Enterprise Security and IAM Architect at CPS Energy San Antonio, TX

CPS Energy7 months ago
San Antonio, Texas, United States
Hybrid
Full-time
Junior Level (1-3 years)

Job Description

Position Overview

CPS Energy, located in San Antonio, TX, and employing 3,500 professionals from diverse backgrounds, is seeking an experienced Enterprise Security and IAM Architect. This role is both practical and strategic, responsible for establishing a technical strategy, defining enterprise security and IAM architectures, and leading solution implementations. You will provide technical guidance and training to implementation teams while ensuring adherence to the highest standards and best practices.

Grade: 18 | Deadline to Apply: Open until filled

Key Responsibilities

  • Lead enterprise security architectural design and planning in a hybrid cloud environment.
  • Design data-centric security architectures to ensure proper control and protection of data.
  • Drive the strategy and enablement of identity and security solutions (DLP, Encryption, Key Management, Identity Management, Secure Data Transport, audit, event detection, CASB, Intrusion Prevention, Remote Access, Firewall, etc.).
  • Architect and implement Identity & Access Management (IAM) solutions, including user, service, and device authentication and authorization.
  • Develop security architectural patterns, standards, and roadmaps while collaborating with stakeholders and vendors.
  • Provide high-level technical support, guidance, and cross-training to ensure scalable, maintainable and secure implementations.

Required Qualifications

  • Bachelor’s degree in computer science, information systems, or a related field, or equivalent technical experience.
  • Strong interpersonal skills with proven experience in IT system design and complex project management.
  • Deep understanding of IT application structures, network components, and enterprise dataflows.
  • Proficiency with SQL and NoSQL based database queries, along with exposure to business intelligence and data warehousing platforms.
  • Familiarity with common information architecture frameworks, statistical programming and basic machine learning concepts.

Preferred Qualifications

  • Experience in enterprise security architecture within a complex, multi-platform distributed environment.
  • Expertise in managing On-Prem/Private and Public Cloud network, identity, and application security services.
  • Hands-on knowledge of security solutions such as DLP, Encryption, Key Management, Fine-Grained Access Control, and Intrusion Prevention.
  • Familiarity with industry standards and frameworks including PCI, HIPAA, NIST, ISO 27001, and CSF.
  • Experience with cloud security principles, securing Microsoft Azure hosted services, and Identity Management Solutions.
  • CISSP or equivalent technical certification is a plus.
  • Proven ability to architect and implement network security and QoS technologies.

Benefits & Perks

  • Work in an innovative environment focused on cutting-edge security technologies.
  • Collaborative culture with opportunities to work alongside diverse professionals.
  • Indoor work environment with flexible travel requirements for meetings and training sessions.
  • Competitive Compensation and career development opportunities.

Required Skills

Compliance (NERC, PCI, HIPAA, NIST, ISO 27001)
CASB
Cloud Security (Microsoft Azure, Office 365)
Intrusion Prevention
Enterprise Security Architecture
Data-Centric Security
Security Standards and Frameworks
Network Security
Automation and Best Practices Evangelism
DLP
Identity and Access Management (IAM)
Technical Strategy and Architecture
Hybrid Cloud Security
Encryption and Key Management