Identity Security Architect
Openkyber
Security Architect DETAILS Location : Remote Position Type : 12M+ Contract Hourly / Salary : to 120W2+ (based on experience level)
JOB SUMMARY Vaco is currently seeking a Security Architect for a 12M+ Contract opportunity that is remote. The Security Architect will lead Enterprise Security Architecture initiatives focused on strengthening the organization's security posture across applications, cloud platforms, infrastructure, APIs, and data environments. The Security Architect will partner with engineering, infrastructure, and business teams to embed secure-by-design principles throughout the solution lifecycle by conducting security architecture reviews, cloud and data security assessments, and application security evaluations. The Security Architect will define and recommend security controls spanning identity and access management, network security, vulnerability management, API protection, and data governance while developing security standards, reference architectures, and best practices that improve resilience, reduce risk, and ensure compliance with organizational and industry security requirements.
Security Architecture ReviewsConducting End-to-End Security Architecture Reviews for Applications / SaaS Platforms / Infrastructure Projects | Evaluating Designs Against Established Security Standards / Identifying Security Gaps / Recommending Practical Risk Mitigations / Applying Secure-by-Design Principles Early in the Solution Lifecycle
Data Risk / ProtectionAssessing Data Flows / Storage / Access Patterns / Sensitive Data Controls | Recommending Improvements to Encryption / Data Masking / Access Governance / Monitoring / Databricks Security Configurations / Varonis Data Classification / Access Auditing / Insider Threat Monitoring
Cloud Security AssessmentsLeading Security Assessments Across Cloud Environments / Workloads | Evaluating Configurations / Network Segmentation / Identity Boundaries / Logging / Workload Protections / Recommending Hardening Measures Aligned with Cloud Provider Best Practices / Organizational Cloud Security Frameworks
Application / API SecurityProviding Architectural Oversight for Penetration Testing / SAST / DAST Activities | Reviewing Findings / Recommending Remediation Strategies / Validating Secure Development Practices / Assessing API Authentication / Authorization / Rate Limiting / API Key / Secret / Token Management
Identity / Access / Endpoint SecurityApplying IAM / PAM Principles Supporting Least Privilege / Separation of Duties / Strong Authentication | Championing Phishing-Resistant MFA Using FIDO2 / Hardware-Backed Authenticators / Guiding MDM / MAM Strategies for Secure Mobile / Endpoint Access
Network Security / Vulnerability ManagementEvaluating Network Architectures / Segmentation Strategies / Perimeter Controls / Zero-Trust Controls | Partnering with Infrastructure / Operations Teams to Prioritize Vulnerability Remediation / Recommend Architectural Changes Reducing Security Exposure
Security Advisory / GovernanceServing as a Trusted Advisor on Enterprise Security Architecture | Documenting Architectural Decisions / Maintaining Reference Architectures / Developing Reusable Security Patterns / Contributing to Security Standards / Policies
JOB REQUIREMENTS Security Architecture Reviews Performing Security Architecture Reviews Across Applications / SaaS Solutions / Infrastructure Environments Data Security Conducting Data Flow Analysis / Data Risk Assessments / Sensitive Data Protection using Databricks / Varonis Cloud Security Assessing Cloud Environments / Cloud-Native Security Controls / Cloud Security Best Practices API Security Designing Secure API Architectures / Authentication / Authorization / API Key / Secret / Token Management IAM / PAM Applying IAM / PAM Concepts Supporting Authentication / Authorization / Privilege Management / Identity Governance Modern Authentication Implementing Phishing-Resistant MFA / FIDO2 / Modern Authentication Standards Mobile / Endpoint Security Supporting MDM / MAM Platforms / Secure Mobile / Endpoint Management Strategies Network Security Applying TCP/IP / Network Segmentation / Firewalls / Proxies / DNS / Vulnerability Remediation Practices Application Security Supporting Penetration Testing / SAST / DAST Processes / Secure Application Development Practices Cyber Resilience / Disaster Recovery Supporting Cyber Resilience Capabilities / Disaster Recovery Technologies / Business Continuity Strategies
PREFERRED (not required) Security Certifications CISSP / CCSP / SABSA / AWS Security / MS Azure Security / Google Cloud Security Certifications, etc. Security Frameworks Applying NIST CSF / ISO 27001 / CIS Controls / Zero-Trust Reference Models to Security Architecture Initiatives Regulatory Compliance Supporting Security Architecture within HIPAA / PCI / SOX / GDPR, etc.
Determining compensation for this role (and others) at OpenKyber depends upon a wide array of factors including but not limited to the individual's skill sets, experience and training, licensure and certifications, office location and other geographic considerations, as well as other business and organizational needs. With that said, as required by local law in geographies that require salary range disclosure, OpenKyber notes the salary range for the role is noted in this job posting. The individual may also be eligible for discretionary bonuses, and can participate in medical, dental, and vision benefits as well as the company's 401(k) retirement plan.
Additional disclaimer: Unless otherwise noted in the job description, the position OpenKyber is filing for is occupied. Please note, however, that OpenKyber is regularly asked to provide talent to other organizations. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions.
Submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. Further assessment of candidates beyond this initial phase within OpenKyber will be otherwise assessed by recruiters and hiring managers. OpenKyber does not have knowledge of the tools used by its clients in making final hiring decisions and cannot opine on their use of AI products.
For applications and inquiries, contact:View email address on us.fitly.work
- ...Solution Architect / Principal Consultant (NW / DC / Security) DETAILS Location : Remote Position Type : 6M+ Contract (w/ likely extensions) Hourly... ...Firewalls / Network Segmentation / Zero Trust / Identity Integration / Security Policy Governance Architecture...SuggestedHourly payContract workWork at officeLocal areaRemote work
- ...Job Title: AI Security Architect Location: Columbia, SC - Hybrid Position - onsite 3 days per week (Tues-Thurs) Contract to Perm Position... ...security reference architectures and minimum control requirements (identity/access, data classification/handling, encryption/key...SuggestedPermanent employmentContract work3 days per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Identity Security Architect. Be the first to apply!

