Principal Architect, Security Architecture

🔥 17 hours ago

🏖️ New Jersey, North Carolina, +3 more states – Remote

infoinfo

💵 $110.5k - $221k / year

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Cencora

Cencora

10,000+ employees

💼 Consulting

📦 Logistics

🏥 Healthcare

Consulting • Logistics • Healthcare

Cencora is a company dedicated to improving the health and well-being of both people and animals globally. Built on the legacy of AmerisourceBergen, Cencora offers a wide range of industry-leading solutions that encompass specialty logistics, warehousing, drug research, clinical development support, and more. They provide commercialization and patient access support and offer wholesale and specialty distribution services. Cencora serves a diverse clientele, including pharmaceutical companies, physician practices, pharmacies, and health systems. The company also extends its services to animal health, managing operations and delivering products for animal pharmaceutical care. With a strong global footprint, Cencora aims to reshape healthcare delivery through innovative products and solutions, striving to create healthier futures for all.

📋 Description

• Define and evolve enterprise cybersecurity architecture aligned with business strategy, enterprise architecture, technology modernization, regulatory obligations, and risk appetite • Establish cybersecurity architecture principles, reference architectures, reusable patterns, technical standards, and design requirements • Maintain or support a multi-year cybersecurity architecture roadmap • Translate Zero Trust principles into practical architecture across identity, applications, workloads, networks, endpoints, data, cloud, SaaS, OT/IoT, and third-party connectivity • Identify architectural fragmentation, redundant controls, security gaps, and opportunities to simplify the security technology ecosystem • Establish target-state and transition architectures for complex legacy environments • Serve as senior cybersecurity architecture authority for significant technology initiatives and high-risk architecture decisions • Lead or materially influence security architecture reviews for strategic platforms, cloud environments, applications, infrastructure, acquisitions, SaaS platforms, data environments, and emerging technologies • Partner with Enterprise Architecture to embed cybersecurity architecture within enterprise technology strategy • Define security architecture across public cloud, private cloud, hybrid infrastructure, SaaS, containers, Kubernetes, serverless, APIs, and platform engineering environments • Establish cloud security patterns for identity, workload protection, network segmentation, encryption, secrets, logging, configuration, exposure management, and security automation • Partner with cloud, platform engineering, and cybersecurity engineering teams to embed security into landing zones, infrastructure-as-code, CI/CD pipelines, developer platforms, and automated provisioning • Establish data security architecture covering classification, encryption, tokenization, key management, secrets, DLP, data access, privacy, lineage, and data movement • Provide architecture leadership for generative AI, machine learning, AI agents, RAG architectures, model integration, AI platforms, and third-party AI services • Establish patterns addressing AI-specific threats and partner on responsible enterprise AI adoption • Integrate cybersecurity architecture into application modernization and secure software development practices • Establish reusable security patterns for APIs, microservices, authentication, authorization, secrets, service-to-service communications, software supply chains, and cloud-native applications • Partner with IAM architecture and engineering to establish enterprise identity security patterns and advance identity-aware access models • Incorporate detection, telemetry, investigation, containment, recovery, and operational resilience into architecture decisions • Partner with Cyber Defense, SOC, Incident Response, Threat Intelligence, Threat Hunting, Vulnerability Management, and Red Team functions • Translate threat intelligence, attack patterns, incidents, vulnerabilities, and control failures into architecture improvements • Apply threat modeling and attack-path analysis to major architecture decisions • Define cybersecurity architecture patterns for acquisitions, divestitures, joint ventures, strategic partners, and third-party connectivity • Partner directly with cybersecurity and technology engineering teams to convert architecture into executable capabilities • Validate that reference architectures are technically achievable, scalable, supportable, and economically reasonable • Participate in proofs of concept, technology evaluations, design workshops, and major implementation decisions • Assess emerging security technologies, architectural approaches, attack techniques, and industry practices • Provide technical recommendations on cybersecurity technology investments • Influence build-versus-buy decisions and strategic vendor selections • Identify capabilities to consolidate, modernize, automate, replace, or retire • Reduce unnecessary security-tool proliferation and architectural complexity

