platform security and compliance Architect - Remote at Remote, Remote, USA |
Email: [email protected] |
From: Manish, epeopletech [email protected] Reply to: [email protected] Hi, We have an urgent opening with platform security and compliance Architect and I have sent you job description, please go through it and let me know your comfort with it and also send me your updated resume ASAP. Position: platform security and compliance Architect Location: Remote Duration: Contract Responsibilities: Develop and implement a comprehensive platform security and compliance strategy to protect the organization's systems, data, and infrastructure. Conduct risk assessments and security audits of the platform to identify vulnerabilities, threats, and potential risks. Define and enforce platform security standards, policies, and procedures, ensuring compliance with relevant regulations and industry best practices. Design and implement security controls, including authentication, authorization, encryption, access controls, and network security measures. Collaborate with cross-functional teams, including development, operations, and infrastructure teams, to ensure security considerations are integrated throughout the platform lifecycle. Conduct security reviews of platform architecture, design, and code to identify and remediate security vulnerabilities. Develop and maintain security incident response plans, ensuring the organization is prepared to effectively respond to and mitigate security incidents. Stay updated with emerging threats, vulnerabilities, and security technologies, and proactively recommend and implement security enhancements to the platform. Lead security assessments and penetration testing of the platform to validate its security posture and identify areas for improvement. Collaborate with compliance teams to ensure platform compliance with relevant regulations and standards, such as GDPR, HIPAA, PCI-DSS, and ISO 27001. Conduct security training and awareness programs to educate stakeholders on platform security best practices and promote a security-conscious culture. Participate in security incident response activities, including forensic analysis, root cause analysis, and remediation efforts. Provide guidance and support to development teams in implementing secure coding practices and conducting security testing. Requirements: Bachelors degree in computer science, Information Security, or a related field. Proven experience as a security architect or similar role, with a focus on platform security and compliance. Hands-on VAPT testing and reporting expertise In-depth knowledge of platform security concepts, principles, and best practices. Strong understanding of security standards and regulations, such as GDPR, HIPAA, PCI-DSS, and ISO 27001. Experience in designing and implementing security controls, including authentication, authorization, encryption, access controls, and network security. Familiarity with secure coding practices and common vulnerabilities, such as OWASP Top 10. Strong knowledge of security technologies, tools, and frameworks, including firewalls, intrusion detection/prevention systems, vulnerability scanners, and SIEM. Experience with cloud platforms (e.g., AWS, Azure, Google Cloud) and their security features and controls. Familiarity with security compliance frameworks, such as NIST, CIS, or SOC. Excellent analytical and problem-solving skills, with the ability to assess risks, analyze complex systems, and propose effective security solutions. Strong communication and interpersonal skills, with the ability to effectively communicate complex security concepts to both technical and non-technical stakeholders. Security certifications such as CISSP, CISM, or CCSP are highly desired. Experience with DevSecOps practices and integrating security into CI/CD pipelines is a plus. Thanks & Regards Manish Sharma ePeople Technologies Inc 255 Baldwin Road, Suite 205, Parsippany, NJ 07054 Email:[email protected] http://www.epeopletech.com P Go Green! Please do not print this e-mail unless necessary Note: ePeople Technologies Inc is an Equal Employment Opportunity employer. All qualified applicants will receive consideration for employment without any discrimination. All applicants will be evaluated solely on the basis of their ability, competence, and performance of the essential functions of their positions. We promote and support a diverse workforce at all levels in the company. This is not an unsolicited mail and if it is not intended for you or you are not interested in receiving our e-mails please forward this email to with "remove" in the subject line and mention all the e-mail addresses to be removed with any e-mail addresses, which might be diverting the e-mails to you. We are extremely sorry if our email has caused any inconvenience to you. Keywords: continuous integration continuous deployment information technology golang New Jersey |
[email protected] View all |
Fri Jul 14 19:00:00 UTC 2023 |