiatives. Your expertise will drive continuous improvement in security practices, risk management, and network performance, empowering our organization to operate confidently in a rapidly evolving technological landscape.
Duties
- Design and implement comprehensive cloud security architectures aligned with industry standards such as ISO 27001, ISO 27002, NIST frameworks, and FIPS compliance.
- Develop secure network architectures utilizing advanced routing protocols like OSPF, BGP, and MPLS to optimize connectivity across WAN, LAN, and cloud environments.
- Lead the deployment and configuration of security systems including firewalls (Cisco ASA), intrusion detection systems (IDS), intrusion prevention systems (IPS), SIEM solutions like Splunk or New Relic, and endpoint security tools.
- Manage identity and access management (IAM) solutions to establish robust authentication protocols such as SSO, LDAP integrations, PKI infrastructure, and IAM architecture design for secure user access control.
- Conduct vulnerability assessments, security risk analysis investigations, and incident response planning to identify vulnerabilities within IT infrastructure and cloud computing environments.
- Collaborate with DevSecOps teams to embed security best practices into CI/CD pipelines using tools like Ansible, Terraform, and scripting languages such as Python or Bash for automation.
- Ensure compliance with regulatory standards including PCI DSS, FedRAMP, FISMA, RMF, DIACAP while maintaining up-to-date system security plans and disaster recovery procedures.
Skills
- Extensive knowledge of computer networking concepts including TCP/IP, DHCP, DNS, VPNs (Virtual Private Networks), load balancing, high availability configurations, and network support.
- Proficiency in configuring and managing Cisco routers/switches (including Cisco ISE), Juniper devices, VMware vSphere environments, AWS cloud services (including PaaS/IaaS), Google Cloud Platform, Azure cloud solutions, and virtualization technologies.
- Strong understanding of security architecture principles involving encryption standards (SSL/TLS), network protocols (IPsec), open-source operating systems (Ubuntu, CentOS, Debian), Windows Server environments, macOS/Linux systems administration.
- Hands-on experience implementing security information and event management (SIEM) systems like Splunk or SolarWinds for real-time monitoring and threat detection.
- Familiarity with openSUSE or BSD operating systems for specialized system security plans; experience with containerization tools such as Citrix or VMware vSphere is a plus.
- Knowledge of cybersecurity frameworks including NIST standards; ability to perform vulnerability research and assessment using attack frameworks; understanding of incident management processes aligned with ITIL practices.
- Excellent scripting skills in PowerShell, Shell Scripting or Python to automate routine tasks; experience with DevOps practices such as CI/CD pipelines using Jenkins or similar tools.
- Strong analytical skills for security analysis and risk management; ability to develop comprehensive system security plans that align with organizational policies and industry best practices.
Join us to lead the charge in securing our digital future! Your expertise will help craft resilient cloud architectures that safeguard critical data while enabling innovative growth across our enterprise infrastructure.
Pay: Up to $220,000.00 per year
Benefits:
- 401(k)
- 401(k) matching
- Dental insurance
- Employee assistance program
- Flexible schedule
- Health insurance
- Life insurance
- Paid time off
- Professional development assistance
- Retirement plan
- Vision insurance
Experience:
- CISA TIC: 3 years (Preferred)
- AWS: 5 years (Preferred)
- Azure: 5 years (Preferred)
License/Certification:
- AWS Certified Advanced Networking – Specialty (Preferred)
- AWS Certification (Preferred)
- Azure Certification (Preferred)
Work Location: Remote