Senior Security Design Architect

Charles Schwab

Austin (TX)

Hybrid

USD 150,000 - 190,000

Full time

8 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

401(k) match
Sabbatical after 5 years
Parental leave
Tuition reimbursement
Health/dental/vision insurance

Job summary

Charles Schwab is seeking a Senior Security Design Review Architect to drive secure design across cloud, on-prem, and AI initiatives. You will evaluate architecture decisions, document risks, and guide risk-based mitigations while collaborating with product, engineering, and cloud teams to ensure resilient security postures.

You will balance security, business goals, and innovation, participating in risk governance, architecture standards, and executive communications to protect Schwab's clients

Qualifications

  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Engineering, or related field.
  • 10+ years designing, implementing, assessing, and governing enterprise security architectures and controls.
  • Deep expertise across AI security, CIAM, IAM, Cloud Security, Application Security, Data Protection, Security Architecture, and Risk Management.
  • Experience conducting Security Design & architecture Reviews, Threat Modeling, Security Control Assessments and Governance Activities.
  • Document architecture security risks, evaluate remediation options, define compensating controls, and support risk-based decisions.
  • Present findings and recommendations to executive leadership.
  • Experience developing security requirements, non-functional requirements, architecture standards, and secure deployment models.

Responsibilities

  • Conduct secure design reviews, architecture assessments, threat modeling, and security risk evaluations for cloud, on-premises, hybrid, SaaS, AI, and application-based solutions.
  • Collaborate with Domain Architects, Product Managers, Product Owners, Engineering Teams, and Technology Leaders to define security requirements, non-functional requirements, secure deployment patterns, and security controls.
  • Describe solution intent and operating environments while identifying systems, trust boundaries, data flows, security dependencies, and architecture risks.
  • Review, assess, approve, and sign off on projects with respect to risk, security controls, architectural decisions, compliance expectations, and standards.
  • Perform architecture risk assessments and threat modeling to identify vulnerabilities, attack paths, misuse scenarios, and control gaps.
  • Develop and maintain security reference architectures, secure design standards, reusable patterns, control frameworks, and deployment models.
  • Present recommendations to executive leadership and stakeholders; align with industry frameworks (NIST, OWASP, CIS, SSDLC).

Skills

Security design reviews
Threat modeling
Security risk assessments
Architecture reviews
IAM / CIAM
Cloud security
Application security
Data protection
Risk management
Executive communication

Education

Bachelor's degree

Tools

TOGAF
SSDLC

Job description

Your opportunity

Your Opportunity

The Schwab Cybersecurity Services (SCS) organization is a centralized First Line of Defense Center of Excellence (COE) that provides security services to advance Schwab's security posture and enhance the protection of Schwab's critical assets.

The Security Design team handles the Firm's security strategy and security architecture vision and development. We drive and synchronize security strategies aligned with technology and business priorities along with validating future directions through security research and innovation.

As a member of the team, you will serve as a Senior Security Design Review Architect responsible for providing security solutions, designs, architecture guidance, reviews, support, strategies across the entire organization to include security decision making through successful implementation while employing the highest levels of integrity. Every security decision must consider both direct and indirect impacts. You will collaborate closely with business leaders, product teams, engineering organizations, cloud teams, AI teams, infrastructure teams, and cybersecurity partners to ensure solutions are designed, deployed, and operated securely.

This role requires balancing security, business objectives, innovation, operational resilience, regulatory obligations, and risk management. You will be responsible for evaluating architecture decisions, documenting risks, recommending mitigations, and supporting risk-based decision making while ensuring solutions protect Schwab's clients, workforce, applications, data, and technology ecosystem.

Every security decision must consider both direct and indirect impacts to the organization, ensuring the confidentiality, integrity, availability, resilience, and trustworthiness of systems entrusted with sensitive business and client information.

