Full-Time

Lead Application Security Architect

Confirmed live in the last 24 hours

Eversource Energy

Eversource Energy

5,001-10,000 employees

Energy
Real Estate

Compensation Overview

$151.7k - $168.6kAnnually

+ Incentive

Senior, Expert

New Britain, CT, USA + 1 more

More locations: Norwood, MA, USA

The first three months are full-time in the office.

Category
Cybersecurity
IT & Security
Required Skills
Microsoft Azure
Agile
Python
AWS
Terraform
Google Cloud Platform

You match the following Eversource Energy's candidate preferences

Employers are more likely to interview you if you match these preferences:

Degree
Experience
Requirements
  • Has experience with and is fluent in expressing security concerns within the following languages: VB .Net, Python, YAML, Terraform
  • Exhibits an exceptional degree of ingenuity, creativity and/or resourcefulness.
  • Applies extensive organizational and/or project management expertise and has full knowledge of other related disciplines.
  • Formal training or certification on software engineering concepts and 5+ years applied experience.
  • Experience running teams of architects that design cybersecurity solutions operations on cloud-based platforms and applications.
  • Hands-on practical experience delivering enterprise level planning, design, and implementation of enterprise-level security solutions and controls related to: Secure Software Development Life Cycle (SSDLC) (e.g. code review, risk assessments, threat modeling, static code analysis, and dynamic application scanning), Modern Security Engineering/Architecture practices (e.g. micro services, containers, orchestration, continuous integration & delivery pipelines, API first, service delivery & integration, OWASP Top 10), Solution Development & Delivery.
  • Hands-on practical experience in cybersecurity architecture that can be applied and repeated across businesses, functions, and systems. Experience reviewing and securing cybersecurity products and solutions for public cloud-based applications and infrastructure, external-facing web-based solutions, and mobile.
  • Experience growing and leading large, cross-functional teams of technologists.
  • Subject matter expertise in multiple security domains (e.g., mobile, application security, vulnerability reduction, data protection, encryption, logging and monitoring, network security, etc.).
  • Demonstrated prior experience influencing across highly matrixed, complex organizations and delivering value at scale.
  • Experience leading complex projects and supporting system design, testing, and operational stability.
  • Experience hiring, developing, and recognizing talent.
  • Bachelor’s Degree in Engineering, Computer Science, Data Science, Information Technology or related experience.
  • 10 years related experience that includes 5 years of Senior level cyber security experience.
  • Experience in Cross Domain Solutions.
  • Familiarity with Zero-Trust Architecture.
  • Must have excellent communications and interpersonal skills and should be able to convey technical aspects to personnel who may not be well-versed in those areas.
  • Experience working in regulated industries, in particular leveraging technology standards, frameworks, compliance, and industry recognized best practice / standards (e.g. NIST, ISO, PCI, SOC, CIP).
  • Exposure to projects using an Agile methodology and DEVSECOPS environment.
  • Experience leading mid to large security initiatives and managing small teams.
  • Should have experience scripting and coding.
  • Certification in Public Cloud Technology from one of the major Cloud Service Providers (e.g. AWS Certified Solutions Architect, Microsoft Azure Architect, Google Cloud Architect) or prominent independent organization such as ISC2.
  • Systems Security Certified Practitioner (SSCP) certification.
  • Certified Information Systems Security Professional (CISSP) certification.
Responsibilities
  • Manage the activities of a team of Application Security specialists across multiple projects and collaborate across multiple business lines and technical domains in the architecture function to execute critical initiatives of the function.
  • Cultivate security culture with your product technology and business colleagues. Build a vision around the next level of security maturity for application developers, with inputs from the security organization and work with Cyber Security leadership to deliver on that idea.
  • Serve as an application security thought leader. Learn from your many projects and cybersecurity teams and share best practices in both directions.
  • Act with urgency managing emerging issues. Proactively monitor Key Risk Indicators to ensure issues are identified, quantified, communicated, and managed in a timely manner, including recommendations for resolution, and identifying the root cause/key themes.
  • Enable and partner with application architects and engineering leaders to design secure, scalable, and resilient applications.
  • Leads Application Security for multiple cybersecurity architecture and process implementations across business lines to achieve security objectives.
  • Fosters a culture of innovation, collaboration, and continuous improvement within the Application Security team.
  • Acts as the primary interface with senior leaders, stakeholders, and executives to drive consensus across competing cyber security objectives.
Desired Qualifications
  • Experience in Cross Domain Solutions
  • Familiarity with Zero-Trust Architecture
  • Experience working in regulated industries, in particular leveraging technology standards, frameworks, compliance, and industry recognized best practice / standards (e.g. NIST, ISO, PCI, SOC, CIP).
  • Exposure to projects using an Agile methodology and DEVSECOPS environment.

Company Size

5,001-10,000

Company Stage

IPO

Total Funding

$86.6M

Headquarters

Springfield, Illinois

Founded

1966

Simplify Jobs

Simplify's Take

What believers are saying

  • Acquisition aligns with trend of investing in clean energy infrastructure.
  • Partnership with EchoStor reflects industry trend of leveraging technology.
  • Guide to native plants aligns with demand for sustainable practices.

What critics are saying

  • Rising interest rates may increase borrowing costs for capital projects.
  • Extreme weather events in New England pose risks to infrastructure.
  • Growing competition in renewable energy may challenge market position.

What makes Eversource Energy unique

  • Eversource acquired a 26-acre site to enhance clean energy capabilities.
  • Partnership with EchoStor boosts IT capabilities and operational efficiency.
  • Collaboration with law enforcement enhances customer trust and security.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Hybrid Work Options

Company News

Investing.com
Feb 13th, 2025
Scotiabank cuts Eversource Energy target to $55, keeps underperform rating

Eversource Energy also acquired a 26-acre site from Constellation Energy (NASDAQ:CEG), a move aimed at enhancing the region's clean energy capabilities and grid reliability.

ETF Daily News
Jan 17th, 2025
Capital Investment Advisors LLC Invests $208,000 in Eversource Energy (NYSE:ES)

Capital Investment Advisors LLC invests $208,000 in Eversource Energy (NYSE:ES).

Fox61
Jan 14th, 2025
Eversource teams with law enforcement to offer 2025 scam protection tips

This year, Eversource is partnering with the Waterbury Police Department to curb the damage scammers and imposters afflict on victims.

South Coast Today
Jan 14th, 2025
Don't fall for imposters: Dartmouth Police warn of scam targeting Eversource customers

The Dartmouth Police Department has teamed up with Eversource to issue a warning about scams targeting Eversource customers.

Rigzone
Jan 1st, 2025
Eversource Acquires 26 Acres in Massachusetts from Constellation

Eversource acquires 26 acres in Massachusetts from Constellation.