Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Lead Zero Trust Architect image - Rise Careers
Job details

Lead Zero Trust Architect

Make a difference here.


UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions. Founded and operated by security practitioners with decades of experience, the UltraViolet Cyber security-as-code platform combines technology innovation and human expertise to make advanced real-time cybersecurity accessible for all organizations by eliminating risks of separate red and blue teams.


By creating continuously optimized identification, detection, and resilience from today’s dynamic threat landscape, UltraViolet Cyber provides both managed and custom-tailored unified security operations solutions to the Fortune 500, Federal Government, and Commercial clients. UltraViolet Cyber is headquartered in McLean, Virginia, with global offices across the U.S. and in India. 


Work You'll Do:
  • Primary Technical resource supporting an enterprise Zero Trust Architecture deployment.
  • Drives beneficial security change into the business through the development or review of architectures to ensure that they fit business requirements for security, mitigate risks, conform to the relevant security standards, and balance information risk against the cost of appropriate countermeasures.
  • Acts as liaison between the business and technology from a security perspective, maintains an overview of the environment as a whole and its security aspects, understands business strategy and how it relates to security strategy, acts as a liaison between appropriate regulatory bodies, IT auditors, and business stakeholders, educates IT and enterprise roles on the need for (and consequences of) reducing information-related risk, and ultimately drives organizational change at all levels of the business.
  • Develops and designs new security solutions to reduce risk and align business requirements with security standards. Supports vendor relationships; leads vendor reviews, working with Procurement and appropriate business partners on requirements and success criteria. Supports development of business case and approval process.
  • Delivers guidelines, best practices, and direction on security standards/policies and roadmaps. Provides subject matter expertise, consultation, and escalation support.
  • Provides support to Security Review process by assisting with complex questions and projects. Work with business units and partners as needed.
  • Partner with our development teams (and business stakeholders) to set the course for secure development practices for existing and future products and features.
  • Interact directly with the security community regarding vulnerabilities and threats, with focus on areas that may directly impact Lumen’s product lines.
  • Experience with SASE, EDR, and MFA tools


What You Have:
  • Bachelor’s degree in Computer Science, Computer Engineering, relevant technical field, or equivalent practical experience.
  • 10+ years of total experience in offensive/defensive security, or systems engineering.
  • 3+ years’ experience in a security engineering role in an enterprise environment.
  • 1+ years’ experience in a software engineering or DevOps role in an enterprise environment.
  • 1+ years of experience supporting a zero trust architecture deployment
  • Experience leading complex cross-functional programs.
  • Experience with threat modeling, security design reviews, and security architecture
  • Software development experience is a plus.
  • Experience with CI/CD pipelines and Agile methodologies
  • Experience with Cloud security architecture and deployment models
  • Experience with securing highly sensitive data.
  • Experience with LDAP, SSO, SAML, Active Directory, MFA, etc.
  • Demonstrate knowledge of security technologies, trends, leading practices, and regulatory requirements and government security standards such as FedRAMP and Controlled Unclassified Information (CUI) standards, along with best practices such as NIST Cybersecurity Framework (CSF), NIST 800-171, NIST 800-53, ISO 27001-27002 and other applicable security and privacy laws.
  • General cloud knowledge.
  • Experience with one or more scripting or development languages.
  • Experience coding, implementing custom software solutions, and supporting them in production environments.
  • Familiarity with agile continuous improvement methodologies.
  • Experience developing and reporting enterprise level metrics.
  • US Citizen/Must pass a government background investigation.


What We Offer:
  • 401(k), including an employer match of 100% of the first 3% contributed and 50% of the next 2% contributed  
  • Medical, Dental, and Vision Insurance (available on the 1st day of the month following your first day of employment)  
  • Group Term Life, Short-Term Disability, Long-Term Disability  
  • Voluntary Life, Hospital Indemnity, Accident, and/or Critical Illness  
  • Participation in the Discretionary Time Off (DTO) Program  
  • 11 Paid Holidays Annually


$165,000 - $185,000 a year

UltraViolet Cyber maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect our company's differing products, services, industries and lines of business. Candidates are typically placed into the range based on the preceding factors.


