Black & Veatch is hiring a Cybersecurity Architect, a senior key role focused on defining, designing, and maintaining our enterprise-wide security architecture. You will align our security posture with business goals, risk strategies, and the evolving threat landscape.
What You'll Do
- Develop and maintain a comprehensive security architecture strategy, including plans, roadmaps, processes, and artifacts for cloud, on-premise, and hybrid environments.
- Monitor emerging digital business changes and threat developments; update security strategies, architectures, and reference designs accordingly.
- Validate IT infrastructure, configurations, and tools against best practices and recommend enhancements to mitigate risks.
- Collaborate with stakeholders to assess and integrate security controls; evaluate third-party SOWs, audit reports, and provider controls.
- Coordinate security for OT/IoT systems and serve as primary liaison for control allocation and assurance.
- Establish baseline security configuration standards for operating systems, network segmentation, least-privilege access, and identity and access management (IAM).
- Define and maintain standards and procedures for data encryption, tokenization, and protection of sensitive data.
- Draft, document, and maintain security policies, standards, procedures, and architecture artifacts.
- Conduct threat modeling for applications, services, and systems; identify architecture gaps and develop risk management plans.
- Stay current on emerging security technologies, threats, trends, and best practices; evaluate new tools, services, and vendors.
- Collaborate with DevOps, development, and project teams to promote secure coding practices and advise on security planning.
- Support security testing, validation, and internal audits of controls; liaise with internal audit and vendor management.
- Analyze the security impact of new systems, interfaces, or changes on the existing environment.
- Supervise work of others; responsible for hiring, discipline, and pay administration of subordinates.
What We're Looking For
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Network Engineering, or a closely related field.
- 8-10+ years in InfoSec or Information Technology with a significant portion in cybersecurity.
- All applicants must be able to complete pre-employment onboarding requirements.
Nice to Have
- Hands-on expertise managing security infrastructure: firewalls, IPS, WAFs, endpoint protection, SIEM, and log management.
- Proven track record building enterprise AI security frameworks and controls for generative AI, LLMs, federated learning, and AI supply chain risks.
- Direct experience securing applications and infrastructure in public clouds (AWS, Azure).
- Practical design and implementation of IAM technologies and services.
- Excellent communication skills; able to translate complex security topics into clear business language.
Technical Stack
- firewalls, IPS, WAF, endpoint protection, SIEM, log management, AWS, Azure, IAM
Team & Environment
Part of Black & Veatch's Business Enablement group, which includes Digital & Information Technology, Global Finance, Global Human Resources, Legal, Risk Management, and Government Affairs and Real Estate and Building Services. Reports to the CISO.
Benefits & Compensation
- Competitive compensation
- 401K match
- Benefits that start day one
- Flexible work environment
- Health care benefits including medical, dental and vision insurances
- Disability insurance
- Wellness program
- Flexible work schedules
- Paid vacation and holiday time
- Sick time
- Dependent sick time
- Company-matched 401k plan
- Adoption reimbursement
- Tuition reimbursement
- Vendor discounts
- Employment referral program
- AD&D insurance
- Pre-taxed accounts
- Voluntary legal plan
- B&V Credit Union
- Performance-based bonus program
- Employee stock ownership (ESOP)
Work Mode
This role is a hybrid position.
Black & Veatch does not discriminate on the basis of age, race, religion, color, sex, national origin, marital status, genetic information, sexual orientation, gender Identity and expression, disability, veteran status, pregnancy status or other status protected by law.





