FinOps Security & Compliance Architect
Insight Global
Job Description The FinOps – Security & Compliance Architect is accountable for the end-to-end security architecture, threat modeling, and compliance posture of the Collector Agent Layer, including agent-based telemetry and internal cloud usage metering implementations. This role serves as a mandatory Phase 0 security gate, with formal security sign-off required before any agent or collector is permitted to interact with production environments. The architect establishes and governs cryptographic trust models, secure identity and authentication mechanisms, tamper detection controls, and enterprise secrets management integrations to ensure all agent-based data collection is secure, auditable, and compliant with enterprise and regulatory standards. Key Responsibilities Threat Modeling & Phase 0 Governance Own the Collector Agent Layer Threat Model and serve as a signed Phase 0 blocker for production deployment Define trust boundaries, attack surfaces, and threat vectors for agent-based architectures Ensure threat models are reviewed, approved, version-controlled, and retained prior to any production access Establish and enforce security acceptance criteria required before agents are authorized to operate Secure Identity, Authentication & Trust Design and govern mTLS PKI architecture, including: Certificate issuance Rotation and revocation Trust chain management Define and enforce Kafka authentication and authorization controls using SASL/SCRAM or enterprise-approved equivalents Ensure least-privilege identity binding between agents, brokers, and downstream systems Data Integrity & Tamper Protection Architect HMAC-based integrity and tamper detection controls to ensure message authenticity and non-repudiation across the agent pipeline Define validation, replay protection, and integrity verification patterns for collected telemetry and events Partner with platform teams to embed integrity enforcement into agent runtime and transport layers Secrets Management & Vault Integration Design secure integration patterns with Bank-approved Vault services for secrets, certificates, and cryptographic keys Enforce strict separation between build-time, deploy-time, and runtime secrets Define access controls, rotation policies, and audit requirements for all sensitive agent materials Compliance, Risk & Audit Readiness Ensure collector and agent designs meet internal security standards, regulatory expectations, and audit requirements Produce security artifacts including: Threat models Architecture diagrams Control mappings Act as the security authority for agent-based exceptions, risk acceptances, and remediation plans Architecture Collaboration & Enablement Partner with platform, data, infrastructure, and FinOps architects to embed security-by-design principles Provide authoritative guidance during architecture reviews, design forums, and security assessments Mentor engineering teams on secure agent design patterns and control implementation Architecture & Leadership Capabilities Demonstrated ability to operate as a Phase 0 gatekeeper with authority to block unsafe or non-compliant designs Strong communication skills to influence senior engineers, architects, and risk partners Ability to balance security rigor with platform scalability and delivery velocity Preferred Certification FinOps Certified Practitioner or FinOps Certified Professional We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to View email address on click.appcast.io learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: Skills and Requirements 7+ years of experience in security architecture and threat modeling for distributed and agent-based systems Deep expertise in PKI, X.509 certificates, mutual TLS (mTLS), and cryptographic trust models Hands‑on experience securing Kafka, including SASL/SCRAM authentication and authorization Proven experience designing HMAC-based message integrity and tamper detection mechanisms Enterprise-scale experience integrating with Vault or centralized secrets management platforms Strong understanding of least privilege access, Zero Trust principles, and defense-in-depth Demonstrated ability to operate as a formal security control owner and signatory Experience producing security artifacts for risk, compliance, and audit stakeholders FinOps Certified Practitioner or FinOps Certified Professional (preferred) #J-18808-Ljbffr Insight Global
- Insight Global in Chandler, Arizona, is seeking a FinOps - Security & Compliance Architect responsible for the end-to-end security architecture of the Collector Agent Layer. This role includes threat modeling, establishing governance for security protocols, and conducting...Suggested
