2

Remote Network Security Architect Jobs in Iowa (NOW HIRING)

Cloud Architect

Des Moines, IA · Remote

$63.50 - $80.75/hr

Architect, implement, and maintain the state-wide CrowdStrike Falcon platform architecture across ... Security Ecosystems: Solid grasp of network security (firewalls, IDS/IPS), Identity & Access ...

Remote - candidate can be considered remote if currently lives in the US and lives more than 50 ... Advocate for secure-by-default design, applying modern security principles and working knowledge of ...

Has established network of contacts within the community including clients, professionals ... Flexible work schedule. * Remote working options. * Competitive compensation packages.

Lead Infrastructure Engineer

Des Moines, IA · On-site +1

$104K - $137K/yr

Understanding of networking, security, identity management, and enterprise infrastructure architecture. * Bachelor's degree in computer science, Information Technology, Engineering, or related field ...

New

next page

Showing results 1-20

Remote Network Security Architect information

What is a remote network security architect?

A Remote Network Security Architect is a cybersecurity professional who designs, implements, and manages secure network infrastructures for organizations while working from a remote location. Their responsibilities include assessing network vulnerabilities, developing security policies, and selecting appropriate technologies to protect data and systems from cyber threats. They collaborate with IT teams to ensure compliance with security standards and respond to incidents, all while leveraging secure remote work tools. This role requires a deep understanding of network protocols, security frameworks, and emerging threats in the digital landscape.

How does a remote network security architect typically collaborate with other IT teams to ensure comprehensive security?

As a Remote Network Security Architect, you will work closely with various IT teams, including system administrators, developers, and operations staff, to design and implement secure network solutions. Collaboration usually occurs through virtual meetings, shared documentation, and security review sessions to align on protocols and address vulnerabilities. Effective communication and the ability to explain complex security concepts to non-specialists are essential for ensuring team-wide understanding and compliance. This cross-functional teamwork is crucial for maintaining a resilient security posture across the organization's digital assets.

What are the key skills and qualifications needed to thrive as a remote network security architect, and why are they important?

To thrive as a Remote Network Security Architect, you need a deep understanding of network protocols, security frameworks, and architecture best practices, usually backed by a degree in computer science or a related field. Familiarity with firewalls, VPNs, IDS/IPS, cloud security platforms, and certifications like CISSP or CCNP Security are typically required. Strong analytical thinking, problem-solving skills, and the ability to communicate complex concepts clearly are essential soft skills. These abilities ensure robust protection of critical systems and data, effective remote collaboration, and the implementation of scalable, secure network solutions.

What is the difference between Remote Network Security Architect vs Remote Network Security Engineer?

AspectRemote Network Security ArchitectRemote Network Security Engineer
CertificationsCCNP, CISSP, CISACCNA, CompTIA Security+
Work EnvironmentDesigns security frameworks, collaborates with teamsImplements security measures, monitors networks
Employer & Industry UsageTech firms, finance, healthcareIT service providers, cybersecurity firms

While both roles focus on network security, the Remote Network Security Architect primarily designs security strategies and frameworks, whereas the Remote Network Security Engineer implements and maintains these security measures. The architect role involves higher-level planning and collaboration, often requiring advanced certifications like CISSP, while engineers focus on technical execution and monitoring.

What are the most commonly searched types of Network Security Architect jobs in Iowa?

The most popular types of Network Security Architect jobs in Iowa are:

What are popular job titles related to Remote Network Security Architect jobs in Iowa?

For Remote Network Security Architect jobs in Iowa, the most frequently searched job titles are:

What job categories do people searching Remote Network Security Architect jobs in Iowa look for?

The top searched job categories for Remote Network Security Architect jobs in Iowa are:

What cities in Iowa are hiring for Remote Network Security Architect jobs?

Cities in Iowa with the most Remote Network Security Architect job openings:

CroudStrike Architect - REMOTE

André Global, Inc.

