VP Cyber Security Enterprise Architect

CardWorksPittsburgh, PA
1d

About The Position

This VP-level Enterprise Cybersecurity Architect leads the definition and evolution of enterprise-wide security strategy, frameworks for CardWorks and Merrick Bank, a combined mid-size bank and financial services enterprise. By integrating security architecture with business goals, this role implements comprehensive controls across both cloud and on-premise environments without compromising employee productivity or quality of life. CardWorks and Merrick Bank are committed to safeguarding customer data and internal IT assets and maintaining a robust cybersecurity posture. This role is crucial in shaping and maintaining the security architecture of the entire enterprise. This includes designing, overseeing implementation, and overseeing secure IT systems and processes. The Cybersecurity Architect ensures compliance with industry regulations and best practices. Cardworks/Merrick values innovation, security, and a collaborative work environment.

Requirements

  • Master’s degree in computer science, information security, or related technical field, equivalent certifications, or equivalent work experience is required.
  • 10+ years of experience in enterprise architecture, cybersecurity architecture, or related leadership roles.
  • Deep technical security engineering experience with several of the following: network security (firewalls, IDS/IPS, VPN), IAM, encryption, SIEM, IaaS, PaaS, SaaS, Secure SDLC, DevSecOps, API security, and endpoint protection.
  • Extensive experience working in environments requiring security frameworks/regulations such as FFIEC, GLBA, PCI-DSS, SOX, SOC2.
  • Proven experience in designing secure, scalable, and resilient cloud-native and hybrid architecture.
  • Strong technical writing skills.
  • Excellent communication and stakeholder engagement skills are required, along with the ability to influence both technical and non-technical audiences.
  • Excellent communication skills with the ability to explain complex security and compliance concepts to both technical and non-technical stakeholders.
  • Detail-oriented mindset that balances tactical implementation with architectural foresight and continuous improvement.
  • Strong stakeholder management skills: ability to influence CISOs, VPs of IT, compliance/audit, and business leaders.
  • Strong technical writing skills.
  • Proactive learner who stays current on evolving financial-sector threats, regulatory changes, and emerging security technologies

Nice To Haves

  • Relevant certifications are highly desirable (e.g., CISSP, CISM, ISSAP, TOGAF, AWS/Azure Architect).
  • Scripting or automation skills using Python, PowerShell, Terraform, or Ansible is preferred, but not immediately required.

Responsibilities

  • Cyber Security Strategy & Architecture: Own the enterprise security architecture framework, continuously evolving it to address new threats.
  • Design comprehensive security architectures, strategies, policies, and standards to align with business objectives and regulatory requirements (e.g., NIST CSF, GLBA, SOC2, PCI, FFIEC).
  • Develop and maintain security architecture and supporting documentation.
  • Identify and communicate emerging security threats to the CISO and other senior business leaders.
  • Assess latest cybersecurity technologies, trends, and developments. Communicate this to the Office of the CISO for relevance and potential integration.
  • Work with all technology teams to assist with secure designs, including but not limited to: Network design, Application, cloud, data transfer, pci, secure end user compute , access controls, vendor monitoring, etc.
  • Security Design & Implementation: Partner with software development, engineering, and infrastructure teams to integrate security-by-design principles into all phases of solution delivery, including DevSecOps pipelines, cloud, and on-premise network architecture.
  • Design security patterns and controls to promote enterprise efficiency and transparency. This includes the addition and maintenance of automation, where possible, to increase efficiency for compliance audits and daily processes for security assurance.
  • Evaluate security architecture and security control baselines for all technology within the enterprise. Identify design gaps and recommend changes/enhancements.
  • Leadership & Mentorship: Provide expert guidance and consultation related to security matters across the organization, particularly for the senior members of the Cybersecurity Team and IT leadership.
  • Coach and mentor less experienced personnel on cybersecurity principles and implementation, fostering a culture of security best practice.
  • May require leading a small team of architects and/or engineers directly or through a dotted-line relationship.
  • Prepare and deliver senior management-level presentations to communicate trends, threats, and current security posture.
  • Partner with Cybersecurity Solutions Architects as they establish baselines for various security controls and infrastructure.

Benefits

  • Competitive Pay , including a Bonus Target or Variable Pay Incentive Program
  • Benefits Package -Medical, Dental, and Vision (plus much more)
  • 401(k) Plan with Company Match
  • Short- & Long-Term Disability
  • Wellness Programs
  • Group Life and AD&D Insurance
  • Paid Vacation, Sick Days and bank Holidays
  • Employee Engagement Activities including Employee Appreciation Day, DEI Employee Resource Groups, Corporate Social Responsibility, Service Recognition
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service