IonQ

Principal Cybersecurity Architect – Network Security Posture Management

IonQ
Apply
10 hours ago
Santa Clara, CA, USAStaff+
H1B sponsor

Base Salary

$249k - $325k/yr

Responsibilities

  • Design and own the security posture assessment rule framework for evaluating device configurations, network behaviors, and access controls against NIST CSF, CIS Benchmarks, ISO 27001, FISMA, and FedRAMP.
  • Build and maintain a scalable system for authoring, versioning, managing, and deploying security posture rules and organizational policies.
  • Monitor emerging threats, compliance requirements, regulatory changes, and CVEs, translating them into updated posture assessment rules.
  • Define risk scoring and prioritization models across individual devices, network segments, and enterprise environments.
  • Collaborate with platform engineering on scalable rule execution, data modeling, and APIs for rule ingestion, evaluation, and results delivery.
  • Engage enterprise customers and internal stakeholders to translate compliance requirements into platform capabilities and provide authoritative security guidance.
  • Partner with Product and Engineering to shape the NSPM roadmap and security posture capabilities.
  • Mentor engineers and security analysts on posture rule design, threat modeling, compliance mapping, and rigorous rule review processes.

Requirements

  • 12+ years of experience in cybersecurity, network security, or security architecture, including at least 5 years in a senior or principal role focused on network security posture, compliance, or policy enforcement at scale.
  • Deep hands-on experience with NSPM platforms and tools and a track record of designing and operationalizing posture assessment rules across large enterprise networks.
  • Comprehensive knowledge of NIST CSF, CIS Benchmarks, ISO 27001, FISMA, and FedRAMP, including translating controls into automatable assessment rules.
  • Strong understanding of firewall policy analysis, routing protocol security, access control, and configuration hardening across Cisco, Juniper, Palo Alto, and Fortinet environments.
  • Ability to operate strategically and technically, engaging executive stakeholders on compliance risk while collaborating with engineering teams on rule design, data modeling, and platform integration.
  • Preferred qualifications include CISSP, CISM, CCNP Security, or equivalent credentials.
  • Preferred experience includes work at a network security vendor, MSSP, or large enterprise security team.
  • Familiarity with Zero Trust architecture, network segmentation, device trust, and least-privilege access enforcement.
  • Experience authoring security standards, CIS Benchmark profiles, or DISA STIGs, or participating in network security policy and compliance working groups.
  • Understanding of CVE lifecycle management, SBOM analysis, and vulnerability correlation for network device firmware and software supply chain risk assessment.

Benefits

  • Onsite or hybrid work in Santa Clara / the Bay Area, California, with up to 10% travel.
  • Comprehensive medical, dental, and vision plans.
  • Matching 401(k), unlimited PTO, and paid holidays.
  • Parental and adoption leave, legal insurance, and a home technology stipend.
  • Total compensation includes base salary, bonus, equity, and other benefit options.

Tech Stack

Categories

IonQ

About IonQ

1,001-5,000 employees

IonQ builds trapped-ion quantum computers and offers access to them via major cloud platforms and direct systems for enterprise and research users. The public company (NYSE: IONQ), founded in 2015 and headquartered in College Park, Maryland, sells quantum hardware, cloud services, and development tools used in areas like materials modeling, optimization, and machine learning. Its systems are available through AWS Braket, Microsoft Azure Quantum, and Google Cloud Marketplace.

Contact me