Data Security/ Compliance

Security Solution Architect

The Security Solution Architect will work as part of a highly technical team of professionals who are responsible for all architectural design, development, and deployment of cost effective and sustainable infrastructures to meet business and customer requirements. This role will partner with Sales, Solution Architect and Customer Relationship teams to transform the customer’s objectives or challenging problems into creative solutions and opportunities that meet customer requirements, leverage the capabilities of CSG’s security infrastructure, and maximize CSG’s product offerings.

Position Details:

Essential Job Functions 

Design, develop and prototype system solutions to business and CSG customers in order to address their business and security needs. Provide leadership on technical and sales project teams and handle the most complex project issues and technical challenges. Work with management, customers and cross-functional peers on long-range strategy requiring creative solutions. Design security solution elements that ensure requirements for the performance, uptime, resiliency, security, supportability, and technology platform selections for client facing and internal systems are achieved.

Extract, clarify and translate customer and security requirements using complex methods/models to determine appropriate system solutions and cost models Establish and implement technology migration strategies for applications or architectures.

Guide the sales, relationship management, and customer care teams to identify and prioritize requirements for new features and/or complex changes.  Ensure requirements are clearly defined, variable, and scalable globally across the company.  Consult internally and externally on technical opportunities inherent in the existing product roadmap. Build strong relationships with the customer – specifically with technical team members to ensure professional interactions are consistently maintained.

Support the Application architects in selecting the application framework. In conjunction with the Application Architect sizes the application and selects the Platform as a Service methodologies, technologies security model, and configurations to use. Research, identify, test, certify, and select technology products required for solution delivery. Provide mentorship and training of other associates at the same level or below on processes and tools; and handle more complex issues/requests.

Assist in the development of sales proposals and other key documentation that are leveraged during the sales process. Provide product and solution based security expertise to help facilitate the solution selection and decision-making process and provide the necessary information to enable the customer to make an informed decision. 

The Security Solution Architect is responsible for understanding security standards and best practices, leveraging knowledge of CSG applications, keeping current with trends and emerging technologies, and providing guidance and direction to the various development and business groups on standards that drive down risk and drive up quality and performance.

Experience

10+ years of professional IT security experience in large scale, distributed environment with hands on experience in multiple technologies and multiple roles.

At least 3-5 years of relevant experience in information security architecture

Extensive background in hardware and infrastructure, including relationships with hardware vendors

Customer-facing experience preferred

 

Knowledge, Skills and Abilities 

Strong sense of ownership, initiative, and the ability to accept and mitigate risks.

Excellent verbal and written communication skills with a wide range of audiences including technologists, executives, business stakeholders and IT team members.

Excellent problem solving skills

Ability to work independently and collaboratively with cross-functional teams.

Expert knowledge/experience in:

Information security theory and practical application in large scale, distributed environments

Security-by-design, Privacy-by-design, and Assume Breach principles

Security and privacy governance and compliance requirements (ISO 27001, PCI, GDPR, and others)

Generally accepted security best practices (CIS and others)

Incident response including host forensics, network forensics, and reverse engineering malware

Enterprise security technology architecture

Enterprise network security architecture

Advanced understanding of hacker tools, techniques, and procedures

Programming and scripting experience, Python, Ruby, C#, and REST APIs

Industry standard Operating systems, Windows and LINUX.

Complex IT systems, data center infrastructure and software with a consistent knowledge of evolving and emerging technologies.

Design, development, implementation and operational support of mission critical solutions in large scale environments and organizations.

Solid understanding of technologies including: Security tools including SIEM, IDS/IPS, host-based security systems, and network and host forensic tools, operating systems and hypervisors – VMware, Hyper-V, Xen, Networking - TCP/IP, Routing and Switching Technologies, Identity & Access Management standards and technologies, and public cloud architecture, infrastructure, and services (AWS, Azure, and others)

Solid understanding of product/application security standards and practices.  Familiarity with OWASP Top 10 and OWASP Application Security Verification Standard.

Ability to analyze and solve problems both independently or within a cross-functional team environment

Demonstrated ability to think analytically, organize thoughts and act strategically

Working knowledge of enterprise architecture frameworks and methodologies (TOGAF)

Ability to manage multiple concurrent projects and activities while maintaining a strong attention to detail

Design Private and Public Cloud architectures to conform to customer SLAs

Ability to learn new technologies and apply them to solving issues and problems within your area of expertise

Ability to use a personal computer.  Proficiency with other Microsoft Office applications.

Ability to read, write, speak and understand the English language in a business environment.