跳到内容

通用信息

地点:Kirkland, Washington, United States of America 
  • 地点: Kirkland
  • 州:
  • 国家/地区: United States of America


角色 ID
204317
工作人员类型
Regular Employee
工作室/部门
CTO - Security
弹性工作安排
Hybrid

描述和要求

Electronic Arts 打造更高层次的娱乐体验,激励世界各地的玩家和粉丝。在这里,每个人都是故事的主角。活跃社群,畅联全球。这里充满创造力,鼓励新观点,注重好创意。这是一支人人都能让游戏成为现实的团队。

***Open to Remote***

We are looking for an experienced senior security architect to join our team. You will design the security architecture for our enterprise core products, with a focus on securing users & administrators, enterprise applications, data, and systems. You will also lead the strategy and work with teams on security mission-critical products such as Active Directory, Entra ID, M365, Device Authentication & Posture management, Red forest/Enhanced Security Admin Environment (ESAE) for Admins.

You will also lead EA’s technical security standard track based on CIS benchmarks to maintain compliance on enterprise systems, and applications. We are looking for a candidate with understanding of security principles, technologies, and best practices across several domains, including network security, application security, data protection, identity management, and cloud security.

You will report to the Director of the Enterprise Security Engineering Core & Admin team

Responsibilities

  • Lead the enhancement of a secure administrative platform for administrators based on Enhanced Security Admin Environment (ESAE) architecture & privileged access strategy

  • Secure Active Directory, Okta and Entra ID, ensuring that directory services are protected against unauthorized access and vulnerabilities.

  • Lead the strategy and architecture for compliance with EA’s security standards based on CIS benchmarks for enterprise systems.

  • Perform application security reviews and threat modeling on mission-critical systems, & enterprise applications to find and address potential security risks.

  • Lead the strategy and architecture for device authentication and posture management solution for application access.

  • Lead the implementation of a zero-trust security model across the organization, ensuring protection of user and admin accounts, systems and data.

  • Stay up to date with the latest industry security trends, threats, and technologies, and  improve the security posture of our enterprise systems, and M365 environments.

  • Periodically update security policies to incorporate the latest security controls.

  • Lead the cloud enclave strategy and design to ensure that critical services such as Active Directory can be securely hosted in the cloud enclave.

  • Ensure that we have a thoroughly tested recovery plan in place to recover from service failures or compromises for services such as Active directory, Okta, Entra ID, and Secure Administrative platforms/Red Forest.

  • Work with EA’s principal cloud security architect and help engineer and development of security architectures and solutions that ensure the protection of our cloud-based systems and data in M365, AWS & GCP.

  • Create comprehensive documentation for security architectures, procedures & best practices.

Qualifications

  • 10+ years of experience in information security, with at least 4 years in a senior or architectural role

  • Technical skills in areas such as network security, cryptography, identity management, threat modeling, application security, and risk management.

  • Experience with zero trust security models, identity and access management, directory synchronization, and federation services.

  • Experience integrating enterprise Identity and Access Management (IAM) with CSPs such as Azure, AWS, and GCP.

  • Experience with device authentication solutions and posture management strategies using Entra ID, Opswat, and Intune.

  • Expertise in securing directory services such as Active Directory, Okta and Entra ID.

  • Familiarity with CIS benchmarks and other industry security standards.

  • Knowledge of authentication standards/protocols (NTLM, Kerberos, LDAP, SAML, FIDO2/WebAuthN, OIDC, OAuth2.0).

  • Experience developing and testing recovery plans for service failures or compromises for critical services such as Active directory, Entra ID.

  • Experience with cloud security architectures and solutions (AWS, Azure, Google Cloud) with a emphasis on securing the M365 ecosystem.

  • Experience with network protocols, encryption techniques, and security frameworks such as NIST and ISO/IEC 27001.

  • Relevant certifications such as CISSP, CISM, CCSP, or similar

  • Experience with infrastructure as code (IaC) and automation tools (Terraform, Ansible)



Electronic Arts
我们拥有全面的游戏组合和丰富的体验,在世界各地设有分支机构,而且在整个 EA 提供大量机会。我们非常重视适应能力、韧性、创造力和好奇心。我们提供领导岗位让您发挥潜力,为学习和尝试提供空间,赋能您出色地完成工作并寻求成长的机会。

我们的福利计划十分全面,注重身体、情感、财务、职业和社区幸福感,提供带薪休假、育儿假以及免费游戏等更多福利来助力大家维持生活平衡。我们营造和谐的环境,让各个团队始终都能尽展所能。

Electronic Arts 是一个注重机会平等的雇主。在聘用员工时不会考虑其种族、肤色、国籍、血统、生理性别、社会性别、性别认同或表达、性取向、年龄、遗传信息、宗教、身心障碍、医疗状况、怀孕状况、婚姻状况、家庭状况或兵役状况,或任何受法律保护的其他特征。我们也会遵守相关法律,考虑招聘有过犯罪记录的合格应聘者。EA 还会根据适用法律的要求,为合资格的残障人士提供工作场所的便利。