So sorry, this position is no longer available.
Please go ahead and submit your application. We may have other positions that would be the perfect fit for you.
Alternatively, you may want to apply to one of the following related jobs:
Security Architect - Cloud & Application
Posted: 09/12/2026
Job Number: OUFlemh4NmI0VUZIWDJha1IxZ3lKUT09
Pay Rate: 150000-150000 Yearly USD
Job Description
-
Title: Security Architect – Cloud & Application
-
Job ID: 889901
-
Location: Albany, NY
-
Duration: Permanent
-
Pay Range: [Not Specified]
-
Work Mode: [Not Specified]
-
Experience: 12–15 Years
We welcome candidates with all U.S. work authorization types, provided they are legally authorized to work in the United States.
Key Responsibilities
-
Conduct STRIDE-based threat modeling for the FICC target-state architecture.
-
Map security controls to identified threats and define appropriate mitigation strategies.
-
Define a comprehensive security testing framework covering pre-deployment, integration, resilience, and continuous testing.
-
Validate multi-region Disaster Recovery (DR) designs from a security perspective, including split-brain prevention and audit trail requirements.
-
Design HashiCorp Vault integration patterns, including OCP authentication methods and ACL policies for each SYS ID.
-
Assess IBM MQ RDQM security, including mTLS, channel authentication, and CONNAUTH.
-
Review A3P platform security controls, including SCPs and AWS account boundaries.
-
Define PingFederate cloud connectivity security requirements.
-
Produce security implementation guidance and developer security checklists.
-
Assess the scope for HiPAM-to-Vault refactoring for each SYS ID.
-
Collaborate with application, cloud, infrastructure, and architecture teams to ensure security requirements are incorporated into target-state designs.
-
12–15 years of relevant cybersecurity / security architecture experience.
-
Strong experience with STRIDE / DREAD threat modeling methodologies.
-
Experience conducting security threat modeling for enterprise architectures.
-
Strong IAM design experience.
-
Experience with OpenShift RBAC, namespace isolation, SCCs, Network Policies, and admission controllers.
-
Hands-on experience with HashiCorp Vault integration.
-
Strong understanding of IBM MQ security, including mTLS and CONNAUTH.
-
Experience with multi-region DR security architecture, audit trails, and split-brain prevention.
-
Experience with AWS security architecture and cloud security controls.
-
Understanding of SCPs and AWS account boundary controls.
-
Strong experience producing security architecture documentation, control mappings, implementation guidance, and developer checklists.
-
AWS Security Specialty certification preferred/required as specified in the source JD.
-
Financial services security context and SIFMU awareness.
-
Experience with Application Architecture.
-
Experience with Architecture Principle Design.
-
Experience using AWS Well-Architected Tools.
-
Experience with deployment management.
-
Experience with Performance Testing and NFR Gathering, including:
-
Log Analysis
-
User Interviews
-
Reverse Engineering
-
NFR Documentation
-
-
Experience with PingFederate and cloud connectivity security.
-
Experience assessing identity and privileged-access platform migrations such as HiPAM to HashiCorp Vault.
-
Experience securing OpenShift-based enterprise applications.
-
Experience designing secure messaging architectures using IBM MQ RDQM.
-
Security Threat Model & Controls Mapping
-
Security Testing Framework
-
Security Implementation Guidance
-
HiPAM-to-Vault Migration Scope Assessment
-
Developer Security Checklist
-
Cloud/Application Security Architecture Recommendations
We are committed to fostering an inclusive workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by applicable law.
Share This Job:
Related Jobs:
There are currently no related jobs. Please sign up for Job Alerts.
Loading...
Login to save this search and get notified of similar positions.
Are you sure you want to apply for this job?
Please take a moment to verify your personal information and resume are up-to-date before you apply.