Responsibilities Include, But Not Limited To
  • Responsible for conducting secure design reviews, architecture assessments, threat modeling, and security risk evaluations for cloud, on-premises, hybrid, SaaS, AI, and application-based solutions supporting hundreds of internal and external business initiatives.
  • Works with Domain Architects, Product Managers, Product Owners, Engineering Teams, and Technology Leaders to define security requirements, non-functional requirements, secure deployment patterns, and security controls.
  • Describes solution intent and operating environments while identifying primary systems, trust boundaries, integration points, data flows, security dependencies, and architectural risks.
  • Reviews, assesses, approves, and signs off on projects with respect to risk, security controls, architectural decisions, compliance expectations, and adherence to security policies, standards, and industry best practices.
  • Performs architecture risk assessments and threat modeling activities to identify security vulnerabilities, attack paths, misuse scenarios, and control gaps.
  • Develops and maintains security reference architectures, secure design standards, reusable architecture patterns, security control frameworks, and deployment models.
  • Evaluates technology solutions against industry frameworks and standards including:
  • NIST Cybersecurity Framework
  • NIST Special Publication 800-53
  • NIST AI Risk Management Framework (AI RMF)
  • OWASP Top 10
  • OWASP LLM Top 10
  • CIS Benchmarks
  • Zero Trust Architecture Principles
  • Secure Software Development Lifecycle (SSDLC)
  • Experience with security architecture reviews and security controls across:
  • Identity and Access Management (IAM)
  • Customer Identity and Access Management (CIAM)
  • Present recommendations to executive leadership
  • Experience developing security requirements, non-functional requirements, architecture standards, and secure deployment models.
  • Strong collaboration, communication, stakeholder management, and influencing skills.
  • Demonstrates flexibility within a variety of changing situations while working across technical and business organizations.
  • Ability to balance security requirements with business priorities and technology innovation.
What you have
What you have
Required
  • 4-year college/university degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related discipline.
  • Minimum 10+ years of experience designing, implementing, assessing, and governing enterprise security architectures, security controls, and security solutions.
  • Deep expertise across multiple cybersecurity domains including AI Security, CIAM, IAM, Cloud Security, Application Security, Data Protection, Security Architecture, and Risk Management.
  • Demonstrated experience conducting: Security Design & architecture Reviews, Threat Modeling, Security Control Assessments and Security Governance Activities
  • Detailed understanding of security architecture principles and the ability to:
  • Document architecture security risks
  • Evaluate remediation options
  • Define compensating controls
  • Support risk-based decisions
  • Present findings to technical stakeholders
  • Present recommendations to executive leadership
  • Experience developing security requirements, non-functional requirements, architecture standards, and secure deployment models.
  • Strong collaboration, communication, stakeholder management, and influencing skills.
  • Demonstrates flexibility within a variety of changing situations while working across technical and business organizations.
  • Ability to balance security requirements with business priorities and technology innovation.
Preferred
  • Experience securing AI/ML, Agentic AI solutions.
  • CISSP certification preferred.
  • CSSLP certification preferred.
  • CCSP, CISM, TOGAF, Cloud Security, AI Security, and other Information Security certifications are highly desirable.
What’s in it for you

At Schwab, you're empowered to shape your future. We champion your growth through meaningful work, continuous learning, and a culture of trust and collaboration- so you can build the skills to make a lasting impact. Our Hybrid Work and Flexibility approach balances our ongoing commitment to workplace flexibility, serving our clients, and our strong belief in the value of being together in person on a regular basis.

We offer a competitive benefits package that takes care of the whole you - both today and in the future:

  • 401(k) with company match and Employee stock purchase plan
  • Paid time for vacation, volunteering, and 28-day sabbatical after every 5 years of service for eligible positions
  • Paid parental leave and family building benefits
  • Tuition reimbursement
  • Health, dental, and vision insurance
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Design Architect
Senior Security Design Architect

Charles Schwab • Southlake (TX)

On-site
USD 150,000 - 210,000
Senior Security Design Architect
Senior Security Design Architect

Charles Schwab • Orlando (FL)

Hybrid
USD 140,000 - 170,000
401(k) with company match
Paid parental leave and family support
Tuition reimbursement
+2
Senior Security Design Architect
Senior Security Design Architect

Charles Schwab Corporation • Southlake (TX)

On-site
USD 150,000 - 190,000
Chief Architect
Chief Architect

Charles Schwab • Austin (TX)

On-site
USD 180,000 - 250,000
401(k) with company match
Employee stock purchase plan
Sabbatical after 5 years
+2
Chief Architect
Chief Architect

Charles Schwab • Southlake (TX)

On-site
USD 250,000 - 350,000
401(k) match
Employee stock purchase plan
Sabbatical after 5 years
+1
Architect Principal - Client Data Technologies
Architect Principal - Client Data Technologies

Charles Schwab • Southlake (TX)

On-site
USD 180,000 - 230,000
401(k) with company match
Paid vacation and volunteering time
Paid parental leave
+4
Director, Platform Architect (Investment & Research Technology)
Director, Platform Architect (Investment & Research Technology)

Charles Schwab • Southlake (TX)

On-site
USD 180,000 - 260,000
Hybrid work arrangement
Comprehensive benefits package
Sabbatical after 5 years
Director, Platform Architect (Investment & Research Technology)
Director, Platform Architect (Investment & Research Technology)

Charles Schwab • Austin (TX)

On-site
USD 180,000 - 280,000
401(k) with company match
Employee stock purchase plan
Paid time for vacation and sabbatical
+3
Business Architect, Smart Processing Ecosystem
Business Architect, Smart Processing Ecosystem

Charles Schwab • Westlake (TX)

On-site
USD 110,000 - 170,000
Hybrid work environment
Bonus opportunities
Competitive benefits
Senior Software Engineer - Enterprise Architecture & AI Solutions Engineering
Senior Software Engineer - Enterprise Architecture & AI Solutions Engineering

Charles Schwab • Southlake (TX)

On-site
USD 140,000 - 190,000
401(k) with company match
Paid time for vacation
Parental leave and family benefits
+1