Principal Integrated Cybersecurity Architect leading cybersecurity architecture principles and standards at Cox Automotive. Advising engineering teams on building secure products and enterprise tools for multi-cloud environments.
Responsibilities
The Principal Integrated Cybersecurity Architect is responsible for leading the evangelization of the agreed upon cybersecurity architectural principles, standards, and design patterns, and advising engineering teams on how to build secure products and enterprise tools for multi-cloud and on-premises environments
This role is focused on being an integrated member of the product and engineering teams for the most complex and highest revenue products
A separate function defines the architecture guidelines that this role is responsible for advising the teams on how to implement
This role will be a thought leader and mentor other integrated cybersecurity architects
By having deep cybersecurity knowledge in the design and build of secure software products and tools in both multi-cloud and on-premises environments, this role will lead the implementation of cybersecurity standards and influence direct and cross-functional teams throughout the organization and collaborate cross-functionally to solve cybersecurity risks that are unique to a business unit’s risk profile and products
This role will report directly to a Director of Integrated Cybersecurity Architecture at Cox Automotive
Communicate cybersecurity guidelines to engineering teams and business teams and support their adoption of the guidelines
Provide these teams with procedural, process and technical guidelines, insight and advice
Drive discussion with product and engineering teams on the adoption of cybersecurity guidelines
Work with portfolio stakeholders to align the architectural direction of the solution’s intent
Serve as the cybersecurity lead on large-scale workload and component development, engage with cross-functional leaders and stakeholders to ensure mutual understanding, ongoing communication and alignment of outcome expectations
Be integrated with and in continuous contact with engineering teams to advise on the cybersecurity risk their architecture decisions and assist with cybersecurity control implementation
Lead workshops to develop threat models for products and enterprise tools and assist teams in identifying solutions to mitigate against threats
Offers security guidance for new business and technical projects to ensure compliance with corporate security standards
Engage with cybersecurity peers to create a cohesive cybersecurity department and share back internally regarding business specific activities
Act as the on the ground cybersecurity security representative to the product and engineering teams
Participate in security events and incident response to identify gaps in current design and propose solutions to prevent threats from reoccurring
Educate and mentor software engineers on cybersecurity best practices and standards
Partner with the legal and security governance, risk and compliance teams to ensure that cybersecurity architecture enables compliance with relevant regulatory and contractual requirements
Requirements
Bachelor’s degree in a related discipline and 10 years of experience in a related field
The right candidate could also have a different combination, such as a master's degree and 8 years of experience; a Ph.D. and 5 years of experience in a related field; or 14 years’ experience in a related field
At least 7 years focused on cybersecurity
Relevant experience with designing, securing, or operating AWS infrastructure and services
Clearly articulate the objective of specific cybersecurity policies and procedures to technical and non-technical stakeholders
Excellent customer service skills, writing, and executive presentation skills
Develop a strong and productive working environment with key stakeholders and collaborate closely with other Cox entities’ cybersecurity teams to implement cybersecurity best practices
Consultative nature to work through controversial or complex topics to employees, leaders, and/or senior leadership
Evaluate risks and recommend action based on impact and likelihood of the risk to the business
Knowledge of current cybersecurity and technology architectures such as zero trust, IaaS, PaaS, SaaS, virtualization, containerization, DevSecOps, and software-defined networking across a variety of environments and deployments
Creatively solving complex cybersecurity challenges while exhibiting solid, pragmatic business acumen
Experience utilizing Agile methodologies
Initiating change and deploying solutions in Fortune 1000 companies
Knowledge of cybersecurity frameworks (e.g., ISO 27000, NIST, FFIEC) and industry relevant regulations that will guide architectural requirements (e.g., GDPR, FFIEC, GLBA)
Collaborate with AI agents to create, validate, and assess architectural artifacts
Lead cross-functional teams in designing AI-enhanced solutions, establish standards for AI integration, and assess AI technologies within solution architectures
Implement AI-driven architectural governance and compliance by defining robust AI governance frameworks and reference architectures
Improve vendor tool assessments using AI to speed evaluations and minimize mistakes and unknowns
Must live within a commutable distance to North Hills, NY or Atlanta, GA and be willing to come onsite 3x a week
Applicants must currently be authorized to work in the United States for any employer without current or future sponsorship. No OPT, CPT, STEM/OPT or visa sponsorship now or in future.
Benefits
The Company offers eligible employees the flexibility to take as much vacation with pay as they deem consistent with their duties, the company’s needs, and its obligations
seven paid holidays throughout the calendar year
up to 160 hours of paid wellness annually for their own wellness or that of family members
Employees are also eligible for additional paid time off in the form of bereavement leave, time off to vote, jury duty leave, volunteer time off, military leave, and parental leave
IT Audit Senior managing client expectations and delivering detailed audit analyses and findings. Collaborating with management on IT audit engagements in a leading advisory firm.
Enterprise Security Architect specializing in Digital Workspace security at Novartis. Responsible for ensuring security standards and practices across IT functions and collaborating with various teams.
Cyber Security Engineer responsible for administering security tools and projects. Collaborating with stakeholders to ensure the overall Cyber Security of the firm.
Security Support D managing security processes essential for classified operations. Focused on document control, compliance, and training within a regulated environment.
Facility Security Officer responsible for developing and administering security programs for classified materials. Overseeing compliance with federal security regulations at the Rochester, NY site.
Intern supporting cybersecurity consulting with Guidehouse's federal clients. Engaging in hands - on projects and learning development opportunities within a structured internship program.
Security Engineering Manager leading network security engineering team at General Motors. Ensuring the reliability, performance, and security of global network infrastructure supporting automotive technologies.
VP, Information Security Officer managing cyber risk and advisory services at State Street. Collaborating with teams to protect digital assets and enhance security measures across the organization.
Senior Security Consultant enhancing AI security solutions at BAE Systems. Conducting security assessments and advising clients on AI risk management in national security projects.
IT Security Specialist focusing on cyber defense within a family - owned company. Responsibilities include managing firewalls, monitoring threats, and implementing security solutions.