Security Architect I (remote)
Are you looking to make a difference in a patient’s life? At AmerisourceBergen, you will find an innovative and collaborative culture that is patient focused and dedicated to making a difference.
As an organization, we are united in our responsibility to create healthier futures. Join us and Apply today!
Ce que vous ferez
This is a good fit for you if you are a junior to mid-level Information Security, Cyber Security Professional or related experience with security exposure.
The Security Architect I role is responsible for improving application and systems security and will support efforts to minimize the possibility that coding, design, or configuration security vulnerabilities could work their way into production environments, presenting a potential point-of-compromise.
The Security Architect-I will review project documentation, research, and reference security policy, render recommendations and guidance, approve, or reject project artifacts from a security perspective, and perform other tasks in the pursuit of securing systems, processes, and software applications.
Responsibilities will include :
Providing input and recommendations to the development teams related to architecture, design, coding practices and SDLC elements that could potentially impact the application or solution from a security perspective.
Validating controls for Encryption, Access Control, Web Application Vulnerability Detection, OWASP top 10 and other common web application security parameters.
Reviewing application architecture and design from an application security and information security perspective ensuring alignment with organization security standards and industry best practices.
Serving as a subject matter expert (SME) for performing vendor risk assessments (including Cloud Services) to improve overall vendor risk program.
Providing technical expertise on secure software development and support of all associated activities, processes, and tools for protecting technology-based information
Ensuring that development is done in accordance with industry standards for secure development
Facilitating Periodic static code analysis utilizing existing standard service offering.
Facilitating dynamic and / or manual security testing utilizing existing standard service offering
Reviewing, developing, testing, and implementing security plans, products, and control techniques
Reviewing circumstances surrounding security gaps in and designs corrective actions
Maintaining awareness of security and technology trends and shares that knowledge with others
Evangelizing security policies, standards, and nonfunctional requirements where / when needed
Daily and Weekly Status Reporting - for Work in Process and Planned and issues
Documenting processes, procedures, assessment outputs, working papers documentation to support existing SDLC and governance requirements
Representing security and IT risks among other company risk departments and committees.
Evaluating the effectiveness of awareness and training programs and makes recommendations for improvement.
À quoi devraient ressembler vos antécédents
Bachelor's Degree in Computer Science, Information Systems or other related field, or equivalent work experience
Five (5) - ten (10) years of combined IT and security work experience with a broad range of exposure to systems analysis, application development, systems administration and over five (5) years of experience designing and deploying security for Business products and services and Enterprise solutions at the enterprise level.
Preferred Certification in one or more Information Security relevant areas such as Audit (CISA), Security Management (CISM), Security Professional (CISSP), Cloud Security (CCSP, CCSK, AZ500
Requires in-depth knowledge of security issues, techniques and implications across all existing computer platforms.
Experience with evaluating and implementing security controls as related to Cloud based services including SaaS, PaaS, IaaS.
Strong computer skills to operate effectively with company systems and programs; working knowledge of applicable computer applications used at ABC
Working knowledge of network solutions and systems
Good analytical and problem-solving skills
Ability to communicate effectively both orally and in writing
Good interpersonal skills
Ability to prioritize workload and consistently meet deadlines
Strong organizational skills; attention to detail
Ability to lead and provide direction to project / product teams
Strong consultative skills : ability to interface effectively with technical and non-technical leaders.
Understands Information Security as it relates to the business and other areas of IT; understands direct impacts and risks.
Demonstrated sound understanding of at least 3 of the following control frameworks such as ISO 27001 / 27002, HITRUST, PCI, NIST, GDPR and PCI
Business experience in a matrix Organization required
As of August 24, 2021, AmerisourceBergen requires all U.S. team members to be fully vaccinated and show proof of completed vaccine status at time of hire.
If you cannot receive the COVID-19 vaccine due to a disability / medical reason or sincerely held religious belief you will be required to follow AmerisourceBergen’s policy and process to apply for an exemption / accommodation.
Ce qu’AmerisourceBergen offre
Nous offrons une rémunération globale concurrentielle. Notre engagement envers nos associés comprend l’offre de programmes d’avantages sociaux complets, diversifiés et conçus pour répondre aux divers besoins de l’ensemble de nos associés.
Grâce à notre présence mondiale et nos diverses unités commerciales, nous avons une approche équilibrée des avantages que nous offrons.
De nombreux avantages sociaux sont payés par l’entreprise, tandis que d’autres sont offerts par les cotisations des associés.
Les offres d’avantages sociaux spécifiques peuvent varier selon l’emplacement, le poste ou l’unité d’affaires.
Calendrier
Temps Plein
Salary Range*
$93,500 - 143,990
This Salary Range reflects a National Average for this job. The actual range may vary based on your locale. Ranges in Colorado / California / Washington State-specific locations may be up to 10% lower than the minimum salary range, and 12% higher than the maximum salary range.
Affiliated Companies :
Affiliated Companies : AmerisourceBergen Services Corporation
Échelle salariale
Related Jobs
Security Architect I (remote)
Security Guard
GHM Security
Cyber Security Architect