All candidates must meet the following criteria: Must be a US Citizen, no dual Citizenships. Must be able to secure a Public trust clearance. Must be able to work across multiple programs across the Federal and DOD space. The core values that ECS looks for in an engagement manager include: Teamwork, Respect, Accountability, Integrity, and Leadership.
Security Architect
Location
United States
Posted
4 days ago
Salary
$140K - $165K / year
Seniority
Mid Level
Job Description
Security Architect
ECS Tech Inc
Role Description Everforth ECS is seeking a Security Architect to work Remotely. The Security Architect will be expected to: - Study the organization's existing systems architecture and recommend and design security solutions to improve them. - Develop ways to add new security functionality to current systems. - Support the installation and configuration of new hardware and software. - Regularly test new systems to ensure that they work as expected. - Communicate with engineers and application developers to ensure the compatibility of security requirements, configurations, and components. - Assist program staff and the technical director with identifying requirements, dependencies, constraints, and direction needed to design, deploy, or migrate security capabilities to various cloud infrastructures. - Host and support regular meetings and correspondence with teammates and customers to gain a better understanding of security requirements. Salary Range: $140,000 - $165,000 Qualifications - Enhances security team accomplishments and competence by planning delivery of solutions. - Determine security requirements by evaluating business strategies and requirements; researching information security standards; conducting system security and vulnerability analyses and risk assessments; studying architecture/platform; identifying integration issues; preparing cost estimates. - Plan security systems by evaluating network and security technologies; developing requirements for local area networks (LANs), wide area networks (WANs), virtual private networks (VPNs), routers, firewalls, and related security and network devices; designing public key infrastructures (PKIs), including use of certification authorities (CAs) and digital signatures as well as hardware and software; adhering to industry standards. - Support the implementation of security systems by recommending intrusion detection methodologies and equipment, developing and supporting the implementation of test scripts. - Recommend upgrades to security systems by monitoring the security environment; identifying security gaps; evaluating and implementing enhancements. - Prepare system security reports by collecting, analyzing, and summarizing data and trends. - Demonstrate a firm understanding and experience with designing, deploying, or migrating systems security capabilities and standards from an on-prem environment to various cloud environments. Company Description
Related Guides
Related Categories
Related Job Pages
More Architect Jobs
MuleSoft Integration Architect
Wavestone Germany AGLet’s power the future together. Vom Business Case bis hin zur Umsetzung: Als führendes Beratungsunternehmen für strategische Transformationen sind wir vertrauenswürdiger Partner für unsere Kunden - und für unsere Mitarbeitenden. Verantwortungsvoll, leistungsstark und immer mit dem Menschen im Fokus. #WeAreWavestone Mit unserem 360°-Portfolio an Beratungsleistungen verbinden wir erstklassige Branchenexpertise mit einem breiten Spektrum an branchenübergreifenden Kompetenzen, arbeiten interdisziplinär und denken über den Tellerrand hinaus. Wir freuen uns über eine Kontaktaufnahme!
Role Description We are seeking a Senior Integration Developer with expertise in the MuleSoft Anypoint Platform and Seeburger BIS to support a high-level integration project for a public sector initiative. This role bridges the gap between development and architecture, focusing on the end-to-end delivery of complex API-led connectivity solutions within a remote-first European team environment. - Oversee the end-to-end delivery of integration projects, including the design, build, deployment, and maintenance of APIs and workflows - Connect disparate platforms such as Workday, Salesforce, and MDM with various partner systems - Build and maintain MCP servers to facilitate interactions between AI models or agents and backend systems - Implement and enforce integration standards, frameworks, and reusable components to ensure best practices in API-led connectivity - Manage project timelines, budgets, and quality assurance while leveraging Agile methodologies and tools such as JIRA and GitHub - Configure and manage logging and monitoring tools like Anypoint Monitoring to ensure efficient root cause analysis and future-proof production environments - Implement robust security, compliance, and performance monitoring for APIs and integrations, maintaining detailed technical documentation and versioning - Partner with product owners and enterprise architects to deliver seamless cross-system connectivity and communicate technical concepts to non-technical stakeholders - Participate actively in Agile ceremonies to support team alignment and contribute to a culture of continuous improvement Qualifications - 8+ years of enterprise integration experience, with at least 3 years in technical leadership roles - Proven experience designing and delivering integrations on the MuleSoft Anypoint Platform, including proficiency with Anypoint Studio, API Manager, Runtime Manager, and Exchange - Deep expertise in Seeburger BIS, including B2B integration, EDI/trading partner management, and document exchange standards (e.g., 850, 810, 856) - Technical proficiency in AS2/SFTP/VAN connectivity and Managed File Transfer (MFT) within an enterprise B2B environment - Strong understanding of API-led architecture, integration patterns, and enterprise integration frameworks - Extensive experience in API design (REST/SOAP), data transformation formats (JSON, XML), and orchestration/pub-sub patterns - Solid understanding of API policies and security standards, including OAuth2, JWT, and mTLS - Experience working in Agile development environments using tools like Jira or Azure DevOps - Mandatory residency within the EMEA region due to GDPR and PII data processing constraints for public sector projects - Strong communication skills with the ability to influence both technical and non-technical stakeholders and bridge technical delivery with strategic vision Requirements - MuleSoft Certifications such as Integration Architect, Platform Architect, or Developer - Knowledge of major cloud platforms including AWS, Azure, or GCP and hybrid integration architectures - Familiarity with DevOps practices, CI/CD pipelines, and automated testing for integrations - Proficiency in programming languages such as Java, C#, Python, or JavaScript - Experience with microservices, event-driven architecture, and containerization - Mastery of AI prompt engineering to generate accurate, context-rich integration flows and evaluate AI-generated code - Background in large-scale digital transformation or enterprise architecture programs Benefits - This is a 100% remote position. - Due to specific data protection, candidates must reside within the GDPR region.
