Recent Searches

You haven't searched anything yet.

47 Security Architect Jobs in Boston, MA

SET JOB ALERT
Details...
Hire IT People
Boston, MA | Contractor
$133k-165k (estimate)
1 Week Ago
Massachusetts Bay Transportation Authority
Boston, MA | Full Time
$123k-152k (estimate)
1 Week Ago
Talent groups
Boston, MA | Full Time
$126k-155k (estimate)
1 Day Ago
Talent Group
Boston, MA | Full Time
$116k-142k (estimate)
3 Days Ago
Jesica.ai
Boston, MA | Full Time
$126k-154k (estimate)
4 Days Ago
Clovity, Inc.
Boston, MA | Contractor
$113k-139k (estimate)
1 Week Ago
Accroid Inc
Boston, MA | Contractor
$125k-152k (estimate)
1 Week Ago
MBTA
Boston, MA | Full Time
$133k-166k (estimate)
6 Days Ago
Judge Group
Boston, MA | Full Time
$133k-165k (estimate)
1 Week Ago
Talent groups
Boston, MA | Contractor
$125k-153k (estimate)
1 Week Ago
Stellent IT LLC
Boston, MA | Full Time
$140k-173k (estimate)
1 Week Ago
LanceSoft Inc
Boston, MA | Full Time
$125k-153k (estimate)
1 Week Ago
Apex Systems
Boston, MA | Full Time
$144k-180k (estimate)
3 Months Ago
Clovity, Inc.
Boston, MA | Contractor
$124k-152k (estimate)
1 Week Ago
MRCC Solutions
Boston, MA | Contractor
$145k-179k (estimate)
6 Days Ago
Rose International
Boston, MA | Temporary
$148k-182k (estimate)
1 Week Ago
RAPS IT CONSULTING
Boston, MA | Full Time
$145k-178k (estimate)
1 Week Ago
Acro Service Corporation
Boston, MA | Contractor
$145k-178k (estimate)
1 Week Ago
Hire IT People
Boston, MA | Contractor
$133k-166k (estimate)
4 Days Ago
Compu-Vision Consulting Inc.
Boston, MA | Contractor
$157k-191k (estimate)
5 Days Ago
Compu-Vision Consulting Inc.
Boston, MA | Contractor
$139k-167k (estimate)
6 Days Ago
Equiliem
Boston, MA | Contractor
$140k-173k (estimate)
6 Days Ago
Boston Consulting Group
Boston, MA | Full Time
$169k-209k (estimate)
7 Days Ago
Dreamcatch Development
Boston, MA | Full Time
$149k-183k (estimate)
7 Days Ago
Sripen
Boston, MA | Full Time
$139k-167k (estimate)
7 Days Ago
Talent Group
Boston, MA | Full Time
$142k-176k (estimate)
1 Week Ago
Accroid Inc
Boston, MA | Contractor
$123k-150k (estimate)
1 Week Ago
NavitsPartners
Boston, MA | Full Time
$133k-165k (estimate)
1 Week Ago
Security Architect
Hire IT People Boston, MA
$133k-165k (estimate)
Contractor | IT Outsourcing & Consulting 1 Week Ago
Save

sadSorry! This job is no longer available. Please explore similar jobs listed on the left.

Hire IT People is Hiring a Security Architect Near Boston, MA

Job Title : Security Architect

Job Location : Boston, MA (Hybrid- 4 days a month will be onsite)

Position Type : Contract

Job Description:

Position Summary :

The BEST Program Security Architect will work with the BEST Security Lead, BEST Compliance Lead, BEST Technical Lead, Executive Office of Technology Services and Security (EOTSS) security team, and product vendors. The primary responsibility is to implement business and technical controls that meet specific security requirements and to define processes and standards that maintain approved security configurations in the new Financial Solution. This role ensures confidentiality, integrity, availability, risk management, and compliance of the business solution. As a key member of the project’s Security Team, the Security Architect will work closely with other team members to develop and implement a comprehensive information security program. This includes:

