Senior Security Architect

NYC IT Inc

Senior Security Architect

New York, NY
Full Time
Paid
  • Responsibilities

    The Senior Information Security Architect responsibilities will include the following:

    • Review and document technical requirement to comply with Citywide Cybersecurity Policies and Standards • In collaboration with the CISO and IT team develop the agency information security strategy and key initiative • Identify objectives & key performance indicators for each initiative’s success • Develop budget & resource requirements and execution plans for key cybersecurity initiatives • Lead key initiatives working with IT teams, third parties, and key stakeholders to deliver the intended • Design and implement robust security architectures and frameworks for the agency’s systems and networks. • Lead user security awareness program • Assist in the identity governance program • Provide guidance to improve SDLC security • Lead vulnerability patching processes and provide risk assessment and prioritization • Conduct security assessments and risk analyses to identify potential vulnerabilities and threats. • Participate in security-related projects and initiatives to support the agency’s strategic goals. • Guide the organization's change management process to ensure changes related to improving data security are accepted and adopted by the organization and key stakeholders.

    • DESIRABLE SKILLS/EXPERIENCE:

    • Minimum of 4 -6 years of experience in information security architecture or engineering. • Excellent verbal and written communications skills • Ability to create executive content and presentations with impactful messaging • Bachelor’s or master’s degree in computer science preferably with a focus on Cybersecurity. • Professional information security certifications such as the CISSP-ISSAP, AWS Solution Architect + Security, or Azure Solutions Architect • Must have a strong working knowledge of security controls for on-premises and cloud-based computing services including AWS or Azure. • Strong knowledge of common information security frameworks, including CIS Top 20 Controls, ISO 27001, and NIST 800-53 Series. • Organization change-management experience Information Security Certifications: ISACA, CISSP, CISM or cloud security certification is plus point.