
Enterprise Cloud Security Architect
GuidePoint Security2 months ago
Responsibilities
- Provide design-level multicloud architecture leadership and guidance to engineering teams across AWS, Azure, and GCP.
- Lead adoption of AWS Control Tower, Azure Landing Zones, and GCP organization structures or policies for secure automated enterprise environments.
- Translate security strategies into cloud-agnostic architectural patterns, standards, and reference architectures.
- Integrate cybersecurity tools and capabilities across enterprise environments and modernize distributed security functionality.
- Guide multicloud networking, cloud security controls, compliance, identity, platform capabilities, and security telemetry architecture.
- Evaluate and improve engineering and delivery team designs and maintain solution development and improvement roadmaps.
- Help shape enterprise cloud and cybersecurity capabilities around innovation, governance, risk management, and modernization.
Requirements
- Active TS/SCI clearance and ability to obtain a counter-intelligence polygraph are required.
- Requires 10+ years of enterprise security architecture, cloud architecture, or cybersecurity engineering experience, including cloud-native, commercial off-the-shelf, government off-the-shelf, and open-source tools.
- Requires experience integrating enterprise cybersecurity capabilities and modernizing distributed security functionality.
- Requires knowledge of infrastructure-as-code concepts such as Terraform, CloudFormation, or Bicep.
- Requires knowledge of AWS Control Tower, Azure Landing Zones, GCP Organization Structures, or GCP organization policies.
- Requires knowledge of multicloud networking, segmentation, routing, hybrid connectivity, cloud security controls, compliance frameworks, and security telemetry ecosystems.
- Requires knowledge of modern cybersecurity frameworks, Zero Trust principles, and secure-by-design methodologies.
- Accepts an associate degree with 5+ years, a bachelor's degree with 3+ years, or a master's degree with 1+ years supporting IT projects and activities.
- Requires DoD 8570 IAT Level III and IASAE Level II certifications; SecurityX or CISSP fulfills both.
- Must obtain a DoD 8570 CSSP-IS certification within 30 days of starting, including an accepted certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND.
- Preferred qualifications include enterprise architecture artifacts, cloud modernization and multicloud strategy experience, cloud-native security and identity knowledge, architectural design evaluation, roadmap development, and AWS, Azure, or GCP certifications.
Benefits
- Primarily remote for U.S.-based employees, with some travel and possible on-site work for federal positions
- Medical insurance options including PPO and HDHP/HSA plans
- Dental insurance with employer premium coverage
- 12 corporate holidays and Flexible Time Off (FTO) program
- Mobile phone and home internet allowance
- Retirement plan eligibility after two months at open enrollment
- Pet benefit option
About GuidePoint Security
GuidePoint Security provides trusted cybersecurity expertise, solutions, and services that help organizations make informed decisions and minimize risk. Our experts act as your trusted advisor to understand your business and challenges, helping you through an evaluation of your cybersecurity posture and ecosystem to expose risks, optimize resources and implement best-fit solutions. GuidePoint’s unmatched expertise has enabled 40% of Fortune 500 companies and more than half of U.S. government cabinet-level agencies to improve their security posture.