The Cyber Security Architect will design and implement enterprise-wide cybersecurity architectures, integrating AI-enabled capabilities and automation to enhance security posture. They will collaborate with cross-functional teams to develop reference architectures, roadmaps, and security guardrails while evaluating emerging technologies.
Job Responsibilities
Serves as an expert contributor in the development and implementation of cybersecurity architectures, patterns, strategies, and solutions supporting emerging technology and AI-enabled cybersecurity capabilities.
Evaluates opportunities to leverage artificial intelligence, agentic AI, automation, orchestration, analytics, and other emerging technologies to enhance cybersecurity capabilities and operating models.
Develops current-state, transitional, and future-state cybersecurity architectures that integrate capabilities across multiple cybersecurity domains and technology platforms.
Assesses opportunities to improve interoperability and automation across areas including:
Vulnerability and Exposure Management
Configuration and Security Posture Management
Identity and Access Management
Endpoint Protection and Detection
Security Operations
Asset and Technology Inventory
Threat Detection and Response
Security Analytics and Automation
Explores how AI agents and autonomous or semi-autonomous capabilities can securely interact with cybersecurity platforms, enterprise systems, data, and workflows while maintaining appropriate security controls, governance, and human oversight.
Identifies opportunities to reduce fragmented security processes through technology integration, consolidation, automation, and intelligent orchestration.
Evaluates emerging cybersecurity technologies, platforms, tools, and architectural approaches for potential applicability within the enterprise.
Partners with cybersecurity domain architects, engineering teams, security operations, technology teams, and other stakeholders to evaluate cross-domain architecture requirements and integration opportunities.
Assesses architectural considerations associated with machine identities, AI agents, privileged access, authentication, authorization, data access, trust boundaries, and automated actions.
Evaluates security implications associated with integrating AI capabilities into cybersecurity technologies and operational workflows.
Helps establish architectural principles and guardrails for the responsible and secure adoption of emerging AI-enabled cybersecurity capabilities.
Identifies dependencies, architectural gaps, integration challenges, technical risks, and opportunities associated with future-state cybersecurity architectures.
Develops technical assessments, architecture documentation, recommendations, and executive-level presentations communicating complex concepts to both technical and business stakeholders.
Proactively monitors technology developments and industry trends that may materially change cybersecurity architecture, operating models, or defensive capabilities.
Works effectively in an environment involving emerging technologies, ambiguity, experimentation, and rapidly changing technical capabilities.
Education Minimum
B.S. degree or equivalent work experience in Computer Science, Cybersecurity, Information Systems, Engineering, or another relevant technical field.
Desired
M.S., M.B.A., or advanced technical degree in Computer Science, Cybersecurity, Engineering, Artificial Intelligence, Information Systems, or equivalent field.
License/Certification Desired
One or more relevant cybersecurity or technology certifications preferred, such as:
Certified Information Systems Security Professional (CISSP)
Certified Information Security Manager (CISM)
Certified in Risk and Information Systems Control (CRISC)
Cloud or security architecture certifications
Vendor-specific security or AI certifications
Other equivalent cybersecurity, architecture, cloud, or emerging technology certifications
Experience Minimum
Minimum of 6 years of combined cybersecurity, information technology, architecture, engineering, or related technical experience.
Demonstrated experience designing, evaluating, or implementing enterprise cybersecurity architectures and solutions.
Experience working across multiple cybersecurity technology domains rather than exclusively within a single security discipline.
Demonstrated ability to evaluate complex technologies and translate technical capabilities into practical enterprise use cases.
Experience working with multidisciplinary technical teams including architects, engineers, cybersecurity operations, developers, infrastructure teams, and technology vendors.
Experience Desired
Experience or demonstrated knowledge in the following areas is highly desirable:
Generative and agentic AI: LLMs, AI agent architectures, and agent-to-system and machine-to-machine interactions
AI security and governance: secure adoption of emerging AI capabilities
Enterprise security architecture: reference architectures, design patterns, and defense-in-depth
Zero Trust architecture: covering network, platform, and identity
Security platform strategy: integration, technology rationalization and consolidation, capability modeling, and roadmapping
Vulnerability and exposure management: attack surface management, asset discovery and inventory, and risk prioritization
Security configuration and posture management: control assessment and configuration baselines
Identity and access management: authentication, authorization, identity governance, and privileged access management
Non-human identity management: machine, workload, and AI agent identities
Security operations and detection: endpoint protection, EDR/XDR, SIEM/SOAR, telemetry and analytics, threat detection and response, and automated orchestration
Strong knowledge of cybersecurity architecture, enterprise security technologies, and emerging trends, including how AI and automation are changing architectures and operating models.
Ability to look past individual products and evaluate security as an integrated ecosystem, including the dependencies across identity, endpoints, infrastructure, applications, data, vulnerability management, security operations, and AI.
Strong analytical and problem-solving skills, with the ability to work through complex and ambiguous technical problems.
Ability to research and assess emerging technologies on your own, including where no established enterprise patterns exist yet.
Ability to turn emerging concepts into practical architecture patterns, use cases, recommendations, and implementation guidance.
Sound judgment in telling apart promising capabilities from those not yet mature, secure, or ready for enterprise use.
Strong written and verbal communication, including explaining complex security and AI concepts to both technical teams and executives.
Ability to influence technical direction and collaborate across organizational boundaries.
Ability to work well in a fast-moving, collaborative environment where requirements change.
Strong technical curiosity and a willingness to challenge traditional approaches while keeping to sound security, risk, and governance principles.
Salary Range
$153,520.00 - $242,400.00 USD (Salary)
Please note that the salary information provided herein is base pay only (gross); it does not include other forms of compensation which may or may not apply to this specific position, namely, performance-based bonuses, benefits-related payments, or other general incentives - none of which are guaranteed, may be subject to specific eligibility requirements, and are wholly within the discretion of Astreya to remit.
Further, the salary information noted above is a range that consists of a minimum and maximum rate of pay for this specific position. Where an applicant or employee is placed on this range will depend and be contingent on objective, documented work-related considerations like education, experience, certifications, licenses, preferred qualifications, among other factors.
Astreya offers comprehensive benefits to all Regular, Full-Time Employees,including:
Medical provided through UHC (PPO, HSA, Surest options) / Medical provided through Kaiser (HMO option only) for California employees only
Dental provided through UHC
Nationwide Vision provided by UHC
Flexible Spending Account for Health & Dependent Care
Pre-Tax Account for Commuter Benefit/Parking & Transit (location-specific)
Continuing Education and Professional Development via various integrated platforms, e.g. Udemy and Coursera
Corporate Wellness Program provided by Goomi Group
Employee Assistance Program
Wellness Days
401k Plan
Basic and Supplemental Life Insurance
Short Term & Long Term Disability
Critical Illness, Critical Hospital, and Voluntary Accident Insurance
Tuition Reimbursement (available 6 months after start date, capped)
Paid Time Off (accrued and prorated, maximum of 120 hours annually)
Paid Holidays
Any other statutory leaves, paid time, or other ancillary benefits required under state and federal law
“I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!”