Principal Integrated Cybersecurity Architect leading cybersecurity architecture principles and standards at Cox Automotive. Advising engineering teams on building secure products and enterprise tools for multi-cloud environments.
Responsibilities
The Principal Integrated Cybersecurity Architect is responsible for leading the evangelization of the agreed upon cybersecurity architectural principles, standards, and design patterns, and advising engineering teams on how to build secure products and enterprise tools for multi-cloud and on-premises environments
This role is focused on being an integrated member of the product and engineering teams for the most complex and highest revenue products
A separate function defines the architecture guidelines that this role is responsible for advising the teams on how to implement
This role will be a thought leader and mentor other integrated cybersecurity architects
By having deep cybersecurity knowledge in the design and build of secure software products and tools in both multi-cloud and on-premises environments, this role will lead the implementation of cybersecurity standards and influence direct and cross-functional teams throughout the organization and collaborate cross-functionally to solve cybersecurity risks that are unique to a business unit’s risk profile and products
This role will report directly to a Director of Integrated Cybersecurity Architecture at Cox Automotive
Communicate cybersecurity guidelines to engineering teams and business teams and support their adoption of the guidelines
Provide these teams with procedural, process and technical guidelines, insight and advice
Drive discussion with product and engineering teams on the adoption of cybersecurity guidelines
Work with portfolio stakeholders to align the architectural direction of the solution’s intent
Serve as the cybersecurity lead on large-scale workload and component development, engage with cross-functional leaders and stakeholders to ensure mutual understanding, ongoing communication and alignment of outcome expectations
Be integrated with and in continuous contact with engineering teams to advise on the cybersecurity risk their architecture decisions and assist with cybersecurity control implementation
Lead workshops to develop threat models for products and enterprise tools and assist teams in identifying solutions to mitigate against threats
Offers security guidance for new business and technical projects to ensure compliance with corporate security standards
Engage with cybersecurity peers to create a cohesive cybersecurity department and share back internally regarding business specific activities
Act as the on the ground cybersecurity security representative to the product and engineering teams
Participate in security events and incident response to identify gaps in current design and propose solutions to prevent threats from reoccurring
Educate and mentor software engineers on cybersecurity best practices and standards
Partner with the legal and security governance, risk and compliance teams to ensure that cybersecurity architecture enables compliance with relevant regulatory and contractual requirements
Requirements
Bachelor’s degree in a related discipline and 10 years of experience in a related field
The right candidate could also have a different combination, such as a master's degree and 8 years of experience; a Ph.D. and 5 years of experience in a related field; or 14 years’ experience in a related field
At least 7 years focused on cybersecurity
Relevant experience with designing, securing, or operating AWS infrastructure and services
Clearly articulate the objective of specific cybersecurity policies and procedures to technical and non-technical stakeholders
Excellent customer service skills, writing, and executive presentation skills
Develop a strong and productive working environment with key stakeholders and collaborate closely with other Cox entities’ cybersecurity teams to implement cybersecurity best practices
Consultative nature to work through controversial or complex topics to employees, leaders, and/or senior leadership
Evaluate risks and recommend action based on impact and likelihood of the risk to the business
Knowledge of current cybersecurity and technology architectures such as zero trust, IaaS, PaaS, SaaS, virtualization, containerization, DevSecOps, and software-defined networking across a variety of environments and deployments
Creatively solving complex cybersecurity challenges while exhibiting solid, pragmatic business acumen
Experience utilizing Agile methodologies
Initiating change and deploying solutions in Fortune 1000 companies
Knowledge of cybersecurity frameworks (e.g., ISO 27000, NIST, FFIEC) and industry relevant regulations that will guide architectural requirements (e.g., GDPR, FFIEC, GLBA)
Collaborate with AI agents to create, validate, and assess architectural artifacts
Lead cross-functional teams in designing AI-enhanced solutions, establish standards for AI integration, and assess AI technologies within solution architectures
Implement AI-driven architectural governance and compliance by defining robust AI governance frameworks and reference architectures
Improve vendor tool assessments using AI to speed evaluations and minimize mistakes and unknowns
Must live within a commutable distance to North Hills, NY or Atlanta, GA and be willing to come onsite 3x a week
Applicants must currently be authorized to work in the United States for any employer without current or future sponsorship. No OPT, CPT, STEM/OPT or visa sponsorship now or in future.
Benefits
The Company offers eligible employees the flexibility to take as much vacation with pay as they deem consistent with their duties, the company’s needs, and its obligations
seven paid holidays throughout the calendar year
up to 160 hours of paid wellness annually for their own wellness or that of family members
Employees are also eligible for additional paid time off in the form of bereavement leave, time off to vote, jury duty leave, volunteer time off, military leave, and parental leave
Cloud Security Engineer supporting and securing client environments across AWS and hybrid infrastructures. Collaborating with Cloud Operations to monitor, investigate, and remediate security events.
Cybersecurity Risk Coordinator at Globo ensuring operational security across digital content. Analyzing risks and developing strategies to enhance business resilience.
Account Cybersecurity Lead providing cybersecurity governance and oversight at Capgemini. Leading client relationships, security management systems, and risk compliance oversight.
Senior SAP Security Specialist managing SAP Security responsibilities and projects. Collaborating on security tools and conducting workshops in Hamburg.
Sales Account Manager for Cyber Security and Awareness role at HvS - Consulting GmbH. Providing holistic consulting on Cyber Security services and managing client relationships.
Security Engineer at PRC - Saltillo safeguarding IT infrastructure from cyber threats. Collaborating with IT teams to design and maintain security controls in a hybrid work environment.
Information Security Manager leading cyber security initiatives at NVISO, enhancing clients’ security posture and managing a team of consultants in Germany.
Cybersecurity Assessment Expert at IT - Strat managing A&A of information systems for U.S. federal clients. Ensuring compliance with DOD cybersecurity policies and standards in complex IT environments.
Senior Security Engineer responsible for deploying and maintaining endpoint security solutions. Collaborating across teams to enhance security posture and supporting incident response activities.