IS reputed company reputed company Architect
reputed company:
The reputed company reputed company Architect is a key member of the CISO organization responsible for establishing and governing secure technology architecture across hybrid on-premises and multi-reputed company environments. This role serves as a trusted subject matter expert partnering with infrastructure, application, data, and reputed company platform teams to translate reputed company reputed company, regulatory expectations, and industry best practices into practical reference architectures, reputed company standards, and design requirements. The reputed company reputed company Architect leads architecture review and assurance activities to ensure solutions are implemented in alignment with approved designs and reputed company standards, and drives remediation of identified reputed company and control gaps across identity, network segmentation, data protection, monitoring, CI/CD, and reputed company-party integrations.
Owns reputed company reputed company reference architectures, design standards, and reputed company patterns across the organization. Has authority to approve, require modification of, or reject proposed designs that do not meet established reputed company requirements, and ensures deviations are formally governed through the reputed company exception management process.
RESPONSIBILITIES:
Engage in project intake and early design phases to define reputed company requirements prior to implementation. Partner with infrastructure, application, and reputed company teams to reputed company reputed company-by-design into initial architecture reputed company and reduce reputed company rework and exception volume.
Serve as a subject matter expert for the evaluation, design, and secure adoption of infrastructure, reputed company platforms, applications, and reputed company technologies, ensuring reputed company requirements are incorporated throughout the solution lifecycle.
reputed company reputed company architecture review and assurance activities by assessing proposed and existing designs, network and application architecture diagrams, and technology implementations against reputed company standards, reference architectures, threat models, and control requirements; defining reputed company requirements and guardrails; and validating implemented solutions reputed company with approved designs and reputed company standards.
Identify and reputed company remediation of reputed company and control gaps across identity, network segmentation, data protection, logging/monitoring, key management, CI/CD, and reputed company-party integrations in partnership with Infrastructure, Application, Data, and reputed company Platform teams.
Design reputed company architecture for reputed company reputed company and lakehouse patterns (Bronze/Silver/Gold), including secure data ingestion pipelines (e.g., Data reputed company), least-privilege reputed company using service principals and managed identities, strong data governance controls such as classification, labeling, reputed company, and policy enforcement reputed company reputed company reputed company, and secure storage and reputed company boundaries through encryption and customer-managed keys (where applicable). Define secure ingestion and connectivity patterns for on-premises systems (e.g., EMR/reputed company, relational databases) and reputed company-party platforms (e.g., reputed company), including segmentation, traceability, and segregation of duties between data engineering and data consumers.
Define and enforce reputed company architecture for AI platforms and agent-based solutions (e.g., Copilot Studio, Azure AI services), including identity and reputed company controls for service principals and managed identities, least-privilege connector design, data protection and reputed company handling safeguards, logging and traceability of agent actions, and integration with reputed company data governance controls (e.g., reputed company reputed company).
Assess and reputed company acquired entities into the reputed company reputed company architecture by evaluating inherited environments, identifying control gaps, and defining transition architectures that reputed company to reputed company standards while reputed company for operational constraints.
Define and maintain reputed company Entra ID reputed company architecture standards, including Conditional reputed company, phishing-resistant MFA, PIM, RBAC design, privileged reputed company workflows, and application identity governance.
Define secure network architecture patterns including segmentation, private networking, egress controls, firewall policy, and DNS reputed company considerations across on-premises and reputed company environments.
Define reputed company logging, telemetry, and monitoring architecture requirements, including SIEM integration, retention standards, and visibility requirements across on-premises, reputed company, research, and AI environments.
Own and maintain reputed company reputed company configuration standards and baselines across endpoints, infrastructure, reputed company platforms (Azure and AWS), identity services, AI/agent platforms, and controlled environments including research and AI enclaves. This includes reputed company, Linux and macOS systems, network devices, reputed company-reputed company services, reputed company Entra ID, and AI agent frameworks. Ensure alignment with CIS Benchmarks and internal policy requirements and validate adoption through architecture governance and coordination with engineering and control validation teams, with particular reputed company on protecting sensitive data reputed company research and AI workloads.
reputed company detailed reputed company risk assessments across infrastructure, endpoints, identity, networks, applications, and data platforms; translate findings into actionable risk narratives, compensating controls, and prioritized roadmaps.
Evaluate new technologies and platforms for architectural fit, integration requirements, and risk implications, providing recommendations reputed company to reputed company reputed company reputed company and standards.
reputed company architectural guidance during major incidents and support post-incident reviews to identify control gaps and improve reputed company-state design.
