What are the responsibilities and job description for the Associate Director for Architecture, IT Risk Management and Security position at Merck Sharp & Dohme (MSD)?
Job Title: Security Architect
We are seeking a highly skilled Security Architect with a strong background in designing resilient and highly available cloud-hybrid systems.
Key Responsibilities:
- Design and Implementation: Designing robust and scalable cloud-hybrid systems that ensure high availability and resilience in a medium to large organization.
- Oversee PoCs and discovery efforts: Helping to initiate, drive or oversee proof-of-concept (PoC) and discovery efforts to protect against emerging threats and address controls deficiencies.
- Defining Security architecture principles, patterns and blueprints: Preparing reusable architectural artifacts in the form of design diagrams, Infrastructure as Code (IaC), or infographics.
- Strategic alignment: Collaborating with cross-functional teams to influence and define roadmaps and strategies, ensuring alignment with organizational strategy and company goals.
- Stakeholder Engagement: Building and maintaining strong interpersonal relationships, leveraging exceptional networking and influencing skills to navigate cross-culturally with a diverse range of stakeholders, both internally and externally.
Requirements:
- Bachelor's degree in Computer Science, Mathematics, or other relevant engineering discipline.
- Experience working in a large enterprise, driving outcomes by influencing various IT and business teams, business and technology architects, IT and divisional leaders.
- Experience working within a Scaled Agile Framework (SAFe), Product Model, and Agile teams.
- Proven Expertise in Security Architecture and Threat Modeling: Demonstrated experience in designing and implementing security architectures, particularly within hybrid environments that integrate on-premises and cloud solutions. Ability to assess risks and develop strategies to mitigate threats effectively.
- Strong understanding of core IT Security disciplines: Knowledge of Identity and Access Management (IAM), Network Security, Endpoint Security, Security Operations, Risk, and compliance.
- Strong Grasp of Architectural Principles and Technologies: Deep familiarity with modern architectural methodologies including serverless architectures, microservices, and the principles of DevSecOps.
Preferred Qualifications:
- In-Depth Understanding of Modern Security Paradigms: Comprehensive knowledge of contemporary security approaches, such as Zero Trust architecture, to ensure robust security in digital environments.
- Hands-On Experience with Cybersecurity Standards and Frameworks: Practical application of established cybersecurity standards and frameworks, including NIST Cybersecurity Framework (NIST CSF), Center for Internet Security (CIS) Critical Security Controls, ISO 27000 series, and NIS2 Directive.
Estimated Salary Range: $139,600.00 - $219,700.00
Benefits: Bonus eligibility, long-term incentive, health care, retirement benefits, paid holidays, vacation, and sick days.
Salary : $139,600 - $219,700