Security Architect
-
- Software Engineering
- Professional
Security Architect
-
- Software Engineering
- Professional
At IBM, work is more than a job – it’s a calling: To build. To design. To code. To consult. To think along with clients and sell. To make markets. To invent. To collaborate. Not just to do something better, but to attempt things you’ve never thought possible. Are you ready to lead in this new era of technology and solve some of the world’s most challenging problems? If so, lets talk.
Your Role and Responsibilities
The Security Architect role focuses on the design of business-driven Information Technology solutions to meet security requirements related to function, protection, assurance, risk management and compliance.
The scope of work includes:
- the collection and validation of requirements,
- the identification of risks, threats, vulnerabilities, potential anomalous flows and interactions,
- the definition of the security processes for assurance, management and compliance,
- the definition of security subsystems, and
- the design of integration and deployment architectures for security in Networks, Infrastructure, Middleware, Applications and Systems & Service Management systems.
Depending on the area of work, the Security Architect may perform evaluation and selection of the components, design of hardware, software, process and service components of the solution, assurance of deployment architectures, and guide secure engineering practices in development.
Utilizes knowledge of the product/deliverable/process and client usage to pinpoint opportunities for enhancement Identifies issues, potential underlying causes, and proposes opportunities for enhancement Independently devises and solutions innovative solutions leveraging analytical skills and business acumen to create value propositions Generates and leverages intellectual assets to advance digital self-service goals
Responsibilities:
- Review and assess IBM Data & AI services, and applications as per defined by the IBM’s Security and Privacy by Design (SPbD) framework.
- Identify security design gaps in existing and proposed architectures and recommend changes or enhancements.
- Lead the efforts to streamline the security processes and tooling through the active participation in “Design Thinking” sessions for process and tooling changes and enhancements.
- Engage, collaborate, and build trusted relationships with product managers, developers, and other security engineers.
- Develop guidance and enablement material to produce secure software, services and applications that align with IBM’s commitments to customers and IBM’s IT Security Standards.
- Advise, Design, implement enterprise-class secure software/services.
- Align company standards, industry regulations, frameworks and security with overall business and technology strategy.
- Identify and communicate current and emerging security threats.
- Design security architecture elements to mitigate threats as they emerge.
- Assess risk and develop mitigation and remediation plans for security findings in services and applications
Required Technical and Professional Expertise
- Minimum 8+ Years of professional experience in Software Domain
- Business Awareness: You have an understanding about the business that you are trying to secure. For example, working knowledge of cloud technologies, the ability to describe what the security concerns and impact might be for an organization looking to move from on-premises compute to public cloud.
- Distributed Systems / Software Design: understand the compromises that teams make every day to make things work. Security Architect should have strong influence towards secure implementation and development.
- Threats, Risks, and Modeling: know the difference between a threat and risk. The ability to understand what organizations need to protect, who they need to protect it from, and how that protection should work.
- Vulnerabilities and Exploitation: the ability to discern between a weakness, flaw, or error found within a system, software, host, etc. which have the potential to be leveraged by an attacker to compromise a network, application, an infrastructure, etc.
- Collaboration: being personable, approachable, and empathetic are extremely valuable qualities as a Security Architect. The Security Architect role requires a lot of cooperation and engagement within the organization that they support.
- 5 or more years of experience as an Engineer or Architect (Software, Solutions, Network, Security, etc.,)
- Experience with Incident Response / Operations or addressing breaches, incidents.
- Experience with forensic analysis – strong critical thinking and analytical skills.
- Understanding of current software (on-premises), cloud technologies and Software-as-a-Service (SaaS) concepts.
- Experience developing software and writing code
Preferred Technical and Professional Expertise
- Working knowledge of the security tooling.
- Working experience developing software and writing code.
- Experience with Agile design and Project Management methodologies.
- Experience with industry compliances (HIPAA, SOC, ISO, FISMA, FedRamp).
Apprenez-en plus à notre sujet
About IBM
IBM’s greatest invention is the IBMer. We believe that through the application of intelligence, reason and science, we can improve business, society and the human condition, bringing the power of an open hybrid cloud and AI strategy to life for our clients and partners around the world.
Restlessly reinventing since 1911, we are not only one of the largest corporate organizations in the world, we’re also one of the biggest technology and consulting employers, with many of the Fortune 50 companies relying on the IBM Cloud to run their business.
At IBM, we pride ourselves on being an early adopter of artificial intelligence, quantum computing and blockchain. Now it’s time for you to join us on our journey to being a responsible technology innovator and a force for good in the world.
Principaux détails du poste
Rejoignez notre réseau de talents.
Soyez au courant des possibilités de carrière qui correspondent à vos compétences et à vos intérêts.