{"schemaVersion":"jobsearcher.job.v1","id":"2dbaa4086ce2bd5149380ea8","url":"https://jobsearcher.com/jobs/2dbaa4086ce2bd5149380ea8","canonicalUrl":"https://jobsearcher.com/jobs/2dbaa4086ce2bd5149380ea8","title":"Cyber Security Architect","description":"Leads cybersecurity architecture and control strategy across enterprise IT, operational technology, ERP, and other critical business systems. Develops and executes cybersecurity audit and assurance programs that validate controls, address compliance requirements, and drive consistent, data-informed risk treatment decisions. Develops and supports cybersecurity programs and operations to align cybersecurity outcomes with EWEB’s strategic objectives and operational needs.\nThis position opens July 31, 2026, and will remain open until filled. The first review of applications will occur on August 17, 2026. The Eugene Water & Electric Board (EWEB) is seeking a Cyber Security Architect to join a cybersecurity team supporting both IT and operational technology environments within Oregon’s largest public utility.\nThis role functions as a hands-on cybersecurity practitioner and leader working across security architecture, assurance, compliance, engineering, operations, incident response, vulnerability management, program development, and governance activities. Responsibilities are not confined to a single specialty area, and priorities shift based on operational need, risk posture, and active security conditions.\nSuccess in this role requires the ability to operate across multiple business functions and security domains, maintain effective prioritization in a high-demand environment, communicate at all levels across the organization, and apply pragmatic, risk-based judgment.\nKey Responsibilities\nCybersecurity Architecture\nProvide cybersecurity architecture development and consultation, representing Cyber Security as a member of the EWEB architecture team.\nLead and coordinate security reviews of technology solutions, including architectural, application, and compliance considerations.\nEvaluate the benefits and risks of technology solutions and identify implementation strategies to enhance security posture.\nSecurity Governance & Assurance\nDevelop, maintain, and execute cybersecurity assurance activities, including internal assessments, third-party and regulatory audit support, compliance monitoring, and control validation.\nDevelop and maintain cybersecurity standards and related documents to support security governance and operational risk management.\nProvide risk treatment recommendations to address non-compliance, remediation needs, audit and assessment findings, and other assurance outcomes.\nCybersecurity Program Development\nDevelop and mature cybersecurity programs and capabilities, including processes, metrics, roles and responsibilities, resources, inventories, reporting mechanisms, accountability, and performance optimization.\nLead the cybersecurity education and awareness program to mature organizational risk awareness and security culture.\nOperational Security Enablement\nLead and support incident response program development, readiness, and execution, including plans, runbooks, response activities, and post-incident improvement.\nElevate operational security capabilities by integrating monitoring and other telemetry into actionable analysis and risk-informed response.\nProvide primary and/or backup support for designated cybersecurity programs, processes, and technical security controls.\nNote: This job posting is intended to represent key areas of responsibility. It is not meant to be all inclusive and does not prescribe or restrict the work that may be assigned.\nWhat You’ll Bring\nKnowledge of:\nTechnology architecture, engineering, and technical control design across the enterprise technology stack, including cloud, identity, network, endpoint, database, and related security technologies.\nCybersecurity governance, risk, and compliance, including the ability to evaluate technical security risks and translate them into business impact and risk treatment considerations.\nPlanning and performing cybersecurity assessments and supporting audits, including evaluating control design, implementation, and effectiveness.\nSAP or similar ERP security and control environments, including related experience with access controls, segregation of duties, role design, and evaluation of application-level security controls.\nOperational technology (OT) security concepts, including industrial control systems, network segmentation, monitoring constraints, and security considerations specific to OT environments.\nSkills in:\nProject management.\nArchitecture, deployment, and operation of complex technical systems to address business needs.\nAbility to:\nEffectively communicate complex cybersecurity-related concepts to technical and non-technical audiences at all levels.\nProvide cybersecurity leadership, mentorship, and guidance across teams, influencing outcomes and supporting effective collaboration without direct authority.\nDevelop and lead cybersecurity programs and initiatives with limited management guidance, owning outcomes, priorities, and stakeholder coordination.