SonicJobs Logo
Left arrow iconBack to search

Cyber Security Architect

Insight Global
Posted a day ago, valid for 13 days
Location

Dunwoody, GA, US

Salary

Competitive

Contract type

Full Time

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • The Cybersecurity Solution Architect role at Insight Global focuses on advancing internal cybersecurity architecture and operationalizing security controls.
  • Candidates should have a bachelor's degree in a related field and 3–5 years of experience in cybersecurity, security engineering, or cloud security.
  • The position involves hands-on knowledge of identity and access management tools, particularly Microsoft Entra ID, PAM/PIM solutions, and Azure Key Vault.
  • Responsibilities include conducting threat assessments, maintaining project artifacts, and collaborating with various teams to ensure effective security implementation.
  • The salary for this position is competitive and commensurate with experience.
Overview

The Cybersecurity Engineering & Architecture team designs and operationalizes the technical security controls that protect Insight Global's people, data, and platforms.  Our scope spans both cybersecurity engineering and identity & access management – two disciplines that are deeply intertwined in how we build and enforce security at scale. We partner closely with Cloud Infrastructure, Cloud Application, and Endpoint teams to ensure that security capabilities are effective, scalable, and operationally sound.

We are seeking a Cybersecurity Solution Architect focused on advancing our internal cybersecurity architecture – shaping how security capabilities are designed, implemented and matured across Insight Global’s environments. This role supports the Cybersecurity Architect in translating security designs into reliable controls, conducting threat assessments, and maintaining the technical artifacts that keep complex programs on track. We are looking for a candidate who bridges the architecture and engineering disciplines and brings hands-on experience in both, equally comfortable contributing to identity frameworks, and zero trust patterns as they are rolling up their sleeves to operationalize them.

Success is measured not just by execution quality, but by demonstrated growth in architectural thinking, risk-based decision-making, and cross-functional influence.


Responsibilities

What You'll Do

  • Bridge architecture and engineering disciplines in support of Identity & Access Management by leading and supporting design, implementation, and ongoing operations of IAM capabilities, including Microsoft Entra ID, Privileged Access Management (PAM), Privileged Identity Management (PIM), and Azure Key Vault (AKV). Apply hands-on experience across both architectural design and operational delivery.
  • Ensure that security architectural designs are effectively implemented, serving as the execution-layer partner to the Cybersecurity Architect.
  • Conduct threat assessments and threat modeling exercises across cloud workloads, applications, and infrastructure, translating abstract risks into concrete control requirements.
  • Produce and maintain project artifacts, including data flow diagrams (DFDs), architecture decision records, and security design documentation.
  • Collaborate with the Cybersecurity Architect and Security Engineers on technical analysis, security posture management, and control enablement across the enterprise.
  • Support cloud security controls for Azure infrastructure and cloud-native applications, including networking, identity, encryption, and monitoring configurations.
  • Provide security guidance during design and implementation phases of engineering projects, reviewing architectures, and flagging risks before they reach production.
  • Support Data Loss Prevention (DLP) program initiatives using Governance, Risk, and Compliance and Secure Access Secure Edge solutions.
  • Participate in architecture design review forums to vet proposed designs for compliance with standards and reasonableness.

Qualifications

Required Qualifications

  • Bachelor’s degree in computer science, Information Security, Engineering, or a related technical field, or equivalent practical experience.
  • 3–5 years of experience in cybersecurity, security engineering, or cloud security.
  • Hands-on knowledge of IAM implementations and identity tooling — specifically Microsoft Entra ID (Azure AD), PAM/PIM solutions, and Azure Key Vault.
  • Working familiarity with enterprise Microsoft security platforms (Microsoft 365, Entra ID, Microsoft Intune, Microsoft Defender, Microsoft Purview) sufficient to guide technical direction and support informed decision-making.
  • Demonstrated experience producing security documentation: data flow diagrams, threat models, architecture diagrams, and design decision records.

Preferred Experience

IAM & Identity Security

  • Entra ID (Azure AD) administration, conditional access policies, and identity governance workflows.
  • Privileged access patterns: PAM/PIM workflows, just-in-time (JIT) access, and least-privilege enforcement.
  • Azure Key Vault management, secrets lifecycle, and key rotation automation.
  • Identity-based threat detection and response (e.g., Microsoft Entra ID Protection, Identity Secure Score).

Cloud & Infrastructure Security

  • Azure platform security architecture: Virtual Wide Area Network, hub/spoke networking, private endpoints, RBAC, and managed identities.
  • Cloud-native security design and the ability to document reference architectures as deployable patterns.
  • Secure CI/CD integration awareness and DevSecOps pipeline security concepts.
  • Azure security services, including Microsoft Defender for Cloud, Azure Monitor, and Azure Application Gateway with WAF.
  • Familiarity with threat modeling methodologies such as STRIDE or MITRE ATT&CK.

Security Program & Tooling

  • Data Loss Prevention tooling: Microsoft Purview, Proofpoint, Palo Alto Prisma Access, Cisco Secure Access.
  • SIEM concepts, log ingestion strategies, and detection engineering aligned to MITRE ATT&CK.
  • Security posture management tools (e.g., Defender for Cloud, Microsoft Secure Score).
  • Scripting or automation experience (Terraform, Python, or PowerShell) to support security control implementation.

 

 




Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.