Talent.com
Enterprise Security Architect
Enterprise Security ArchitectBankUnited • Miami Lakes, FL
Enterprise Security Architect

Enterprise Security Architect

BankUnited • Miami Lakes, FL
[job_card.30_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
  • [job_card.permanent]
[job_card.job_description]

Job Description

SUMMARY: The Enterprise Security Architect will play an integral role in assisting in the implementation and delivery of the security strategy and technical direction applied to ensure the Bank's data and applications remain secure. The role will report to Chief Enterprise Architect and will collaborate with other Enterprise Solution Architects, Implementation Teams, and Enterprise Risk Management teams to ensure that the Bank's technology solutions conform to disciplined, industry best practices for information security.
This highly visible position will be front and center as we work to continuously modernize our solutions and change the way we apply technology across our systems. The Enterprise Security Architect must possess both a deep and wide background in information security being applied across a wide breadth of technologies spanning solutions built in the cloud (such as AWS, Azure, and GCP), on SaaS/PaaS platforms (such as SalesForce and Office 365), and modern deployments on "open" technology stacks. As a key member of the architecture team, the Enterprise Security Architect should be comfortable with driving technical ideas and communicating clearly with technical as well as non-technical audiences.
ESSENTIAL DUTIES AND RESPONSIBILITIES include the following. Other duties and special projects may be assigned.
  • Assists in the development and maintenance of a security architecture process that enables the enterprise to develop and implement security solutions and capabilities that are clearly aligned with business, technology and threat drivers
  • Assists in the development of security strategy plans and roadmaps based on sound enterprise architecture practices
  • Assists in the development and maintenance of security architecture artifacts (, models, templates, standards and procedures) that can be used to leverage security capabilities in projects and operations
  • Assists in the baselining of security configuration standards for operating systems (, OS hardening), network segmentation and identity and access management (IAM)
  • Assists in the development of standards and practices for data encryption and tokenization in the organization, based on the organization's data classification criteria
  • Liaises with the vendor management (VM) team to conduct security assessments of prospective vendors, especially those with which the organization shares intellectual property (IP), as well as regulated or other protected data * Software as a service (SaaS) providers * Cloud/infrastructure as a service (IaaS) providers * Managed service providers (MSPs)
  • Evaluates the statements of work (SOWs) for these providers to ensure that adequate security protections are in place. Assesses the providers' audit reports (or alternative sources) for security-related deficiencies and required "user controls" and report any findings to the Chief Enterprise Architect, CISO, and vendor management teams
  • Collaborates with other security architects and security practitioners to share best practices and insights
  • Collaborates with the business continuity management (BCM) team to validate security practices for BCM testing and operations when a failover occurs
  • Participates in application and infrastructure projects to provide security-planning advice
  • Collaborates with the internal audit (IA) team to review and evaluate the design and operational effectiveness of security-related controls
  • Validates IT infrastructure and other reference architectures for security best practices and recommend changes to enhance security and reduce risks, where applicable
  • Coordinates with DevOps teams to advocate secure coding practices, and to escalate concerns related to poor coding practices to the CISO
  • Coordinates with the CDO and Information Security to document data flows of sensitive information in the organization (, PII or ePHI) and recommend controls to ensure that this data is adequately secured (, encryption and tokenization)
  • Reviews security technologies, tools and services, and makes recommendations to the broader security team for their use, based on security, financial and operational metrics
  • Gather and analyze requirements from product owners
  • Lead and mentor other team members
  • Foster development best practices within the team
  • Identify and drive process improvements
  • Facilitate communication with cross-functional groups
  • Work with the product organization to develop secure business requirements, develop the security architecture and integrate into the Bank's long term platform strategy
  • Stay up to date on new tools & techniques in the information security space
  • Conduct proof of concept activities with key business users in support of advanced use cases
  • Adheres to and complies with applicable, federal and state laws, regulations and guidance, including those related to anti-money laundering ( Bank Secrecy Act, US PATRIOT Act, etc.).
  • Adheres to Bank policies and procedures and completes required training.
  • Identifies and reports suspicious activity.
EDUCATION College degree or equivalent management/work experience (At least 10 years), which includes practical experience in Information Technology and IT Security Minimum 4 years' experience with cloud-based enterprise infrastructure architecture and/or operations required.
EXPERIENCE
  • Experience in using architecture methodologies such as SABSA, Zachman and/or TOGAF
  • Direct, hands-on experience or strong working knowledge of managing security infrastructure -- eg, firewalls, intrusion prevention systems (IPSs), web application firewalls (WAFs), endpoint protection, SIEM and log management technology
  • 3+ years experience - AWS cloud experience
  • 3+ years experience - Cloud security architecture experience
  • Working knowledge of AWS cloud and 3rd party security controls and constructs: Experience with SIEM monitoring & logging tools and architectures (Splunk, Sumo Logic, etc)Experience with continuous cloud compliance tools and supporting architectures such as Redlock, Dome9, etcExperience with AWS IAM (roles, permissions, etc)Experience with AWS Certificate Manager (ACM) (for security certificate issuance, etc)Experience with AWS WAF and external (Internet) facing systems security patternsExperience with AWS encryption across various storage mediums (S3, EBS, etc)Experience with AWS Organizations and SCP policy conceptsExperience with 3rd party cloud network security tools such as Palo Alto firewallsExperience with AWS native cloud network & security constructs such as security groups, NACLs, etc
  • AWS network experience (multi-AZ VPC, multi-region accounts, etc)
  • Experience with data loss prevention methodologies/technologies in a cloud environment
  • Experience reviewing application code for security vulnerabilities
  • Direct, hands-on experience or a strong working knowledge of vulnerability management tools
  • Experience designing the deployment of applications and infrastructure into public cloud services
  • Direct experience designing IAM technologies and services: Active DirectoryLightweight Directory Access Protocol (LDAP)Amazon Web Service (AWS) IAM
  • Strong working knowledge of IT service management (eg, ITIL-related disciplines): Change managementConfiguration managementAsset managementIncident managementProblem management
  • Experience with the following Regulations, Standards and Frameworks: Payment Card Industry Data Security Standard (PCI-DSS)Sarbanes-OxleyGeneral Data Protection Regulation (GDPR)Privacy PracticesCSA Framework
  • Strategic planning skills -- The Enterprise Security Architect must interpret business, technology and threat drivers, and develop practical security roadmaps to deal with these drivers
  • Communication skills -- The Enterprise Security Architect will be required to translate complex security-related matters into business terms that are readily understood by colleagues The security architect should anticipate presenting analyses in person and in written formats
  • Ability to stay composed in the face of opposition to architectural principles, governance and standards
  • Ability to work independently
  • Self-motivated
  • Strong customer service skills
[job_alerts.create_a_job]

