Tria Federal (Tria) · 8 hours ago
Security Architect
Maximize your interview chances
ConsultingInformation Technology
No H1BU.S. Citizen OnlySecurity Clearance Required
Insider Connection @Tria Federal (Tria)
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
General understanding of cybersecurity principles, best practices, and industry standards, including confidentiality, integrity, and availability (CIA triad), as well as common attack vectors and threat actors.
Ability to understand and interpret comprehensive security architectures that address the organization's risk profile, compliance requirements, and business objectives.
Proficiency in secure network architectures, including firewalls, intrusion detection/prevention systems (IDS/IPS), VPNs, network segmentation, and secure remote access solutions.
Experience with securing cloud environments (e.g., AWS, Azure, Google Cloud) and services, including identity and access management (IAM), data encryption, network security groups, and cloud security posture management (CSPM) tools, and an understanding of shared responsibility between the cloud provider and the end user.
Knowledge of secure coding practices, web application firewalls (WAFs), secure software development life cycle (SDLC) methodologies, and vulnerability assessment tools to mitigate application-layer risks.
Expertise in Identity and Access Management (IAM) technologies and solutions, including single sign-on (SSO), multi-factor authentication (MFA), role-based access control (RBAC), and privileged access management (PAM).
Understanding of endpoint security controls, including antivirus/antimalware solutions, host intrusion detection/prevention systems (HIDS/HIPS), endpoint detection and response (EDR), and device encryption.
Familiarity with data encryption, tokenization, data loss prevention (DLP), and data classification techniques to protect sensitive data at rest, in transit, and during processing. This includes protection within cloud environments.
Knowledge of Security Operations Center (SOC) processes, incident response procedures, threat hunting techniques, and security information and event management (SIEM) platforms for proactive threat detection and response.
Ability to conduct risk assessments, threat modeling, and security risk analyses to identify, prioritize, and mitigate security risks effectively.
Ability to communicate security risks and recommendations to technical and non-technical stakeholders, as well as to document security architecture designs and requirements.
Basic project management skills to plan, coordinate, and execute security projects, including resource allocation, budgeting, and timeline management.
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
Ability to obtain & maintain a Public Trust
US Citizenship and the ability to obtain and maintain the clearance level stated above are required for this specific opportunity.
At least 4+ years of experience as a Security Architect.
General understanding of cybersecurity principles, best practices, and industry standards, including confidentiality, integrity, and availability (CIA triad), as well as common attack vectors and threat actors.
Ability to understand and interpret comprehensive security architectures that address the organization's risk profile, compliance requirements, and business objectives.
Proficiency in secure network architectures, including firewalls, intrusion detection/prevention systems (IDS/IPS), VPNs, network segmentation, and secure remote access solutions.
Experience with securing cloud environments (e.g., AWS, Azure, Google Cloud) and services, including identity and access management (IAM), data encryption, network security groups, and cloud security posture management (CSPM) tools, and an understanding of shared responsibility between the cloud provider and the end user.
Knowledge of secure coding practices, web application firewalls (WAFs), secure software development life cycle (SDLC) methodologies, and vulnerability assessment tools to mitigate application-layer risks.
Expertise in Identity and Access Management (IAM) technologies and solutions, including single sign-on (SSO), multi-factor authentication (MFA), role-based access control (RBAC), and privileged access management (PAM).
Understanding of endpoint security controls, including antivirus/antimalware solutions, host intrusion detection/prevention systems (HIDS/HIPS), endpoint detection and response (EDR), and device encryption.
Familiarity with data encryption, tokenization, data loss prevention (DLP), and data classification techniques to protect sensitive data at rest, in transit, and during processing. This includes protection within cloud environments.
Knowledge of Security Operations Center (SOC) processes, incident response procedures, threat hunting techniques, and security information and event management (SIEM) platforms for proactive threat detection and response.
Ability to conduct risk assessments, threat modeling, and security risk analyses to identify, prioritize, and mitigate security risks effectively.
Ability to communicate security risks and recommendations to technical and non-technical stakeholders, as well as to document security architecture designs and requirements.
Basic project management skills to plan, coordinate, and execute security projects, including resource allocation, budgeting, and timeline management.
Understanding of Compliance and Industry Regulations (e.g., GDPR, HIPAA, PCI DSS), compliance requirements, and security frameworks (e.g., NIST, ISO 27001) to ensure adherence to legal and regulatory standards.
Must have a good working knowledge of foundational cloud aspects and architectures.
Must understand encryption types (symmetric / asymmetric) as well as encryption algorithms such as RSA and DSA.
Must have a strong communication skillset to be able to translate security points to government customers.
Bachelor’s Degree
Ability to obtain and maintain Public Trust
4 years (at least 2 years of Cloud Experience)
Preferred
Prefer candidate to have strong knowledge and an understanding of security best practices with cloud architectures and the ability to use cloud-based tools to audit environments for compliance.
Familiarity with API’s (Application Programming Interfaces) and API types.
Desired understanding of DISA STIG (Security Technical Implementation Guide).
AWS / Azure / Google Cloud (Foundational and security-based) certifications.
Company
Tria Federal (Tria)
Tria Federal (Tria) is the premier middle-market Technology and Advisory services provider delivering digital transformation solutions to federal health and public safety agencies.
Funding
Current Stage
Late StageTotal Funding
unknown2021-09-01Seed
Leadership Team
Recent News
2024-12-03
GlobeNewswire News Room
2024-12-02
Washington Technology
2024-11-14
Company data provided by crunchbase