New York Technology Partners · 11 hours ago
Manager, Threat Modeling
New York Technology Partners is seeking two strong candidates for the role of Manager, Threat Modeling, with openings focused on GCP and AWS. The ideal candidates will have extensive experience in cybersecurity, security architecture, and threat modeling methodologies, along with strong analytical skills and the ability to collaborate across teams.
Responsibilities
Proficiency in cloud platforms – GCP or AWS – essential
Strong knowledge of security architecture principles, frameworks, and best practices
Experience working with threat modeling methodologies such as MITRE ATT&CK, STRIDE, PASTA, etc
Overall experience in Cybersecurity: 5+ years
Security practices encompassing authentication, authorization, logging/monitoring, encryption, infrastructure security, and network/segmentation
Knowledge of REST APIs
Knowledge of scripting languages and Infrastructure as Code (Terraform, CloudFormation)
Familiarity with Jira or other ticketing systems – essential
Technical architecture design and review skills – essential
Ability to identify vulnerabilities using CWE or OWASP
Knowledge of operating systems and their hardening techniques
Understanding of development concepts such as CI/CD, pipelines, and SDLC
Penetration testing knowledge is a strong plus
Familiarity with Cloud Development Kit (CDK) and GitOps
Experience operating in a DevOps/agile team environment
Understanding of Docker, Kubernetes, serverless architecture, and Helm
Exposure to platforms such as Snowflake, MongoDB, Terraform Cloud, GitHub, and Databricks
Strong analytical skills, diligence, and attention to detail
Willingness to conduct research using vendor documentation
Ability to create and maintain high-quality documentation
Possession of an adversary mindset
Continuous learning attitude toward new technologies and methodologies
Strong problem-solving skills
Excellent communication and collaboration abilities
Ability to build and nurture relationships across cross-functional teams
Qualification
Required
Proficiency in cloud platforms – GCP or AWS – essential
Strong knowledge of security architecture principles, frameworks, and best practices
Experience working with threat modeling methodologies such as MITRE ATT&CK, STRIDE, PASTA, etc
Overall experience in Cybersecurity: 5+ years
Security practices encompassing authentication, authorization, logging/monitoring, encryption, infrastructure security, and network/segmentation
Knowledge of REST APIs
Knowledge of scripting languages and Infrastructure as Code (Terraform, CloudFormation)
Familiarity with Jira or other ticketing systems – essential
Technical architecture design and review skills – essential
Ability to identify vulnerabilities using CWE or OWASP
Knowledge of operating systems and their hardening techniques
Understanding of development concepts such as CI/CD, pipelines, and SDLC
Penetration testing knowledge is a strong plus
Familiarity with Cloud Development Kit (CDK) and GitOps
Experience operating in a DevOps/agile team environment
Understanding of Docker, Kubernetes, serverless architecture, and Helm
Exposure to platforms such as Snowflake, MongoDB, Terraform Cloud, GitHub, and Databricks
Strong analytical skills, diligence, and attention to detail
Willingness to conduct research using vendor documentation
Ability to create and maintain high-quality documentation
Possession of an adversary mindset
Continuous learning attitude toward new technologies and methodologies
Strong problem-solving skills
Excellent communication and collaboration abilities
Ability to build and nurture relationships across cross-functional teams
Preferred
Professional security certifications: CISSP, CCSP, CISA, CISM, ITIL
Relevant cloud certifications depending on role focus: GCP Professional Cloud Architect or GCP Professional Cloud Security Engineer
AWS Certified Solutions Architect or AWS Certified Security – Specialty
Strong knowledge of industry standards related to Cloud and Application Security (ISO, NIST, CSA)
Hands-on experience designing cloud security solutions on GCP or AWS
Experience working in regulated environments
Exposure to Agile, DevOps, SecOps, and Scrum teams
Experience with an additional CSP (AWS, Azure, or GCP)
Development experience (Python, Node.js)
Strong desire to learn and contribute ideas and solutions to the broader team
Company
New York Technology Partners
New York Technology Partners is an information technology company that provides IT and engineering services.
H1B Sponsorship
New York Technology Partners has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (52)
2024 (74)
2023 (59)
2022 (104)
2021 (74)
2020 (115)
Funding
Current Stage
Growth StageLeadership Team
Company data provided by crunchbase