Security Architect

Ova Technologies

$130K — $180K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in a relevant field (Computer Science, Cybersecurity, etc.)
  • 5-10 years in cybersecurity or security engineering with 2+ years in architecture
  • Strong grasp of security architecture frameworks and design principles
  • Experience securing major cloud platforms (AWS, Azure, Google Cloud)
  • Expertise in Identity and Access Management (IAM) and Zero Trust architecture
  • Familiarity with network security technologies (firewalls, IDS/IPS)
  • Knowledge of application security practices (secure coding, threat modeling)

Responsibilities

  • Design and maintain security architecture for diverse environments (cloud, on-premises, hybrid)
  • Define security standards and technical roadmaps
  • Conduct threat modeling and risk assessments for systems
  • Develop secure solutions for IAM, network, and data protection
  • Integrate security practices into the software development lifecycle (DevSecOps)
  • Evaluate technologies for potential security risks
  • Guide encryption and management strategies for security controls

Benefits

  • Competitive salary and performance-based incentives
  • Comprehensive health and wellness benefits
  • Flexible or hybrid work arrangements
  • Learning and certification sponsorship opportunities
  • Opportunity to lead in enterprise security initiatives
  • Collaborative and innovative work environment with a security-first approach
Full Job Description
Security Architect

Job Title

Security Architect

Job Summary

We are seeking an experienced Security Architect to design, implement, and oversee secure enterprise architectures that protect applications, infrastructure, networks, and data. The ideal candidate will define security standards, evaluate emerging technologies, conduct risk assessments, and collaborate with engineering, infrastructure, cloud, and compliance teams to build secure, scalable, and resilient systems. This role plays a key part in embedding security throughout the software development lifecycle and enterprise technology landscape.

Key Responsibilities
  • Design and maintain enterprise security architecture for cloud, on-premises, hybrid, and multi-cloud environments.
  • Define security principles, standards, reference architectures, and technical roadmaps.
  • Conduct security architecture reviews, threat modeling, and risk assessments for applications, infrastructure, and cloud services.
  • Develop secure solutions for identity and access management (IAM), network security, endpoint security, application security, and data protection.
  • Collaborate with software engineering, DevOps, infrastructure, and cloud teams to integrate security into the software development lifecycle (DevSecOps).
  • Evaluate new technologies, cloud services, and third-party solutions for security risks and compliance.
  • Implement and recommend security controls aligned with industry standards and regulatory requirements.
  • Support vulnerability management, penetration testing remediation, and security incident response initiatives.
  • Guide encryption, key management, secrets management, and certificate lifecycle strategies.
  • Prepare architecture documentation, security policies, and technical standards.
  • Provide technical leadership, mentoring, and security guidance across engineering teams.

Required Qualifications
  • Bachelor's degree in Computer Science, Information Security, Cybersecurity, Information Technology, Software Engineering, or a related field.
  • 5-10 years of experience in cybersecurity, security engineering, cloud security, or enterprise architecture, with at least 2 years in a security architecture role.
  • Strong understanding of security architecture frameworks and secure system design principles.
  • Experience securing cloud platforms such as AWS, Microsoft Azure, or Google Cloud.
  • Strong knowledge of Identity and Access Management (IAM), Zero Trust architecture, encryption, PKI, and secrets management.
  • Experience with network security, firewalls, VPNs, web application firewalls (WAFs), intrusion detection/prevention systems (IDS/IPS), and endpoint security.
  • Familiarity with application security practices including secure coding, threat modeling, SAST, DAST, and software supply chain security.
  • Knowledge of security standards and frameworks such as NIST Cybersecurity Framework, ISO/IEC 27001, CIS Controls, OWASP Top 10, and MITRE Telecommunication&CK.
  • Strong understanding of networking protocols, operating systems, virtualization, and container security.

Preferred Qualifications
  • Experience with Kubernetes, Docker, and cloud-native security.
  • Familiarity with Infrastructure as Code (IaC) security using Terraform, AWS CloudFormation, or Pulumi.
  • Experience with SIEM, SOAR, and security monitoring tools such as Microsoft Sentinel, Splunk, QRadar, or Elastic Security.
  • Knowledge of DevSecOps pipelines and CI/CD security.
  • Experience with data governance, privacy regulations, and compliance frameworks such as GDPR, HIPAA, PCI DSS, or SOC 2.
  • Experience performing cloud security posture management (CSPM) and vulnerability management.

Technical Skills
  • AWS / Microsoft Azure / Google Cloud
  • Identity and Access Management (IAM)
  • Zero Trust Architecture
  • Kubernetes
  • Docker
  • Terraform
  • CloudFormation
  • Python
  • PowerShell
  • Bash
  • Git
  • SIEM (Splunk, Microsoft Sentinel, QRadar)
  • WAF
  • IDS/IPS
  • PKI
  • Encryption Technologies
  • HashiCorp Vault
  • SAST / DAST Tools
  • OWASP
  • NIST CSF
  • ISO/IEC 27001

Soft Skills
  • Strong analytical and strategic thinking abilities.
  • Excellent communication and stakeholder management skills.
  • Leadership and mentoring capabilities.
  • Strong problem-solving and decision-making skills.
  • Ability to balance security, usability, and business objectives.
  • Commitment to continuous learning and staying current with emerging cybersecurity threats.

Nice to Have
  • Experience with AI/ML security, LLM security, or cloud AI platforms.
  • Knowledge of container runtime security and Kubernetes policy enforcement.
  • Familiarity with Secure Access Service Edge (SASE), Software-Defined Perimeter (SDP), and Confidential Computing.
  • Experience supporting security audits and regulatory assessments.
  • Professional certifications such as CISSP, CCSP, SABSA, AWS Certified Security - Specialty, Google Professional Cloud Security Engineer, Microsoft Certified: Cybersecurity Architect Expert, or TOGAF.

Benefits
  • Competitive salary and performance-based incentives.
  • Comprehensive health and wellness benefits.
  • Flexible or hybrid work arrangements.
  • Learning, certification, and conference sponsorship opportunities.
  • Opportunity to lead enterprise security initiatives and influence strategic technology decisions.
  • Collaborative, innovative, and security-first work environment.

Similar Jobs

More Jobs at Ova Technologies

  • Information Security Manager
    $120K — $150K *
    New York, NY 10025 (New York County)
    Information Technology
    In-Person
  • SOC Analyst
    $70K — $95K *
    Remote
    Information Technology
    Remote in New York, NY
  • SOC Analyst
    $80K — $120K *
    New York, NY 10025 (New York County)
    Information Technology
    In-Person
  • Incident Response Analyst
    $90K — $130K *
    New York, NY 10025 (New York County)
    Information Technology
    In-Person
  • Windows Administrator
    $80K — $120K *
    New York, NY 10025 (New York County)
    Information Technology
    In-Person

More Information Technology Jobs

Find similar Security Architect jobs: