Required Skills

Cloud IaaS/PaaS Azure AZURE AD O365 ML & AI Cloud Integration management threat management monitoring Cloud security

Work Authorization

  • Us Citizen

  • Green Card

  • EAD (OPT/CPT/GC/H4)

  • H1B Work Permit

Preferred Employment

  • Corp-Corp

Employment Type

  • Consulting/Contract

education qualification

  • UG :- - Not Required

  • PG :- - Not Required

Other Information

  • No of position :- ( 1 )

  • Post :- 27th Nov 2020

JOB DETAIL

•             Leads and oversees the development of large technical architecture assignments to address complex business requirements, including design and deployment of entire system configurations

•             Oversees the design and deployment of the technical architecture, ensuring the appropriate expectations, principles, structures, tools and responsibilities are in place to deliver excellence and risks are identified, managed and mitigated

•             Acts as an intermediary between the business / client community and the technical community, working with the business to understand and solve complex problems, presenting solutions and options in a simplified manner for clients / business

•             The Lead Azure Security Architect provides leadership on security subject matter through design & delivery of infrastructure solution architectures and development of standards and reference architectures for GTP Platform

•             The Lead Azure Security Architect will add experience and extensive knowledge on multiple technologies and solutions to the team' s collective skills and expertise to further enhance the ability to provide secure technical design recommendations targeting the delivery of business value through successful project and program delivery.

•             The Azure Security Architect position will participate in all functions related to establishment of Security Architecture, including infrastructure security strategy and roadmap planning, acting as a senior security consultant to the business and IT Infrastructure teams, and help facilitate demand management.

•             This role requires technical expertise in multiple disciplines within Security, including: application security, networking, virtualization data loss prevention (DLP), vulnerability management, IPS/IDS, HIDS, cloud computing (AWS & Azure), Azure Firewall, Azure Private link, Azure SQL databases  security , comprehensive understanding of security and regulatory frameworks ,Network Security Group (NSG) and Application Security Group (ASG) , exposure to security technologies (SIEM, User Behavior Analytics, cloud security, application security, APIM, WAF etc.).

•             In addition to a strong technical skill set, the role will require mentorship, Security design guidance to the GTP team, and consultation to drive change and support the evolution of the Technology Security Program. As a knowledge leader on the Infrastructure Architecture Security Team Lead, the incumbent is expected to remain engaged with and support other leaders across Business and Information Technology within GTP to ensure the timely delivery of security and business solutions.

 

Responsibilities

•             Provides innovative and practical designs that account for the end-to-end solution of a system that is in line with the business objectives

•             Stays up to date with changes in software and technology most relevant to EY and promotes the use of new solutions and emerging technologies to maximize efficiency, reliability and value

•             Works across multiple technical architecture projects with varied stakeholders, providing technical leadership and advisory services to the business by anticipating needs and potential objections and contributing to project management activities

•             Leads the relationships with development teams to ensure successful blueprinting and implementation

•             Mentors and coaches’ junior members of the team and reviews work undertaken by more junior members of the team acting as a best practice / quality resource

•             Leads on tool evaluation efforts including the definition of evaluation criteria, tool identification and the actual evaluation

•             Drives adherence to development standards to promote optimization and consistency (including code modularization and reuse)

 

People Capabilities

•             Actively lead the creation and updating of Security standards and reference architectures. These reference architectures will provide direction and guidance on proper compliance with defined standards while ensuring is deploying secure infrastructure solutions.

•             Responsible for leading infrastructure assessments, making decisions on threat modeling and proper security service design and implementation.

•             Communicate and collaborate with cross-functional peers within and outside GTP teams of Information Technology, including second-line Risk, Enterprise Risk Management, Third Party Risk Management and Security product Procurement.

•             Drive objectivity and build consensus among internal and external GTP stakeholders with widely divergent perspectives and motivators.

•             Interact with industry peers from vendors, third party solution providers, research organizations, solution providers, etc.

•             Lead the planning/remediation of assessment, audit, and risk findings that are posted from InfoSec.

•             Participate in and contribute to key projects and initiatives across the enterprise as well as groups including but not limited to: Architecture Review Board (ARB), Database Architecture Security Review Board (DARB), and Change Review Boards.

•             Prepare reports for senior management including presentations, metrics, and other documentation required to communicate status and maturity of the Infrastructure Security for the GTP Platform.

•             Participate in the development of the infrastructure security roadmap and communicate the Technology Security vision to the GTP Leadership during PI Planning.

•             Monitor and enhance secure architecture standards within the SDLC process and InfoSec Security Review sessions.

•             Identify and establish core architectural principles to enhance the security of services and solutions being delivered on the GTP Platform.

•             Provide consultation on secure infrastructure design to the GTP Platform team and federation teams

•             This role will influence and regularly collaborate with various peers via steering committees, standards and policy teams that influence the creation and maturing of security policies, standards, and reference architectures.

•             Experience with security designs and controls in Microsoft Azure and virtualized environments is required.

•             While this role is an individual contributor, prior experience leading groups of security architects and engineers on large projects is highly desirable.

 

Experience        

•             Possesses deep knowledge on technical architecture spanning across aspects of each system from a business and a technical viewpoint

•             BA/BS Degree required. Ideally in Computer Science, Cyber Security, Information, Security, Engineering, Information Security or related 12+ years or related technical experience in Big4 environment is highly desirable

•             The ideal candidate must have a minimum of 6+ years of experience in:

•             Developing and updating cloud templates, standards, and best practices to be used by multiple cloud projects

•             Strong foundation across Microsoft Azure technology stack and Azure security offerings and the ability to communicate security and risk-related concepts including expertise in Azure Firewall implementation, Azure Private link implementation, NSG / ASG

•             In-depth experience implementing security for with all the following: Cloud IaaS/PaaS, Azure, AZURE AD, O365, ML & AI, Cloud Integration etc.

•             Identity and Access Management solutions, connecting on-premise and cloud based IAM systems providing single-sign-on (SSO)

•             Good understanding and Solution designing expertise with Cloud security

•             Familiarity with designing and deploying Logging and Monitoring tools within Azure

•             Standardizing Azure Security best practices, processes, and procedures

•             Providing strategic and technical leadership for client teams establishing cloud infrastructure design, migrating data centers to cloud, developing infrastructure as code, or deploying cloud solutions

•             Designing and integrating marketplace leading vulnerability management, threat management, monitoring, and data protection processes and platform tools

•             Building and operating automated security operations

•             Designing and advising against security requirements to support cloud migration efforts

•             Strong knowledge of industry trends in security technology

 

Typical Certifications     

Certified Cloud Security Professional (CCSP)

Azure Certified Solutions Architect – Expert

Azure Security Engineer

TOGAF

 

Available Technical Learning: Technical Architecture

 

Skills and Capabilities     

•             Excellent communication skills and the ability to partner and collaborate with both engineers and business users on architecture vision and security model

 

•             A comprehensive understanding of writing Scripts and the use of PowerShell to write queries in MS Azure cloud platform

Technologies and Tools Experience with the following tools is highly desirable

•             Azure Firewall, APIM, WAF, NSG, ASG , Firewall and routing concepts , Splunk, Network Watcher, Azure Monitor , Azure based other monitoring and security tools

 

 Regards,
Vishal Singh

Peritus Inc.
Phone: 972-666-6210 Ext 1046
Email: vishal.s@peritussoft.com
www.peritussoft.com

Company Information