Перейти к основному содержимому
Airship

Information Security Architect

УдалённоUnited States только
Опубликовано
Роль
Безопасность
Опыт
Лид
$130k–$160k/yr
Проверьте доступность

Доступно для: US only. Укажите, откуда вы работаете, чтобы проверить доступность.

Коротко по делу

Security architect with 8+ years in information security/cloud security, deep GCP security expertise, and hands-on CI/CD pipeline security. Must be U.S.-remote and strong in threat modeling, cloud-native application security, IAM, network security, and scripting.

Ключевые навыки

GCPCI/CDThreat modeling

Обязательные навыки

Container securityInfrastructure-as-CodeSecrets managementDevSecOpsPython/Java/BashSAMLOAuth2macOSLinuxWindowsOWASPAPI securitySSOMFA

Желательные навыки

CISSPCCSPGoogle Cloud Professional Security EngineerOSCPGIACSplunkCrowdStrikeRapid7

Чем предстоит заниматься

  • Design, develop, and maintain Airship's security architecture, including reference architectures, secure design patterns, and technical security standards
  • Perform security architecture reviews for enterprise applications, cloud platforms, infrastructure services, and technology integrations, ensuring alignment with security standards and risk posture
  • Conduct threat modeling and technical risk assessments to identify security gaps and recommend mitigation strategies
  • Define and implement cloud security guardrails, network segmentation patterns, logging standards, and access control models across Airship's GCP environment
  • Partner with Engineering and DevOps teams to integrate security controls into the CI/CD pipeline, including secure build processes, container security, Infrastructure-as-Code (IaC) security, secrets management, and software supply chain integrity
  • Evaluate proposed architecture and design changes from engineering teams, analyze their security impact, and make recommendations
  • Assess emerging technologies (including AI platforms, generative AI tools, and AI-assisted development technologies) to identify security risks and define secure usage patterns
  • Develop security guidance for API security, application authentication (SAML, OAuth2), encryption, and identity and access management
  • Research security trends, emerging attack methods, and new classes of vulnerabilities to proactively reduce the risk of breach
  • Leverage AI-enabled tools and automation to improve security analysis, architecture review workflows, and threat detection
  • Partner with security tooling teams to evaluate enterprise security tools for architectural fit, integration models, and long-term scalability
  • Participate in the Security on-call rotation and respond to incidents
  • Provide technical security guidance for complex customer inquiries that require deep architectural expertise
  • Mentor colleagues across the organization on secure design principles and security best practices

Что требуется

  • 8+ years of experience in information security, security architecture, cloud security engineering, or a related technical discipline
  • Deep expertise in Google Cloud Platform (GCP) security, including native security capabilities, cloud architecture patterns, and workload protection
  • Hands-on experience securing CI/CD pipelines, including container security, IaC security, secrets management, and DevSecOps practices
  • Experience conducting threat modeling for complex, distributed systems using standard methodologies
  • Experience performing security architecture and design reviews for cloud-native applications and infrastructure
  • Proficiency in at least one scripting language (e.g., Python, Java, Bash/shell)
  • Working knowledge of network security concepts, including segmentation, Zero Trust principles, firewalls, and access control models
  • Working knowledge of identity and access management concepts, including SSO, MFA, federation, and least-privilege access
  • Strong understanding of application security, including OWASP, API security, secure SDLC practices, and authentication protocols (SAML, OAuth2)
  • Working knowledge of how to protect and administer macOS, Linux, and Windows systems
  • Ability to translate security requirements into practical, scalable technical solutions
  • Strong written and verbal communication skills, with a talent for explaining complex security concepts to both technical and non-technical audiences
  • Experience experimenting with AI tools in your personal or professional life
  • Preferred: One or more industry certifications (e.g., CISSP, CCSP, Google Cloud Professional Security Engineer, OSCP, GIAC certifications)
  • Preferred: Familiarity with AI security concepts, secure AI platform adoption, and AI risk frameworks
  • Preferred: Experience developing security reference architectures, design patterns, and technical standards documentation
  • Preferred: Knowledge of data security practices including encryption, data classification, DLP, and key management
  • Preferred: Experience evaluating third-party technologies and conducting technical security assessments for vendor platforms
  • This position is fully remote and may require up to 10% travel based on business needs or as requested by your manager

Преимущества

  • All offers include stock options so employees have the opportunity to benefit from Airship’s success
  • Competitive medical, dental, and vision insurance options for you and your dependents
  • Flexible time off, company paid holidays, paid parental leave, and paid volunteer time off
  • Support for your overall wellbeing with mental health and wellness resources
  • Employer-subsidized life insurance as well as short-term and long-term disability
  • A digital-first work environment and a monthly stipend to support remote work
  • Mentorship and growth opportunities to build skills and accelerate professional development
  • And more!

Airship is a no-code, AI-powered platform for cross-channel customer experiences across apps, websites, email, SMS, wallets and more, used by brands to drive revenue growth and customer loyalty.

TechnologyСредняя

Детали

Способ откликаGreenhouse
$130k–$160k/yr