Lead Architect - Network Security Reports to: Director - Network Technologies
Location: In Office, Orange CT
The base salary range for this position is dependent upon experience and location, ranging from: $128,320 - $160,400
What We Offer
- Competitive benefits and growth opportunities
- Generous performance‑based bonuses 12% 401(k) match
- Comprehensive health, dental, and vision insurance
- Tuition reimbursement
- Professional development and clear career‑advancement pathways
For more information, please visit: Benefits - Avangrid
Job Summary
The Lead Architect – Network Security role serves as the senior-most technical and architectural resource for enterprise Network Security. This individual contributor defines the long-term Network Security architecture, strategy, standards, design patterns, and technology roadmap; translates business, operational, regulatory, and security requirements into secure, resilient, scalable, and supportable architectures; and leads modernization and transformation initiatives using current and emerging technologies. The role serves as the senior technical authority and highest escalation point for complex Network Security issues, major incidents, high‑risk changes, projects, and technical recovery activities. The Lead Architect provides technical leadership, mentoring, and knowledge transfer to internal engineers, global counterparts, vendors, and contracted support resources without direct people‑management responsibility.
Key Responsibilities
- Owns enterprise Network Security reference architectures, engineering standards, design patterns, implementation patterns, and technology roadmaps aligned with Avangrid and Iberdrola global standards.
- Leads architecture and technical design for firewalls, secure web gateways, web application firewalls, SD‑WAN security, network segmentation, Internet and intranet security, cloud connectivity security, and related Network Security platforms.
- Provides architecture governance and reviews project designs, lifecycle plans, technical standards, and high‑risk changes for alignment with business requirements, security requirements, supportability, resiliency, and global standards.
- Serves as senior technical authority and highest escalation point for complex troubleshooting, root‑cause analysis, major incidents, break/fix issues, lifecycle upgrades, technical recovery activities, and critical Network Security changes.
- Leads Network Security modernization, automation, standardization, resiliency improvement, lifecycle management, technical‑debt reduction, and continuous improvement of Internet, intranet, and enterprise security infrastructure.
- Evaluates emerging Network Security technologies and recommends adoption, replacement, or retirement decisions based on business value, risk, operational impact, supportability, lifecycle position, and strategic alignment.
- Directs technical execution for complex projects and high‑risk changes by translating business, operational, regulatory, and security requirements into secure Network Security architectures and process designs.
- Provides technical direction, mentoring, and documented knowledge transfer to internal engineers, global counterparts, outsourced service providers, and contracted support resources while retaining internal architecture accountability.
- Manages technical relationships with technology vendors and outsourced service providers, coordinates design and implementation activities, and ensures technical deliverables are executed according to approved architecture and standards.
- Partners with Cybersecurity, Infrastructure, Cloud, Applications, Audit, Compliance, Network Engineering, and global counterparts on architecture decisions, security investigations, risk assessments, audits, and regulatory requirements where Network Security expertise is required.
- Produces and maintains architecture diagrams, engineering standards, design decisions, implementation patterns, troubleshooting procedures, operational runbooks, recovery documentation, and resolution scripts.
- Owns or governs administration, configuration, optimization, and lifecycle activities for enterprise Network Security platforms, including firewall policy management, high‑availability design, firmware upgrades, secure web gateway policies, web application firewall tuning, SD‑WAN security, SIEM integration, and automation integration where applicable.
Required Qualifications
- Bachelor’s degree in Computer Science, Information Systems, Engineering, Cybersecurity, or a related field; an equivalent combination of education and experience may be considered.
- At least eight (8) years of progressively responsible enterprise Network Security experience.
- Demonstrated experience leading the architecture, design, implementation, lifecycle management, and operational support of complex enterprise Network Security environments.
- Advanced hands‑on troubleshooting, root‑cause analysis, and incident‑resolution experience across enterprise Network Security infrastructure.
- Experience providing technical leadership across internal teams, global counterparts, vendors, and contracted service providers.
- Experience creating technology roadmaps, architecture standards, modernization plans, operational runbooks, and technical documentation.
Preferred Qualifications
- Experience with enterprise firewall platforms such as Fortinet/FortiGate, Palo Alto Networks, and Check Point.
- Experience with secure web gateway technologies such as Zscaler and web application firewall technologies such as Akamai.
- Experience with SD‑WAN security, network segmentation, high‑availability design, firmware lifecycle management, and security policy optimization.
- Experience with SIEM integration, network automation, troubleshooting procedures, resolution scripts, and operational runbook development.
- Relevant vendor certifications such as Fortinet NSE, Palo Alto PCNSE, Check Point CCSA/CCSE, Zscaler Certified Professional, or Akamai Security certifications.
#LI-Onsite #LI-VF1 Company: AVANGRID MANAGEMENT COMPANY, LLC.
Información Movilidad Tenga en cuenta que cualquier solicitante que no sea ciudadano del país de la vacante estará sujeto al cumplimiento de los requisitos de inmigración aplicables para trabajar legalmente en ese país.
Las prácticas y políticas de empleo de AVANGRID están orientadas a la contratación de una plantilla diversa y al mantenimiento de una cultura inclusiva. En AVANGRID ofrecemos oportunidades de empleo y promoción justas y equitativas a todos los empleados y candidatos independientemente de su raza, color, religión, nacionalidad, sexo, orientación sexual, edad, estado civil, discapacidad, condición de veterano protegido o cualquier otra condición protegida por la legislación federal, estatal o local.
Obtenga más información sobre igualdad en el empleo en este enlace
Si usted es una persona con una discapacidad o un veterano discapacitado que no puede utilizar nuestra herramienta en línea para buscar o aplicar a un empleo, puede solicitar una adaptación razonable poniéndose en contacto con nuestro departamento de Recursos Humanos en el 203-499-2777 o en careers@avangrid.com
September-18-2026
Somos una de las principales empresas energéticas del mundo, líder en renovables, que defiende la transición energética hacia una economía de bajas emisiones. Suministramos energía a casi 100 millones de personas en decenas de países y desarrolla sus actividades renovables, de red y comerciales en Europa (España, Reino Unido, Portugal, Francia, Alemania, Italia y Grecia), Estados Unidos, Brasil y Australia y está presente en mercados como Japón y Polonia, entre otros.
Consulta el Aviso Legal y las Condiciones de Uso del canal de empleo de Iberdrola Consulta el Aviso de Privacidad del canal de empleo de Iberdrola En Grupo Iberdrola I Canal de Empleo utilizamos únicamente cookies técnicas para permitir el funcionamiento y la prestación de los servicios ofrecidos en la web. Para más información puedes consultar nuestra Política de Cookies