Security Architect positions focus on delivering results in their domain. This page aggregates open Security Architect roles and what employers typically expect.
**About Nexcess** Nexcess provides specialty cloud solutions for organizations where performance and compliance have to coexist. We serve businesses worldwide, from agencies scaling client sites to enterprises running mission-critical operations. We've built our reputation on deep technical expertise and genuine partnership with every client we work with. Behind every environment we manage is a team of people who take the craft seriously and keep showing up when it matters. ## **Overview** The Information Security Architect is responsible for designing, implementing, and continuously improving the organization’s security architecture across infrastructure, cloud platforms, hosting environments, applications, and operational systems. This role provides technical leadership and strategic guidance to ensure security controls, standards, and practices align with business objectives, regulatory requirements, and operational risk management goals. The Security Architect partners closely with Infrastructure, Platform Engineering, Development, Compliance, and Operations teams to design scalable and secure solutions while strengthening the organization’s overall security posture. This position plays a critical role in evaluating risk, developing security standards, supporting compliance initiatives, and guiding secure operational and engineering practices across complex hosting and cloud environments. This role requires deep technical expertise, strong analytical skills, and the ability to communicate security concepts effectively to both technical and non-technical stakeholders. **Compensation**: The compensation range for this position is between $140k-$160k ## **Responsibilities** - Design and maintain enterprise security architecture standards across cloud, infrastructure, network, application, and hosting environments - Develop secure reference architectures, security baselines, and operational security standards - Evaluate and recommend security technologies, tools, and controls to improve organizational security posture - Partner with Infrastructure, Engineering, and Platform teams to ensure secure system design and implementation practices - Review infrastructure, network, and application designs for security risks, vulnerabilities, and compliance alignment - Assist with the development and implementation of identity and access management (IAM), segmentation, hardening, encryption, and monitoring strategies - Support secure cloud adoption and infrastructure modernization initiatives - Provide technical guidance on security controls for production systems, customer environments, and internal platforms - Identify, assess, and document security risks across systems, applications, infrastructure, and operational processes - Partner with Compliance and Governance teams to support PCI-DSS, SOC, ISO, customer audits, and other security-related assessments - Assist in developing and maintaining security policies, standards, procedures, and technical controls - Participate in security reviews, risk assessments, vulnerability management, and remediation planning activities - Support operational maturity initiatives related to governance, access management, logging, monitoring, and security controls - Evaluate exceptions to security standards and provide documented risk recommendations - Support incident response activities involving infrastructure, access, operational security, and customer-impacting events - Assist with threat modeling, security investigations, forensic analysis coordination, and root cause reviews as needed - Provide guidance on vulnerability remediation priorities and risk mitigation strategies - Collaborate with operational teams to strengthen monitoring, detection, alerting, and defensive security capabilities - Participate in security awareness initiatives and promote security best practices throughout the organization - Serve as a subject matter expert on infrastructure and operational security practices - Partne…