
Senior Director – Enterprise Security Architecture
Posted Aug 21

Posted Aug 21
This is a fully remote position, open to applicants in Arizona, +2 more states.
• Define and uphold the vision for enterprise security architecture along with a multi-year strategic roadmap.
• Ensure alignment of security architecture with corporate strategies, digital transformation efforts, and technology modernization projects.
• Create target-state architectures that incorporate Zero Trust principles.
• Convert risk appetite into actionable architectural guidelines.
• Develop and sustain standardized reference architectures for cloud, hybrid infrastructures, IAM, data protection and privacy, network segmentation, application security, AI/GenAI security, and OT/IoT.
• Guarantee the integration of security-by-design principles within SDLC and platform engineering frameworks.
• Oversee architecture artifacts across international business units.
• Lead or co-lead the Security Architecture Review Board.
• Establish processes for security architecture reviews, risk exception workflows, and design assurance criteria.
• Collaborate with Enterprise Architecture to facilitate integrated technology governance.
• Convert regulatory and risk requirements into technical control standards.
• Ensure adherence to global regulatory standards and maintain security benchmarks aligned with NIST, ISO, SOC 2, PCI, HIPAA, GDPR, and related frameworks.
• Promote reusable security requirement models and advocate for the automation of control validation and policy-as-code enforcement.
• Aid in regulatory compliance and data residency/sovereignty responsibilities across different global jurisdictions.
• Work in partnership with Legal, Privacy, and Compliance teams regarding emerging regulatory challenges.
• Provide architecture documentation for audit and regulatory assessments.
• Conduct security architecture evaluations for acquisitions and outline security blueprints for integration/divestiture.
• Support ERP, digital, AI, and cloud transformation initiatives.
• Develop rapid risk assessment frameworks for new technologies.
• Set KPIs, OKRs, and performance metrics dashboards.
• Monitor control design efficiency and systemic risk mitigation.
• Integrate architectural insights with cyber analytics programs.
• Report on the enterprise architecture risk posture to executive leadership.
• Lead a global team of security domain architects.
• Define operating models for centralized and federated teams.
• Create career paths and technical competency frameworks for architecture roles.
• A Bachelor’s degree in computer science, software engineering, systems engineering, information technology, cybersecurity, or a related field, or equivalent experience is required.
• A Master’s Degree in Business Administration, Computer Science, Information Technology, or any other related discipline, or equivalent relevant experience.
• Over 12 years of relevant or directly related experience.
• At least 8 years in a managerial role, ideally within information security.
• Preferred certifications include CCSP, CISSP, SABSA, TOGAF, CRISC, CISM, Microsoft SC-100, ITIL, OSCP, and PMP.
• Technical expertise in IT Risk Management, IT Controls, Cyber Attack Mitigation, Enterprise IT Management, Cloud Security, Network Security, Identity & Access Management, Application Security, Service Level Maintenance, Information Security Strategy Continuity, Threat Modelling, and security standards such as SOX, ISO 27001/27002, COBIT, ITIL, NIST, and PCI.
• Proficiency in Microsoft Office Suite.
• Familiarity with security tools including CSPM, CWPP, CDR, CNAPP, SIEM, EDR, Email Security Gateway, SOAR, firewalls, antivirus, VPN, IDS/IPS, and proxies.
• Understanding of both open-source and commercial security testing tools.
• Knowledge of threat intelligence tools.
• Familiarity with vulnerability testing tools.
• Experience in enterprise financial management and planning.
• Medical, dental, and vision care.
• Backup dependent care.
• Adoption assistance.
• Infertility coverage.
• Family building support.
• Behavioral health solutions.
• Paid parental leave.
• Paid caregiver leave.
• Training programs.
• Professional development resources.
• Mentorship programs.
• Employee resource groups.
• Volunteer activities.
GitLab
GitLab
Cisco
Lovesac
Get handpicked remote jobs straight to your inbox weekly.