Talent.com
Platform Security Architect

Platform Security Architect

NorthMark StrategiesDallas, TX, United States
14 hours ago
Job type
  • Full-time
Job description

The Company

NorthMark Compute & Cloud (NMC²) is backed by dedicated leadership and investment, with a clear mission as it operates at the bleeding edge of technology. Its goal is to scale and enhance the high-performance computing (HPC) and cloud infrastructure that supports its clients' research, production, and delivery, enabling breakthroughs that shape the industries of tomorrow. Its engineers build critical infrastructure to eliminate friction in scientific research, simulations, analysis, and decision-making, accelerating discovery and driving faster innovation.

The Position

The Platform Security Architect will partner with internal stakeholders (on-prem & cloud), customer teams, and CISO / security groups to define policies / controls; They will help implement security controls across the platform SDLC stack, CI / CD pipelines, and infrastructure. This role will help ensure compliance / policy adherence, and security operational excellence.

This role will provide guidance and ensure that security is embedded into every stage of software delivery, while enabling engineering teams to adopt best practices and tools. Expertise in pipelines and public cloud, for protecting workloads across hybrid environments.

Responsibilities :

  • Architect and design end-to-end security for the SDLC stack (repos, pipelines, artifact registries, deployment tooling).
  • Secure CI / CD pipelines : implement code scanning, dependency checks, artifact signing, and secrets management.
  • Establish Security best-practices in Public Cloud and on-prem infrastructure with guidance on enforcement
  • Partner with external security teams to align and enforce policies and controls.
  • Establish policy-as-code frameworks for automated compliance.
  • Define and partner with DevSecOps teams to implement network security controls using service mesh, eBPF, and Cilium (network policies, L7 visibility, workload isolation).
  • Define and govern identity and access management models for platform and service workloads.
  • Drive adoption of DevSecOps tooling across engineering teams, ensuring frictionless integration into delivery workflows.
  • Define audit, logging, and compliance mechanisms across all pipelines and services.
  • Design framework / tooling to prove the meeting of security requirements for nmc2 with separation of duties for High Integrity environments
  • Drive Tracking and reporting of risks being raised against teams and ensuring completion on time
  • Provide security-focused ADRs (Architecture Decision Records) to capture architectural rationale.
  • Coach engineering teams on secure design, threat modeling, and best practices.

Requirements :

  • Bachelor's Degree or equivalent experience
  • 10-12+ years of experience in Security discipline
  • Expertise in DevSecOps tooling like Consul, Snyk, Trivy, Aqua, Anchore, SonarQube, HashiCorp Vault.
  • Strong experience building secure architectures in the Pubilic Clouds lilke AWS (preferably), Azure etc.
  • Deep knowledge of IAM and secrets management (like ActiveDirectory, Vault, Okta, AWS IAM).
  • Experience with CI / CD security : artifact signing, SBOM generation, pipeline hardening, code scanning, dependency checks
  • Scripting ability & automation using IaaC tools
  • Experience with Container security aspects : k8s policies, service mesh, eBPF for observability, intrusion detection, and runtime enforcement; cluster hardening
  • Experience with Consul integrations with Kubernetes, Vault, or other relevant platforms.
  • Proficiency in policy-as-code frameworks (e.g.OPA, Kyverno, Gatekeeper).
  • Familiarity with compliance benchmarks / frameworks like CIS, NIST, SOC2, GDPR.
  • Cloud and Security oriented certifications (like CISSP, OSCP etc.) are highly desired.
  • Excellent collaboration skills with security, engineering, and compliance stakeholders.
  • It is impossible to list every requirement for, or responsibility of, any position. Similarly, we cannot identify all the skills a position may require since job responsibilities and the Company's needs may change over time. Therefore, the above job description is not comprehensive or exhaustive. The Company reserves the right to adjust, add to or eliminate any aspect of the above description. The Company also retains the right to require all employees to undertake additional or different job responsibilities when necessary to meet business needs.

    Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.

    Benefits & Perks :

  • Hybrid-Work Schedule : We provide a hybrid working schedule with 3 days a week in the office
  • Company-Paid Lunch Stipend : Lunch is provided via GrubHub
  • Company-Paid Benefits : 100% Employer-Paid Medical in our High Deductible Health Plan, Dental and Vision benefits for employees and their families, 16 weeks of Paid Parental Leave, Employee Assistance Program, Life insurance, Short-Term Disability and Long-Term Disability
  • 401(k) : Company will match 100% of your contributions up to 6%
  • Optional Employee-Paid Benefits : Medical insurance in our PPO plan and a variety of other benefits such as Health Savings Accounts (with Company Contribution!), Flexible Spending Accounts, Supplemental Life Insurance, Wellhub and more.
  • Time Off : 25 days of Paid Time Off plus 12 company holidays
  • EQUAL OPPORTUNITY EMPLOYER

    NORTHMARK STRATEGIES LLC IS AN EQUAL EMPLOYMENT OPPORTUNITY EMPLOYER. THE COMPANY'S POLICY IS NOT TO DISCRIMINATE AGAINST ANY APPLICANT OR EMPLOYEE BASED ON RACE, COLOR, RELIGION, NATIONAL ORIGIN, GENDER, AGE, SEXUAL ORIENTATION, GENDER IDENTITY OR EXPRESSION, MARITAL STATUS, MENTAL OR PHYSICAL DISABILITY, AND GENETIC INFORMATION, OR ANY OTHER BASIS PROTECTED BY APPLICABLE LAW. THE FIRM ALSO PROHIBITS HARASSMENT OF APPLICANTS OR EMPLOYEES BASED ON ANY OF THESE PROTECTED CATEGORIES.

    Create a job alert for this search

    Security Architect • Dallas, TX, United States