The Security Architect develops and maintains a security architecture process that enables the enterprise to develop and implement security solutions and capabilities that are clearly aligned with business, technology, and threat drivers. This role works cooperatively with all staff to meet the business and customer needs of Navy Mutual, while managing processes and methods for auditing and addressing information security standards, and facilitates the migration of non-compliant environments to compliant environments. The Security Architect informs and conducts security audits within and outside the organization to ensure compliance with standards and currency with industry security norms. This role manages and participates in the planning and implementation of security administration for all IT projects and makes recommendations and assists in the implementation of changes to work methods and procedures to make them more effective or to strengthen security measures. The Security Architect develops security strategy plans and roadmaps based on sound enterprise architecture practices and develops and maintains security architecture artifacts (e.g., models, templates, standards, and procedures) that can be used to leverage security capabilities in projects and operations. This role determines baseline security configuration standards for operating systems (e.g., OS hardening), network segmentation, and identity and access management (IAM). The Security Architect participates in the design and execution of back-up disaster recovery systems and contingency operations, and participates in systems back-up regimens as needed. This role creates and maintains a security training program and performs regular security awareness training for all employees to educate and ensure compliance with the organization’s security policies, standards, and procedures. The Security Architect is responsible for maintaining project software and documentation inventory and configuration baselines. This role establishes and maintains all CM processes and procedures, including library and software development information, impact assessments, incident reports, and software change notices, etc., on a continuous basis. The Security Architect identifies and implements processes to strengthen, streamline, and automate build processes and serves as an advocate for best practices to drive the development and maintenance of build automation tools. This role maintains operational configurations of all in-place solutions as per the established baseline control efforts, using automated CM tools. The Security Architect is responsible for change management controls and reporting/documentation. This role manages relationships with contractors and vendors as needed. The Security Architect establishes a taxonomy of indicators of compromise (IOCs) and shares this detail with other security colleagues, including the security operations center (SOC), information security managers and analysts, as well as counterparts within the network operations center (NOC). Other duties as assigned.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Education Level
No Education Listed