Cybersecurity Architect - Information Technology
Fisher Dynamics · St. Clair Shores, Michigan, United States
Motor Vehicle Manufacturing · 1,001-5,000 employees
About the role
The Cybersecurity Architect will design and implement comprehensive security architecture across the ERP platform, AI/LLM infrastructure, and cloud environments. They are responsible for conducting threat modeling, establishing security standards, and ensuring compliance with regulatory requirements.
What they look for
Requirements
Candidates must have a Bachelor's degree in a relevant field and 5-8 years of professional cybersecurity experience. Strong expertise in security architecture, cloud platforms, and secure coding practices is required, along with local residency in the Metro Detroit area.
Full description
Fisher Dynamics is the automotive industry’s premier supplier of safety – critical seat structures and mechanisms. Steeped in a tradition of excellence, and rooted in automotive innovation, the Fisher story is filled with automotive manufacturing milestones. We bring design, engineering, and manufacturing vehicle seating systems to a new level with innovative thinking. We’re about cutting edge ideas. We have created an environment that encourages an uninterrupted flow of revolutionary concepts and unique ideas.
The Cybersecurity Architect will design and implement comprehensive security architecture and controls for Fisher Dynamics' custom ERP platform and AI/LLM infrastructure. This position will architect security at every layer: application, data, infrastructure, and AI model integrity.
Candidates MUST be local to the Metro Detroit Area. Relocation is not available.
This role does not provide immigration sponsorship. Candidates must be legally authorized to work in the US without requiring sponsorship now or in the future.
Essential Duties & Responsibilities:
- Security Architecture & Design• Design end-to-end security architecture for the ERP platform across application, data, infrastructure, and AI layers.
- Conduct threat modeling and risk assessments for ERP modules and workflows.
- Define security controls, best practices, and standards for the platform.
- Design authentication, authorization (RBAC), encryption, and data protection mechanisms.
- Architect secure APIs, data access patterns, and audit logging systems.
- Application & API Security• Establish secure coding standards and OWASP compliance requirements for development teams.
- Review architecture and code for security vulnerabilities; recommend remediation.
- Conduct security reviews of APIs, integrations, and third-party connections.
- Implement security testing (SAST, DAST) in CI/CD pipelines.
- Design mechanisms to prevent common attacks: SQL injection, cross-site scripting, privilege escalation.
- Data Security & Privacy• Design data protection architecture for sensitive ERP data: financial records, supplier information, production data.
- Implement encryption standards for data at rest and in transit.
- Establish data access controls and audit logging to track data usage and modifications.
- Design privacy controls compliant with data governance and regulatory requirements.
- Ensure compliance with data retention, purging, and archival policies.
- AI/ML Security & Model Integrity• Design security controls for ML/AI models and feature pipelines to prevent model poisoning and tampering.
- Implement monitoring for adversarial attacks on models and anomalous predictions.
- Secure model serving infrastructure and ensure integrity of model outputs.
- Design data isolation and access controls for training and inference data.
- Establish audit trails for model decisions and predictions.
- Cloud Infrastructure Security• Design secure cloud architecture on AWS, GCP, or Azure with proper security groups, VPCs, and network segmentation.
- Implement infrastructure hardening, patch management, and vulnerability remediation.
- Design secrets management, key rotation, and credential security.
- Establish monitoring, logging, and alerting for security incidents.
- Conduct disaster recovery and business continuity planning with security considerations.
- Compliance & Governance• Establish security policies, standards, and procedures aligned with industry best practices.
- Ensure compliance with relevant regulations (SOX, GDPR, manufacturing standards).
- Implement audit logging and reporting for regulatory compliance.
- Design security incident response and escalation procedures.
- Conduct security awareness training and promote security culture.
- Vulnerability Management & Testing• Conduct regular security assessments, penetration testing, and vulnerability scanning.
- Identify, prioritize, and track security vulnerabilities and their remediation.
- Perform security testing of new features and system changes before deployment.
- Monitor for emerging threats and security advisories; recommend updates.
- Support production security incident investigation and resolution.
Qualifications
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Education
Bachelor's degree in Computer Science, Cybersecurity, Information Security, or related field.
Master's degree preferred.
CISSP, CCSK, or similar certifications strongly preferred.
Experience
5-8 years of professional cybersecurity and security architecture experience.
Demonstrated experience designing security architectures for large-scale systems or enterprise platforms required.
Experience with ERP, financial systems, or mission-critical applications strongly preferred.
Skills
Expert knowledge of security architecture, threat modeling, and risk assessment.
Advanced understanding of application security, secure coding, and OWASP Top 10.
Deep expertise in cryptography, encryption standards, and key management.
Strong knowledge of network security, firewalls, VPNs, and network segmentation.
Experience with cloud security (AWS, GCP, Azure) and cloud-native security patterns.
Proficiency with security tools: vulnerability scanners, SIEM, intrusion detection.
Knowledge of compliance frameworks (SOX, GDPR, HIPAA, PCI-DSS).
Experience with identity and access management (IAM, RBAC, OAuth, SAML).
Understanding of API security, authentication/authorization protocols.
Knowledge of secure data architecture and data protection techniques.
Familiarity with ML/AI security and model integrity concerns.
Strong knowledge of incident response and forensics.
Experience with penetration testing and security assessments.
Excellent communication skills for presenting security concepts to technical and executive audiences.
Security certifications (CISSP, CCSK, CEH) preferred.
Work Environment
Working environment and physical requirements of this position are those typical of an office setting and manufacturing environment.
Position requires collaboration with technical teams and requires on-call availability for security incidents
Physical Demands
Ability to lift 40lbs