Principal Application Security Architect

LPL Financial

Tempe (AZ)

On-site

USD 153,470 - 255,749

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

401(k) matching
Health benefits
Employee stock options
Paid time off
Volunteer time off

Job summary

LPL Financial is looking for a Principal Security Architect in Tempe, Arizona. This role involves securing APIs and ensuring compliance with industry standards. The ideal candidate will have extensive experience in security architecture and a strong technical background in cloud security.

Responsibilities include safeguarding API access, developing security standards, and collaborating with teams to enhance security measures. The candidate should also possess skills in AWS services and have a proven track record in securing systems against evolving threats.

Qualifications

  • 3+ years of security architecture and API security experience.
  • 8+ years of experience with information security controls and guidelines.

Responsibilities

  • Secure APIs by implementing robust access control mechanisms.
  • Lead the design and innovation of security architectures.
  • Conduct threat modeling, risk assessment, and vulnerability management.

Skills

API security experience
Information security controls
Consulting and communication

Education

Bachelor's Degree or equivalent experience

Tools

AWS services
Terraform
Ansible

Job description

Job Overview

LPL's Information Security team is seeking an exceptional Principal Security Architect to engage on API project efforts in Cloud, On‑prem, and Data security architectures. The role involves working side by side with Development, Operations, Business units, and Enterprise Architecture teams to ensure our environments are secured and monitored. The right person will have a broad technical cloud security background with a focus on security design, detection, prevention, and response to threats.

Responsibilities
  • Secure APIs by implementing robust access control mechanisms, OAuth, JWT, and configuring API gateway security to ensure authenticated and authorized access.
  • Develop reusable security design patterns addressing common cybersecurity challenges, ensuring consistency and best practices across diverse technology stacks and business domains.
  • Craft clear, actionable security standards and policies, aligning them with industry best practices and regulatory requirements while ensuring adaptability to emerging technologies.
  • Lead the design and innovation of security architectures, integrating advanced technologies to protect against evolving threats while enabling business agility and growth.
  • Collaborate with key stakeholders to align security initiatives with business objectives, ensuring broad support and integration at all levels.
  • Apply cybersecurity frameworks, network security, cloud security, identity management, and encryption, including zero‑trust architectures and secure DevOps practices across diverse IT environments.
  • Conduct threat modeling, risk assessment, and vulnerability management; implement SIEM, log analysis, and incident response in complex enterprise settings.
  • Use intelligence and analytics to identify and mitigate potential security risks proactively, reducing business impact.
  • Implement and oversee a risk management framework, balancing security investments with business needs to protect assets while supporting growth and innovation.
  • Secure machine learning models against adversarial attacks, ensure data privacy in AI training sets, and implement ethical AI principles in security applications.
  • Develop secure AI/ML pipelines, including model integrity verification, secure feature engineering, and anomaly detection in AI‑driven systems.
Requirements
  • 3+ years of security architecture and API security experience, designing secure API gateways and microservices architectures.
  • 8+ years of experience with information security controls, guidelines, and standards (e.g., ISO27000 series, OWASP, CSA CCM, CIS 20 Critical Security Controls, SOX, and NIST).
Core Competencies
  • Self‑driven, yet flexible and highly adept at consulting, negotiating, communicating, consensus building, and presenting.
  • Ability to remain calm under pressure while managing multiple tasks.
  • Demonstrated ability to learn from mistakes and apply constructive feedback to improve performance.
Preferences
  • Bachelor's Degree or equivalent years of experience.
  • Technical knowledge/coding skills in Java, C# .Net, Ruby, and/or Python.
  • In‑depth knowledge of AWS core services (EC2, S3, IAM, VPC, security groups, ACLs, AWS Security Hub, AWS WAF, Amazon GuardDuty).
  • Working knowledge of Terraform, CloudFormation, Pulumi, and/or Ansible.
  • Solid experience securing scalable web architectures and distributed systems.
  • Solid understanding of malware, emerging threats, attacks, and vulnerability management.
  • CCSP/Other Cloud Specific Certification, CISSP and/or GIAC are a plus.
  • AI/ML security expertise; proven record securing ML models and AI pipelines in financial services.
  • Proficient in OAuth, OpenID Connect, JWT, API threat modeling, and automated security testing.
Pay Range

$153,470.00 – $255,749.00

Benefits

Actual base salary varies based on factors including relevant skill, prior experience, education, and geographical location. In addition, LPL offers a competitive Total Rewards package that includes 401(k) matching, health benefits, employee stock options, paid time off, volunteer time off, and more.

Application Process

LPL will only communicate with a job applicant directly from an official @lplfinancial.com email address. For questions regarding the application process, contact LPL’s Human Resources Solutions Center at (855) 575-6947.

Principals only. EOE.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal Application Security Architect
Principal Application Security Architect

LPL Financial • Austin (TX)

On-site
USD 153,000 - 256,000
401(k) matching
Health benefits
Employee stock options
+2
Principal Application Security Architect
Principal Application Security Architect

LPL Financial • San Diego (CA)

On-site
USD 153,000 - 256,000
401(k) matching
Health benefits
Employee stock options
+2
Principal Application Security Architect
Principal Application Security Architect

LPL Financial • Fort Mill (SC)

On-site
USD 153,000 - 256,000
401(k) matching
Health benefits
Employee stock options
+2
Principal Application Security Architect
Principal Application Security Architect

LPL Financial LLC • San Diego (CA)

On-site
USD 153,000 - 256,000
401K matching
Health benefits
Employee stock options
+2
Senior API & Cloud Security Architect
Senior API & Cloud Security Architect

LPL Financial • San Diego (CA)

On-site
USD 153,000 - 256,000
401(k) matching
Health benefits
Employee stock options
+2
VP, Cloud Security Operations
VP, Cloud Security Operations

LPL Financial • New York (NY)

On-site
USD 154,000 - 258,000
401(k) matching
Health benefits
Employee stock options
+2
VP, Cloud Security Operations
VP, Cloud Security Operations

LPL Financial • Austin (TX)

On-site
USD 154,000 - 258,000
401(k) matching
Health benefits
Employee stock options
+2
VP, Cloud Security Operations
VP, Cloud Security Operations

LPL Financial • Tempe (AZ)

On-site
USD 154,000 - 258,000
401(k) matching
Health benefits
Employee stock options
+2
AVP, Security Architect
AVP, Security Architect

LPL Financial • Austin (TX)

On-site
USD 123,000 - 204,000
Sr. Application Security Engineer
Sr. Application Security Engineer

LPL Financial • Tempe (AZ)

On-site
USD 101,000 - 168,000
401K matching
Health benefits
Employee stock options
+2