Return To Job Search

Information Security Architect

Remote - Architect

Hollstadt Overview

Hollstadt Consulting is a management and technology consulting firm dedicated to placing professionals at engagements where they will excel. When you work with us, you'll work with a refreshingly real company led and staffed by seasoned experts who are also down-to-earth, good people. We're committed to treating you with respect and helping you achieve your career aspirations.

Since 1990, Hollstadt has been a trusted partner to more than 150 domestic and global companies and has successfully completed over 2,000 projects. Our continued growth has created challenging and rewarding opportunities for accomplished IT and Business Consultants. Hollstadt Consulting is an equal opportunity employer including disability/veteran.


Job Description

We seek an Information Security Architect to maintain and improve our security practice with system integration, software development, and application deployment pipelines.


The Information Security Architect is responsible for the definition, standardization, and reuse of practical security architecture patterns for internally developed applications, integration of third-party applications and the supporting infrastructure. This role is responsible for ensuring that solution security patterns are in alignment with Enterprise Architecture, Infrastructure, and Information Security strategies, as well as with company’s business strategies and product roadmaps.


The successful Information Security Architect will work across the global corporate organization to translate business requirements into security architectures and requirements, build security blueprints and roadmaps, provide long-range guidance on technology selection and implementation within one or more shared systems, and will assume a technical leadership and mentoring position on large development initiatives.  


Requirements:

  • Information Security Architect specializing in Sec DevOps or Dev SecOps
  • More software development side not infrastructure
  • Something to note: a lot of Info Sec comes from the infrastructure side/background, but they are looking for this individual to come from a Software Dev space
  • Understanding of/background in software development pipelines and checkpoints (not network/server-build background)
  • Not afraid to look at code
  • Excellent communication skills and can adjust to different levels of customers they are speaking with
  • Jump in and understand needs; ability to fit well in a collaborative environment
  • Work well with the business teams to solution i.e. “We won’t be able to do that because of this risk, BUT let’s try and look at it with this angle”
  • Strong understanding of secure software development practices and technologies, including vulnerability detection/identification/remediation.
  • Intimate knowledge of threat modeling (OWASP, MITRE).
  • General knowledge of security frameworks (ISO, NIST, HIPAA, etc.)
  • Demonstrate strong business and technical skills in the planning, administration, and management of information systems, administrative and technical security controls, and security risk analysis, threat modeling and management.
  • Demonstrate strong interpersonal and organizational skills; demonstrated success in working both independently and in a team environment. Above average written and oral communication skills. Demonstrated strong analytical and creative problem solving, and the ability to manage multiple and rapidly changing priorities.
  • Demonstrate excellent written and oral presentation skills. Excellent facilitation, collaboration, and negotiation skills.             
  • Bachelor’s degree in computer science, management information systems, or related field. However, upon evaluation, equivalent related experience and/or education may be substituted for the degree.
  • 8 years of Information Security experience with responsibilities spanning many Information Security disciplines.

Preferred Requirements: 

  • Previous healthcare experience, but it is more important that they fit well with the highly collaborative environment
  • SAST and DAST scan tools
  • GitLab; familiarity with a similar tool works as well
  • Familiarity with cloud technologies – they specifically use AWS
  • Experience looking at code
  • At least one Information Security industry certification (e.g., CISSP, GIAC, CISM) is strongly preferred.
  • Cloud security and risk assessment experience preferred.
  • Experience with SAML and/or OAuth technologies a plus.




Benefits + Perks

Comprehensive Benefit Plan

Hollstadt offers a competitive and comprehensive benefit package which includes Medical, Dental, Vision, Long Term/Short Term Disability, and Life Insurance. With three different medical plans to choose from, you can enroll in the coverage you need from single to family, or anywhere in between!

Remarketing Process

Hollstadt is based on retention and relationships. We get to know your strengths and career wishes throughout your assignment and then start remarket discussions 6-8 weeks prior to your end date. By being proactive, we are able to keep your down time between assignments as short as possible, unless you choose otherwise.

Professional Development

Hollstadt offers free bi-weekly training courses for our consultants as well as on-demand access to past sessions through our consultant portal. Trainings give our consultants the continuing education they need to excel on their projects.

401k + Matching

One popular benefit is our 401(k) match on the first 4% of your contributions. Hollstadt wants to help you reach your long-term financial goals and understands that planning for your future is critical. Consultants also have access to support from a Financial Advisor.

Bonus Opportunities

We appreciate and reward loyalty. Join Hollstadt, stay for 5 years, and we’ll give you a $5,000 Longevity Award bonus! Additionally, we know great talent knows other great talent. If you are on contract with Hollstadt and refer one of your connections who gets placed, we’ll pay you $1,000!

Ongoing Support & Networking

We have made a significant investment in building a support program for our consultant team - so you never have to feel like you are going it alone. We also have a Consultant Coach program which acts like a 'work buddy' to provide a safe ear for questions or concerns at your client site.