Senior Security Architect

4 Months ago • 3 Years + • Cyber Security

Job Summary

Job Description

ION Group is hiring a Senior Security Architect with experience in Cloud Security and DevSecOps Automation, Threat Modeling, and managing security in public clouds like AWS or Azure. This role requires strong understanding of networking, secure microservices architectures, and experience with Kubernetes and Openshift. The ideal candidate will have experience with getting or maintaining certified standards like ISO 27001, PCI DSS, or MIL-SPEC.
Must have:
  • Cloud Security
  • Threat Modeling
  • AWS or Azure
  • Microservices Architectures
Good to have:
  • Kubernetes
  • Openshift
  • Service Mesh
  • ISO 27001

Job Details

About us
We’re visionary innovators who provide trading and workflow automation solutions, high-value analytics, and strategic consulting to corporations, financial institutions, central banks, and governments. More than 40% of the world’s largest companies use our solutions. We’ve achieved tremendous growth by bringing together some of the best and most successful financial technology companies in the world.
At ION, we offer careers that provide many opportunities: To invent. To design. To collaborate. To build. To transform businesses and empower people around the world to do more, faster and better than before. Imagine what you can do and experience. This is where you can do your best work.
Learn more at iongroup.com.
 
Your role
Your duties and responsibilities
•        Establish policies and procedures that promote secure development/cloud principles.
•        Enable security automation through tools to reduce vulnerabilities and flaws due to human errors.
•        Automate audit evidence collection throughout the SDLC to facilitate compliance reporting.
•        Monitor security metrics to continuously improve and stay one step ahead of the red team.
•        Maintain strong and continuous engagement with teams to ensure the ION Cloud architecture and operating model is up to the top security standards.
•        Create a state-of-the-art secure cloud architecture and strategy, supported by a robust and flexible infrastructure with reliable and efficient operating model.
•        Run post-mortem incidents analysis.
•        Review the security principles compliancy of deployment, maintenance, monitoring, and management processes.
•        Cooperate with the software architect to ensure that security aspects are considered in the software architecture.
•        Regularly evaluate the best cloud applications, hardware, and practices available in the security domain.
•        Provide training and guidance to the rest of the organization, helping with the development of a security culture throughout the company.
•        Help the product owner in refining security requirements so that they fit in the customer’s strategy and becomes selling point.
Other duties
We might ask you to perform other tasks and duties as your role expands.

Your skills, experience, and qualifications
Skills
•        Threat Modeling.
•        Authentication/authorization standards and implementations
•        Application of encryption at rest and in transit
•        Certificates/secrets standards and implementations
•        Managing security in public clouds ( AWS, Azure, GCP), with at least 3 years specific experience in either AWS or Azure.
•        Secure microservices architectures in a cloud-native environment.
•        Strong understanding of networking.
•        Knowledge of different deployment models (Container, Serverless, Cloud, PaaS, IaaS …).
•        Ability to work with diverse, remote, and distributed teams across multiple regions and time zones.
•        Ability to do research autonomously to always be ahead of any security threat.
•        SSDLC practices in DevOps, CI/CD environment.
•        OWASP Top 10, SANS CWE, OpenSAMM, BSIMM, etc.
•        Penetration testing, vulnerability scanning
•        Design security monitoring tools.
•        Designing pipelines that make use of SCA, SAST, DAST, IAST and RASP solutions.

Qualifications
•        SANS/SEC-540: Cloud Security and DevSecOps Automation
•        Systems Security Certified Practitioner (SSCP)
•        Certified Information Systems Security Professional (CISSP)
•        Certified Authorization Professional (CAP)
•        Certified Secure Software Lifecycle Professional (CSSLP)
•        HealthCare Information Security and Privacy Practitioner (HCISPP)

Experience
•        Multi-year experience in Threat Modeling.
•        A proven track record as architect and consultant, capable of working directly with teams, embedded in the delivery model.
•        Experience with Kubernetes, Openshift, Service Mesh.
•        Experience with clouds (AWS, Azure, GCP)
•        Experience with getting or maintaining certified standards (i.e. ISO 27001, PCI DSS, MIL-SPEC)

Contract Type
•        Full-time, permanent contract.


Important notes (Italy)
According to the Italian Law (L.68/99) Please note that candidates from the disability list will be given priority.
Due to the high volume of applications, only those candidates that meet the required criteria for selection will be contacted.
If you’re from a non-EU country, you must have a valid EU visa or work permit.
undefinedundefinedundefined

Similar Jobs

UNIVRSE - Lead Developer (Unity)

UNIVRSE

Barcelona, Catalonia, Spain (On-Site)
3 Months ago
Ubisoft - DevOps Linux Administrator

Ubisoft

Saint-Mandé, Île-de-France, France (On-Site)
1 Week ago
Canva - Senior Software Engineer: Developer Platform

Canva

Sydney, New South Wales, Australia (Remote)
3 Weeks ago
Playrix - Lead QA Engineer

Playrix

Georgia (Remote)
4 Months ago
ION - Senior QA Automation Engineer, New York (731, 733)

ION

New York, New York, United States (Hybrid)
3 Months ago
ByteDance - Security Operations Engineer

