- Company Name
- CBC
- Job Title
- Senior Information Security Architect
- Job Description
-
**Job Title:** Senior Information Security Architect
**Role Summary:**
Seasoned security professional responsible for designing, implementing, and governing security architectures across AWS environments. Ensures cloud compliance with enterprise policies and industry frameworks (NIST, OWASP, ISO, etc.) while driving security initiatives across multiple projects and stakeholder groups.
**Expactations:**
- Hybrid work in Reston, VA – on‑site three days per week.
- Full‑time C2C/W2 contract with option to convert to permanent after ~6 months.
- Lead AWS security architecture program across concurrent projects.
- Self‑starter capable of influencing product owners, enterprise architects, and engineering teams.
**Key Responsibilities:**
- Architect and enforce security controls for AWS services (Compute, IAM, RDS, VPC, Serverless, ECS/EKS, CI/CD, AI/ML, etc.).
- Conduct threat modeling, risk assessments, and design mitigations for applications, APIs, and infrastructure.
- Define and implement data protection measures: encryption, tokenization, masking, key management, and access controls.
- Integrate security into DevSecOps pipelines (pipeline security, container security, CSPM, CWPP, SIEM).
- Align designs with NIST, OWASP, CIS, FedRAMP, ISO, SOX, and other relevant standards.
- Provide guidance on system design principles: API‑driven, stateless, high availability, resiliency, and SaaS integrations.
- Collaborate with cross‑functional teams to ensure security requirements are met throughout the development lifecycle.
**Required Skills:**
- Deep expertise in AWS architecture and security pillars.
- Strong background in information security architecture: application security, threat modeling, API security, DevSecOps, authentication/authorization, encryption, key management, data discovery, SIEM, CSPM, CWPP, access controls, container security.
- Proficiency with industry security frameworks (OWASP, NIST, CIS, FedRAMP, ISO, SOX).
- Experience designing resilient, high‑availability, API‑centric systems and SaaS integrations.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
- Preferred certifications: AWS Certified Solutions Architect – Professional or Specialty, CISSP, CCSP, or equivalent.