- Position: Principal Application Security Architect Gen AI Location: Charlotte, NC / Dallas, TX / Columbus, OH / Chandler, AZ Duration... ...infrastructure, while adhering to industry best practices and compliance standards. Key Responsibilities: ~Develop and implement...SuggestedFull time
- The Matlen Silver Group, Inc. is seeking a Senior Active Directory Security Engineer for a key role in designing and securing a large-scale AD environment. The ideal candidate will have over 10 years of experience in enterprise AD, with extensive skills in GPO management...Suggested
- Bank of America in Chandler, Arizona is looking for a Network Security Architect to lead security architecture for perimeter services and the design of modern DMZ systems. Ideal candidates should have over 10 years in security engineering with experience managing perimeter...Suggested
- ...initiatives with broad impact and large-scale planning for Information Security Engineering. Review and analyze complex multi-faceted, larger... ...understanding of the function, policies, procedures, and compliance requirements that meet deliverables. Strategically collaborate...Suggested
$59.53 - $67.53 per hour
...Information Security Engineer - Containers/Kubernetes Genesis10 is currently seeking an Information Security Engineer - Containers... ...containers/Kubernetes environments to operate vulnerability and compliance scanning. Responsibilities: Implement, configure, and...Hourly payPermanent employmentContract workWork experience placement- ...Information Security Engineering Role In this contingent resource assignment, you may: Participate in low to moderately complex initiatives... ...understanding of function, policies, procedures, and compliance requirements. Provide information to client personnel in Information...
$41 - $44 per hour
...Information Security Engineer The Information Security Engineer will support low to moderately complex Information Security Engineering... ...configurations for a wide range of technologies, ensuring compliance with security policies and regulatory expectations. The...Hourly pay$142k - $178k
...As an Advanced cyber security professional (SSO) at Honeywell, this is your opportunity... ...proof-of-concepts guided by Sr. Identity Architect and Service Manager Complete assigned... ...and business considerations. Due to compliance with U.S. export control laws and regulations...Permanent employmentTemporary workWork experience placementFlexible hours- Edward Jones is looking for a Senior AI Security Technical Architect in Tempe, AZ, to lead the direction of AI security architecture. This role requires a solid background in cybersecurity and considerable experience with AI/ML systems. You will be pivotal in establishing...
- ...Job-Overview Team Overview: Edward Jones is seeking a Security Architect to support our digital transformation by embedding security... ...patterns, as well as supporting scalability, reliability, and compliance. Contribute to security patterns, guidelines, and...Temporary workWork at officeWork from homeHome officeFlexible hours3 days per week
- Team Overview Edward Jones is seeking a Senior AI Security Technical Architect to continue to build upon a defined enterprise AI security strategy, ensuring artificial intelligence and generative AI capabilities are designed, deployed, and operated in a secure, compliant...Temporary workWork at officeHome officeFlexible hours3 days per week
- ...Job Title: IT Security Engineer Location: Tempe, AZ Division: Operations Department: Safety & Compliance About Us Quantum Computing Inc. (QCi) (Nasdaq: QUBT... ...unauthorized access. You engineer will architect, implement, and manage security controls...Remote work
- ...Cloud Security Architect, Vulnerability Management Utah or Tempe The Company has experienced significant growth serving some of the most innovative companies in the world. Our clients are forward thinkers. True believers. Optimists. Inspired by them, we are changing...Work experience placement
- ...Title: Security EngineerLocation: Chandler, AZ - Hybrid 2+ years of Windows Administration experience 2+ years of hands on CrowdStrike or EDR Tools experience 2+ years of Powershell or Python experience 2+ years of SDLC experience 1+ year of Splunk experience...
- ...visas at this time. No Vendors/3rd parties. Experienced Network Security professional with expertise in proxy, malware inspection, and... ..., troubleshooting incidents, performing testing, and ensuring compliance with security and change management standards. Requirements:...Visa sponsorship3 days per week
- A leading broadcast solutions provider in Chandler, Arizona is seeking a candidate to design and document end-to-end enterprise solutions for broadcast facilities. You will work collaboratively with clients and internal teams to define requirements and provide solutions...
