About this role
Job Responsibilities
- Serves as an expert contributor in the development and implementation of cybersecurity architectures, patterns, strategies, and solutions supporting emerging technology and AI-enabled cybersecurity capabilities.
- Evaluates opportunities to leverage artificial intelligence, agentic AI, automation, orchestration, analytics, and other emerging technologies to enhance cybersecurity capabilities and operating models.
- Develops current-state, transitional, and future-state cybersecurity architectures that integrate capabilities across multiple cybersecurity domains and technology platforms.
- Assesses opportunities to improve interoperability and automation across areas including: Vulnerability and Exposure Management
- Configuration and Security Posture Management
- Identity and Access Management
- Endpoint Protection and Detection
- Security Operations
- Asset and Technology Inventory
- Threat Detection and Response
- Security Analytics and Automation
- Explores how AI agents and autonomous or semi-autonomous capabilities can securely interact with cybersecurity platforms, enterprise systems, data, and workflows while maintaining appropriate security controls, governance, and human oversight.
- Identifies opportunities to reduce fragmented security processes through technology integration, consolidation, automation, and intelligent orchestration.
- Evaluates emerging cybersecurity technologies, platforms, tools, and architectural approaches for potential applicability within the enterprise.
- Develops reference architectures, architecture patterns, capability models, technical recommendations, and roadmaps supporting future cybersecurity capabilities.
- Partners with cybersecurity domain architects, engineering teams, security operations, technology teams, and other stakeholders to evaluate cross-domain architecture requirements and integration opportunities.
- Assesses architectural considerations associated with machine identities, AI agents, privileged access, authentication, authorization, data access, trust boundaries, and automated actions.
- Evaluates security implications associated with integrating AI capabilities into cybersecurity technologies and operational workflows.
- Helps establish architectural principles and guardrails for the responsible and secure adoption of emerging AI-enabled cybersecurity capabilities.
- Identifies dependencies, architectural gaps, integration challenges, technical risks, and opportunities associated with future-state cybersecurity architectures.
- Develops technical assessments, architecture documentation, recommendations, and executive-level presentations communicating complex concepts to both technical and business stakeholders.
- Proactively monitors technology developments and industry trends that may materially change cybersecurity architecture, operating models, or defensive capabilities.
- Works effectively in an environment involving emerging technologies, ambiguity, experimentation, and rapidly changing technical capabilities.
Education
Minimum
- B.S. degree or equivalent work experience in Computer Science, Cybersecurity, Information Systems, Engineering, or another relevant technical field.
Desired
- M.S., M.B.A., or advanced technical degree in Computer Science, Cybersecurity, Engineering, Artificial Intelligence, Information Systems, or equivalent field.
License/Certification Desired
One or more relevant cybersecurity or technology certifications preferred, such as:
- Certified Information Systems Security Professional (CISSP)
- Certified Information Security Manager (CISM)
- Certified in Risk and Information Systems Control (CRISC)
- Cloud or security architecture certifications
- Vendor-specific security or AI certifications
- Other equivalent cybersecurity, architecture, cloud, or emerging technology certifications
Experience Minimum
- Minimum of 6 years of combined cybersecurity, information technology, architecture, engineering, or related technical experience.
- Demonstrated experience designing, evaluating, or implementing enterprise cybersecurity architectures and solutions.
- Experience working across multiple cybersecurity technology domains rather than exclusively within a single security discipline.
- Experience developing architecture patterns, technical strategies, integration approaches, or future-state technology designs.
- Demonstrated ability to evaluate complex technologies and translate technical capabilities into practical enterprise use cases.
- Experience working with multidisciplinary technical teams including architects, engineers, cybersecurity operations, developers, infrastructure teams, and technology vendors.
Experience Desired
Experience or demonstrated knowledge in the following areas is highly desirable:
- Generative and agentic AI: LLMs, AI agent architectures, and agent-to-system and machine-to-machine interactions
- AI security and governance: secure adoption of emerging AI capabilities
- Enterprise security architecture: reference architectures, design patterns, and defense-in-depth
- Zero Trust architecture: covering network, platform, and identity
- Security platform strategy: integration, technology rationalization and consolidation, capability modeling, and roadmapping
- Vulnerability and exposure management: attack surface management, asset discovery and inventory, and risk prioritization
- Security configuration and posture management: control assessment and configuration baselines
- Identity and access management: authentication, authorization, identity governance, and privileged access management
- Non-human identity management: machine, workload, and AI agent identities
- Security operations and detection: endpoint protection, EDR/XDR, SIEM/SOAR, telemetry and analytics, threat detection and response, and automated orchestration
Knowledge, Skills, Abilities & Technical Competencies
- Strong knowledge of cybersecurity architecture, enterprise security technologies, and emerging trends, including how AI and automation are changing architectures and operating models.
- Ability to look past individual products and evaluate security as an integrated ecosystem, including the dependencies across identity, endpoints, infrastructure, applications, data, vulnerability management, security operations, and AI.
- Strong analytical and problem-solving skills, with the ability to work through complex and ambiguous technical problems.
- Ability to research and assess emerging technologies on your own, including where no established enterprise patterns exist yet.
- Ability to turn emerging concepts into practical architecture patterns, use cases, recommendations, and implementation guidance.
- Sound judgment in telling apart promising capabilities from those not yet mature, secure, or ready for enterprise use.
- Strong written and verbal communication, including explaining complex security and AI concepts to both technical teams and executives.
- Ability to influence technical direction and collaborate across organizational boundaries.
- Ability to work well in a fast-moving, collaborative environment where requirements change.
- Strong technical curiosity and a willingness to challenge traditional approaches while keeping to sound security, risk, and governance principles.
Salary Range
$153,520.00 - $242,400.00 USD (Salary)
- Please note that the salary information provided herein is base pay only (gross); it does not include other forms of compensation which may or may not apply to this specific position, namely, performance-based bonuses, benefits-related payments, or other general incentives - none of which are guaranteed, may be subject to specific eligibility requirements, and are wholly within the discretion of Astreya to remit.
- Further, the salary information noted above is a range that consists of a minimum and maximum rate of pay for this specific position. Where an applicant or employee is placed on this range will depend and be contingent on objective, documented work-related considerations like education, experience, certifications, licenses, preferred qualifications, among other factors.
Astreya offers comprehensive b enefits to all Regular, Full-Time Employees, including:
- Medical provided through UHC (PPO, HSA, Surest options) / Medical provided through Kaiser (HMO option only) for California employees only
- Dental provided through UHC
- Nationwide Vision provided by UHC
- Flexible Spending Account for Health & Dependent Care
- Pre-Tax Account for Commuter Benefit/Parking & Transit (location-specific)
- Continuing Education and Professional Development via various integrated platforms, e.g. Udemy and Coursera
- Corporate Wellness Program provided by Goomi Group
- Employee Assistance Program
- Wellness Days
401k Plan
- Basic and Supplemental Life Insurance
- Short Term & Long Term Disability
- Critical Illness, Critical Hospital, and Voluntary Accident Insurance
- Tuition Reimbursement (available 6 months after start date, capped)
- Paid Time Off (accrued and prorated, maximum of 120 hours annually)
- Paid Holidays
- Any other statutory leaves, paid time, or other ancillary benefits required under state and federal law
