MX•Mexico City
Hybrid
Senior
Full Time
5 days ago
securitycloudAIincident responseenterprise architecture
Requirements
- •Bachelor's degree in Computer Science, Information Systems, Cybersecurity, a related technical field, or equivalent practical experience.
- •5 years of experience in information security and engineering with cloud-based infrastructure environments.
- •5 years of experience designing, evaluating, or leading enterprise security architecture programs and managing delivery teams.
- •5 years of experience with enterprise security controls, network engineering concepts, and identity management frameworks.
- •4 years of experience with identity and access management with tech stacks (e.g., Active Directory, GCP, Entra ID, Palo Alto, Cisco), enterprise architecture and cloud architecture with a cloud platform.
What You'll Do
- •Act as the primary engagement manager for security architecture reviews and design projects, defining project requirements, managing scope, tracking schedules, and coordinating deliverables.
- •Review, assess, and design secure enterprise-wide architectures across on-premises, cloud, and hybrid environments.
- •Provide advanced technical guidance on network segmentation, identity perimeters, and infrastructure hardening.
- •Evaluate and advise on the secure deployment of modern workloads, focusing on cloud-native ecosystems and AI platform integration.
- •Perform threat modeling on complex systems to identify design flaws and provide recommendations to mitigate risk.
- •Collaborate with and advise executive organizational and technical stakeholders, translating architectural risks into strategic guidance.
- •Drive remediation efforts by developing, coordinating, and executing eradication, recovery, and remediation plans during active incident response.
- •Partner with key stakeholders to ensure containment, eradication, and recovery actions are unified and aligned with business priorities.
- •Identify enterprise security requirements and provide guidance to enterprise initiatives.
- •Serve as technical support for security tools and assist with their implementation and integration.
- •Provide guidance on the development of containment and remediation plans for cybersecurity incidents.
- •Act as technical advocate for information security requirements and provide information on the security domain.
- •Execute strategic and tactical plans, including direct engagement and delivery in technical matters.
- •Articulate and present complex concepts to business stakeholders, executive leadership, and technical contributors.
Nice to Have
- •Relevant industry certifications (e.g., CISSP, CCSP, Google Cloud Certified Professional Cloud Security Engineer, or equivalent).
- •Experience in incident response remediation or disaster recovery.
- •Experience with threat modeling methodologies (e.g., STRIDE, PASTA) and application security perimeters.
- •Proven experience managing project lifecycles, establishing scope boundaries, tracking engineering milestones, and delivering complex client reports on time.
- •Direct experience building or securing AI/ML pipelines, utilizing AI security frameworks (e.g., OWASP Top 10 for LLMs, NIST AI RMF), or configuring secure cloud AI environments.
- •Strong experience securing multi-cloud environments (e.g., GCP) and reviewing Infrastructure as Code (IaC) templates.
