Cloud Security Architect FFIEC and NIST CSF -New York, NY -Hybrid

FinTrust Connect

  • New York
  • 15 days ago
    Want to know if you’re a fit?
    Upload your resume and let our AI show you.

    Skills

    • Amazon Web Services (AWS)unmatched
    • Cloud Architectureunmatched
    • Cloud Computingunmatched
    • Coachingunmatched
    • Computer Securityunmatched
    • Continuous Deployment/Deliveryunmatched
    • Continuous Integrationunmatched
    • Documentationunmatched
    • Financial Servicesunmatched
    • LinkedInunmatched
    • Maintain Complianceunmatched
    • Metricsunmatched
    • Protocol Independent Multicast (PIM)unmatched
    • Regulationsunmatched
    • Reporting Dashboardsunmatched
    • Riskunmatched
    • Security Architectureunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched

    Description

    Cloud Security Architect FFIEC and NIST CSF -New York, NY -Hybrid

    FinTrust Connect New York NY Hybrid

    Share Your Resume and Build Your Future!

    Join our Talent Community for New York. The market favors cloud security leaders across money center banks and fintechs with emphasis on platform guardrails identity governance and exam ready documentation.

    As a Cloud Security Architect you will own the end to end cloud control architecture for regulated workloads, align designs to FFIEC and NIST CSF, and coach engineering teams to deliver secure and resilient platforms at scale. You will balance business speed with strong control evidence for audits and regulators.

    Requirements

    • 8 to 14 years across security architecture and platform engineering with recent Azure and or AWS depth

    • Experience translating regulatory language into workable patterns and standards for product and data teams in financial services

    • Strong identity and access background Entra and PIM and Conditional Access and AWS IAM and federation and secrets and key management

    • Proven build of cloud control baselines network segmentation private access egress control logging and detection automated compliance checks

    • Comfortable engaging senior stakeholders and boards with clear risk and design rationale

    Responsibilities

    • Lead architecture for landing zones and guardrails identity network data logging and threat detection. Embed compliance checks into CI and CD and infrastructure pipelines

    • Maintain control catalog mappings and solution patterns for FFIEC and NIST CSF with evidence collection that audit teams can rely on

    • Stand up metrics and dashboards for coverage drift and posture. Guide remediation waves with platform and app owners

    • Partner with risk and internal audit on walk throughs RFIs and control testing

    • Run readiness reviews for major releases and new services

    Outcomes we track

    • Control coverage 95% across top cloud services within 90 days

    • High severity misconfigurations reduced 50% in 2 quarters

    • Access review completion 100% on schedule

    • Zero repeat findings across two consecutive exam cycles

    Compensation and terms

    • Consultant pay $120 to $179 per hour based on platform and regulatory depth

    • Contract Hybrid New York NY or Remote US W2 or 1099

    How to apply

    Keywords
    Cloud Security Architect, FFIEC, NIST CSF 2.0, Azure, AWS, Landing Zone, Identity Governance, Entra, PIM, Key Management, Logging, SIEM, Microsoft Sentinel, GuardDuty, Security Hub, Terraform, Policy as Code, Zero Trust, Audit Evidence, New York

    Numbers & Facts

    LocationNew York
    Websitehttps://fintrustconnect.com/

    Similar Jobs

    See more jobs