IT Security Analyst

HF Sinclair

Dallas (TX)

On-site

USD 140,000 - 180,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Medical Insurance
Vision Insurance
Dental Insurance
Paid Time‑Off
401(k) Retirement Plan

Job summary

HF Sinclair is seeking an IT Security Architect to define and govern enterprise cybersecurity architecture standards across IT and OT. You will drive secure-by-design decisions, lead architecture reviews, and map risk to capabilities while guiding multiple teams and stakeholders.

The role requires at least 8 years in security or architecture disciplines, plus strong experience with frameworks and governance. Office-based with travel expectations in the US.

Qualifications

  • Bachelor’s degree in Information Technology, Information Security, Cybersecurity, Engineering, or related field is required.
  • Master’s degree preferred in IT, Cybersecurity, Engineering, or related field.
  • Experience translating business, risk, regulatory, and technical requirements into security architecture guidance.

Responsibilities

  • Define, govern, and improve cybersecurity architecture standards and guardrails.
  • Lead architecture reviews for IT/OT, cloud, data platforms, and AI-enabled solutions.
  • Map risks to capabilities, document tradeoffs, and communicate residual risk to stakeholders.
  • Provide senior technical guidance and align security decisions with business objectives.

Skills

Security architecture
Frameworks
Governance
Systems thinking
Risk analysis
Standards translation
IT/OT security
Stakeholder comms
Continuous improvement

Education

Bachelor's degree in IT/Security
Master's degree in IT/Security/Engineering/Business

Job description

Job description:

Basic Function

The IT Security Architect defines and governs enterprise cybersecurity architecture standards and secure design practices across IT and OT environments. Provides strategic architecture guidance, aligns security decisions with business objectives and cyber risk priorities, and supports secure adoption of emerging technologies while driving risk reduction and operational resilience.

Job Duties

Enterprise Cybersecurity Architecture Strategy and Standards

  • Define, maintain, and improve cybersecurity architecture principles, standards, guardrails, patterns, and reference architectures.
  • Establish reusable architecture patterns that enable secure-by-design delivery, reduce inconsistent solution decisions, limit architectural drift, and address avoidable control gaps.
  • Use the enterprise cybersecurity taxonomy to organize architecture decisions, standards, roadmaps, risks, controls, metrics, and capability maturity discussions.

Security Architecture Governance and Design Reviews

  • Lead or facilitate security architecture reviews for major technology initiatives, cyber portfolio projects, OT modernization, cloud solutions, application modernization, identity patterns, data platforms, integrations, automation, and AI-enabled capabilities.
  • Identify architecture risks, design gaps, control weaknesses, and standards deviations; document tradeoffs, recommendations, decisions, and residual risk implications.
  • Define architecture dependencies, design constraints, runway needs, standards readiness, and risk reduction outcomes for major IT and cyber initiatives.

Cyber Risk, Control, and Capability Traceability

  • Support risk register accuracy by mapping technology and architecture risks to affected capabilities, root-cause design gaps, maturity gaps, and practical mitigation approaches.
  • Advise on architecture implications of policy exceptions, control gaps, risk acceptances, third‑party dependencies, and emerging technology adoption decisions.

Technology Domain Architecture Guidance

  • Guide security architecture for IT/OT convergence, industrial digital platforms, cyber‑physical systems, network segmentation, secure remote access, monitoring, identity, data exchange, cloud, SaaS, application, API, automation, and AI‑enabled solutions.
  • Evaluate emerging technologies and industry trends for applicability, risk, architecture impact, control requirements, and adoption guardrails.

Stakeholder Partnership and Continuous Improvement

  • Influence strategic initiatives by explaining architecture options, risk tradeoffs, design implications, and recommended paths forward.
  • Facilitate alignment where ownership is shared or ambiguous by clarifying architecture boundaries, decision rights, and execution expectations.
  • Support continuous improvement of architecture governance, standards adoption, exception management, security design quality, and measurable security outcomes.

Special assignments or tasks may be assigned to the employee by their supervisor, as determined from timeto time in the supervisor’s sole and complete discretion.

Experience

A minimum of 8 years of experience in IT infrastructure, cybersecurity, cloud security, security engineering, enterprise architecture, solution architecture, OT security, or related technology domains.

  • Minimum of 4 years of experience in an architecture function, including development of standards, reference architectures, design patterns, architecture governance, or technology roadmaps.
  • Demonstrated experience translating business, risk, regulatory, and technical requirements into practical security architecture guidance.
  • Demonstrated ability to operate as a senior technical advisor across multiple teams, domains, and levels of leadership.
  • Experience leading architecture reviews, producing architecture decision records, documenting design tradeoffs, and influencing risk‑informed discussions across technical and business stakeholders.
  • Experience working across multiple technology domains including some combination of identity, network, cloud, endpoint, data, application, SaaS, infrastructure, integrations, OT, or cyber‑physical systems.
  • Experience supporting cyber risk reduction, control alignment, maturity improvement, or security roadmap development.
Education Level

A bachelor’s degree in Information Technology, Information Security, Cybersecurity, Computer Science, Engineering, or a related field is required. Equivalent experience may be considered in lieu of a degree.

