Full-Time

Lead Zero Trust Architect

Confirmed live in the last 24 hours

UltraViolet Cyber

UltraViolet Cyber

201-500 employees

Unified defensive and offensive cybersecurity solutions

Cybersecurity

Compensation Overview

$165k - $185kAnnually

Senior, Expert

Washington, DC, USA

Hybrid position based in Washington, DC.

US Citizenship Required

Category
Cybersecurity
IT & Security
Required Skills
Agile
Development Operations (DevOps)
Requirements
  • Bachelor’s degree in Computer Science, Computer Engineering, relevant technical field, or equivalent practical experience.
  • 10+ years of total experience in offensive/defensive security, or systems engineering.
  • 3+ years’ experience in a security engineering role in an enterprise environment.
  • 1+ years’ experience in a software engineering or DevOps role in an enterprise environment.
  • 1+ years of experience supporting a zero trust architecture deployment
  • Experience leading complex cross-functional programs.
  • Experience with threat modeling, security design reviews, and security architecture
  • Software development experience is a plus.
  • Experience with CI/CD pipelines and Agile methodologies
  • Experience with Cloud security architecture and deployment models
  • Experience with securing highly sensitive data.
  • Experience with LDAP, SSO, SAML, Active Directory, MFA, etc.
  • Demonstrate knowledge of security technologies, trends, leading practices, and regulatory requirements and government security standards such as FedRAMP and Controlled Unclassified Information (CUI) standards, along with best practices such as NIST Cybersecurity Framework (CSF), NIST 800-171, NIST 800-53, ISO 27001-27002 and other applicable security and privacy laws.
  • General cloud knowledge.
  • Experience with one or more scripting or development languages.
  • Experience coding, implementing custom software solutions, and supporting them in production environments.
  • Familiarity with agile continuous improvement methodologies.
  • Experience developing and reporting enterprise level metrics.
  • US Citizen/Must pass a government background investigation.
Responsibilities
  • Primary Technical resource supporting an enterprise Zero Trust Architecture deployment.
  • Drives beneficial security change into the business through the development or review of architectures to ensure that they fit business requirements for security, mitigate risks, conform to the relevant security standards, and balance information risk against the cost of appropriate countermeasures.
  • Acts as liaison between the business and technology from a security perspective, maintains an overview of the environment as a whole and its security aspects, understands business strategy and how it relates to security strategy, acts as a liaison between appropriate regulatory bodies, IT auditors, and business stakeholders, educates IT and enterprise roles on the need for (and consequences of) reducing information-related risk, and ultimately drives organizational change at all levels of the business.
  • Develops and designs new security solutions to reduce risk and align business requirements with security standards. Supports vendor relationships; leads vendor reviews, working with Procurement and appropriate business partners on requirements and success criteria. Supports development of business case and approval process.
  • Delivers guidelines, best practices, and direction on security standards/policies and roadmaps. Provides subject matter expertise, consultation, and escalation support.
  • Provides support to Security Review process by assisting with complex questions and projects. Work with business units and partners as needed.
  • Partner with our development teams (and business stakeholders) to set the course for secure development practices for existing and future products and features.
  • Interact directly with the security community regarding vulnerabilities and threats, with focus on areas that may directly impact Lumen’s product lines.
  • Experience with SASE, EDR, and MFA tools.

UltraViolet Cyber enhances organizational resilience against cyber threats by combining defensive and offensive security operations. They provide Managed Security Solutions, including Managed Detection and Response (MDR) for continuous threat monitoring and Penetration Testing as a Service to identify vulnerabilities. Their subscription model ensures ongoing protection for clients, which include large enterprises and government agencies. The goal is to help organizations protect their digital assets efficiently and improve their overall cyber readiness.

Company Stage

Acquired

Total Funding

$4M

Headquarters

McLean, Virginia

Founded

2023

Growth & Insights
Headcount

6 month growth

2081%

1 year growth

2081%

2 year growth

2081%
Simplify Jobs

Simplify's Take

What believers are saying

  • The merger of four cybersecurity firms into UltraViolet Cyber, backed by private equity, positions the company for rapid growth and increased market influence.
  • The combination of Red Team and Blue Team activities allows for a holistic approach to cybersecurity, improving organizational resilience and readiness.
  • The continuous monitoring and proactive threat management provided by their MDR service ensures clients are protected 24/7, offering peace of mind and robust security.

What critics are saying

  • The cybersecurity market is highly competitive, requiring UltraViolet Cyber to continuously innovate to maintain its edge.
  • Integration challenges from the merger of four companies could lead to operational inefficiencies and cultural clashes.

What makes UltraViolet Cyber unique

  • UltraViolet Cyber uniquely integrates both offensive and defensive security operations, providing a comprehensive approach to threat management that many competitors lack.
  • Their Security as Code platform automates threat detection and investigation, offering a unified risk picture that enhances the efficiency of security operations teams.
  • The subscription-based model for Managed Detection and Response and Penetration Testing as a Service ensures continuous, proactive security measures, unlike traditional one-time security assessments.

Help us improve and share your feedback! Did you find this helpful?