  • Design and recommend protocols and procedures for monitoring the product vendor’s performance against Service Level Agreement standards regarding data security, annual security audits, and disaster recovery testing.
  • Define security policies, processes and standards related to end- user roles, data access for application users, and how users will be provisioned and de-provisioned.
  • Provide input on selection, deployment, and oversight of security technologies. The Security Architect will participate in recommending strategies for:
  • Monitoring compliance with vendor and Commonwealth IT security policies and applicable laws.
  • Defining procedures for investigating and reporting security incidents.
  • Contribute in developing, testing, and documenting security procedures, including disaster recovery, business continuity, backups, and incident response.
  • Monitoring and assessing business continuity and disaster recovery programs, network penetration, and other tests to assess application vulnerability; and
  • Working with the BEST Compliance Lead, participate in risk and compliance assessment reviews of the new Financial solution and supporting services and infrastructure.

The Software as a Solution (SaaS) model chosen by the Commonwealth includes data security protocols and procedures that are audited annually by a third party.

The Service Level Agreement (SLA) and contract documentation between the Commonwealth and the system integration and product vendor outline the terms and conditions for maintaining data security, which will be monitored by the Commonwealth.

The Security Architect will assist the Commonwealth in implementing necessary procedures to meet risk mitigation requirements and monitor vendor compliance with security protocols.

This role involves collaborating with program functional teams to identify end-user roles and permissions for implementing the new solution across in multiple agencies and user types, ensuring appropriate data access. User security procedures will be developed in conjunction with the BEST Security Lead, the system integration and product vendor, and agency staff responsible for user provisioning and deprovisioning.

The Security Architect will report to the BEST Security Lead, who reports to the BEST Solution Technical Lead. Close coordination with the BEST Compliance Lead and the BEST program's Independent Verification and Validation (IV &V) vendor will be required.

This role is responsible for translating complex security problems into sound technical solutions, providing technical security and architectural direction to technology business teams, ensuring that development efforts are adhering to security design and compliance standards and requirements, providing insights and guidance on overall secure system design, and documenting and communicating security architectural requirements.

Specific Duties

This position will focus on the Platform (hosting) security and will align with the BEST security lead on application/user security, including but not limited to:

o Work with Executive OTSS to onboard Advantage 4 to work with the Commonwealth Single Sign On - SSO for employees and for vendors.

o Remediate department users that are not on mass.gov, to create a way for those department user access Advantage 4 when not on mass.gov.

o Will oversee security SLAs to ensure appropriate security reports are created, as well as create a process to for review to ensure SLAs are monitored by the Commonwealth.

o Work with EOTSS on and oversee security testing (pen-testing) and to review/remediate results/issues, as necessary.

o Work with the BEST Compliance Lead to develop strategies, procedures and recommended roles and responsibilities to enforce security requirements and address identified risks related to the use of the new

Financials solution and suitability of underlying internal controls and technologies.

o Provide advice regarding end user security roles and groups, data access controls and security role provisioning (onboarding) and de-provisioning (offboarding) protocols to ensure that data are accessed appropriately in the new Financials solution.

o Participate in disaster recovery, business continuity, back up, operational set up and configuration, as well as support disaster recovery/business continuity testing, documentation, and improvement.

o Oversee execution testing of Security Incident Event Management (SIEM) across several security domains including Cloud SaaS vendor, Comptroller’s office, and EOTSS.

o Oversee integration testing of EOTSS Single Sign On (SSO), EOTSS Identify Access Management (IAM), EOTSS Multi-Factor Authentication (MFA), Cloud SaaS Vendor user access management, and Comptroller’s access controls and provisioning processes. o Implement agreed mitigations and solutions to address business and technology vulnerabilities.

o Document and implement technical controls, processes and procedures related to data security in conjunction with the BEST Security Lead, Technical Lead, Compliance Lead and Commonwealth Executive Office of Technology and Security Services (EOTSS).

o Assist security administrators and IT staff in the resolution of reported security incidents. Act as a liaison between incident response leads and subject matter experts. Monitor daily or weekly reports and security logs for unusual events.

