Join the leader in entertainment innovation and help us design the future. At Dolby, science meets art, and high tech means more than computer code. As a member of the Dolby team, you’ll see and hear the results of your work everywhere, from movie theaters to smartphones. We continue to revolutionize how people create, deliver, and enjoy entertainment worldwide. To do that, we need the absolute best talent. We’re big enough to give you all the resources you need, and small enough so you can make a real difference and earn recognition for your work. We offer a collegial culture, challenging projects, and excellent compensation and benefits, not to mention a Flex Work approach that is truly flexible to support where, when, and how you do your best work.
The IT function works to accelerate business growth through ensuring that the company’s operations run efficiently and effectively, ultimately enabling the achievement of company goals.
Dolby is seeking a talented Senior Information Security Architect to join its Security team.
The Information Security Architect works with various areas of the business to collaborate on strategy, help design secure solutions and build standards for how those solutions should be implemented and maintained in the future. The ideal candidate will have a keen eye toward the future, understanding where the organization should be headed regarding information security and are helping to build the framework to get there. This key role will partner with the rest of the Information Security team, IT, Engineering, Legal and other parts of the business on critical projects.
Responsibilities
- Build strong partnerships and collaborate with stakeholders across multiple business units to ensure a robust, secure service posture from design to implementation in multiple products and services.
- Serve as a security subject matter expert (SME) resource across multiple security domains and as a Trusted Advisor to stakeholders across the organization.
- Create, refine, deliver and evangelize information security standards to be used throughout the enterprise that balance business needs and external requirements.
- Conduct and attend project meetings to provide security and governance input throughout project lifecycles.
- Coordinate and perform threat modeling and risk assessments of technology projects and systems.
- Recommend, prioritize, design, and monitor the implementation of security controls.
- Educate, advise and influence decision-makers in the areas of Cloud Security, API security, software security, etc.
- Implement security tools and capabilities.
- Participate in events and incidents monitoring and investigations.
- Stay abreast of technology and security trends and capabilities including Cloud, APIs, Software development frameworks, etc.
- Provide support to team members around the globe.
- Mentor more junior team members.
Requirements
You:
- Are a team player and strong partner.
- Are an avid learner.
- Possess over 10 years of experience in security architecture or security engineering.
- Skilled in designing and implementing security controls for both on-premises and cloud infrastructures.
- Able to develop security solutions for a variety of technologies.
- Capable of defining security policies standards and guidelines that align with business objectives and regulatory requirements.
- Adept at identifying and assessing potential security risks, developing mitigation strategies, and ensuring compliance with relevant security standards and regulations.
- Experienced in researching emerging security trends and recommending effective solutions.
- Expertise in risk assessment, threat modeling, and vulnerability analysis.
- In-depth knowledge of security frameworks, methodologies, and tools, including CIS Controls, CSA Cloud Controls Matrix (CCM), MITRE, NIST, ISO 27001, HIPAA, SOX 2, PCI, and state privacy laws.
- Have excellent written and verbal communication skills.
- Have the ability to interact with team members at all levels from the end user to senior leadership.
- Have the ability to drive continuous improvements and provide solutions for various security gaps.
- Leadership skills to guide and mentor security team members.
- Can work independently with minimum direction in a fast-paced environment as well as collaborate effectively while maintaining an 'options before obstacles' mindset.
Any one or more of these make you special:
- Exceptional people skills.
- Thorough understanding of risk management principles and processes.
- Hands-on offensive security experience.
- Hands-on experience with various security tools.
- Experience as an administrator, site reliability, or engineer in a non-security role.
- Experience with hosted and cloud services, SaaS, PaaS, and IaaS, and the related security implications and control approaches.
#J-18808-Ljbffr