We sincerely thank all applicants in advance for submitting their interest in this position. We know your time is valuable.


UltraViolet Cyber welcomes and encourages diversity in the workplace regardless of race, gender, religion, age, sexual orientation, gender identity, disability, or veteran status. 


If you want to make an impact, UltraViolet Cyber is the place for you! 

Average salary estimate

$175000 / YEARLY (est.)
min
max
$165000K
$185000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Lead Zero Trust Architect, UltraViolet Cyber

Are you ready to take your career to the next level? Join UltraViolet Cyber as a Lead Zero Trust Architect in Washington, DC! We’re on a mission to revolutionize cybersecurity, and we need passionate individuals like you to support an enterprise Zero Trust Architecture deployment. At UltraViolet Cyber, we pride ourselves on providing cutting-edge security operations solutions that are both innovative and accessible. You will be the primary technical resource, ensuring security architectures meet business requirements, mitigate risks, and adhere to relevant standards. You'll collaborate closely with business and IT teams to drive meaningful change across the organization. With over a decade of experience in security or systems engineering, you’ll leverage your expertise in threat modeling, security design reviews, and overall security architecture. Imagine working at a company where your contributions directly impact the security strategy of Fortune 500 firms and federal government clients! You’ll get involved with vendor partnerships, setting best practices for secure development with our talented teams, and delving deep into emerging threats in the security community. Not only will you design security solutions, but you’ll be instrumental in educating business units on information risk management. With a competitive salary range of $165,000 to $185,000 and generous benefits like 401(k) matching and medical insurance, this is an opportunity you won’t want to miss. If you’re passionate about cybersecurity and looking for an environment that values your expertise and creativity, UltraViolet Cyber is the perfect fit for you!

Frequently Asked Questions (FAQs) for Lead Zero Trust Architect Role at UltraViolet Cyber
What does a Lead Zero Trust Architect do at UltraViolet Cyber?

As a Lead Zero Trust Architect at UltraViolet Cyber, you will oversee the deployment of Zero Trust Architecture, ensuring that security measures align with business goals while mitigating risks. You will serve as a vital link between business and technology, actively shaping and refining security standards while guiding teams on effective practices to secure information.

Join Rise to see the full answer
What qualifications are needed to become a Lead Zero Trust Architect at UltraViolet Cyber?

To become a Lead Zero Trust Architect at UltraViolet Cyber, you need a bachelor's degree in a relevant field, along with at least 10 years of experience in offensive/defensive security or systems engineering. Additionally, experience supporting Zero Trust architecture deployments and familiarity with security technologies is essential.

Join Rise to see the full answer
What benefits does UltraViolet Cyber offer for the Lead Zero Trust Architect position?

UltraViolet Cyber offers several attractive benefits for the Lead Zero Trust Architect role, including a competitive salary ranging from $165,000 to $185,000, 401(k) matching, comprehensive medical and dental insurance, and generous time off including 11 paid holidays and participation in the Discretionary Time Off (DTO) Program.

Join Rise to see the full answer
How does UltraViolet Cyber ensure diversity in hiring for the Lead Zero Trust Architect position?

UltraViolet Cyber is committed to fostering a diverse workplace. We encourage applicants of all backgrounds, regardless of race, gender, religion, age, or veteran status to apply for the Lead Zero Trust Architect position, ensuring that diversity is embraced and valued in our hiring processes.

Join Rise to see the full answer
What is the work culture like at UltraViolet Cyber for the Lead Zero Trust Architect role?

The work culture at UltraViolet Cyber is dynamic, supportive, and highly collaborative. As a Lead Zero Trust Architect, you will be part of a team that values innovation, creativity, and open communication, ensuring that every team member's ideas are heard and valued in our mission to enhance cybersecurity.

Join Rise to see the full answer
What is Zero Trust architecture and why is it important for the Lead Zero Trust Architect role?