Des Moines, IA • On-site, Remote

Contractor

Posted 3 days ago

New


Job description

This will be a REMOTE contractor role with the State of Iowa.
The Senior Tier 3 CrowdStrike Architect serves as the primary technical authority for the State of Iowa's Enterprise Endpoint Detection and Response (EDR / XDR) platform. Operating within the Information Security Services (ISS) Bureau, this role is responsible for the overall architecture, administration, multi-tenant federation, fine-tuning, and escalation engineering of the CrowdStrike Falcon ecosystem across state agencies.
This position acts as the highest level of technical escalation (Tier 3) for endpoint incidents, advanced threat hunting, platform troubleshooting, and complex integrations (such as Next-Gen SIEM, threat intelligence, and automated orchestration).
1. Platform Architecture & Multi-Tenant Administration
• Architect, implement, and maintain the state-wide CrowdStrike Falcon platform architecture across multi-tenant environments (CID hierarchy, RBAC, policy groups).
• Oversee sensor deployment strategies, policy prevention/detection tuning, custom rule creation (IOAs/IOCs), and feature rollout schedules across diverse agency environments.
• Manage CrowdStrike platform health, agent updates, host group management, and agent troubleshooting across Windows, macOS, Linux, and virtualized workloads.
2. Tier 3 Incident Escalation & Response Engineering
• Act as the final technical escalation point for complex endpoint threats, zero-day vulnerabilities, and persistent malware identified by Tier 1/2 SOC analysts.
• Execute advanced containment, remediation, and live forensics using Real-Time Response (RTR) and custom scripts during critical incidents.
• Partner with SOC Analysts and Incident Response teams to refine playbooks, minimize Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR), and drive risk reduction.
3. Integration, Automation & Data Pipeline
• Design and support telemetry integration between CrowdStrike Falcon, central SIEM/SOAR platforms, network defenses, and threat intelligence feeds.
• Introduce new integration ideas to better levergage existing security tools.
• Leverage CrowdStrike Fusion SOAR workflows to automate routine containment, notifications, and response actions.
• Align endpoint security strategies with Identity Threat Detection and Response (ITDR) and Cloud Security Posture Management (CSPM) modules as platform needs evolve.
4. Stakeholder Enablement, Training & Vendor Management
• Translate complex technical threat data into actionable guidance for agency IT administrators and executive leadership.
• Develop dashboards using the CrowdStrike API to collect daily vulnerability data, and other key metrics, providing clear and actionable visibility into the enterprise environment.
• Develop standardized operating procedures (SOPs), deployment guides, and platform hardening specifications for state agency IT partners.
• Serve as the primary technical point of contact with CrowdStrike engineering and technical account managers (TAMs) to drive feature requests and resolve critical bugs.
• Provide formal and informal technical mentoring and training to Tier 1/2 SOC staff.
Required Technical Experience
• Platform Mastery: 4+ years of hands-on experience engineering, deploying, and maintaining CrowdStrike Falcon at enterprise scale (10,000+ endpoints).
• Tier 3 IR Capabilities: Demonstrated proficiency using CrowdStrike Real-Time Response (RTR), writing custom IOAs/IOCs, and performing endpoint threat hunting.
• OS & Scripting: Strong knowledge of Windows, Linux, and macOS internals, along with scripting capabilities (PowerShell, Python, Bash) for automated remediation and API integration.
• Security Ecosystems: Solid grasp of network security (firewalls, IDS/IPS), Identity & Access Management (AD/Entra ID), patch management, vulnerability assessments, and MITRE ATT&CK framework mapping.
Required Certifications (Must hold at least one active certification)
• CrowdStrike Specific (Highly Preferred):
CrowdStrike Certified Falcon Administrator (CCFA)
CrowdStrike Certified Falcon Responder (CCFR)
CrowdStrike Certified Falcon Hunter (CCFH)
• Industry Certifications:
CISSP, GCFA, GCIH, GSEC, CISA, or equivalent advanced security credential.
Professional & Soft Skills
• Integrity & Ethics: Unwavering commitment to confidentiality, integrity, and compliance standards necessary for state government operations.
• Communication & Translation: Proven ability to explain technical risk to non-technical stakeholders and state agency leaders clearly.
• Complex Problem Solving: High analytical capability to navigate complex multi-tenant environments, agency-specific constraints, and conflicting operational priorities.
• Collaboration & Inclusion: Strong interpersonal skills with a commitment to fostering a diverse, supportive, and team-oriented working environment.
Preferred Qualifications
• Prior experience in state/local government (SLTT), higher education, or large-scale multi-tenant enterprise environments.
• Experience integrating CrowdStrike Falcon APIs with external automation platforms or SIEMs (e.g., Splunk, Microsoft Sentinel, Palo Alto Cortex).
• Familiarity with federal/state compliance frameworks (NIST SP 800-53, CJIS, HIPAA, IRS Pub 1075).
).