Security Architect jobs in United States
cer-icon
Apply on Employer Site
company-logo

Candescent · 1 day ago

Security Architect

Candescent is a leading cloud-based digital banking solutions provider for financial institutions, transforming digital banking with intelligent solutions. The Security Architect will oversee security, risk management, and architectural guidance for a new technology platform, ensuring the confidentiality and integrity of sensitive data during migration to a cloud environment.

BankingFinancial ServicesSaaS
check
H1B Sponsor Likelynote

Responsibilities

Validate, and if necessary, update the security architecture for the target cloud-based HIT environment, ensuring alignment with organizational security policies, industry best practices (e.g. NIST) and compliance frameworks
Evaluate the security posture of the third-party solutions and the underlying cloud infrastructure, identifying and documenting architectural gaps and control deficiencies
Develop security requirements and controls for application integration, data transfer, identity and access management, data encryption (in transit and at rest), network segmentation, and logging/monitoring within the cloud environment
Collaborate with project teams, application owners and the third-party vendor to ensure security is “built-in” from the initial planning and design phases
Collaborate with the Risk Management team to ensure security findings are documented and remediation plans are in place as discovered
Provide guidance on FFIEC Security and Privacy Rules, and other relevant regulations (e.g PCI-DSS) to ensure the solution meets all regulatory requirements for protecting sensitive data
Define security metrics, reporting mechanisms, and audit trails to demonstrate ongoing compliance and security effectiveness
Serve as the primary security subject matter expert (SME) for the migration project, advising senior leadership and technical teams on security implications
Review and approve technical security configurations, including firewall rules, encryption key management, security information and event management (SIEM) integration, and access controls
Work with the Risk Management team to incorporate security governance processes for the new environment

Qualification

Cloud SecurityFinancial Services ComplianceSecurity ArchitectureSecurity-as-CodeNetworking ProtocolsEncryption TechniquesZero-Trust PrinciplesCloud Security ToolsCommunication SkillsTeam CollaborationProblem SolvingAdaptabilityLeadership

Required

Minimum 5 years of progressive experience in IT security with at least 3 years focused on security architecture and design for complex enterprise-level systems
Cloud Security: Deep, hands-on experience security solutions in a major public cloud platform (AWS, Azure, and/or GCP)
Financial Services Compliance: Demonstrated expertise with HIPAA/HITECH and proven ability to design and implement controls required for PHI in a cloud environment
Strong knowledge of networking protocols, encryption techniques, zero-trust principles and cloud security guardrails
Proficiency in security-as-code and cloud native security tools (e.g. Cloud Security Posture Management (CSPM) and Cloud Workload Protection Platforms (CWPP)
Excellent written and verbal communication skills, with the ability to articulate complex security concepts to both technical and non-technical audiences
B.S. in Information Systems, Computer Science, Business Administration, or a related field or equivalent work experience
At least one cloud provider security certification (eg AWS Certified Security Specialty, Azure, Security Engineer, GCP Security)
Specialized cloud architecture/security bootcamps (cloud, security alliance)
Training in security-as-code and cloud native security tools (e.g. Cloud Security Posture Management (CSPM) and Cloud Workload Protection Platforms (CWPP)
Hybrid work environment

Preferred

Graduate degree in Computer Science or related field
CISSP (Certified Information Systems Security Professional)
CCSP (Certified Cloud Security Professional)
Platform-specific certifications (e.g. Azure Security Engineer Associate, AWS Certified Security – Specialty)

Benefits

Hybrid work environment

Company

Candescent

twittertwitter
company-logo
Candescent is a digital banking platform that offers online banking, account openings, and digital transaction services.

H1B Sponsorship

Candescent has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (7)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Donald Chesnut
Chief Design Officer
linkedin
leader-logo
Gareth Gaston
Chief Product Officer
linkedin
Company data provided by crunchbase