Role description
At Rockstar Games, we create world-class entertainment experiences. Become part of a team working on some of the most rewarding, large-scale creative projects to be found in any entertainment medium - all within an inclusive, highly-motivated environment where you can learn and collaborate with some of the most talented people in the industry. Rockstar is on the lookout for a talented Security Architect who can provide cybersecurity expertise and work across teams to identify and communicate risk, mitigation options, and solutions to help safeguard employees, information systems, and intellectual property. The successful candidate will leverage cross-domain expertise to create solutions, processes, and reusable proof-of-concept models for cybersecurity while remaining at the forefront of best practices for cybersecurity policy and technological advances. This is a full-time, in-office position based out of Rockstar’s NYC headquarters in Downtown Manhattan. WHAT WE DO • The Rockstar Security team is responsible for advancing the state of information security across the company globally by prioritizing and executing security initiatives that drive down risk. • We strive to understand the threat landscape affecting our development studios, the gaming industry, and the world at large to define information security policies, standards, and procedures to safeguard our business and protect our players. • We lead efforts to build enterprise security controls ranging from endpoint protection technologies to security incident and event monitoring solutions. • We have a passion for identifying threats and vulnerabilities, and coming up with clever solutions to mitigate or remediate those risks. RESPONSIBILITIES • Gather business requirements, translate them into technical specifications, and integrate security measures into system architecture and applications. • Conduct risk assessments and identify vulnerabilities in existing systems. Develop strategies to mitigate risks and enhance security posture. • Establish, maintain, and leverage effective working relationships with all areas of technology services and external stakeholders to improve the overall service provided by the enterprise Information Security team. • Maintain accurate and up-to-date documentation for security systems and processes. • Proactively research and engage emerging vendors and technologies to understand how they may be used to solve enterprise challenges. • Maintain knowledge of current security trends, news and changes in the threat landscape and be able to interpret them into actionable advice for staff in various types of technical and non-technical roles. QUALIFICATIONS • A subject matter expert well versed in multiple technologies across security domains (e.g., Cloud Security, Security Engineering, Identity & Access Management, Network Security, Endpoint Security, Privileged Access Management, etc.). • Bachelor’s Degree in Computer Science or relevant discipline. • 8 years of experience in IT, Engineering, or related field, with considerable experience in Information Security. • 3 years in an enterprise-level security consultative role building and assessing Information Security architectures and programs. • Experience with common infrastructure technologies that support development environments: Active Directory, Microsoft Exchange, distributed software version controls systems, enterprise virtualization. • Experience with securing complex on-prem and cloud AWS, Azure, or GCP environments. • Possess industry-recognized certifications such as Certified Information Systems Security Professional (CISSP), Certified Cloud Security Professional (CCSP), and/or AWS/GCP/Azure certifications. SKILLS • Ability to communicate clearly, both verbally and written with a strong attention to detail. • Understand and articulate complex technical information to both technical and non-technical audiences. • Deep knowledge of security engineering, system and network security including authentication and security protocols. • Understanding of enterprise security controls (e.g., IDS/IDP, SIEM, Endpoint Detection & Response, Vulnerability Scanners, Next-Generation Firewalls). • Experience with industry leading security products including SIEM, Vulnerability Scanning, Firewall, and EDR technologies. • Experience with scripting and process automation.