ByteDance

Kulai, Johor, Malaysia (On-Site)
3 Months ago
PwC - Intern/ Trainee

PwC

Gurugram, Haryana, India (On-Site)
4 Months ago
PwC - Managed Services - Technology - Cloud Security Associate

PwC

Riyadh, Riyadh Province, Saudi Arabia (On-Site)
3 Weeks ago
PwC - Cybersecurity-IAM-Sailpoint Developer IDN Senior Associate-Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Scopely - Principal Security Engineer

Scopely

Ireland (Hybrid)
3 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Every matrix - Senior Java Developer

Every matrix

Lviv, Lviv Oblast, Ukraine (Hybrid)
1 Month ago
Infoblox - Staff Software Engineer

Infoblox

Burnaby, British Columbia, Canada (Hybrid)
3 Months ago
Microsoft - Senior Software Engineer - Mobile DevOps

Microsoft

Bengaluru, Karnataka, India (On-Site)
1 Month ago
DEVOTEAM - IT Traineeship - DevOps (Dutch speaking)

DEVOTEAM

Amsterdam, North Holland, Netherlands (On-Site)
3 Months ago
Pixel Toys - Release & Deployment Project Manager

Pixel Toys

England, United Kingdom (Hybrid)
1 Month ago
SSC Technologies - Principal Software Engineer - Full Stack

SSC Technologies

Waltham, Massachusetts, United States (On-Site)
4 Months ago
Integral Ad Science - Staff Software Engineer

Integral Ad Science

Pune, Maharashtra, India (Hybrid)
4 Months ago
Scopely - Senior Fullstack Engineer - Live Services

Scopely

Spain (Remote)
3 Weeks ago
Astera Labs - Senior Digital Design Engineer - SOC

Astera Labs

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Match Group - Senior Platform Engineer

Match Group

New York, New York, United States (Hybrid)
4 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Italy

PwC - Risk & Structuring - Manager

PwC

Milan, Lombardy, Italy (On-Site)
4 Months ago
CAE - Junior Simulator Technician

CAE

Rome, Lazio, Italy (On-Site)
4 Months ago
ION - Junior Consultant - Risk Advisory, Italy

ION

Pisa, Tuscany, Italy (On-Site)
4 Months ago
PwC - Dottore Commercialista - Transfer Pricing - Padova [TAX]

PwC

Padua, Veneto, Italy (On-Site)
2 Months ago
ION - Cloud Engineer Kubernetes

ION

Castellazzo Bormida, Piedmont, Italy (Hybrid)
4 Months ago
ION - Support Engineer

ION

Italy (Hybrid)
4 Months ago
ION - Z/OS Senior System Programmer, Italy

ION

Italy (Hybrid)
4 Months ago
Keywords Studios (Player Support) - Support Bar Analyst

Keywords Studios (Player Support)

Cinisello Balsamo, Lombardy, Italy (On-Site)
8 Months ago
ION - Project Management Office

ION

Italy (On-Site)
4 Months ago
ION - Principal Software Engineer, Italy

ION

Milan, Lombardy, Italy (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

PwC - ETIC, Cybersecurity Cloud Security - Manager

PwC

Cairo, Cairo Governorate, Egypt (On-Site)
4 Months ago
Duolingo - Senior Security Engineer

Duolingo

New York, New York, United States (On-Site)
4 Months ago
PwC - IN-Senior Associate_Tech Lead_FS Tech_Advisory _Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
2 Months ago
The Walt Disney Company - Security Specialist, Corrective Action

The Walt Disney Company

Burbank, California, United States (On-Site)
5 Days ago
Trend Micro - (Sr.) Cloud Developer (Security Playbooks)

Trend Micro

Taipei City, Taiwan (On-Site)
4 Months ago
PwC - Risk Services - Change Management Specialist

PwC

Singapore (On-Site)
4 Months ago
NVIDIA - Senior Product Security Architect

NVIDIA

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
1 Month ago
Microsoft - Digital Technology Specialists - Security - French Speaker

Microsoft

Dublin, County Dublin, Ireland (Hybrid)
1 Month ago
GameChanger  - Security Analyst Intern

GameChanger

United States (Remote)
3 Weeks ago
Tencent - Security Software Engineer I

Tencent

Palo Alto, California, United States (On-Site)
2 Months ago

Get notifed when new similar jobs are uploaded

About The Company

We’re visionary innovators who are delivering mission-critical trading and workflow automation software to financial institutions, corporations, central banks, and governments. By combining our passion for automation with a strategic view on the industries we serve, we design solutions that improve decision-making, simplify complex processes, and empower people. Simply put, we help our customers do more, faster and better than before. We believe our investments in research and development are shaping the future of automation and enabling our customers to transform their business. And we embrace the power of community, working with each other and with our customers to succeed through a positive culture of continuous improvement.

Woking, England, United Kingdom (On-Site)

New York, New York, United States (Remote)

New York, New York, United States (On-Site)

New York, New York, United States (Hybrid)

Noida, Uttar Pradesh, India (On-Site)

New York, New York, United States (Hybrid)

New York, New York, United States (Hybrid)

New York, New York, United States (Hybrid)

View All Jobs

Get notified when new jobs are added by Ion

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug