Aerodyne Industries is hiring: Senior Cybersecurity Architect (J) in Huntsville
Aerodyne Industries, Huntsville, AL, US, 35824
Aerodyne Industries is a dynamic, rapidly growing engineering and information technology services firm headquartered on Florida's exciting Space Coast. With locations throughout the US, we take pride in delivering small business agility with large corporation capabilities. Our list of clients count on us to prepare NASA's Missions to the Moon and Mars and to defend our nation supporting the Missile Defense Agency and Department of Defense. Join the adventure of a lifetime by becoming a teammate with Aerodyne Industries and work on projects that will define our future.
Description of Duties:
Position Title: Senior Cybersecurity Architect
Location: Schriever Space Force Base, Colorado Springs, CO or Redstone Arsenal, Huntsville, AL
Relocation Assistance: None available at this time
Remote/Telework: NO - Not available for this position
Clearance Type: DoD Secret
Shift: Day shift
Travel Required: Up to 10% of the time
The Senior Cybersecurity Architect supports the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. The Senior Cybersecurity System Architect is a leadership role responsible for designing, developing, and implementing robust cybersecurity architectures that protect the organization's assets, data, and systems. This position provides technical expertise and guidance, ensuring that security principles are embedded into all layers of the IT infrastructure. The Senior Cybersecurity Architect will collaborate with cross-functional teams to develop and maintain a comprehensive cybersecurity strategy and architecture aligned with business objectives, threat landscape, and compliance requirements. The candidate will:
Cybersecurity Architecture Design and Development:
• Develop and maintain the organization's cybersecurity architecture framework, standards, and blueprints.
• Design and implement security architectures for various systems and environments, including cloud, on-premise, and hybrid infrastructures.
• Evaluate and recommend security technologies, platforms, and tools to support the organization's cybersecurity posture.
• Review and approve architectural diagrams, documentation, and models, focusing on security controls and data flow.
• Lead the development of proof-of-concepts and prototypes to validate security architectural designs.
• Architect and design secure solutions for data protection, network security, endpoint security, identity and access management (IAM), and application security.
Threat Modeling and Risk Assessment:
• Participate in threat modeling exercises to identify potential security vulnerabilities and weaknesses in systems and applications.
• Perform risk assessments to evaluate the likelihood and impact of potential security threats.
• Develop and implement mitigation strategies to address identified security risks.
Technical Leadership and Guidance:
• Provide technical leadership and mentoring to other security professionals, including security engineers, analysts, and developers.
• Serve as a subject matter expert on cybersecurity architecture best practices and emerging security technologies.
• Collaborate with project teams to ensure that security is integrated into all phases of the system development lifecycle (SDLC).
• Drive the adoption of new security technologies and architectural patterns within the organization.
Security Standards and Compliance:
• Ensure the cybersecurity architecture complies with relevant legal and regulatory requirements (e.g., NIST Cybersecurity Framework, ISO 27001, and Security Technical Implementation Guides).
• Work with compliance teams to conduct security audits and assessments.
Incident Response Support:
• Participate in incident response activities as needed, providing technical expertise and guidance.
• Review security incident analysis reports of root causes and determine the need for architectural or technical corrective actions.
Collaboration and Communication:
• Collaborate with cross-functional teams, including IT operations, development, and business units, to ensure alignment of security goals.
• Communicate security architectural designs and decisions effectively to both technical and non-technical audiences.
• Actively participate in architecture review boards and other governance processes.
Continuous Improvement:
• Stay current with emerging security technologies and industry trends.
• Identify opportunities to improve the effectiveness of cybersecurity architecture.
The successful candidate will:
• Have excellent analytical and problem-solving skills.
• Have strong communication and interpersonal skills.
• Be able to work effectively in a team environment.
• Be a strategic thinker with the ability to influence without authority.
Resumes, in month and year format, must be submitted with application in order to be considered for the position. The selected candidate may be assigned as an employee for one of our teammate companies.
Qualifications - External
Basic Requirements:
• Must have 8, or more, years of general (full-time) work experience
o May be reduced with the completion of advanced education
• Must have 6, or more, years of direct experience in cybersecurity architecture
• Must have 2, or more, years of experience working in a management or leadership role
• Must have proven experience designing and implementing complex security architectures.
• Must have a deep understanding of security principles, technologies, and best practices.
• Must have experience with a variety of security tools and technologies, including firewalls, intrusion detection/prevention systems (IDS/IPS), Elastic Security SIEM, ACAS vulnerability scanners, and endpoint security solutions.
• Must have experience with cloud security architecture and deployment models (IaaS, PaaS, SaaS).
• Must have experience implementing Zero Trust principles across an IT Services environment
• Must have a strong understanding of cybersecurity architecture principles and best practices.
• Must have knowledge of regulatory compliance frameworks (e.g., NIST Cybersecurity Framework, ISO 27001).
• Must have an active DoD Secret Security Clearance
Desired Requirements:
• Have 1, or more, industry certifications such as CISSP, CISM, CCSP, or AWS Certified Security - Specialty.
• Have experience with threat modeling methodologies (e.g., STRIDE, DREAD).
• Have experience with penetration testing and vulnerability assessment.
• Have experience with DevSecOps principles and practices.
• Have experience with security automation and orchestration.
This position is expected to pay $160,000 - $195,000 annually; depending on experience, education, and any certifications that are directly related to the position.
This position will be posted for a minimum of 3 days. If a candidate has not been selected at that time, it will continue to be posted until a suitable candidate is selected or the position is closed.
Our health and welfare benefits are designed to invest in you, and in the things that you care about. Your health. Your well-being. Your security. Your future. Typical benefits offered include flexible work schedules, educational reimbursement, retirement benefits (401K match), health benefits, tax saving options, disability benefits, life and accident insurance, voluntary benefits, paid time off and paid holidays, and parental leave.
US EEO Statement
All qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, age, marital status, pregnancy, genetic information, or other legally protected status.