\nLocation: This position is based in Eugene, Oregon, and has been approved as a hybrid work arrangement involving a combination of telecommuting and working onsite. The selected candidate must live in the state of Oregon. Out of area candidates may be eligible for a relocation reimbursement.\nCompensation & Benefits\nThe starting annual salary for this position is $129,350.84 to $161,688.55 commensurate with knowledge, skills, education, and experience as it relates to the position.\nThe base pay offered will be established based on multiple factors, including job-related knowledge and skills, relevant experience, and internal equity. Consistent with EWEB’s compensation philosophy, it is not customary to place individuals at the high end of the salary range at the time of hire. Compensation decisions are made holistically to support fair, consistent, and equitable pay practices, taking into account the specific circumstances of each position and candidate.\nEWEB values total worker health, both at work and at home, and provides a robust compensation & benefits package. – Read more about our benefits. (http://www.eweb.org/about-us/career-opportunities/employee-benefits-and-wellness)\nQualifications & Requirements\nEWEB will consider an equivalent combination of relevant education and experience when reviewing applications. Candidates who do not meet all the minimum qualifications, but whose application materials demonstrate the necessary knowledge, skills, and abilities to be successful in the position, are encouraged to apply. We understand that valuable experience can be gained through various avenues, and we value diverse experiences and unique perspectives.\nEducation: Bachelor’s degree in cybersecurity, computer science, or related field required.\nLicenses/Certifications: Certified Information Systems Security Professional (CISSP) certification required, or the ability to obtain one within six months.\nExperience: Seven (7) years of progressive experience in cybersecurity, information security, or related fields required, including responsibility for leading functions such as cybersecurity architecture, security operations, governance, assurance, risk management, and program development.\nNice-to-Have: Experience as a cybersecurity practitioner in utility or other OT organizations, including experience securing OT or other critical infrastructure environments. Experience assessing security controls for SAP or similar ERP platforms. Experience with NERC CIP standards. Audit, risk, and security-related training or certifications.\nPost-offer background check required: Yes.\nPlease Note: Applicants must be authorized to work for any employer in the United States. EWEB is unable to sponsor or take over sponsorship of an employment visa at this time.\nPlease Also Note: The application for this position includes supplemental questions. Your responses will be scored and used to determine if you will proceed to the next step of the selection process. Provide detailed answers to each question. Please do not reference your resume or application in your responses. Applications may be rejected if incomplete.\nWhy Choose EWEB?\nEWEB offers employees a progressive work culture devoted to providing excellent public service. Our employees work in a fast-paced environment where creativity, innovation, involvement, teamwork, and professional development are supported and encouraged. EWEB is also committed to providing a work environment conducive to the safety, health, and well-being of its workforce, and offers great benefits, including but not limited to health care, vacation and sick leave, pension, holidays, and employee credit union. We consistently rank within the top 100 healthiest employers in the nation!\nEqual Employment Opportunity\nEWEB takes pride in our commitment to diversity and inclusion among our employees. We embrace and value differences of culture, education, experience, physical ability, and unique perspectives in our workplace. We invite applications from qualified candidates who share our commitment to diversity. Attracting, retaining, and advancing talent from all sources strengthens our bond with the multifaceted community we serve.\nTobacco, Smoke, and Vapor-Free Campus Policy\nEWEB fosters an environment promoting good health for both employees and the public. We want to enhance the quality of air, appearance, and employee health in and around EWEB facilities and equipment. Employees, contractors, volunteers, and visitors may not use, distribute, or sell tobacco while participating in EWEB functions, on EWEB property, or while performing right-of-way tasks.