Tampa Electric · 2 months ago
Enterprise Cyber Security Solution Architect
Tampa Electric is focused on delivering critical infrastructure services, and they are seeking an Enterprise Cyber Security Solution Architect. This role is responsible for implementing safeguards against cyberattacks, ensuring the confidentiality and integrity of the organization's assets, and collaborating with various teams to mitigate cyber risks and comply with regulations.
EnergyMiningRenewable EnergySolar
Responsibilities
IAM: Designs, implements, and manages an organization’s privileged access management (PAM), identity governance and administration (IGA), and other IAM systems to ensure secure and controlled access to resources with a focus on protecting data by managing user identities, credentials, and permissions, and ensuring compliance with relevant security standards and regulations. Responsible for continuous improvement and robust support for IAM toolsets and IGA processes. Provide overall direction, guidance, definition, and integration of operational processes of new and existing team members, contractor, and other enterprise identities and associated access
Data Protection: Designs, implements, and manages data loss prevention (DLP) strategies and technologies to protect sensitive data from unauthorized access, use, or disclosure. Additionally, designs the file integrity monitoring (FIM) architecture, including the choice of FIM tools, agents, monitoring protocols, and baseline creation. Responsible for the deployment and configuration of the FIM solution across the organization’s infrastructure with the intent of protecting critical files and directories from unauthorized modifications
Application Security: Responsible for the design and implementation of secure applications which include creating secure reference architectures, patterns, and coding guidelines. Collaborate closely with developers to integrate security into the software development lifecycle (SDLC). Educate team members on secure coding practices and other security policies. Develop and maintain security policies and procedures that ensure the organization’s applications are secure and compliant with industry standards and regulatory requirements
Infrastructure Security: Responsible for ensuring the security of various aspects of the infrastructure, including network security, system security, and application security. Collaborate closely with owners of security controls such as firewalls, intrusion detection systems, VPNs, etc. to ensure security policies and standards are followed and consistently enforced throughout the organization. Identify and mitigate security vulnerabilities, develop and enforce security policies, and respond to security incidents
Qualification
Required
Bachelor's Degree in Cybersecurity, Computer Science, Information Systems or other IT or Engineering related field
From the list of certification vendors, two related Information Security professional certification or ability to obtain via self-study within one year of hire date (ex: (ISC)2, GIAC, ISACA, CompTIA, e-Council, etc.)
8 years of related Cyber Security or IT experience (Information Systems Audit or Assessor role, Information Security role, systems management, systems administration, information systems security, system certification, risk analysis) with a focus on DLP and/or FIM solutions and security controls
Possess an expert level of knowledge in the discipline of cybersecurity as well as a high level of competency in architecture, methodologies, and best practices for IAM, Data Protection, and Application and Infrastructure Security concepts, strategies, standards, functions, capabilities, and technologies
A solid understanding of fundamental principles of cybersecurity, including threat landscape, vulnerabilities, and risk management
Significant high-level system/security engineering experience with broad knowledge across many technologies
Knowledge of systems security engineering (SSE) principles and practices
Knowledge of secure software deployment principles and practices
Knowledge of data classification tools and techniques
Knowledge of enterprise architecture (EA) reference models, frameworks, principles, and practices
Knowledge of the Open Systems Interconnect (OSI) reference model
Knowledge of configuration management tools and techniques
Knowledge of Confidentiality, Integrity, Availability, Authenticity, and Non-repudiation (CIAAN) principles and practices
Familiarity with relevant security standards and frameworks such as NIST Special Publication 800-53, ISO 27001, and others depending on the industry
Knowledge of applicable laws and regulations governing information security, privacy, and data protection
Understanding of information technology systems, network architecture, and common technologies to assess security controls effectively
Knowledge of security control frameworks and their implementation, including access controls, encryption, and incident response
Knowledge of advanced cybersecurity tools and platforms, such as SIEM, IDS/IPS, endpoint protection, and threat intelligence solutions, for effective risk analysis and mitigation
Ability to conduct comprehensive risk assessments, identifying and analyzing security risks to information systems
Technical skills to assess security controls, perform vulnerability assessments, and understand the technical aspects of security implementations
Strong communication skills to effectively convey assessment findings, risks, and recommendations to technical and non-technical stakeholders
Ability to create clear and detailed documentation, including assessment plans, reports, and recommendations
Critical thinking and problem-solving skills to analyze complex security issues and recommend appropriate solutions
Keen eye for detail to identify vulnerabilities, weaknesses, and discrepancies in security controls and documentation
Ability to adapt to evolving cybersecurity threats, technologies, and regulatory requirements
Ability to analyze complex datasets and identify trends and patterns that could indicate cybersecurity risks or vulnerabilities
Adherence to ethical standards and professionalism, as SCAs often have access to sensitive information and play a critical role in maintaining the integrity of security assessments
Collaboration with various stakeholders, including system owners, security teams, and management, to ensure a comprehensive understanding of the information system and its security controls
Commitment to continuous learning and staying updated on the latest
Preferred
Master's Degree in Cybersecurity, Computer Science, Information Systems or other IT or Engineering related field
ITIL v3 and three or more of the following or similar Information Security professional certifications (ex: ACE, CCE, CEH, CISA, CISM, CISSP, CRISC, EnCE, GCCC, GCDA, GCED, GCFA, GCFE, GCIA, GCIH, GCWN, GICSP, GMON, GNFA, GPEN, GPPA, GREM, GWAPT, GXPN, OSCP, SSCP)
Benefits
Competitive Salary
401k Savings plan w/ company matching
Pension plan
Paid time off
Paid Holiday time
Medical, Prescription Drug, & Dental Coverage
Tuition Assistance Program
Employee Assistance Program
Wellness Programs
On-site Fitness Centers
Bonus Plan and more!
Company
Tampa Electric
TECO Energy Inc. is an energy-related holding company.
H1B Sponsorship
Tampa Electric has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (14)
2024 (15)
2023 (6)
2022 (22)
2021 (7)
2020 (16)
Funding
Current Stage
Late StageRecent News
2025-10-18
St Pete Catalyst
2025-10-07
Company data provided by crunchbase