🎯 Requirements

• 12+ years of progressive experience, including 8+ years in cybersecurity architecture, security engineering, infrastructure architecture, cloud security, application security, or related technology disciplines • Significant experience designing security solutions within large, complex enterprise environments • Ability to architect across multiple security domains • Deep understanding of cloud and modern enterprise architecture • Strong knowledge of Azure and practical experience with AWS and/or GCP • Strong understanding of identity, network security, endpoint security, data protection, application security, APIs, cloud-native architecture, and cyber defense • Experience with Zero Trust architecture and identity-centric security • Experience integrating security into cloud engineering, DevSecOps, CI/CD, infrastructure-as-code, and platform engineering • Experience evaluating enterprise security technologies and translating requirements into architecture and engineering decisions • Strong understanding of threat modeling, attack paths, vulnerabilities, security controls, and defense-in-depth • Ability to communicate complex technical subjects to engineers, architects, executives, risk professionals, and business leaders • Experience in a large global or highly regulated enterprise is preferred • Bachelor’s Degree in Cybersecurity, Computer Science, Information Technology, or a related discipline, or equivalent related experience (preferred) • Experience with NIST Cybersecurity Framework, NIST SP 800-53, NIST Zero Trust Architecture, ISO/IEC 27001, HITRUST, CIS Controls, OWASP, Cloud Security Alliance, AWS Well-Architected Framework, Microsoft Azure Well-Architected Framework, or Google Cloud Architecture Framework is preferred • Experience with M&A integration, divestitures, multi-tenant environments, hybrid infrastructure, and large-scale technology modernization is strongly preferred • Relevant certifications may include CISSP, CCSP, SSCP, SABSA, cloud architecture/security certifications, or equivalent demonstrated expertise

🏖️ Benefits

• Medical, dental, and vision care • Backup dependent care • Adoption assistance • Infertility coverage • Family building support • Behavioral health solutions • Paid parental leave • Paid caregiver leave • Training programs • Professional development resources • Mentorship programs • Employee resource groups • Volunteer activities • Inclusive culture and wellness resources

Apply Now

Similar Jobs

🔥 19 hours ago

Optiv

1001 - 5000

Security engineering director leading SIEM, EDR, SOAR, and MDR platforms for Optiv’s managed security services. Directing practice strategy, service quality, automation, staffing, and client escalations.

🔥 20 hours ago

AHEAD

1001 - 5000

💼 Consulting

🤖 Artificial Intelligence

🏢 Enterprise

Principal Technical Consultant securing cloud platforms and applications for AHEAD, which builds digital business platforms. Leading cloud security, application security, client delivery, and security service development.

🇺🇸 United States – Remote

💵 $250k - $300k / year

💰 $5.7M Venture Round - AHEAD on 2024-05

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

🔥 21 hours ago

Twilio

5001 - 10000

🔌 API

🤝 B2B

Staff AI Security Engineer building AI-driven threat detection and response for Twilio’s global communications platform. Developing cloud security tooling, automation, and incident-response capabilities.

🔥 22 hours ago

Blackbaud

1001 - 5000

☁️ SaaS

🤝 Non-profit

🤝 B2B

Principal Security Engineer building SOAR workflows, AI-assisted triage, and SIEM integrations. Automating Blackbaud’s responsible-AI-powered cybersecurity operations.

🇺🇸 United States – Remote

💵 $117.2k - $157.5k / year

💰 $6.5M Series A on 2000-02

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

🕒 Yesterday

Tidal Financial Group

51 - 200

💼 Consulting

📣 Marketing

💸 Finance

VP leading IT and cybersecurity strategy, reliability, and risk for Tidal Financial Group’s ETF investment technology platform. Advising executives and managing teams, vendors, incidents, and compliance.