Security Architect
About the Role:
This is a rare opportunity to join at a moment of real momentum and play a pivotal role in shaping the organization’s security future. As Security Architect, you will collaborate across teams to protect critical assets and operations while enabling the business to innovate with confidence.
You will provide technical leadership in anticipating emerging threats, designing effective security controls, and embedding security into solutions from the start. The ideal candidate brings deep expertise across cloud, application, infrastructure, identity, and data security - along with the ability to turn complex security requirements into practical, scalable solutions that balance innovation and risk.
What You’ll do:
- Shape our security architecture strategy by developing enterprise security principles, standards, patterns, and reference designs that support secure, scalable business and technology outcomes.
- Turn strategy into action by translating security objectives, regulatory requirements, and risk appetite into clear, practical architecture requirements for technology teams.
- Champion secure-by-design solutions by partnering with product, engineering, infrastructure, and operations teams to embed security into new and existing systems from the start.
- Provide architectural leadership across cloud, application, infrastructure, identity, data, and third-party technology environments.
- Review solution designs and implementation plans to identify potential security risks, evaluate tradeoffs, and recommend practical mitigation strategies.
- Guide teams in applying effective security practices, including threat modeling, identity and access management, data protection, logging, monitoring, and operational resilience.
- Define security architecture for cloud-native, hybrid, and enterprise platforms, including network segmentation, encryption, secrets management, workload protection, and security visibility.
- Establish scalable security patterns for cloud adoption, infrastructure as code, containerized workloads, APIs, and integration services.
- Evaluate security posture and emerging threats and recommend architecture improvements, compensating controls, or new capabilities that reduce risk without limiting agility.
- Assess security technologies, vendor solutions, and automation opportunities for alignment with enterprise architecture, security strategy, and operational needs.
- Design sustainable security controls that support regulatory, compliance, and audit expectations while remaining practical for technology and business teams.
- Serve as a trusted security advisor to technology, product, business, risk, compliance, and leadership stakeholders.
- Communicate security decisions clearly by translating complex risks, requirements, and tradeoffs for both technical and non-technical audiences.
- Strengthen a security-first culture by helping teams understand and address security requirements early-positioning security as an enabler of innovation and responsible business growth.
What we’re looking for:
We’re looking for a security leader who brings technical depth, strategic perspective, and a collaborative mindset. You know how to see the big picture, dive into the details when needed, and turn complex security challenges into solutions that help the business move forward confidently.
- Bachelor’s degree in computer science, cybersecurity, or a related field—or an equivalent combination of education and relevant professional experience.
- At least seven years of experience in information security, including three or more years in security architecture or another senior-level security role.
- At least three years of hands-on experience in cloud security.
- Broad expertise across one or more of the following areas:
- Enterprise and cloud security architecture
- Secure-by-design and secure-by-default principles
- Security standards, architecture patterns, and control frameworks
- Threat modeling and risk assessment
- Identity and access management
- Application and API security
- Security governance and regulatory compliance
- Security strategy and technology roadmap development
- Emerging technologies and security capabilities
- Strong knowledge of the security risks and threats facing large, complex systems and networks—with the judgment to address them effectively.
- Experience designing sustainable controls that support regulatory and compliance requirements, including PCI, SOC, and SOX.
- Experience with scripting, programming, automation, and AI-enabled security technologies.
- A proven ability to collaborate with engineering, product, IT, risk, compliance, and business teams.
- Strong analytical and problem-solving skills, with the ability to navigate ambiguity and resolve complex challenges.
- The ability to translate highly technical information into clear, actionable guidance for audiences at every level of the organization.
- Excellent relationship-building, communication, presentation, and influencing skills.
- Preferred certifications include CISSP, CCSP, AWS Certified Security - Specialty, or Microsoft Certified: Azure Security Engineer Associate.
Location
US Remote or Hybrid