Director Enterprise Architecture II

FiservPublished 17 hours agoFirst seen 2 hours ago
This position is no longer listed on the company's careers site. The discussion below stays open.

Calling all innovators – find your future at Fiserv.

We’re Fiserv, a global leader in Fintech and payments, and we move money and information in a way that moves the world. We connect financial institutions, corporations, merchants, and consumers to one another millions of times a day – quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app, or withdraw money from the bank, we’re involved. If you want to make an impact on a global scale, come make a difference at Fiserv.

Job Title

Director Enterprise Architecture II

Position Summary

Senior Director of Government Azure Cloud Security Engineering is responsible for designing, implementing, securing, and maintaining Microsoft Azure cloud environments that support federal government programs and mission-critical workloads. This role provides technical leadership in cloud security architecture, compliance, monitoring, threat detection, vulnerability management, and incident response while ensuring adherence to federal cybersecurity frameworks including FedRAMP, FISMA, NIST 800-53, Zero Trust Architecture, and CMMC requirements. The engineer partners with infrastructure, application, DevSecOps, and compliance teams to build and operate secure Azure Government and commercial Azure cloud environments. Inspired by internal federal cloud security and Azure modernization roles.

Key Responsibilities

Leadership & Team Management Responsibilities

  • Lead and mentor a team of cloud security engineers, analysts, and DevSecOps professionals supporting federal government programs.
  • Provide technical direction and establish engineering best practices for Azure security, cloud governance, and compliance initiatives.
  • Manage work prioritization, resource allocation, and delivery of security-related projects and sprint commitments.
  • Conduct regular one-on-one meetings, coaching sessions, and career development planning for team members.
  • Oversee technical onboarding and skills development programs to build team capabilities in Azure, cybersecurity, and federal compliance requirements.
  • Collaborate with Program Managers, Solution Architects, Product Owners, and government stakeholders to align security initiatives with business and mission objectives.
  • Lead architecture reviews, security design discussions, and risk assessments across multiple projects and cloud environments.
  • Establish key performance indicators (KPIs), operational metrics, and service-level objectives for security engineering functions.
  • Drive continuous improvement initiatives focused on automation, operational efficiency, security posture management, and cloud governance.
  • Coordinate cross-functional incident response activities and act as a senior escalation point during cybersecurity incidents.
  • Ensure adherence to Agile and DevSecOps practices while fostering a culture of accountability, collaboration, innovation, and continuous learning.
  • Present security strategies, risks, and recommendations to executive leadership, contract management teams, and government customers.
  • Support proposal efforts, staffing planning, technical solution development, and interview evaluations for new security engineering personnel.
  • Manage vendor relationships and coordinate activities with external security assessors, auditors, and federal oversight organizations when required.

Cloud Security Architecture

  • Design and implement secure Azure cloud architectures and landing zones.
  • Configure and maintain Azure security services including Microsoft Defender for Cloud, Microsoft Sentinel, Azure Firewall, Application Gateway, Front Door, and Azure Policy.
  • Establish security guardrails using Infrastructure as Code (Terraform, Bicep, ARM templates).
  • Implement Zero Trust security principles across cloud environments.

Governance, Risk, and Compliance

  • Ensure compliance with FedRAMP High, FISMA, NIST 800-53, NIST 800-171, and agency-specific security requirements.
  • Conduct security assessments, control validations, and risk analyses.
  • Support Authority to Operate (ATO) activities and continuous monitoring programs.
  • Develop security documentation, System Security Plans (SSPs), POA&Ms, and architecture artifacts.

Security Operations

  • Implement and optimize Microsoft Sentinel SIEM solutions.
  • Develop Kusto Query Language (KQL) detections, dashboards, and threat hunting capabilities.
  • Investigate security alerts, incidents, and potential compromises.
  • Coordinate incident response and remediation activities.

Identity and Access Management

  • Configure Microsoft Entra ID security controls.
  • Implement Role-Based Access Control (RBAC), Privileged Identity Management (PIM), Conditional Access, and Multi-Factor Authentication (MFA).
  • Support privileged access governance and Zero Trust initiatives.

