Security & Compliance Architect

Artech LLC
  • Chandler, AZ
  • Quick Apply
30+ days ago

Job Description

Location:

Chandler, AZ

Salary Range:

Competitive, based on experience

Introduction

The position is accountable for the end-to-end security architecture, threat modeling, and compliance posture of the Collector Agent Layer. This role serves as a mandatory Phase-0 security gate, with formal sign-off required before any agent or collector is permitted to interact with production environments. The architect designs and governs cryptographic trust models, secure identity and authentication mechanisms, tamper-detection controls, and enterprise secret-management integrations to ensure that all agent-based data collection is secure, auditable, and compliant with enterprise and regulatory requirements.

Required Skills & Qualifications

  • 7 years experience with threat modeling for distributed systems and agent-based architectures.
  • Strong knowledge of PKI, X.509 certificates, mTLS, and cryptographic trust models.
  • Hands-on expertise with Kafka security, including SASL/SCRAM authentication and authorization.
  • Proven experience designing HMAC-based integrity and tamper-detection mechanisms.
  • Enterprise-scale experience integrating with Vault or centralized secrets-management platforms.

Preferred Skills & Qualifications

  • FinOps Certified Practitioner/Professional
  • Experience with cloud implementation (data on cloud, integration with cloud)
  • Strong understanding of least-privilege access, zero-trust principles, and defense-in-depth.
  • Prior work experience in client's industry.
  • Applicants must be able to work directly for Artech on W2.

Day-to-Day Responsibilities

  • Own the Collector Agent Layer Threat Model, serving as a signed Phase-0 blocker for production deployment.
  • Define trust boundaries, attack surfaces, and threat vectors for agent-based architectures.
  • Ensure threat models are reviewed, approved, and version-controlled prior to any production access.
  • Design and govern the mutual TLS (mTLS) PKI architecture, including certificate issuance, rotation, revocation, and trust chains.
  • Architect HMAC-based tamper detection to ensure message integrity and non-repudiation across the agent pipeline.

Company Benefits & Culture

  • Comprehensive health, dental, and vision insurance
  • Flexible working hours and remote work options
  • Professional development opportunities

For immediate consideration please click APPLY to begin the screening process.

Numbers & Facts

LocationChandler, AZ

Skills

  • Authenticationunmatched
  • Centralized Operations/Managementunmatched
  • Certificate Issuanceunmatched
  • Cloud Computingunmatched
  • Cryptographyunmatched
  • Data Collectionunmatched
  • Defense in Depthunmatched
  • Dental Insuranceunmatched
  • Distributed Computingunmatched
  • Production Systemsunmatched
  • Public Key Infrastructure (PKI)unmatched
  • Regulatory Requirementsunmatched
  • SASL (Simple Authentication and Security Layer)unmatched
  • SSL-TLS (Secure Socket Layer - Transport Layer Security)unmatched
  • Security Architectureunmatched
  • Threat Modelingunmatched
  • Vision Planunmatched
  • X.509 Digital Certificateunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder