Edison Works DT Architect - Cloud Security with Security Clearance
GE Aerospace
2024-11-05 21:37:36
Cincinnati, Ohio, United States
Job type: fulltime
Job industry: I.T. & Communications
Job description
Job Description Summary Edison Works' Advanced Programs are a key growth area in GE Edison Works, GE Aviation and GE Aviation MSO portfolio with revenue growing 4x over the next 5 years. This cross functional organization partners across product management, engineering, ops, supply chain, DT and security to deliver that growth! Come join the DT team who is critical to success of the scale! This position is a critical member of the architecture team within Edison Works and will work on highly complex projects that require in-depth domain knowledge in cloud cyber security architecture, technology, tools, and strategy. This role will partner with key stakeholders to drive the strategy for, and roadmap of, the advancement and growth of the cloud-based technical security tools, while also driving continuous improvement across the numerous classified programs within our organization. You will develop relationships with suppliers, partners, and customers to formulate and execute a complete strategy to improve our technology security posture. Job Description Roles and Responsibilities In this role, you will: Conduct cloud security planning to determine and describe security necessities
Maintain knowledge of diverse cloud platforms
Conduct infrastructure security planning, including firewalls, AppSec, IDS/IPS, SIEM, and scanners for detecting vulnerability
Develop security criteria, procedures, and policies tailored to meet JSIG and RMF regulations
Establish and manage data access controls and provide identity, authentication, and access management design and oversight (IAM)
Integrate cloud-aware authentication mechanisms
Perform application vulnerability assessments and evaluations
Provide guidance and oversight for the correction of discovered vulnerabilities
Provide DevOps with security oversight and design guidance and oversee DevSecOps initiatives
Perform security operations (SecOps) responsibilities
Manage the deployment of SIEM software and automated security alerts
Provide guidance on systems hardening for cyber resilience
Evaluate new security solutions and products
Explore new threats, attack methods, and techniques
Utilize security orchestration and response automation (SOAR) Required Qualifications Bachelor's degree from accredited university or college with minimum of 2 years of professional experience OR Associates degree with minimum of 5 years of professional experience OR High School Diploma with minimum of 7 years of professional experience
Note: Military experience is equivalent to professional experience
Experience architecting Amazon Web Services (AWS), Microsoft Azure, and/or Oracle Cloud solutions
Experience evaluating, designing, implementing, optimizing, and documenting a comprehensive and extensive array of security technologies and processes
Experience performing threat modeling and design reviews to evaluate the introduction of new technologies' security implications and requirements Eligibility Requirement: Legal authorization to work in the U.S. is required. We will not sponsor individuals for employment visas, now or in the future, for this job.
Able to obtain and maintain active US DOD "Secret" Security Clearance This role requires use of technical data subject to U.S. Government contract restrictions and this posting is only for U.S. Citizens. Desired Characteristics Technical Expertise: Active US DOD Security Clearance
Familiarity with United States Government regulatory controls and frameworks (NIST, JSIG, RMF, DFARS, CMMC, etc.)
Knowledge of enterprise application software (architecture, development, support, and troubleshooting)
One or more of the following certifications is desired:
Certified Cloud Security Professional (CCSP)
Certificate of Cloud Security Knowledge (CCSK)
Systems Security Certified Practitioner (SSCP)
Cloud Security Essentials (GCLD)
Cloud Security Automation (GCSA)
Public Cloud Security (GPCS)
Certified Cloud Penetration Tester (GCPN) Business Acumen: Adept at navigating the organizational matrix; understanding people's roles, can foresee obstacles, identify workarounds, leverage resources and rally teammates.
Understand how internal and/or external business model works and facilitate active customer engagement Able to articulate the value of what is most important to the business/customer to achieve outcomes Able to produce functional area information in sufficient detail for cross-functional teams to utilize, using presentation and storytelling concepts.