Cyber Security Architect developing high-quality Cyber and IT security solutions for Webster Bank. Focused on formulating, designing, assessing security systems, and ensuring compliance across technology initiatives.
Responsibilities
Formulate security architecture recommendations and design security services
Ensure security and compliance of public Cloud IaaS, PaaS, and SaaS environments
Ensure that existing network security systems within environment comply with company security policies, standards, and procedures
Ensure that all bank technology initiatives and projects are implemented in a secure manner.
Implement technical solutions for requirements supporting GLBA, SOX, FISMA, ISO, PCI, and HIPAA
Recommend and coordinate the application of fixes, patches, and disaster recovery procedures in the event of a security breach
Conduct risk assessments, diagnose internet/extranet security issues, intrusion attempts, cyber-crime response, assist in responses to external audits, penetration tests, and vulnerability assessments
Research emerging technologies in support of security enhancement and development efforts
Continuously identify gaps in security program coverage, employ secure configuration management processes
Identify and prioritize critical business functions in collaboration with organizational stakeholders
Demonstrates compliance with all bank regulations for assigned job function and applies to designated job responsibilities -- knowledge may be gained through coursework and on-the-job training
Follows all bank policies and procedures, compliance regulations, and completes all required annual required or job-specific training
Actively learns, demonstrates, and fosters the Webster corporate culture in all actions and words
Ensure secure implementation and usage of GenAI and LLM technologies within the organization, including data privacy and model integrity.
Integrate security considerations into the development and deployment of generative AI (GenAI) systems and large language models (LLMs).
Requirements
Bachelor's degree in a related field required (Advanced Degree a plus)
10+ years of professional IT experience
7+ years of professional Information/Cyber Security Experience
Strong experience and detailed technical knowledge in security engineering, system and network security, authentication and security protocols, cryptography, and application security
One Information/Cyber Security professional certification (CISSP, GIAC, CCNA Security or comparable)
Secure coding practices, ethical hacking, and threat modeling
Experience in public Cloud IaaS such as AWS and Azure
API security best practices
Knowledge of secure CI/CD pipeline or DevSecOps
Proficiency in Python, C++, Java, Ruby, Node, Go and/or Power Shell
IDS/IPS, penetration and vulnerability testing
Firewall and intrusion detection/prevention protocols
Windows, UNIX, and Linux operating systems
Virtualization technologies
MySQL/MSSQL database platforms
Identity and access management principles
Application security and encryption technologies
Hands-on experience with implementing security measures for AI/ML systems, including model training, deployment, and monitoring.
Understanding of generative AI (GenAI) technologies and large language models (LLMs), including their architecture and security implications.
Experience with quantum computing principles and their impact on cryptographic systems.
Subnetting, DNS, encryption technologies and standards, VPNs, VLANs, VoIP and other network routing methods
Experience with advanced persistent threats, phishing and social engineering, network access controllers (NAC), gateway anti-malware and enhanced authentication.
Information Security Manager leading security operations for Protolabs' digital infrastructure. Overseeing compliance and risk management in a hybrid role based in Maple Plain, MN.
Product Manager focusing on securing product experiences while balancing user needs and compliance. Leading initiatives across agile teams to deliver exceptional customer journeys with robust security standards.
Working Student supporting Tech Security Team in Hamburg. Assisting with IT security incidents and evaluating security - related events in Google Chronicle.
Leading technical excellence and innovation as Head of Data Protection for Barclays, ensuring robust data security and operational efficiency. Mentoring engineering teams and aligning strategy with business goals.
Senior Cybersecurity Engineer at MSIG - North America, designing and implementing cybersecurity solutions. Managing security infrastructure and collaborating with the Information Security Officer.
Security Risk Analyst focusing on Enterprise Security Risk Management for Xcel Energy. Collaborating on risk assessments and ensuring documentation aligns with industry standards.
Conseiller juridique stratégique au sein des Services juridiques pour la protection des renseignements personnels au Canada. Fournissant des conseils stratégiques en matière de cybersécurité et réglementaire.
Cyber Security Manager leading the safeguarding of technology assets and data against threats at Barnet Council. Driving strategies, compliance, and risk management aligned with national standards.
Solution Train Engineer facilitating Information Security Agile Release Train processes for delivering solutions. Coaching teams while overseeing Program Increment sessions and managing risks and delivery flow.