Security Architect, Applied Technology Services

<p><span style="overflow-wrap: break-word; display: inline; text-decoration: inherit; hyphens: auto;">Our mission is</span> to <span style="overflow-wrap: break-word; display: inline; text-decoration: inherit; hyphens: auto;">provide   modernized</span> technology <span style="overflow-wrap: break-word; display: inline; text-decoration: inherit; hyphens: auto;">platforms,   elevated</span> technology support, <span style="overflow-wrap: break-word; display: inline; text-decoration: inherit; hyphens: auto;">and   valuable</span> insights, empowering our clients to excel in what they do best.</p><p></p><p><b> </b></p><p><b> </b></p><p><b>Security Architect (Managed Services / Client-Facing)</b></p><p><b> </b></p><p><b>Role Overview</b></p><p>Opensity Solutions is seeking a highly experienced <b>Security Architect</b> to establish and mature security foundations across our client portfolio. This role is responsible for defining and implementing <b>reference security architectures</b>, driving <b>best-in-class security standards</b>, and leading response efforts during security incidents.</p><p>The Security Architect will operate as both a <b>strategic advisor and hands-on technical leader</b>, ensuring alignment with industry frameworks (e.g., CIS Benchmarks) while tailoring solutions to the unique needs of legal-sector clients and complex MSP environments.</p><p> </p><p><b>Key Responsibilities</b></p><p><b>Security Architecture & Strategy</b></p><ul><li><p>Define, maintain, and evolve <b>reference security architecture standards</b> across client environments (cloud, hybrid, and on-prem).</p></li><li><p>Design scalable, repeatable <b>security frameworks</b> aligned to <b>CIS Benchmarks</b>, Zero Trust principles, and industry best practices.</p></li><li><p>Establish baseline security configurations for:</p><ul><li><p>Identity & Access Management (Entra ID / Azure AD)</p></li><li><p>Endpoint Security (Microsoft Defender suite)</p></li><li><p>Network Security (firewalls, segmentation, DNS protection)</p></li><li><p>Data Protection & Compliance</p></li></ul></li></ul><p><b>Client Security Enablement</b></p><ul><li><p>Serve as a <b>trusted advisor</b> to clients, translating security strategy into actionable roadmaps.</p></li><li><p>Lead <b>security assessments</b> and remediation planning leveraging tools such as <b>Rapid7</b> and <b>Inforcer</b>.</p></li><li><p>Develop and standardize <b>security offerings</b> within the MSP model (e.g., Secure Score improvements, vulnerability management programs).</p></li></ul><p><b>Incident Leadership & Response</b></p><ul><li><p>Act as the <b>technical lead during security events and incidents</b>, coordinating cross-functional response efforts.</p></li><li><p>Provide guidance on containment, eradication, and recovery strategies.</p></li><li><p>Conduct <b>post-incident reviews</b> and implement architectural improvements to prevent recurrence.</p></li></ul><p><b>Tooling & Security Operations Alignment</b></p><ul><li><p>Architect and optimize integrations across security tooling, including:</p><ul><li><p><b>Rapid7</b> (vulnerability management / SIEM)</p></li><li><p><b>Microsoft Defender</b> (Endpoint, Identity, Cloud)</p></li><li><p><b>Cisco Umbrella</b> (DNS-layer security)</p></li><li><p><b>Inforcer</b> (Secure Score and posture management)</p></li></ul></li><li><p>Partner with NOC, Engineering, and Security Operations teams to ensure:</p><ul><li><p>Effective alerting and escalation workflows</p></li><li><p>Reduction of false positives</p></li><li><p>Alignment with ServiceNow-driven incident processes</p></li></ul></li></ul><p><b>Infrastructure & Cloud Security</b></p><ul><li><p>Design and secure <b>Microsoft Azure environments</b>, including:</p><ul><li><p>Azure networking and segmentation</p></li><li><p>Identity and conditional access policies</p></li><li><p>Defender for Cloud and cloud workload protection</p></li></ul></li><li><p>Provide architectural oversight for:</p><ul><li><p>Server infrastructure (Windows/Linux)</p></li><li><p>Virtualization platforms</p></li><li><p>Backup and disaster recovery security considerations</p></li></ul></li></ul><p><b>Governance, Risk & Compliance</b></p><ul><li><p>Ensure client environments align with <b>industry standards and regulatory expectations</b>, particularly within the legal sector.</p></li><li><p>Contribute to <b>security policy development</b>, standards, and documentation.</p></li><li><p>Support audits, risk assessments, and compliance initiatives.</p></li></ul><p> </p><p><b>Required Qualifications</b></p><ul><li><p><b>10+ years</b> of experience in cybersecurity, with a strong focus on <b>architecture and design</b></p></li><li><p>Proven experience in an <b>MSP or multi-client environment</b></p></li><li><p>Deep expertise across:</p><ul><li><p>Microsoft Azure and <b>Azure security best practices</b></p></li><li><p>Identity & Access Management (Entra ID / Azure AD)</p></li><li><p>Endpoint security (Microsoft Defender suite)</p></li><li><p>Networking, firewalls, and secure architecture design</p></li></ul></li><li><p>Hands-on experience with:</p><ul><li><p><b>Rapid7</b></p></li><li><p><b>Inforcer</b></p></li><li><p><b>Cisco Umbrella</b></p></li></ul></li><li><p>Strong understanding of:</p><ul><li><p><b>CIS Benchmarks</b></p></li><li><p>Zero Trust architecture</p></li><li><p>Security frameworks (NIST, ISO 27001, etc.)</p></li></ul></li></ul><p> </p><p><b>Certifications (Required / Preferred)</b></p><ul><li><p>Bachelor’s degree in Cybersecurity, Information Technology, or related field (or equivalent experience)</p></li><li><p>One or more advanced certifications strongly preferred:</p><ul><li><p>CISSP (Certified Information Systems Security Professional)</p></li><li><p>CISM (Certified Information Security Manager)</p></li><li><p>CCSP (Certified Cloud Security Professional)</p></li><li><p>Microsoft Security Certifications (e.g., SC-100, SC-200)</p></li><li><p>Azure Solutions Architect Expert (AZ-305)</p></li></ul></li></ul><p> </p><p><b>Key Competencies</b></p><ul><li><p><b>Strategic thinker</b> with the ability to translate security into business value</p></li><li><p>Strong <b>incident leadership and crisis management</b> capabilities</p></li><li><p>Excellent <b>client-facing communication skills</b>, including executive-level engagement</p></li><li><p>Ability to operate across <b>multiple clients and environments simultaneously</b></p></li><li><p>Deep understanding of <b>MSP delivery models</b>, SLAs, and operational workflows</p></li></ul><p> </p><p><b>Success Metrics</b></p><ul><li><p>Measurable improvement in client <b>security posture (e.g., Secure Score, vulnerability reduction)</b></p></li><li><p>Reduction in <b>security incident frequency and severity</b></p></li><li><p>Adoption of standardized <b>reference architectures across clients</b></p></li><li><p>Improved <b>MTTR for security incidents</b></p></li><li><p>Increased client satisfaction and trust in Opensity’s security capabilities</p></li></ul><p> </p><p> </p><p> </p>$58,073.00 - $125,808.30

Back to blog