Enterprise Security Architect • Miami Lakes, FL

[internal_linking.similar_jobs]

Security Architect

KforceDavie, FL, United States
[job_card.full_time]

Kforce has a client that is seeking a Security Architect in Davie, FL.Lead the development of a strategic security architecture vision, including standards and frameworks that are aligned with over...[internal_linking.show_more]

 • [job_card.promoted]

Lead Business Analyst

INSPYR SolutionsWeston, FL, United States
[job_card.temporary]

Weston, FL or Lowell, MA (3/2 Hybrid).US Citizen, GC Holders or Authorized to Work in the U.The D365 Technical Security Architect plays a critical role in designing, implementing, and governing sec...[internal_linking.show_more]

 • [job_card.promoted]

Security Director

Andy FrainPlantation, FL, United States
[job_card.full_time]

Andy Frain Services is looking for a highly motivated individual that is multi-task-oriented to manage a Security contract.Manages the accountability of all Supervisors and staff for given accounts...[internal_linking.show_more]

 • [job_card.promoted]

Cybersecurity Instructor - FT40

Keiser UniversityMiramar, FL, United States
[job_card.full_time]

Instructors are responsible for leveraging their expertise to deliver education services to students through:.Planning and organizing instructional methods and resources.Programmatic accreditation ...[internal_linking.show_more]

 • [job_card.promoted]

Sr. Director, Software Engineering & Architect

TradeStationPlantation, FL, United States
[job_card.full_time]

Senior Director, Software Engineering & Architect.Remote position - must reside Florida, Texas, Illinois, New York, New Jersey, Alabama, Arizona, Arkansas, Colorado, Connecticut, Delaware, Georgia,...[internal_linking.show_more]

 • [job_card.promoted]

IAM Engineer

KforceDavie, FL, United States
[job_card.full_time]

Kforce has a client seeking an IAM Engineer in Fort Lauderdale, FL.Summary:The Identity Access Management Engineer is responsible for designing, implementing, and operating enterprise IAM and IGA s...[internal_linking.show_more]

