Live opening · Posted 10 hours ago

Security Architect

Informa Group Plc. · Newton, MA, United States
Smartrecruiters No Full-time
You are 10 hours behind. JobBeeper subscribers saw this role while it was still new.

At a glance

The key details from the original listing.

Posted 10 hours ago
CompanyInforma Group Plc.
LocationNewton, MA, United States
Job typeFull-time
Work modeNo
SkillsAWS, GCP, Docker, Kubernetes
SourceSmartrecruiters
Listed10 hours ago

Your early-applicant advantage

Live timing from JobBeeper.

Live data
6 min from Smartrecruiters publishing this role to us finding it
10 min median time from a role going live to a subscriber being told
6 hours subscribers had this role before this page existed
71,373 roles found in the last 24 hours — the newest are not on this site yet
Start your free trial →

About the role

Description supplied by the original job listing.

This role is based in our Newton, MA office.
We are seeking a strategic Security Architect to define and drive our cloud and enterprise security architecture. You will own the security architecture vision, establish governance frameworks, and partner with Product, Engineering, and Infrastructure teams to embed security throughout our technology ecosystem.
Core Responsibilities
Strategic Architecture & Governance
Own and evolve the enterprise security architecture, including long-term roadmap and reference architectures for cloud, hybrid, and on-premises environments
Define organizational security principles, frameworks, and standards that align with business objectives and regulatory requirements
Develop and present security strategy, roadmaps, and strategic initiatives to executive leadership and stakeholders
Establish security metrics and KPIs to measure architecture effectiveness and communicate security posture to senior leadership
Ensure compliance with industry regulations and standards including ISO 27001, SOC 2, GDPR, and SOX
Lead security audits and assessments, driving remediation plans and continuous improvement initiative
Cloud & Infrastructure Security
Own cloud security architecture across AWS and GCP, including Cloud Security Posture Management (CSPM), Cloud Infrastructure Entitlement Management (CIEM), and Wiz remediation strategies
Design and implement Identity and Access Management (IAM) architecture based on least privilege principles and Zero Trust security models
Architect secure network segmentation strategies and defense-in-depth controls across all infrastructure layers
Own the architecture and strategic direction for key security platforms including SIEM, vulnerability management, endpoint security, and threat detection systems
Manage and optimize internal security platforms to ensure robust protection of organizational assets
Design secure cloud infrastructures and hybrid environment protections that scale with business growth
Conduct threat modeling and risk analyses to identify infrastructure vulnerabilities and recommend mitigation strategies
Application & Development Security
Lead Secure Software Development Lifecycle (SDLC) and DevSecOps initiatives across the organization
Integrate security controls into CI/CD pipelines, championing shift-left security practices in collaboration with DevOps leadership
Ensure software architecture and applications are designed to mitigate vulnerabilities and prevent exploits
Provide technical guidance and mentorship to development and DevOps teams on secure coding practices and emerging threats
Collaborate with cross-functional teams to embed security throughout the system development lifecycle
Define security requirements and controls that support agile development while maintaining strong security posture
Innovation & Technical Leadership
Lead security architecture for emerging technologies including AI/LLM initiatives, ensuring responsible and secure implementation
Serve as the technical authority on security architecture, advising on security-related technologies and assessing risks associated with proposed changes
Stay current with emerging security threats, vulnerabilities, and technologies to drive continuous innovation in security practices
Inspire and influence engineering teams to execute security principles and adopt security-first mindsets
Mentor and provide technical guidance to DevOps, operations, and development teams on security best practices
Partner strategically with Product, Engineering, and Infrastructure leaders to align security architecture with business innovation
Drive thought leadership through security documentation, architecture diagrams, design specifications, and security control matrices
Additional Responsibilities
Lead incident response management and develop security policies that protect organizational assets from cyber threats
Identify organizational vulnerabilities and weaknesses through systematic security assessments
Recommend and implement security controls and solutions that balance security requirements with business enablement
Bachelor’s or master’s degree in computer science, information technology or a related field
7+ years of cybersecurity experience with deep cloud security expertise
Proven track record leading enterprise security architecture in multi-cloud environments
Deep understanding of cloud service provider security best practices around (AWS, GCP)
Organization Policies
Automated threat detection tools
Central logging/Siem practices
Lest privilege architecture
VPC design/perimeter controls
Data Exfiltration prevention
Encryption/Key Management design
Identity and Access Management (IAM) best practices.
Web application security testing: Expertise in identifying and mitigating vulnerabilities in web applications, leveraging tools and methodologies like OWASP.
Network vulnerability scanning: Skilled in detecting and addressing vulnerabilities in network configurations and infrastructure.
Container and Kubernetes security: Proficiency in securing containerized environments, including Docker and Kubernetes, using best practices and tools like Trivy or Aqua Security.
Experience with security testing tools and platforms: Familiarity with industry-standard tools for vulnerability scanning, penetration testing, and security auditing.
Ability to lead security discussions with system architects and business leaders.
Strong analytical and computer skills
Expert level understanding of cybersecurity and how it affects the modern business world.
Thorough understanding of Unix operation systems
Awareness of frameworks such as NIST, COBIT, ISO and Soc2
Certifications: CISSP, CCSP, AWS Security Specialty, or Google Professional Cloud Security Engineer

Employment type
Full-time

Work arrangement
No

Get JobBeeper Mobile App

Never miss a job opening! Get instant job alerts on your phone.

Subscribers see fresh openings within minutes. Download the JobBeeper App on Google Play to get real-time push notifications and apply before anyone else.

⚡ Instant Push Alerts 🎯 Tailored Filters 🚀 Direct Employer Links
GET IT ON Google Play

More openings worth a look

Recently tracked roles with full details and direct application links.

6 roles
Good roles move before most people even see them. Tell JobBeeper what you want and get fresh matches delivered in minutes.
Start your free trial →
⚡ Get fresh job alerts 📱 Get App