
51 - 200 employees
Founded 2006
Castillians is a company whose publicly available text is inaccessible without JavaScript; the provided content only shows a message asking the user to enable JavaScript. No information about the company's product, services, industry, or target customers can be determined from this text alone.
🕒 April 23
Improve your chances of getting an interview by checking your resume score before you apply.

51 - 200 employees
Founded 2006
Castillians is a company whose publicly available text is inaccessible without JavaScript; the provided content only shows a message asking the user to enable JavaScript. No information about the company's product, services, industry, or target customers can be determined from this text alone.
• This is a remote position. • Responsible for the strategic planning, design, and integration of security technologies across the enterprise. • Bridge the gap between high-level security policies and technical implementation, ensuring that security is embedded into the fabric of infrastructure, applications, and DevOps pipelines. • Design and document enterprise-level security architectures for cloud (AWS/Azure/GCP), on-premise data centers, and hybrid environments. • Develop security standards, reference architectures, and design patterns (Zero Trust, SASE, NIST). • Conduct threat modeling and risk assessments for new systems, applications, and integrations (STRIDE, PASTA, or VAST). • Align security strategy with business goals and regulatory requirements (SOC2, ISO 27001, GDPR, HIPAA, PCI-DSS). • Select and architect security solutions (Next-gen Firewalls, EDR/XDR, SIEM, IAM/PAM, DLP, CASB). • Lead the integration of security into CI/CD pipelines (DevSecOps) including SAST, DAST, and SCA. • Design secure network segmentation, micro-segmentation, and identity management frameworks (SSO, MFA, Identity Governance). • Collaborate with Cloud Engineers to enforce IAM policies, encryption (at rest and in transit), and secure configuration. • Define technical security requirements for RFPs and vendor risk assessments. • Participate in incident response tabletop exercises and post-mortem architecture fixes for actual breaches. • Review and approve architecture change requests for security impact.
• Extensive experience in information security, with 4+ years specifically as a Security Architect or equivalent role (Lead Security Engineer, Cloud Architect with security focus). • Proven experience designing multi-cloud security architectures (AWS, Azure, or GCP). • Deep understanding of networking (TCP/IP, routing, SD-WAN, load balancers) and operating systems (Linux, Windows). • Exceptional ability to explain complex security risks to non-technical executives. • Strategic thinker who balances 'perfect security' with business velocity. • Strong documentation and diagramming skills. • Technical Skills: Security frameworks: NIST CSF, ISO 27001, MITRE ATT&CK. • Architecture models: Zero Trust (ZTA), SASE, Identity Fabric. • DevSecOps tools: Git, Jenkins/GitLab CI, Terraform (IaC), Docker/Kubernetes. • Identity protocols: OAuth, SAML, LDAP, SCIM. • Cryptography concepts: PKI, TLS, HSM, key management. • Certifications (One or more preferred): CISSP SABSA or TOGAF (architecture focus) CCSP or AWS Certified Security – Specialty CISM.
• Clear scope with no ambiguity over deliverables. • Opportunity for repeat engagements based on performance.
Apply Now