Information Security Architect Job in Mooresville, North Carolina US
Information Security Architect
With fiscal year 2010 sales of $48.8 billion, Lowe's Companies, Inc. is a FORTUNEreg; 50 company that serves approximately 15 million customers a week at more than 1,725 home improvement stores in the United States, Canada and Mexico. Founded in 1946 and based in Mooresville, N.C., Lowe's is the second-largest home improvement retailer in the world. For more information, visit Lowes.com For over 60 years, it's what Lowe's has been about. Lowe's vision is to be our customers first choice for home improvement in each and every market we serve. To earn our customers trust and meet their individual needs, we will provide valued solutions with the best prices, products and services that make our customers lives easier. That simple idea has transformed Lowe's from a neighborhood hardware store into a Fortune 50 company. But we're not finished. We're on our way to even bigger and better things. Providing superior customer service requires superior people. Do you want to be part of an exciting transformation leveraging technology? Lowe's has provided customer-valued home improvement solutions for more than 65 years and is now transforming from a home improvement retailer to a home improvement company. Our vision of the future is a seamless, supportive and inspiring experience wherever and whenever customers engage with Lowe's. This is true multi-channel, multi-product, multi-service retailing with technology as the key enabler. Lowe's IT is a changing and business-focused environment where you can contribute in a wide variety of functional areas covering all aspects of the consumer value chain. We are actively implementing and managing the leading software packages and technology platforms to deliver innovative solutions for our business partners and customers, and need people who understand how best to apply those technologies to solve business problems. If you are looking for an opportunity to see immediate, positive and material business benefits from your technology skills and experience, this is the time join Lowe's. Security Architect Position Overview The Security Architect is responsible for providing technical thought leadership for enterprise security architecture and implementations. This person acts as a collaborative liaison between multiple groups (e.g. Enterprise Architecture, Information Security, other functional areas) to provide a risk-based and solution-focused perspective on technical security matters. This person will be a skilled communicator who is able to accurately portray genuine security risk while also defining specific remediation steps that are consistent with the Lowe's business model. The Security Architect will have high level technical skills coupled with an ability to effectively communicate specific business solutions while building consensus on security decisions. This role is action and solution oriented with an emphasis on architecting security solutions that enable the corporation to meet business goals. Responsibilities * Work with Enterprise Architecture peers, domain level design authorities and subject matter experts to: o Develop and validate coordinated security architecture strategies o Create and evolve coordinated security technology roadmaps o Establish and govern security architecture standards o Document and evangelize reusable security architecture patterns * Work with Information Security, Enterprise Architecture, and other groups for the development, delivery, and management of a comprehensive Information security program. * Provide forward-looking and business-focused input on ensuring that corporate systems and processes meet appropriate security requirements. * Provide solutions-based technical and security leadership that not only identifies risks but also provides clear and workable remediation activities to support corporate goals. * Work collaboratively with functional and project teams providing input, recommendations and specifications in order to ensure that implementations are designed to comply with corporate security policy, standards and industry best practices. This requires a very high level of consensus-building and communications skills. * Work with Lowe's Solution and Infrastructure Architects to define and document information security solution architectures * Provide feedback across multiple centers of excellence on matters dealing with information security. This will require both (1) broad technical knowledge and (2) the ability to garner internal and external subject matter experts on particular technologies. * Keep current on industry trends, the latest security technology and the direction our security- related vendors are taking their products * Coordinate technical design/review activities with application development, enterprise architecture, information security, systems, network, database, and other groups to develop secure frameworks and enterprise applications. * Participate in Technical Architecture Review Board Required skills, abilities, and certifications * 8+ years in security architecture for large enterprises. * Very strong collaboration and leadership skills. * Experience mentoring solution delivery teams in Lowe's security practices. * Ability to conceptualize security architecture and rationalize security controls. * Thorough knowledge and the ability to understand the application of PCI and SOX compliance standards to retail situations. * Experience in writing security architecture standards, policies and procedures * Strong background in computer/network security, authentication/authorization, application security protocols, cryptography, and key management * Experience with software and security architectures and evaluation and development of approaches to solutions. * Experience in threat modeling, risk assessments, application and network vulnerability assessments Recommended skills, abilities, and certifications * CISSP strongly encouraged * Relevant experience with security related industry standards and practices such as guidance from DISA STIGs, OWASP, NIST (800 series), and Cigital (BSIMM) * Working knowledge of TOGAF and other architecture methodologies. * Firewall, router, switch administration experience For job descriptions, or to apply on-line, go to www.lowes.com/careers Job ID: 211917BR. Lowe's is an Equal Opportunity Employer committed to Diversity and Inclusion. Lowe's maintains a drug-free work place.