Cybersecurity Architecture Lead Job at Cox Automotive in Sandy Springs
Cox Automotive, Sandy Springs, GA, US
The Cybersecurity Architecture Lead plays a critical role in promoting and implementing established cybersecurity architectural principles, standards, and design patterns. This position offers an exciting opportunity to guide engineering teams on developing secure products in both multi-cloud and on-premises environments. Your involvement with product and engineering teams will be integral, ensuring that cybersecurity best practices are seamlessly incorporated into their processes.
By leveraging your extensive cybersecurity experience in secure software design and deployment across different platforms, you will collaborate with both direct and cross-functional teams to address cybersecurity risks specific to our product lines.
This role reports directly to the Director of Integrated Cybersecurity Architecture at Cox Automotive.
Key Responsibilities
- Effectively communicate cybersecurity guidelines to engineering and business teams, and support their implementation.
- Engage closely with engineering teams to advise on architectural decisions and help with cybersecurity control deployment.
- Assist in identifying and mitigating cybersecurity risks through comprehensive threat modeling of products and tools.
- Provide expert cybersecurity architecture consultation across various programs and solutions.
- Collaborate with cybersecurity colleagues to foster a unified approach within the cybersecurity department, serving as the primary cybersecurity representative for product and engineering teams.
- Work with enterprise architecture and engineering teams to assess existing architectures, identify vulnerabilities, and recommend security improvements.
- Participate in security incidents and contribute to lessons learned to enhance future designs and solutions.
- Educate teams on cybersecurity best practices and standards.
- Partner with legal and governance teams to align cybersecurity architecture with necessary regulatory and compliance requirements.
Minimum Qualifications
- Bachelor's degree in a relevant field plus 6 years of experience, or equivalent combinations of education and experience.
- Minimum of 4 years dedicated to cybersecurity roles.
- Significant experience with AWS infrastructure and services.
- Ability to clearly explain cybersecurity policies to both technical and non-technical audiences.
- Exceptional customer service, written, and presentation skills.
- Proven capability to forge productive working relationships with stakeholders and collaborate with various cybersecurity teams.
- Consultative approach to navigate complex topics with employees and senior leadership.
- Experience evaluating risks and proposing mitigation strategies.
- Familiarity with cybersecurity architectures such as zero trust, IaaS, PaaS, SaaS, and DevSecOps.
- Skillful in solving intricate cybersecurity challenges while maintaining sound business principles.
- Experience with Agile methodologies.
- Track record of driving change within Fortune 1000 companies.
- Understanding of cybersecurity frameworks like ISO 27000 and NIST, in addition to regulatory requirements like GDPR and GLBA.
- Ability to collaborate with AI agents for developing and assessing architectural artifacts.
- Leadership in cross-functional teams designing AI-integrated solutions and establishing AI standards.
- Define AI governance frameworks to enhance architectural compliance.
- Leverage AI for improved vendor tool assessments to enhance decision-making.
- Must be authorized to work in the United States without sponsorship.
Preferred Qualifications
- Experience in developing cybersecurity standards for cloud and on-premises environments.
- Knowledge of IAM, cryptography, access controls, and security protocols.
- Familiarity with application security implementations.
- Extensive technical expertise including languages and frameworks like Python, .NET, and Java.
- Experience with firewalls and understanding of network architecture.
- AWS Well-Architected Framework knowledge.
- Strategy development for enterprise solutions in major cloud platforms.
- Strong grasp of cloud containers and serverless technologies.
- Experience in sectors such as telecommunications and financial services.
- History with big four consulting firms or within Fortune 500 companies.
- Relevant industry certifications such as CISSP, CEH, or AWS certifications.
Compensation:
Base salary ranges from $119,600.00 to $199,400.00, with variability based on job location and individual expertise. Additional compensation including incentive programs may also apply.
Benefits:
Offers a flexible vacation policy along with seven paid holidays and up to 160 hours of annual paid wellness leave. Additional benefits include bereavement leave, jury duty leave, volunteering time off, military leave, and parental leave.
Applicants must be authorized to work in the United States without current or future sponsorship.