\nEqual Opportunity Employer/Protected Veterans/Individuals with Disabilities\nThis employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights (https://www.eeoc.gov/poster) notice from the Department of Labor.","company":"Eugenewaterandelectricboard","rawCompany":"eugenewaterandelectricboard","city":"Eugene","state":"OR","isRemote":false,"isActive":false,"createdAt":"2026-08-06T16:25:07.927Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541330","title":"Engineering Services","slug":"engineering-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Cyber Security Architect","description":"Leads cybersecurity architecture and control strategy across enterprise IT, operational technology, ERP, and other critical business systems. Develops and executes cybersecurity audit and assurance programs that validate controls, address compliance requirements, and drive consistent, data-informed risk treatment decisions. Develops and supports cybersecurity programs and operations to align cybersecurity outcomes with EWEB’s strategic objectives and operational needs.\nThis position opens July 31, 2026, and will remain open until filled. The first review of applications will occur on August 17, 2026. The Eugene Water & Electric Board (EWEB) is seeking a Cyber Security Architect to join a cybersecurity team supporting both IT and operational technology environments within Oregon’s largest public utility.\nThis role functions as a hands-on cybersecurity practitioner and leader working across security architecture, assurance, compliance, engineering, operations, incident response, vulnerability management, program development, and governance activities. Responsibilities are not confined to a single specialty area, and priorities shift based on operational need, risk posture, and active security conditions.\nSuccess in this role requires the ability to operate across multiple business functions and security domains, maintain effective prioritization in a high-demand environment, communicate at all levels across the organization, and apply pragmatic, risk-based judgment.\nKey Responsibilities\nCybersecurity Architecture\nProvide cybersecurity architecture development and consultation, representing Cyber Security as a member of the EWEB architecture team.\nLead and coordinate security reviews of technology solutions, including architectural, application, and compliance considerations.\nEvaluate the benefits and risks of technology solutions and identify implementation strategies to enhance security posture.\nSecurity Governance & Assurance\nDevelop, maintain, and execute cybersecurity assurance activities, including internal assessments, third-party and regulatory audit support, compliance monitoring, and control validation.\nDevelop and maintain cybersecurity standards and related documents to support security governance and operational risk management.\nProvide risk treatment recommendations to address non-compliance, remediation needs, audit and assessment findings, and other assurance outcomes.\nCybersecurity Program Development\nDevelop and mature cybersecurity programs and capabilities, including processes, metrics, roles and responsibilities, resources, inventories, reporting mechanisms, accountability, and performance optimization.\nLead the cybersecurity education and awareness program to mature organizational risk awareness and security culture.\nOperational Security Enablement\nLead and support incident response program development, readiness, and execution, including plans, runbooks, response activities, and post-incident improvement.\nElevate operational security capabilities by integrating monitoring and other telemetry into actionable analysis and risk-informed response.\nProvide primary and/or backup support for designated cybersecurity programs, processes, and technical security controls.\nNote: This job posting is intended to represent key areas of responsibility. It is not meant to be all inclusive and does not prescribe or restrict the work that may be assigned.\nWhat You’ll Bring\nKnowledge of:\nTechnology architecture, engineering, and technical control design across the enterprise technology stack, including cloud, identity, network, endpoint, database, and related security technologies.\nCybersecurity governance, risk, and compliance, including the ability to evaluate technical security risks and translate them into business impact and risk treatment considerations.\nPlanning and performing cybersecurity assessments and supporting audits, including evaluating control design, implementation, and effectiveness.\nSAP or similar ERP security and control environments, including related experience with access controls, segregation of duties, role design, and evaluation of application-level security controls.\nOperational technology (OT) security concepts, including industrial control systems, network segmentation, monitoring constraints, and security considerations specific to OT environments.\nSkills in:\nProject management.\nArchitecture, deployment, and operation of complex technical systems to address business needs.\nAbility to:\nEffectively communicate complex cybersecurity-related concepts to technical and non-technical audiences at all levels.\nProvide cybersecurity leadership, mentorship, and guidance across teams, influencing outcomes and supporting effective collaboration without direct authority.\nDevelop and lead cybersecurity programs and initiatives with limited management guidance, owning outcomes, priorities, and stakeholder coordination.