콘텐츠로 건너뛰기

일반 정보

지역: Kirkland, Washington, United States of America 
  • 장소: Kirkland
  • 시/도:
  • 국가: United States of America


역할 ID
204317
근로자 유형
Regular Employee
스튜디오/부서
CTO - Security
유연근무제
Hybrid

설명 및 참여 요건

Electronic Arts는 전 세계 플레이어와 팬들에게 영감을 불어넣을 차세대 엔터테인먼트 경험을 제작합니다. 여기에선 모든 이가 이야기의 일부가 됩니다. 전 세계를 연결하는 커뮤니티의 일부이자 창의력이 번창하고 새로운 관점을 제시하며 아이디어가 중요한 곳이며 모두가 플레이 제작에 참여할 수 있는 팀입니다.

***Open to Remote***

We are looking for an experienced senior security architect to join our team. You will design the security architecture for our enterprise core products, with a focus on securing users & administrators, enterprise applications, data, and systems. You will also lead the strategy and work with teams on security mission-critical products such as Active Directory, Entra ID, M365, Device Authentication & Posture management, Red forest/Enhanced Security Admin Environment (ESAE) for Admins.

You will also lead EA’s technical security standard track based on CIS benchmarks to maintain compliance on enterprise systems, and applications. We are looking for a candidate with understanding of security principles, technologies, and best practices across several domains, including network security, application security, data protection, identity management, and cloud security.

You will report to the Director of the Enterprise Security Engineering Core & Admin team

Responsibilities

  • Lead the enhancement of a secure administrative platform for administrators based on Enhanced Security Admin Environment (ESAE) architecture & privileged access strategy

  • Secure Active Directory, Okta and Entra ID, ensuring that directory services are protected against unauthorized access and vulnerabilities.

  • Lead the strategy and architecture for compliance with EA’s security standards based on CIS benchmarks for enterprise systems.

  • Perform application security reviews and threat modeling on mission-critical systems, & enterprise applications to find and address potential security risks.

  • Lead the strategy and architecture for device authentication and posture management solution for application access.

  • Lead the implementation of a zero-trust security model across the organization, ensuring protection of user and admin accounts, systems and data.

  • Stay up to date with the latest industry security trends, threats, and technologies, and  improve the security posture of our enterprise systems, and M365 environments.

  • Periodically update security policies to incorporate the latest security controls.

  • Lead the cloud enclave strategy and design to ensure that critical services such as Active Directory can be securely hosted in the cloud enclave.

  • Ensure that we have a thoroughly tested recovery plan in place to recover from service failures or compromises for services such as Active directory, Okta, Entra ID, and Secure Administrative platforms/Red Forest.

  • Work with EA’s principal cloud security architect and help engineer and development of security architectures and solutions that ensure the protection of our cloud-based systems and data in M365, AWS & GCP.

  • Create comprehensive documentation for security architectures, procedures & best practices.

Qualifications

  • 10+ years of experience in information security, with at least 4 years in a senior or architectural role

  • Technical skills in areas such as network security, cryptography, identity management, threat modeling, application security, and risk management.

  • Experience with zero trust security models, identity and access management, directory synchronization, and federation services.

  • Experience integrating enterprise Identity and Access Management (IAM) with CSPs such as Azure, AWS, and GCP.

  • Experience with device authentication solutions and posture management strategies using Entra ID, Opswat, and Intune.

  • Expertise in securing directory services such as Active Directory, Okta and Entra ID.

  • Familiarity with CIS benchmarks and other industry security standards.

  • Knowledge of authentication standards/protocols (NTLM, Kerberos, LDAP, SAML, FIDO2/WebAuthN, OIDC, OAuth2.0).

  • Experience developing and testing recovery plans for service failures or compromises for critical services such as Active directory, Entra ID.

  • Experience with cloud security architectures and solutions (AWS, Azure, Google Cloud) with a emphasis on securing the M365 ecosystem.

  • Experience with network protocols, encryption techniques, and security frameworks such as NIST and ISO/IEC 27001.

  • Relevant certifications such as CISSP, CISM, CCSP, or similar

  • Experience with infrastructure as code (IaC) and automation tools (Terraform, Ansible)



Electronic Arts 소개
EA는 전 세계의 다양한 게임과 경험, 지역, 그리고 기회에 대한 광범위한 포트폴리오를 보유함에 있어 자랑스럽게 생각합니다. 당사는 적응력, 회복력, 창의성, 호기심을 중시합니다. 잠재력을 발휘하는 리더십부터 학습과 실험을 위한 공간을 만드는 것까지, 당사는 여러분이 훌륭한 일을 하고 성장의 기회를 추구할 수 있도록 힘을 실어드립니다.

EA는 신체적, 정서적, 재정적, 직업적, 지역 사회 복지에 중점을 둔 복리후생 프로그램을 통해 유급 휴가와 육아 휴가, 무료 게임 제공 등을 통해 균형 잡힌 삶을 지원합니다. 당사는 팀이 항상 최선을 다할 수 있는 환경을 육성합니다.

Electronic Arts는 동등한 고용 기회를 제공합니다. 채용에 관한 모든 결정은 인종, 피부색, 출신 국가, 혈통, 성별, 성 정체성 또는 성 표현, 성적 성향, 나이, 유전 정보, 종교, 장애, 질병, 임신, 결혼, 가족 상황, 군 복무 여부 또는 기타 법으로 보호되는 기타 특성과 관계없이 내려집니다. 당사는 또한 해당 법률에 따라 전과 기록이 있는 자격을 갖춘 지원자도 채용 대상으로 고려합니다. 또한, EA는 관련 법률에서 요구하는 대로 장애가 있는 자격을 갖춘 개인을 위한 직장 내 편의 시설을 마련합니다.