Digital Identity Architect (Keycloak + AWS)
Be.change ConsultingBe.Change Consulting Impulsamos tu Transformación Digital. Potenciamos tu empresa con innovación tecnológica y consultoría estratégica. Desde desarrollo de software e inteligencia artificial hasta transformación digital y talento especializado, te ayudamos a crecer en un mundo digital.
Role Description Buscamos un Arquitecto de Identidad Digital con experiencia comprobada liderando el diseño, implementación y operación de plataformas IAM/CIAM de misión crítica, soportando millones de usuarios y altos volúmenes transaccionales. Será responsable de definir la arquitectura, garantizar la seguridad, escalabilidad, resiliencia y continuidad operativa de soluciones basadas en Keycloak desplegadas sobre AWS. - Liderar el diseño e implementación de plataformas de identidad y acceso basadas en Keycloak. - Definir arquitecturas altamente disponibles y resilientes sobre AWS (EKS/ECS). - Diseñar mecanismos de autenticación, autorización, federación e integración con múltiples proveedores de identidad. - Garantizar el rendimiento y escalabilidad de plataformas con más de 5 millones de usuarios registrados. - Implementar estrategias de alta disponibilidad, recuperación ante desastres y continuidad operativa. - Diseñar componentes de abstracción de autenticación y autorización para arquitecturas de microservicios. - Asegurar observabilidad, monitoreo y trazabilidad de plataformas críticas. - Liderar iniciativas de automatización, CI/CD e Infraestructura como Código. Qualifications - Experiencia avanzada en Keycloak como Identity Provider (IdP), Authentication Gateway, Federation Gateway, Identity Broker o plataformas equivalentes. - Experiencia desplegando y operando Keycloak en AWS sobre EKS o ECS. - Experiencia en plataformas de autenticación y autorización para ecosistemas con más de 5 millones de usuarios. - Dominio avanzado de OAuth 2.0, OpenID Connect (OIDC), JWT, Token Exchange, Federation, Identity Brokering, SSO, MFA y Authorization Services. - Experiencia en tuning de Keycloak: cachés distribuidas, sesiones, tokens, escalamiento horizontal, alta disponibilidad multi-zona y recuperación ante fallos. - Integración con OIDC, OAuth 2.0, SAML 2.0, LDAP y Active Directory. - Experiencia sólida en desarrollo de microservicios Java con Spring Boot. - Experiencia construyendo capas de abstracción u orquestación de autenticación y autorización. - Conocimientos avanzados de API Gateway, Service-to-Service Authentication, Token Propagation, Fine-Grained Authorization y Zero Trust. - Experiencia en captura y procesamiento de eventos de identidad y trazabilidad de aplicaciones móviles. - Administración y optimización de Amazon Aurora PostgreSQL y Amazon ElastiCache (Valkey). - Experiencia en observabilidad con CloudWatch, OpenTelemetry, centralización de logs y métricas. - Conocimientos avanzados de Kubernetes, Docker, ALB, Terraform, CI/CD y automatización de despliegues. Requirements - Debe haber liderado personalmente el diseño, implementación y salida a producción de una plataforma de identidad basada en Keycloak para más de 5 millones de usuarios, siendo responsable de la arquitectura, seguridad, rendimiento, escalabilidad y continuidad operativa de la solución. Desirable - Implementación de plataformas CIAM (Customer Identity and Access Management). - Desarrollo de microservicios utilizando Quarkus Framework. - Experiencia en sectores regulados: banca, fintech, telecomunicaciones, salud o gobierno. - Participación en migraciones masivas de proveedores de identidad. - Diseño de arquitecturas con disponibilidad superior al 99.95%. - Experiencia soportando decenas de millones de autenticaciones mensuales. Benefits - Modalidad 100% remota. - Cultura de trabajo orientada a resultados. - Participación en proyectos de alto impacto. - Ambiente creativo, colaborativo y diverso. Company Description Be.Change Consulting Impulsamos tu Transformación Digital. Potenciamos tu empresa con innovación tecnológica y consultoría estratégica. Desde desarrollo de software e inteligencia artificial hasta transformación digital y talento especializado, te ayudamos a crecer en un mundo digital.
• Liderar el diseño e implementación de plataformas de identidad y acceso basadas en Keycloak. • Definir arquitecturas altamente disponibles y resilientes sobre AWS (EKS/ECS). • Diseñar mecanismos de autenticación, autorización, federación e integración con múltiples proveedores de identidad. • Garantizar el rendimiento y escalabilidad de plataformas con más de 5 millones de usuarios registrados. • Implementar estrategias de alta disponibilidad, recuperación ante desastres y continuidad operativa. • Diseñar componentes de abstracción de autenticación y autorización para arquitecturas de microservicios. • Asegurar observabilidad, monitoreo y trazabilidad de plataformas críticas. • Liderar iniciativas de automatización, CI/CD e Infraestructura como Código.
• Align business strategy and outcomes to technology opportunities across different domains • Design the FMO for Global Delivery Platform Employer Solutions • Build trusted relationships with Business Architect peers and cross-functional stakeholders • Assess, prioritize and roadmap investments to drive transformation and capability maturity