\nLocation: This position is based in Eugene, Oregon, and has been approved as a hybrid work arrangement involving a combination of telecommuting and working onsite. The selected candidate must live in the state of Oregon. Out of area candidates may be eligible for a relocation reimbursement.\nCompensation & Benefits\nThe starting annual salary for this position is $129,350.84 to $161,688.55 commensurate with knowledge, skills, education, and experience as it relates to the position.\nThe base pay offered will be established based on multiple factors, including job-related knowledge and skills, relevant experience, and internal equity. Consistent with EWEB’s compensation philosophy, it is not customary to place individuals at the high end of the salary range at the time of hire. Compensation decisions are made holistically to support fair, consistent, and equitable pay practices, taking into account the specific circumstances of each position and candidate.\nEWEB values total worker health, both at work and at home, and provides a robust compensation & benefits package. – Read more about our benefits. (http://www.eweb.org/about-us/career-opportunities/employee-benefits-and-wellness)\nQualifications & Requirements\nEWEB will consider an equivalent combination of relevant education and experience when reviewing applications. Candidates who do not meet all the minimum qualifications, but whose application materials demonstrate the necessary knowledge, skills, and abilities to be successful in the position, are encouraged to apply. We understand that valuable experience can be gained through various avenues, and we value diverse experiences and unique perspectives.\nEducation: Bachelor’s degree in cybersecurity, computer science, or related field required.\nLicenses/Certifications: Certified Information Systems Security Professional (CISSP) certification required, or the ability to obtain one within six months.\nExperience: Seven (7) years of progressive experience in cybersecurity, information security, or related fields required, including responsibility for leading functions such as cybersecurity architecture, security operations, governance, assurance, risk management, and program development.\nNice-to-Have: Experience as a cybersecurity practitioner in utility or other OT organizations, including experience securing OT or other critical infrastructure environments. Experience assessing security controls for SAP or similar ERP platforms. Experience with NERC CIP standards. Audit, risk, and security-related training or certifications.\nPost-offer background check required: Yes.\nPlease Note: Applicants must be authorized to work for any employer in the United States. EWEB is unable to sponsor or take over sponsorship of an employment visa at this time.\nPlease Also Note: The application for this position includes supplemental questions. Your responses will be scored and used to determine if you will proceed to the next step of the selection process. Provide detailed answers to each question. Please do not reference your resume or application in your responses. Applications may be rejected if incomplete.\nWhy Choose EWEB?\nEWEB offers employees a progressive work culture devoted to providing excellent public service. Our employees work in a fast-paced environment where creativity, innovation, involvement, teamwork, and professional development are supported and encouraged. EWEB is also committed to providing a work environment conducive to the safety, health, and well-being of its workforce, and offers great benefits, including but not limited to health care, vacation and sick leave, pension, holidays, and employee credit union. We consistently rank within the top 100 healthiest employers in the nation!\nEqual Employment Opportunity\nEWEB takes pride in our commitment to diversity and inclusion among our employees. We embrace and value differences of culture, education, experience, physical ability, and unique perspectives in our workplace. We invite applications from qualified candidates who share our commitment to diversity. Attracting, retaining, and advancing talent from all sources strengthens our bond with the multifaceted community we serve.\nTobacco, Smoke, and Vapor-Free Campus Policy\nEWEB fosters an environment promoting good health for both employees and the public. We want to enhance the quality of air, appearance, and employee health in and around EWEB facilities and equipment. Employees, contractors, volunteers, and visitors may not use, distribute, or sell tobacco while participating in EWEB functions, on EWEB property, or while performing right-of-way tasks.\nEqual Opportunity Employer/Protected Veterans/Individuals with Disabilities\nThis employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights (https://www.eeoc.gov/poster) notice from the Department of Labor.","datePosted":"2026-08-06T16:25:07.927Z","dateModified":"2026-08-06T16:25:07.927Z","hiringOrganization":{"@type":"Organization","name":"Eugenewaterandelectricboard","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Eugene","addressRegion":"OR","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"2dbaa4086ce2bd5149380ea8"},"url":"https://jobsearcher.com/jobs/2dbaa4086ce2bd5149380ea8"}}