What are the responsibilities and job description for the Senior Cyber Security Architect position at CMK Resources, Inc.?
CMK Resources is seeking a Senior Cyber Security Architect to join our client's enterprise IT team.
This is an exciting opportunity to help design, implement, and manage enterprise cybersecurity controls across a complex hybrid infrastructure supporting highly regulated environments. The ideal candidate is a hands-on security professional with expertise in Microsoft 365 security, cloud technologies, vulnerability management, identity and access management, and compliance frameworks.
Location: Livonia, MI (Hybrid)
Type: Full Time / Direct Placement
Salary: $120-130k
What You'll Do
- Design, implement, and optimize Microsoft 365 security and compliance capabilities.
- Develop and manage Identity and Access Management (IAM) strategies, including RBAC, least privilege, and multi-factor authentication (MFA).
- Perform vulnerability assessments, prioritize remediation efforts, and partner with infrastructure teams to reduce organizational risk.
- Audit endpoint and server patching processes to improve compliance and security posture.
- Develop and implement enterprise Data Loss Prevention (DLP) strategies and data protection processes.
- Collaborate with DevOps teams to integrate security throughout the software development lifecycle (SDLC).
- Lead cybersecurity awareness initiatives and simulated phishing campaigns.
- Evaluate third-party vendor security and conduct security risk assessments.
- Research emerging cybersecurity threats and recommend improvements to detection, prevention, and response capabilities.
Required Qualifications
- U.S. Citizen or U.S. Permanent Resident (required for ITAR compliance).
- Bachelor's degree in Computer Science, Computer Engineering, Information Technology, or a related field (or equivalent experience).
- Minimum 5 years of hands-on experience administering Microsoft 365 security technologies or comparable cloud security platforms.
- Experience with vulnerability management, endpoint detection and response (EDR), and risk-based remediation.
- Experience with Microsoft 365 E5/Azure and familiarity with AWS and Google Cloud Platform.
- Working knowledge of: Microsoft 365 Security & Compliance, NIST Cybersecurity Framework, NIST 800-171, CMMC, ISO 27001, TISAX, SIEM, EDR, Data Loss Prevention (DLP) and Incident Management
- Strong understanding of: Windows and Linux servers, Firewalls and network switching, TCP/IP, DNS, DHCP, SAN, NAS, LAN, WAN, VPN, routing, and network infrastructure
- Excellent communication, organizational, and leadership skills.
Preferred Qualifications
- Master's degree in Information Technology, Business, Cybersecurity, or related field.
- CISSP, CISM, or equivalent security certification.
- Experience designing and securing enterprise cloud and on-premises environments.
- Background supporting regulated environments with cybersecurity compliance initiatives.
Salary : $120,000 - $130,000