$85 - $89 per hour
Active Directory Security Engineer (BH-108948) Location: Chandler, United States Sector: IT Salary: $85.00 to $89.00 per hour Job Overview We are seeking a senior Active Directory Security Engineer to join a highly specialized engineering team responsible for the design...Hourly pay- ManpowerGroup Global, Inc. is seeking a Database Security Engineer (DB2/IMS z/OS) in Chandler, AZ. This role involves supporting and maintaining mainframe database environments, managing security controls, and collaborating with various teams. Candidates should have expertise...Flexible hours
$52.5 - $55.5 per hour
...Cyber Security Engineer Location: Irving, TX | Charlotte, NC | Chandler, AZ | Minneapolis, MN Duration: 18 Months Pay Rate: $52.50 - $55.50 Job/Role Description Lead or participate in computer security incident response activities for moderately complex...Work experience placement- ...Security Engineer - Application Security We are looking for a Security Engineer- Application Security. Please let me know if interested. Locations: Charlotte NC, Chandler AZ, Westlake TX (Hybrid), (3 days onsite) Duration: 12+ Months Contract W2 Contract Only...Contract workWork experience placement
- ...Enterprise Architect Make Next Happen Now. For more than 30 years, The Company has helped innovative companies and their investors... ...practices, hybrid cloud architecture, API management, microservices, security, data modernization and cloud integration technologies to...Shift work
- ...Enterprise Architect - Finance Technology Make Next Happen Now. For more than 30 years, this Bank has helped innovative... ...domain. Align with other stakeholders in Bank (Security, Privacy, Legal) to ensure compliance to Bank standards Be a key contributor on architectural...Remote workShift work
- ...Security Configuration Baseline Engineer Our client, a leading organization in the technology and security sector, is seeking a dedicated... ...systems. Collaborate with cross-functional teams to ensure compliance with security standards such as NIST, CIS, and ISO....
- ...Network Security Engineer Location: Chandler, AZ or Charlotte, NC Position Type: Contract Rate: W2 Interview mode is HIRE FROM SKYPE Green card, US Citizen and EAD preferred Job Description: The ideal candidate will have the following skills and experience:...Contract work
- ...Job Title: Security Controls Execution Analyst Location: Chandler, AZ (Hybrid) Duration... ...to ensure consistency, accuracy, and compliance Maintain documentation and evidence... ...teams, business stakeholders, architects, and engineering teams Communicate requirements...Contract work
$142.24k
A renowned coffee brand in Tempe, Arizona, is looking for a Corporate Architect to lead AI-driven business transformation. The ideal candidate will have extensive experience in AI, software development, and enterprise architecture. Responsibilities include designing scalable...Work at office- ...organization in the cybersecurity industry, is seeking a Information Security Engineer 2 - Contingent to join their team. As a Information... ...Collaborate with IT partners to improve processes and ensure compliance with security policies. What's Needed? At least 2+...Contract work
- ...Information Security Engineer 3 Location: Irving, TX / Charlotte, NC / Chandler, AZ (Hybrid) Duration: 18+ Months Consultant Type: W2 only (OPT not eligible) Must-Haves / Core Skillset Micro-Segmentation & Zero Trust Hands-on experience with workload...
$59.53 - $67.53 per hour
...Information Security Engineer Genesis10 is currently seeking an Information Security Engineer for a contract position with a Global... ...deliverables meet function, policies, procedures, and compliance requirements. Responsibilities: Consult on complex initiatives...Hourly payContract work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to FinOps Security & Compliance Architect. Be the first to apply!
- mortgage compliance Chandler, AZ
- regulatory compliance associate Chandler, AZ
- regulatory compliance analyst Chandler, AZ
- vendor compliance Chandler, AZ
- ethics compliance Chandler, AZ
- vice president compliance Chandler, AZ
- regulatory compliance remote Chandler, AZ
- compliance counsel Chandler, AZ
- compliance team leader Chandler, AZ
- compliance audit Chandler, AZ


