Position Title & Code: Cloud Solutions Architect
Location: Washington DC
Complete Description:
Role Overview:
We are seeking a highly experienced Cybersecurity Architect / Strategic Consultant to lead and guide the development implementation and evolution of customer cybersecurity strategy. This role demands a deep understanding of cybersecurity frameworks risk management emerging technologies and technical security controls and architecture. The ideal candidate will be a trusted advisor to senior leadership aligning cybersecurity initiatives with business objectives to safeguard organizational assets and reputation.
Key Responsibilities:
Strategic Planning and Advisory:
- Develop and refine the organizations cybersecurity strategy ensuring alignment with overall business goals.
- Provide expert guidance on implementing industrystandard security program frameworks such as NIST CSF ISO 27001 and CIS Controls.
- Identify emerging threats and recommend proactive technical measures to mitigate risks.
- Design and enablement of cyber controls functions and processes based on CMMC / NIST 800171 NIST 80053
Risk Management:
- Familiarity with risk management frameworks like NIST RMF ISO 27005 and FAIR.
- Conduct comprehensive cybersecurity risk assessments identifying vulnerabilities and recommending remediation strategies.
- Develop and maintain a robust risk management program to address both IT and operational risks.
- Implement technical solutions to manage and monitor risk effectively including vulnerability management tools.
Technical Oversight
- Design and validate secure network architectures focusing on principles such as Zero Trust and least privilege.
- Evaluate and implement advanced security technologies including EDR SIEM DLP and intrusion detection/prevention systems.
- Provide handson technical assessments of infrastructure applications and cloud environments to ensure security compliance.
- Oversee penetration testing activities and ensure identified vulnerabilities are remediated.
Policy and Governance
- Lead the development and enforcement of cybersecurity policies standards and procedures.
- Establish metrics and reporting mechanisms to measure the effectiveness of cybersecurity initiatives.
- Support incident response planning and governance ensuring technical readiness for potential breaches.
Cloud and Emerging Technologies
- Provide technical guidance on securing multicloud environments including AWS Azure and Google Cloud.
- Evaluate and implement cloudnative security tools such as CSPM CIEM and workload protection platforms.
- Advise on emerging technologies like AI and ML focusing on their application in threat detection and response.
Incident Response and Threat Intelligence
- Develop and oversee technical aspects of the incident response plan ensuring readiness for realworld threats.
- Leverage threat intelligence platforms to proactively identify and address potential vulnerabilities.
- Coordinate with SOC teams to finetune detection rules and improve response times.
Experience:
- Minimum of 15 years of experience in information security.
- Proven experience with NIST CSF NIST 80053 and NIST 800171 frameworks.
- Proven track record of developing and executing cybersecurity strategies for organizations of varying sizes and industries.
- Handson experience with risk assessments compliance audits and incident response planning.
- Prior role as a Sr. Security Consultant Security Architect or similar position is highly desirable.
Skills:
- Strong understanding of cybersecurity frameworks regulatory requirements and risk management methodologies.
- Proficiency with technical tools such as vulnerability scanners (e.g. Nessus Qualys) SIEM platforms (e.g. Splunk QRadar) and EDR solutions (e.g. CrowdStrike Cisco Secure Endpoint Cisco Secure Workload).
- Exceptional communication and presentation skills with the ability to convey complex cybersecurity concepts to both technical and nontechnical stakeholders.
- Leadership and influence capabilities to drive organizational change.
- Analytical mindset with the ability to anticipate and solve complex challenges.
- Expertise in cloud security Zero Trust architecture and emerging technologies.
CCertifications:
o Relevant certifications (e.g. CISSP CISM CISA CRISC OSCP CEH or GSEC).
EEducation:
o Bachelors or Masters degree in Cybersecurity Computer Science Information Technology or a related field.
Skill Assessment: (Please include the years of experience last used and brief description on skills below information is to be submitted along with the resume)
Skill | Required / Desired | Amount of Experience | Years Used | Short Brief Description | Project |
Experience in Information Security | Required | 10 years | | | |
Proven experience with NIST CSF NIST 80053 and NIST 800171 frameworks. | Required | 10 years | | | |
Proven track record of developing and executing cybersecurity strategies for organizations of varying sizes and industries. | Required | 5 years | | | |
Handson experience with risk assessments compliance audits and incident response planning. | Required | 10 years | | | |
Proficiency with technical tools such as vulnerability scanners SIEM platforms and EDR solutions | Required | 10 years | | | |
Expertise in cloud security Zero Trust architecture and emerging technologies. | Required | 10 years | | | |
Relevant certifications (e.g. CISSP CISM CISA CRISC OSCP CEH or GSEC). | Required | 10 years | | | |
Bachelors or Masters degree in Cybersecurity Computer Science Information Technology or a related field. | Required | 10 years | | | |