The mission Of Radio Free Europe/Radio Liberty (RFE/RL) is to promote democratic values by providing accurate, uncensored news and open debate in countries where a free press is threatened and disinformation is pervasive. RFE/RL reports the facts, undaunted by pressure.
Radio Free Europe/Radio Liberty is looking for an IT Security Architect. Reporting to the IT Security Director, the position will interact with the IT, Network, Broadcast Engineering, and other technology departments, and will be responsible for design and architecture of IT security aspects of various RFE/RL information systems and technology solutions as well as for checking that provided services are set up with high security standards. Additionally, the role will participate in reviewing current security measures, identifies weaknesses, recommends enhancements, and contributes to the overall information security continuous monitoring program.
Your responsibilities:
- Play an important role in designing and developing IT security architecture which supports technology solutions.
- Participate in designated projects and business initiatives as the security subject matter expert.
- Review security requirements and assess the security posture to identify gaps or improvements.
- Support the development and implementation of security and compliance legislation, such as GDPR or FISMA.
- Review business processes from security perspective and identify threats, risks, and solutions accordingly.
- Attend and participate in projects and change management committees. This includes interacting with business units and technical teams to understand what is coming and how their projects can be more secure from the beginning.
- Contribute to RFE/RL security standards, guidelines, and policies.
- Work with other teams to provide repetitive validation testing prior to production while allowing for a continuous cycle of system development followed by security assessments.
- Document security findings with reasonable methods to secure.
- Remaining up to date with the latest security systems, standards, authentication protocols, and products.
Your profile:
- Preferably a university degree in IT or relevant technical discipline.
- Experience in an IT Security role with responsibility for IT Security architecture design and implementation.
- Security certifications.
- Experience with security protocols and authentication.
- Knowledge of current IT risks, security implementations, operating systems, and computer software.
- Interest in cyber security topics and continuing development in the domain of IT security.
- Strong organizational and communication skills (both verbal and written).
- Interpersonal skills with the ability to effectively communicate with a wide range of individuals and teams.
- Team oriented, with the ability to build strong working relationships and a positive work environment.
- Receptive to feedback, willing to learn, embracing continuous improvement.
- Strong command of English is required.
- Czech or other languages a plus.
Nice to have:
- Proficiency in Microsoft security best practices, Microsoft Security Stack (including Microsoft Defender and Microsoft Sentinel), Exchange Online Protection, servers and applications hosted in Microsoft Azure, Data Loss Prevention, Conditional Access App Control, etc.
- DevSecOps experience.
- Knowledge of operational models, business continuity and disaster recovery planning.
What we offer:
- Unique workplace with a meaningful mission: https://about.rferl.org.
- Opportunity to use your IT security expertise to support that mission.
- Friendly, inclusive working team.
- Employment benefits (5 weeks of vacation, 13 sick days, Retirement Savings Contribution Plan, Fitness Benefit, Meal Allowance, Public Transport Contribution, Life Insurance, Language Courses, Summer Allowance, Medical Care on Premises).
This is a locally recruited full-time position on a one-year assignment initially, with the possibility of extension for an open-ended contract after one year. The opportunity is open preferably to applicants with the legal right to work in the Czech Republic, who are expected to work in RFE/RL Prague’s office in a hybrid working model of a blend of in-office and remote work in the Czech Republic.