Job Summary:
The Security Architect will partner with Enterprise Architects, Infrastructure and Development Teams to develop a deep technical understanding of Horizons technology ecosystem. Incumbent will conduct architecture reviews, threat modeling, identify risks and advise IT, business owners and technical teams on options to mitigate the risk. The candidate must have excellent verbal and written communication skills.
· Review enterprise architecture diagrams and recommend security related enhancements.
· Model attack vectors and design security controls to mitigate risk.
· Strong knowledge of cloud security concepts with SaaS, PaaS and IaaS platforms and the architectural knowledge of Amazon Web Services (AWS) and Microsoft Azure cloud services.
· Plan, design, develop and maintain security technologies, diagrams, processes and procedures.
· Develop and implement enterprise-wide and cross-functional integration solutions.
· Research and recommend new industry IT cyber security models, management strategies and effective resource utilization models that can be presented to Senior Leadership (i.e. Directors and above).
· Conduct technology reviews and audits that ensure computer systems are built to reference security architecture principles.
· Help build security into infrastructure and architecture designs and guide the implementation with the operations team.
· Create and deliver knowledge sharing presentations and documentation to security, developers and operations teams.
Additional licensing, certifications, registrations:
One of the following certifications preferred. CISSP, SANS/GIAC Certifications, AWS Certifications
Knowledge of:
· Application security tools such as: HTTP and TCP proxies, fuzzers, scanners, debuggers, simulators, etc.
· Enterprise security tools such as anti-malware, EDR, IDS/IPS, SIEM, microsegmentation, DLP, IAM
· Common vulnerabilities in the OWASP top 10 list
· Protocols/technologies like SOA, HTTP, SSL/TLS, LDAP, JDBC, Servlet/JSP, SQL, HTML, XML
· Common architecture patterns such as three-tier, monolith, microservices
· Amazon Web Services (AWS), Microsoft Azure, Docker, and/or Kubernetes
· Encryption standards
· Authentication and Authorization standards such as OAuth 2.0, OpenID Connect (OIDC), and SAML 2.0
· Enterprise Architecture frameworks such as TOGAF
· FAIR Risk Assessment
Skills and Abilities:
· Requires strong verbal and written communication skills
· Ability to understand software design algorithms
· Ability to write scripts in languages such as Python, BASH, or PowerShell for automation preferred
Any Gradute