Security Architect
Remote | San Francisco Bay Area preferred
Level Home
Keep your home design & keys with Level's invisible smart locks. Featuring unparalleled craftsmanship & a discreet, reliable, & secure solution for your…
Responsibilities:
- Take ownership of security tools to build tracking and reporting capabilities to mitigate or eliminate risks
- Build Threat Models and analyze security weaknesses in infrastructure deployments, pipelines and tech stack
- Review vulnerability reports, deployments, misconfigurations and tool findings for compliance against ISO/SOC 2
- Analyze security incidents from MDR/IDS/IPS to identify root causes, trends, and patterns and propose improvements or mitigating measures based on findings
- Define and maintain a security reference architecture that provides best practices and design guidance, roadmaps, and key security considerations for all major domains (i.e., IAM, privacy, cloud platforms, infrastructure, applications, database, etc.)
- Help define and maintain security guidelines and corporate standards
- Manage projects related to security tasks and issues on a day to day basis
- Work with DevOps and Engineering teams to build and improve security posture
- Work with Legal and Audit teams to define technical and regulatory requirements for security tools
- Provide guidance and training to diverse groups and senior leaders within the organization and evangelize DevSecOps and shift left philosophy
Required qualifications:
- Experience working in production environments or environments closely associated with production or devops teams.
- Working knowledge of common and industry-standard cloud-native/cloud-friendly authentication mechanisms (OAuth, IDP, Okta etc)
- Experience implementing strong security in cloud native technologies (Kubernetes, APIs, Microservices), using Infrastructure-as-Code and Compliance-as-Code
- Hands on experience in rolling our MDR, SIEM, vulnerability scanning and data loss prevention tools
- Experience writing IaC (Infrastructure as code) as part of a DevOps or DevSecOps in a multi-cloud environment
- Hands on experience in monitoring and securing cloud services (AWS, GCP) and APIs
- Working knowledge of compliance requirements and regulations and managing audit vendors
- Familiarity with setting up security incident response centers (SOC)
- Experience implementing, optimizing and troubleshooting the following tools/ecosystems:
- Terraform, Hashicorp Vault
- AWS SSO or Okta
- AWS GuardDuty, WAF
- Nessus /Tenable, Crowdstrike
- Alertlogic / McAfee / MDR solutions
- VPN / Palo Alto / Prisma/ ZScaler
- SumoLogic or Splunk
- Checkmarx / Veracode/ Sonarqube
- Datadog / New Relic
- Prometheus, Open Telemetry
- SOC 2 / ISO2700x
It would be great if you also possess:
- CISSP and/or CISM certifications
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: APIs AWS Checkmarx CISM CISSP Cloud Compliance CrowdStrike DevOps DevSecOps GCP IAM IDS Incident response IPS ISO 27000 Kubernetes Microservices Monitoring Nessus Okta Privacy Prometheus SIEM SOC SOC 2 SonarQube Splunk SSO Terraform Veracode VPN
Perks/benefits: Startup environment
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Analyste CERT / Incident Responder junior (H/F) jobs
- Open SOC Analyst jobs
- Open Senior Cybersecurity Engineer jobs
- Open Analyste CERT / Incident Responder senior (H/F) jobs
- Open Electronic Warfare Advanced Tactical Trainer jobs
- Open IT Security Analyst jobs
- Open Information Security Officer jobs
- Open Senior Information Security Engineer jobs
- Open Consultant SOC / CERT H/F jobs
- Open Cyber Security Specialist jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Security Operations Engineer jobs
- Open Staff Product Security Engineer jobs
- Open Senior SOC Analyst jobs
- Open Product Security Engineer jobs
- Open Staff Security Engineer jobs
- Open Staff Information Security Engineer jobs
- Open o365 Security Architect jobs
- Open Infosec Risk Manager jobs
- Open Cybersecurity Consultant jobs
- Open Chief Information Security Officer jobs
- Open Fortinet Firewall Engineer jobs
- Open Cyber Security Architect jobs
- Open Ingénieur DevSecops H/F jobs
- Open Application security-related jobs
- Open Risk assessment-related jobs
- Open Network security-related jobs
- Open SaaS-related jobs
- Open Governance-related jobs
- Open Pentesting-related jobs
- Open Java-related jobs
- Open Analytics-related jobs
- Open ISO 27001-related jobs
- Open Clearance-related jobs
- Open Vulnerability management-related jobs
- Open CISM-related jobs
- Open Security assessment-related jobs
- Open DevOps-related jobs
- Open APIs-related jobs
- Open IAM-related jobs
- Open Threat intelligence-related jobs
- Open Malware-related jobs
- Open Splunk-related jobs
- Open Kubernetes-related jobs
- Open CISA-related jobs
- Open DevSecOps-related jobs
- Open Terraform-related jobs
- Open IDS-related jobs
- Open GDPR-related jobs