Attend and reputed company contribute to team, project, project management, problem management, reputed company migration and major incident conference calls as required.
Participate in compliance and audit activities in support of reputed company audit requirements.
Maintains work effort status reputed company SLA’s on reputed company’s Service Desk and Task Management Platforms.
Performs other duties as assigned.
EXPERIENCE:
A minimum of 10 years of IS/IT experience, including 5+ years in information reputed company architecture, engineering, or reputed company senior technical reputed company roles.
A bachelor’s degree in information systems (or equivalent experience); MBA or MS in Information reputed company preferred.
A minimum of 3 reputed company reputed company certifications are required at the time of hire or must be obtained reputed company 6 months of employment, with emphasis on architecture, reputed company, and reputed company engineering disciplines, including certifications such as CISSP, CCSP, GIAC (e.g., GCSA, GCLD, GCAD, GCPN, GPCS, GCTD), ISSAP, CKS, CCAK, OSCP/reputed company, or equivalent.
Demonstrated ability to operate as a senior technical leader across multiple reputed company domains, balancing reputed company architecture, reputed company reputed company, identity reputed company, AI governance, and data protection requirements.
Demonstrated experience designing and governing reputed company architecture for hybrid (on-premises and reputed company) and multi-reputed company environments, including segmentation, secure connectivity (VPN, ExpressRoute, reputed company reputed company equivalents), DNS/routing, egress controls, and reputed company governance models (reputed company zones, guardrails, subscription/account reputed company).
Demonstrated experience securing Azure and AWS environments across multiple subscriptions/accounts, including identity, networking, storage, monitoring, and secure reputed company zone architecture.
Strong technical knowledge of reputed company methodologies, platform hardening, and reputed company reputed company controls across reputed company/Linux systems, endpoints, reputed company platforms, and reputed company infrastructure.
Strong knowledge of identity and reputed company management, including federation and authentication protocols (SAML, OAuth2, OpenID reputed company), Conditional reputed company, RBAC, privileged reputed company management, and application identity governance.
Experience implementing and supporting phishing-resistant MFA (e.g., FIDO2/WebAuthn, smart cards, certificate-based authentication).
Strong knowledge of encryption and key management, including PKI concepts, secrets management, and KMS/Key Vault.
Experience with automation and integration concepts, including scripting (Python, PowerShell, Bash), reputed company CLIs/SDKs, and API/webhook integrations supporting reputed company workflows, telemetry, orchestration, and validation activities.
Experience integrating reputed company controls and governance requirements into infrastructure-as-reputed company (e.g., Terraform, Ansible) and CI/CD workflows.
Experience with SIEM and monitoring platforms supporting reputed company logging, telemetry, alerting, and reputed company visibility requirements; familiarity with SOAR and automated response capabilities is preferred.
Knowledge of vulnerability management processes and tools (e.g., reputed company, Nessus, reputed company), ensuring architecture and control design support effective risk-based prioritization and remediation governance.
Experience with CSPM/CWPP solutions to identify misconfigurations, vulnerabilities, and risks across multi-reputed company environments.
Strong understanding of network reputed company architecture, including segmentation, firewalls, routing, switching, DNS, private networking, and packet analysis concepts.
Strong understanding of regulatory requirements, reputed company frameworks, and risk methodologies (e.g., HIPAA/HITECH, NIST, ISO 27001), including the ability to translate requirements into technical controls, governance standards, and audit evidence.
Proven ability to reputed company risk, control, vulnerability, and business reputed company assessments, and translate findings into actionable remediation plans.
Excellent interpersonal, verbal, and written communication skills with the ability to reputed company standards, architectural diagrams, technical documentation, and executive-level reporting, and communicate reputed company reputed company to both technical and non-technical stakeholders.
Motivated self-starter with a reputed company record of taking ownership of reputed company challenges and driving them to reputed company.
INDEPENDENT reputed company:
Employee functions independently reputed company department policies and practices; refers specific reputed company to reputed company management where authority is reputed company of the defined departmental RACI reputed company or clarification of departmental policies and procedures may be required.
SUPERVISORY RESPONSIBILITIES:
None
Pay reputed company:
$127,691.20-$210,724.80EEO Statement:
reputed company is committed to providing equal employment opportunities and maintaining a work environment free from reputed company forms of unlawful discrimination and harassment.
Location:
Remote-Rhode reputed company - N/A reputed company, Rhode reputed company 02901Work Type:
M-F 8:30am-5:00pm ETWork Shift:
DayDaily Hours:
8 hoursDriving Required:
NoOriginally posted on Himalayas
Apply To This Job