Full-Time

Security Architecture Engineer

Confirmed live in the last 24 hours

HUB

HUB

5,001-10,000 employees

Data & Analytics
Consulting
Consumer Software

Compensation Overview

$125k - $140kAnnually

Senior

Chicago, IL, USA

Hybrid to a local HUB office is desirable.

Category
Cybersecurity
IT Project Management
IT & Security
Required Skills
PowerShell
Chef
Bash
Kubernetes
Microsoft Azure
Python
Puppet
Node.js
Java
Docker
AWS
Go
Jenkins
Terraform
Ansible
Development Operations (DevOps)
CircleCI
Google Cloud Platform
Requirements
  • Strong experience with DevOps tools and platforms (e.g., Jenkins, GitLab, Travis CI, Azure DevOps, CircleCI).
  • Hands-on experience automating security tests (e.g., SAST, DAST, IAST) and integrating security tools into CI/CD pipelines.
  • Desired exposure to container security tools (e.g., SentinelOne, Aqua Security, Twistlock, Sysdig).
  • Desired experience with cloud infrastructure security for AWS, Azure, or Google Cloud, including the use of cloud security tools (e.g., AWS GuardDuty, Azure Security Center, GCP Security Command Center).
  • Proficiency in at least one programming language (e.g., Python, Go, Java, Node.js) and scripting languages like Bash or PowerShell.
  • Experience with infrastructure-as-code (IaC) tools such as Terraform, Ansible, Puppet, or Chef to automate security configurations.
  • Familiarity with building and securing containerized environments, particularly with Docker and Kubernetes.
  • Knowledge of securing microservices architectures, API gateways, and distributed systems.
  • Desired experience securing cloud-native services, containers, and serverless architectures.
  • Desired experience in implementing identity and access management (IAM) policies, data encryption, network segmentation, and logging/monitoring in cloud environments.
  • Bachelor’s Degree in Information Security, Computer Science, or related field (or equivalent work experience).
  • 5+ years of experience in security engineering or DevSecOps.
  • Strong understanding of security frameworks such as NIST, CIS, and OWASP Top 10.
  • Experience in cloud security, including public cloud (AWS, Azure, GCP) and cloud-native applications.
  • Demonstrated ability to work with development and operations teams to implement security controls in a DevOps environment.
  • Certified Information Systems Security Professional (CISSP)
  • Certified Cloud Security Professional (CCSP)
  • AWS Certified DevOps Engineer – Professional
  • Certified Kubernetes Security Specialist (CKS)
  • Certified Ethical Hacker (CEH)
Responsibilities
  • Design and implement security solutions that integrate seamlessly with DevOps workflows and CI/CD pipelines.
  • Automate security testing (SAST, DAST, IAST) and integrate with existing CI/CD tools like Jenkins, GitLab CI, Azure DevOps, or CircleCI.
  • Develop and enforce security-as-code principles, ensuring that security policies and compliance controls are applied programmatically during application deployment.
  • Collaborate with development teams to embed security into containerization and orchestration platforms like Docker and Kubernetes.
  • Review and advise on secure architectural patterns for applications, microservices, APIs, and cloud infrastructure.
  • Perform threat modeling, risk assessments, and security reviews of applications and infrastructure to identify and mitigate security risks early in the development process.
  • Ensure that the design and deployment of applications align with security best practices such as zero trust architecture, least privilege access, and data encryption.
  • Implement and maintain security automation tools to monitor and enforce security policies across the development lifecycle.
  • Work with development and operations teams to fix vulnerabilities identified during automated scans or manual reviews.
  • Ensure continuous monitoring of cloud and application environments through security information and event management (SIEM) and cloud security monitoring tools.
  • Establish security incident response workflows within DevOps processes to ensure rapid detection and remediation of security incidents.
  • Serve as a liaison between development, operations, and security teams in a decentralized, regionally dispersed organization to drive the adoption of DevSecOps practices.
  • Conduct training and knowledge-sharing sessions to educate developers and operations staff on secure coding practices, security testing, and DevSecOps principles.
  • Work closely with compliance and governance teams to ensure that regulatory requirements (e.g., GDPR, HIPAA, PCI-DSS) are met within the DevOps environment.
  • Continuously assess and improve security processes and tools to keep pace with evolving threats and industry best practices.

Company Stage

Debt Financing

Total Funding

N/A

Headquarters

Chicago, Illinois

Founded

1998

Simplify Jobs

Simplify's Take

What believers are saying

  • Embedded insurance models create new partnership opportunities for Hub.
  • Digital transformation in insurance boosts demand for Hub's advanced analytics solutions.
  • Growing importance of cybersecurity increases investments in Hub's cyber risk management.

What critics are saying

  • Rapid acquisitions may attract regulatory scrutiny from antitrust authorities.
  • Rising premiums and reduced coverage availability could lead to customer dissatisfaction.
  • Integration of acquired companies may disrupt Hub's existing workflows.

What makes HUB unique

  • Hub's acquisition strategy strengthens its market position and service offerings.
  • VIU by Hub enhances digital insurance solutions for financial institutions.
  • Hub's focus on personalized insurance products meets evolving customer needs.

Help us improve and share your feedback! Did you find this helpful?