  • Assist in identifying security requirements, using methods that may include risk and business impact assessments. Components of this activity include but are not limited to: o Review of SLA requirements agreed to by the Commonwealth and the SI and product vendor(s). o Review of Commonwealth IT policies related to data security. o Review of Commonwealth Risk Management Office assessments and recommendations regarding data security risk mitigation.

Conduct additional business system analysis as needed. Design future state security solution supporting data and application security needs and environment security needs across multiple stakeholders. o Identify business and technology security vulnerabilities and make recommendations to program leadership and stakeholders.

  • Working with the BEST Compliance Lead, assess compliance with risk and cybersecurity frameworks and standards such as NIST, ISO, COSO, PCI, FERPA, and GLBA.
  • Assist in the coordination and completion of information security operations documentation.
  • Play an advisory role in application development and implementation to assess security requirements and controls and assist in assuring that security issues are addressed throughout the project life cycle.
  • Support the Program and the BEST Security Lead to identify approved end users of the new solution and coordinate provisioning of users for Day One go live. Drive testing of go live security solution end-to-end.
  • Provide advice to security administrators on normal and exception-based processing of security authorization requests including the use of system integration or product vendor tools that monitor system use and data access irregularities.
  • Research, evaluate and recommend information-security-related hardware and software, including developing business cases for security investments.
  • Analyze the result of system integration and product vendor audits or audits performed by third parties to produce recommendations of acceptable risks and risk mitigation strategies regarding security. Provide recommendations regarding audit finding remediation, including providing feedback and suggestions on managerial responses to

findings, tracking progress and providing status updates to the BEST Team.

  • Provide ongoing advice and third-level support to Security operations and IT for incident response, indicators of compromise (IOC’s), vendors security vulnerability notifications, law Enforcement security alerts, etc.
  • Maintain an awareness of existing and proposed security-standard-setting groups, state and federal legislation and

regulations pertaining to information security. Identify regulatory changes that will affect information security policy, standards, and procedures, and recommend appropriate changes.

  • Research and assess new threats and security alerts and recommends remedial actions.
  • Work with BEST Operations Lead to ensure security operational actions are properly implemented.
  • Assist/support BEST Technical Implementation Lead on Authority to Operate (ATO) requirements identification, definition, and validation.
  • Execute “tabletop” security reviews of end-to-end go live security processes.

Required Skills

  • In-depth exposure to technical configurations, technologies, and processing environments in one or more projects of similar size and complexity to BEST.
  • In-depth knowledge and understanding of information risk concepts and principles as a means of relating business needs to security controls.
  • Knowledge of and experience in developing and documenting security architecture and plans, including strategic, tactical and project plans.
  • Documented experience with common information security management frameworks, such as International Organization for Standardization (ISO) 2700x and the ITIL, SOX, COBIT and National Institute of Standards and Technology (NIST) frameworks.
  • Experience in architecting and implementing cloud-based security solutions.
  • Strong knowledge of security tools and capabilities, such as: IDM and SSO.
  • Extensive experience in integrating security tools and 3rd party vendor solutions.
  • Exceptional planning, organization, communication, prioritization, and business analysis skills.
  • In-depth knowledge of risk assessment methods and technologies.
  • Proficiency in performing risk, business impact, control, and vulnerability assessments.
  • Excellent technical knowledge of mainstream operating systems and a wide range of security technologies, such as network security appliances, identity, and access management (IAM) systems, anti-malware solutions, privilege access management (PAM), data loss prevention (DLP), encryption at-rest and in-transit, multi-factor

• Experience with Software as a Service cloud implementations particularly those in which legacy on premise applications have been migrated to cloud delivery options.

  • Security solution design and development leveraging multiple security teams with disparate roles and responsibilities using a cloud SaaS solution.
  • Experience in migrating security solutions from legacy on-premises environment into a cloud solution within a highly regulated environment.
  • Experience in performing / supporting security audits and compliance validation.
  • Documented ability to interact with personnel at all levels and across all business units and organizations, and to comprehend business imperatives.

