- Location
- Atlanta, GA, US
- Type
- Full-time
- Department
- Engineering
- Closing date
- Today
- Source
- iCIMS
Description
Overview
Job Purpose
The Cybersecurity Architecture team is responsible for establishing security design standards, conducting architecture reviews, and providing strategic guidance to protect ICE’s critical financial infrastructure. This team defines security requirements across network, data, system, and cloud environments, ensuring controls are appropriately designed before implementation by engineering teams. The Cybersecurity Architecture Analyst assists with security design activities, participates in architecture reviews, and supports threat modeling and security control assessments across the enterprise.
Responsibilities
- Architecture Review Intake - Efficiently triage architecture review requests and collaborate with the team to provide actionable information security architecture guidance
- Security product evaluation - Support security vendor evaluations by defining requirements, maintaining scoring matrices, and assisting in technical control testing
- Network Security Review - Review and assess network security controls including segmentation, firewall rule requests, and connectivity requirements
- Security Architecture Lab – Develop and maintain the security testing infrastructure used to assess current or new technologies
- Gap Detection – Evaluate current security defensive layers to identify gaps and collaborate with the team to design remediation plans
Knowledge and Experience
- Degree in engineering discipline or equivalent experience
- 1+ years of relevant Information Security experience
- Ability to work in a service-oriented team environment
- Good understanding of security concepts including networking and data protection
- Effective written and verbal communication skills
- Familiarity with ticketing, workflow, and documentation tools used to track security reviews and requests
Specific Technologies
Network security fundamentals (firewalls, IDS/IPS, network segmentation, VPNs). Identity and access management principles. Data security (encryption concepts, DLP fundamentals). Web application firewalls and Content Delivery Networks (CDNs). Security documentation and diagramming tools.
#LI-CP1