Zero Trust architecture is a security model that requires strict verification for every user attempting to access resources, regardless of their location. It’s crucial for the Lead Zero Trust Architect at UltraViolet Cyber to implement this approach to enhance security measures, minimize risk, and ensure compliance with industry standards.

Join Rise to see the full answer
What skills are essential for success as a Lead Zero Trust Architect at UltraViolet Cyber?

To succeed as a Lead Zero Trust Architect at UltraViolet Cyber, strong skills in security engineering, threat modeling, software development, and knowledge of security frameworks are essential. Excellent communication skills and the ability to liaise between business and technology teams are also vital for driving effective organizational change.

Join Rise to see the full answer
Common Interview Questions for Lead Zero Trust Architect
Can you explain the principles of Zero Trust architecture?

Certainly! Zero Trust architecture operates on the fundamental principle of 'never trust, always verify.' This means that every user and device must be authenticated and authorized before being granted access to resources, regardless of whether they are inside or outside the network perimeter. It's aimed at minimizing risks and enhancing the organization's overall security posture.

Join Rise to see the full answer
How do you approach threat modeling in your security engineering role?

In my security engineering role, I approach threat modeling by first identifying valuable assets within the organization. Then, I analyze potential threats and vulnerabilities that could impact those assets. I utilize frameworks like STRIDE and PASTA to systematically assess risks and prioritize the appropriate security measures that should be implemented.

Join Rise to see the full answer
What experience do you have with security design reviews?

I have conducted numerous security design reviews by collaborating with cross-functional teams to assess designs based on security best practices. This typically involves scrutinizing application architecture, identifying potential security flaws, and ensuring compliance with the established security standards and policies.

Join Rise to see the full answer
Explain how you handle vendor relationships in a security context.

Handling vendor relationships in a security context involves reviewing their security practices, compliance certifications, and overall risk posture. I work closely with procurement and business stakeholders to set vendor requirements and evaluation criteria, ensuring that the partnerships align with our security objectives and contribute positively to our ecosystem.

Join Rise to see the full answer
What key metrics do you track to assess the effectiveness of security measures?

To assess the effectiveness of security measures, I track various metrics including the number of detected threats, incident response times, and compliance rates with security policies. Additionally, monitoring user access patterns and vulnerability scan results helps in understanding the security landscape and areas for improvement.

Join Rise to see the full answer
How do you ensure security standards are communicated and adhered to across teams?

I ensure security standards are communicated by developing clear documentation, conducting training sessions, and maintaining open lines of communication with all teams. Regular meetings and workshops help reinforce the importance of security compliance and facilitate the sharing of best practices among team members.

Join Rise to see the full answer
What is your experience working with agile development methodologies?

I have extensive experience working with agile development methodologies, where security practices are integrated into each phase of the development process. In my previous roles, I advocated for incorporating security reviews in sprint planning and retrospectives, ensuring that security is a shared responsibility across all development teams.

Join Rise to see the full answer
How do you stay updated on emerging security threats and trends?

I stay updated on emerging security threats and trends by following reputable cybersecurity blogs, attending conferences, and participating in online forums and communities. Networking with industry peers and engaging in continuous learning through certifications also allows me to stay informed about the latest developments in the cybersecurity landscape.

Join Rise to see the full answer
Can you describe your experience with cloud security architecture?

In my experience with cloud security architecture, I have designed and implemented security measures for various cloud deployment models including public, private, and hybrid clouds. Familiarizing myself with the shared responsibility model and utilizing tools for identity and access management has been crucial for securing cloud environments effectively.

Join Rise to see the full answer
What strategies would you implement to drive organizational change regarding cybersecurity?

To drive organizational change regarding cybersecurity, I would focus on creating a culture of security awareness. This involves regular training and awareness campaigns to ensure that every employee understands their role in maintaining security. Additionally, establishing clear policies and reporting procedures encourages proactive participation in our security efforts.

Join Rise to see the full answer
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
LOCATION
No info
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
November 25, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!