Preferred Educational Level:

Master’s degree in Information Technology, Cybersecurity, Information Security, Engineering, Business Administration, or a related field.

Required Skills
  • Enterprise security architecture and secure‑by‑design principles.
  • Architecture frameworks and methods such as TOGAF, SABSA, DoDAF, NIST, C2M2, SAFe for Architects, or similar approaches.
  • Architecture governance methods, including standards management, design review facilitation, architecture decision records, and architecture review forums.
  • Systems thinking and ability to analyze complex cross‑domain dependencies.
  • Cyber risk analysis, control alignment, maturity assessment, and risk‑informed roadmap development.
  • Ability to translate strategy, risk, and control requirements into practical architecture standards and engineering‑ready guardrails.
  • Security architecture concepts across IT, OT, cyber‑physical systems, cloud, SaaS, application, API, data, identity, network, monitoring, automation, and resilience domains.
  • Strong communication, facilitation, stakeholder management, and executive‑facing presentation skills.
  • Continuous improvement mindset with ability to establish reusable patterns, feedback loops, and measurable outcomes.
Preferred Skills
  • Oil and gas, critical infrastructure, industrial cybersecurity, or OT security architecture experience.
  • Experience with NIST CSF, C2M2, CIS, ISO 27001, NERC CIP, TSA security directives, or other cybersecurity and regulatory frameworks.
  • Experience aligning security architecture to enterprise cyber taxonomies, capability models, maturity models, control libraries, or unified controls frameworks.
  • Experience supporting cyber portfolio planning, investment prioritization, roadmap development, OKRs, KPIs, KRIs, or value/risk‑based planning.
  • Experience with security architecture for AI, analytics, automation, machine identities, APIs, data platforms, cloud‑native architectures, and SaaS ecosystems.
  • Familiarity with SSE/SASE, Zero Trust, cyber‑physical systems, and digital transformation security patterns.
  • Relevant certifications such as CISSP, CCSP, SABSA, TOGAF, GIAC, ISA/IEC 62443, cloud security, or similar credentials.
Supervisory/Managerial Responsibility

This role has no direct supervisory responsibilities but is expected to provide senior technical leadership, architecture direction, mentoring, and cross‑functional influence across cybersecurity, IT, and OT.

Work Conditions

Office‑based, with up to 20% travel by land or air is required. Subject to all weather and varying road conditions.

Benefits

HF Sinclair offers a comprehensive benefits package designed to support the well‑being of our employees and their families. Our benefits include, but are not limited to, the following:

  • Medical Insurance
  • Vision Insurance
  • Dental Insurance
  • Paid Time‑Off
  • 401(k) Retirement Plan with matchEqual Opportunity Employer

    HF Sinclair Corporation is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status or any other prohibited ground of discrimination.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior IT Security Architect
Senior IT Security Architect

HF Sinclair • Dallas (TX)

On-site
USD 140,000 - 180,000
Medical Insurance
Vision Insurance
Dental Insurance
+2
Enterprise Cybersecurity Architect
Enterprise Cybersecurity Architect

Petro Papa • Dallas (TX)

On-site
USD 140,000 - 170,000
Medical Insurance
Vision Insurance
Paid Time-Off
+4
Senior Cybersecurity Architect — IT/OT Strategy & Standards
Senior Cybersecurity Architect — IT/OT Strategy & Standards

Petro Papa • Dallas (TX)

On-site
USD 140,000 - 170,000
Medical Insurance
Vision Insurance
Paid Time-Off
+4
Security Solution Architect Contract to Hire
Security Solution Architect Contract to Hire

Blue Star Partners LLC • Columbus (OH)

On-site
USD 106,000 - 121,000
Cyber Systems Architect, Senior Advisor
Cyber Systems Architect, Senior Advisor

Peraton • Herndon (VA)

On-site
USD 140,000 - 170,000
OT Cyber Analyst
OT Cyber Analyst

HF Sinclair • Dallas (TX)

On-site
USD 120,000 - 150,000
Medical Insurance
Vision Insurance
Dental Insurance
+2
Enterprise Security Architect
Enterprise Security Architect

Foxtrot Division • United States

On-site
USD 150,000 - 190,000
Biweekly pay
Phone reimbursement
Training budget
+5
Cyber SDC - OT - Security Architect
Cyber SDC - OT - Security Architect

EY • Boca Raton (FL)

Hybrid
USD 105,000 - 192,000
Hybrid work model
Total Rewards package
Cyber SDC - OT - Security Architect
Cyber SDC - OT - Security Architect

EY • Tampa (FL)

Hybrid
USD 105,000 - 192,000
Hybrid work model
Medical and dental coverage
401(k) plan
Cyber SDC - OT - Security Architect
Cyber SDC - OT - Security Architect

EY • Charleston (WV)

Hybrid
USD 105,000 - 192,000
Hybrid work model
Competitive compensation
Paid time off
+1