Minimum Entrance Requirements

  • Bachelor's degree in computer science, system analysis or a related study, or equivalent experience.
  • Minimum of five years of design and implementation experience in IT, with a deep knowledge in a minimum of two of the following technical disciplines: infrastructure and network design, application development,

application programming interfaces (APIs), middleware, servers and storage, database management, data security, and system administration and operations

  • Experience in generation of Security materials, including but not limited to compliance adherence, security operational procedures, security implementation plans, and network and security diagrams.

• Minimum of three years of security architecting design and implementation with security certifications, such as: SIA Security

In your response, please provide answers to the following questions:

  • How many years of direct experience does the candidate have in implementing business and technical controls to meet specific security requirements of a large, complex organization?
  • How many years of experience does the candidate have implementing and supporting such controls within a Software as a Solution (SaaS) IT environment?
  • Please list any relevant professional certifications the candidate has.

Job Type: Contract

Pay: Up to $70.00 per hour

Expected hours: No more than 40.00 per week

Benefits:

  • Employee discount
  • Life insurance
  • Referral program

Schedule:

  • 8 hour shift

Experience:

  • security architecting design: 3 years (Required)

License/Certification:

  • SIA Security (Required)

Ability to Commute:

  • Boston, MA 02108 (Required)

Ability to Relocate:

  • Boston, MA 02108: Relocate before starting work (Required)

Work Location: Hybrid remote in Boston, MA 02108

Job Summary

JOB TYPE

Contractor

INDUSTRY

IT Outsourcing & Consulting

SALARY

$133k-165k (estimate)

POST DATE

06/14/2024

EXPIRATION DATE

06/18/2024

WEBSITE

hireitpeople.com

HEADQUARTERS

EAST BRUNSWICK, NJ

SIZE

25 - 50

FOUNDED

2010

CEO

YASHODA D NANDAN

REVENUE

<$5M

INDUSTRY

IT Outsourcing & Consulting

Related Companies
About Hire IT People

If you need more information, please speak to a HR Specialist at (800) 693-8939 Option 1 Our expert HR Specialists will work with you for a smoother Transition from your present H1B Employer, we will negotiate with your Client or Vendor to move your Project to our Company. We have expertise in professionally handling Billing/Project Transfers and the entire H1B Transfer Process from Purchase Order through H1B Approval. Hire IT People, LLC does not require any employee to sign long-term Contracts. If situation changes and you have to resign from our Company, we will ensure to provide necessary ...Employment Verification and Experience letters immediately. However we retain records for over 5 Years, you may contact us anytime. Our on-time H1B filing will provide relief from any gaps in your H1B status. Our Company has good Track record with USCIS and our detailed documentation ensures H1B approvals, our expertise ensures that your H1B Transfer or H1B Extension goes as expected, while complying with the laws. Our documentation covers every aspect of H1B Employer-Employee Relationship Memo, while complying with the USDOL and USCIS Laws. More
Show less

Show more
Show more

Hire IT People
Contractor
$83k-108k (estimate)
Just Posted
Hire IT People
Contractor
$111k-140k (estimate)
Just Posted
Hire IT People
Contractor
$57k-94k (estimate)
Just Posted

The job skills required for Security Architect include Cybersecurity, Information Security, Leadership, Risk Management, Incident Response, SIEM, etc. Having related job skills and expertise will give you an advantage when applying to be a Security Architect. That makes you unique and can impact how much salary you can get paid. Below are job openings related to skills required by Security Architect. Select any job title you are interested in and start to search job requirements.

For the skill of  Cybersecurity
Prudent Technologies and Consulting
Full Time
$165k-199k (estimate)
4 Days Ago
For the skill of  Information Security
Global Channel Management, Inc
Full Time
$108k-134k (estimate)
Just Posted
Show more

The following is the career advancement route for Security Architect positions, which can be used as a reference in future career path planning. As a Security Architect, it can be promoted into senior positions as a Cyber Security Architect III that are expected to handle more key tasks, people in this role will get a higher salary paid than an ordinary Security Architect. You can explore the career advancement for a Security Architect below and select your interested title to get hiring information.

Jesica.ai
Full Time
$126k-154k (estimate)
4 Days Ago