Senior Security Architect

Chicago 5 months agoContractor External
Negotiable
Senior Security Architect Greater Chicago Area, IL Local to Chicago - Hybrid Role - Mandatory 3 days on-site. $70/hr. on C2C 6 Months Client Contract position- Submission slots for this role are limited and expected to fill quickly. We are seeking a highly experienced Senior Security Architect to design and lead the implementation of strategies that reduce the risk of lateral movement across our enterprise network. You will play a critical role in securing our infrastructure by developing secure configurations, segmenting networks, and aligning with industry-leading frameworks and practices. Responsibilities: • * Develop and implement security architecture strategies to mitigate risks from lateral movement techniques. • * Design, document, and enforce network segmentation and access control policies. • * Collaborate with IT, cloud, and infrastructure teams to integrate security into architecture and operations. • * Lead and participate in security assessments, audits, and architecture reviews. • * Provide technical leadership and mentor junior security staff. • * Stay up to date with evolving threats, tools, and security research. • * Identify and remediate insecure configurations in Windows and Linux environments. • * Support detection and response through effective logging, alerting, and forensic readiness. Qualifications: • * Bachelor's degree in Computer Science, Information Security, or related field. • * 8+ years in information security, with strong experience in network security and architecture. • * Strong understanding of lateral movement techniques (e.g., Pass-the-Hash, Kerberoasting) and mitigation strategies. • * Proven experience with security frameworks (e.g., NIST 800-53, CIS Controls, ISO 27001). • * Experience performing vulnerability assessments and managing remediation efforts. • * Strong leadership and communication skills, including cross-functional collaboration. Required Skills: • * Deep knowledge of Windows and Linux system architecture and hardening. • * Expertise in Active Directory, Azure AD, and role-based access control (RBAC). • * Familiar with network security tools (e.g., SIEM, IDS/IPS, firewalls). • * Experience with Azure Log Analytics, KQL, custom alerting, and log pipelines. • * Proficiency in Python, PowerShell, and Shell scripting. • * Understanding of protocol analysis, network monitoring, and attack surface reduction. • * Familiar with high availability, clustering, and secure administrative practices. • * Working knowledge of SQL Server, Oracle, and enterprise IT infrastructure. Preferred Certifications: • * CISSP, CISM, or TOGAF • * (Bonus): OSCP, GIAC, AZ-500, or equivalent hands-on certs