Vulnerability & Threat Management

  • Perform vulnerability assessments and remediation planning.
  • Utilize Microsoft Defender for Cloud recommendations and secure score improvements.
  • Implement threat protection, workload security, and endpoint security controls.
  • Conduct proactive threat hunting and security posture assessments.

DevSecOps Integration

  • Integrate security controls into CI/CD pipelines.
  • Automate compliance validation and security testing.
  • Implement secure coding and deployment practices.
  • Collaborate with development teams to embed security throughout the software lifecycle.

Required Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or related field.
  • 10+ years of information security experience.
  • 3+ years of Azure cloud security engineering experience.
  • Experience supporting federal government or highly regulated environments.
  • Hands-on experience with:
    • Microsoft Azure
    • Microsoft Defender for Cloud
    • Microsoft Sentinel
    • Azure Firewall
    • Entra ID (Azure AD)
    • KQL
    • Terraform or Bicep
    • Azure Monitor and Log Analytics
  • Strong knowledge of:
    • FedRAMP
    • FISMA
    • NIST 800-53
    • Zero Trust Architecture
    • Secure cloud networking
    • Incident response and threat detection

Preferred Qualifications

  • Experience with Azure Government environments.
  • Familiarity with CMMC, RMF, and federal ATO processes.
  • Experience supporting federal audits and assessments.
  • Knowledge of Azure DevOps, GitHub Enterprise, and CI/CD security.

Preferred Certifications

  • Microsoft Certified: Azure Security Engineer Associate (AZ-500)
  • Microsoft Certified: Cybersecurity Architect Expert (SC-100)
  • Microsoft Certified: Azure Solutions Architect Expert (AZ-305)
  • CISSP
  • CCSP
  • CISM
  • CISA

Several of these certifications and technical skills are specifically called out in federal Azure security positions found internally.

Security Clearance

  • U.S. Citizenship required.
  • Ability to obtain and maintain a Public Trust, Secret, or higher security clearance, depending on contract requirements. This requirement appears frequently in internal government-focused Azure security roles.

Desired Traits

  • Strong analytical and problem-solving skills.
  • Ability to communicate technical risks to executive and government stakeholders.
  • Experience working in Agile and DevSecOps environments.
  • Strong documentation and presentation skills.
  • Ability to operate effectively in fast-paced federal modernization programs.

This role is not eligible to be performed in Colorado, California, District of Columbia, Hawaii, Illinois, Massachusetts, Maryland, Minnesota, New Jersey, New York, Nevada, Rhode Island, Vermont, Virginia, Maine or Washington.

It is unlawful to discriminate against a prospective employee due to the individual's status as a veteran.

Please note that salary ranges provided for this role on external job boards are salary estimates made by outside parties and may not be accurate.

Thank you for considering employment with Fiserv.  Please:

  • Apply using your legal name
  • Complete the step-by-step profile and attach your resume (either is acceptable, both are preferable).

Our commitment to Equal Opportunity:

Fiserv is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, gender, gender identity, sexual orientation, age, disability, protected veteran status, or any other category protected by law. 

If you have a disability and require a reasonable accommodation in completing a job application or otherwise participating in the overall hiring process, please contact AskHR.US@fiserv.com. Please note our AskHR representatives do not have visibility to your application status. Current associates who require a workplace accommodation should refer to Fiserv’s Disability Accommodation Policy for additional information.

Note to agencies:

Fiserv does not accept resume submissions from agencies outside of existing agreements. Please do not send resumes to Fiserv associates. Fiserv is not responsible for any fees associated with unsolicited resume submissions.

Warning about fake job posts:

Please be aware of fraudulent job postings that are not affiliated with Fiserv. Fraudulent job postings may be used by cyber criminals to target your personally identifiable information and/or to steal money or financial information. Any communications from a Fiserv representative will come from a legitimate Fiserv email address.