 • [job_card.promoted]

Senior Software Engineer, Windows/Desktop Applications - Plantation, USA

SpeechifyPlantation, FL, United States
[job_card.full_time]

The mission of Speechify is to make sure that reading is never a barrier to learning.Over 50 million people use Speechify's text-to-speech products to turn whatever they're reading - PDFs, books, G...[internal_linking.show_more]

 • [job_card.promoted]

Security

Rainbow ShopsLauderdale Lakes, FL, United States
[job_card.full_time]

Security - Lauderdale Lakes, FL.Rainbow USA is recognized as one of the fastest growing junior, kids, plus, and petite, specialty apparel retail chains and has grown to over 1,000 retail stores! We...[internal_linking.show_more]

 • [job_card.promoted]

Compliance Analyst

Apex SystemsMiramar, FL, United States
[job_card.temporary]

Apex Systems, a World-Class Technology Solutions Provider, is seeking applicants for the below position on behalf of our client.Please apply if interested and qualified.Please note that only qualif...[internal_linking.show_more]

 • [job_card.promoted]

Sr. Director, Software Engineering & Architect

Trade Station Group, Inc.Plantation, FL, United States
[job_card.full_time]

Director, Software Engineering & Architect.Remote Position - must reside Florida, Texas, Illinois, New York, New Jersey, Alabama, Arizona, Arkansas, Colorado, Connecticut, Delaware, Georgia, Indian...[internal_linking.show_more]

 • [job_card.promoted]

Remote Senior Director, AI-First Trading Architecture

Trade Station Group, Inc.Plantation, FL, United States
[filters.remote]
[job_card.full_time]

A leading brokerage firm in the United States is seeking a visionary Senior Director of Software Engineering & Architect to drive technology solutions.This remote role focuses on leading strategic ...[internal_linking.show_more]

 • [job_card.promoted]

Site Lead - Union - Opa Locka - Ahtna Professional Services

AhtnaOpa-Locka, FL, United States
[job_card.full_time]

The Site Lead is the primary front-line security officer assigned to respond to emergencies by using proper tactics, techniques, and procedures within established time constraints.The Site Lead is ...[internal_linking.show_more]

 • [job_card.promoted]

Sr. Principal Architect (HCM Product)

UKGWeston, FL, United States
[job_card.full_time]

Principal Architect (HCM Product).Be among the first 25 applicants.Principal Architect (HCM Product).Get AI-powered advice on this job and more exclusive features.With 80,000 customers across 150 c...[internal_linking.show_more]

 • [job_card.promoted]

Solutions Architect (Datech Solutions)

TD SynnexMiramar, FL, United States
[job_card.full_time]

The Solutions Architect for our Datech Solutions Organization will support more complex technology, like Virtualization, Data Center, Storage, UC and Cloud Solutions.May specialize in one vendor or...[internal_linking.show_more]

 • [job_card.promoted]

Storage Engineer

Avani Technology SolutionsEl Portal, FL, United States
[job_card.full_time]

Role: Software Engineer Lead - IT Enterprise Systems (Storage) Engineer.Software Engineers perform requirements analysis.They then design, develop or maintain the physical application (components) ...[internal_linking.show_more]

 • [job_card.promoted]

Patrol/ Access Control Security Flex Officer

Allied Universal SecurityPlantation, FL, United States
[job_card.full_time]

Company Overview: Allied Universal, North America's leading security and facility services company, offers rewarding careers that provide you a sense of purpose.While working in a dynamic, welcomin...[internal_linking.show_more]

 • [job_card.promoted]

Solution Architect - Search Platforms - SGWS

ShiftCode AnalyticsMiramar, FL, United States
[job_card.full_time]

Interview: Virtual (READ MUST HAVES).Visa: USC and GC (we need strong and senior candidate).Onsite: Miramar, FL and Addison, TX (need local or 50miles).Solution Architect - III - Knowledge of Sales...[internal_linking.show_more]

 • [job_card.promoted]

Bilingual Unarmed Security Officer Hollywood

Marksmen SecurityPembroke Pines, FL, United States
[job_card.full_time]

Marksmen Security - - Responsibilities: Deter criminal activity and protect property; Monitor surveillance cameras and alarms; Patrol premises and check credentials; Enforce rules on the property a...[internal_linking.show_more]