Information Security Lead Architect
2 weeks ago
Job Summary
The Information Security Lead Architect is responsible for leading the design and implementation of enterprise-wide cybersecurity architecture solutions that protect critical systems, data, and infrastructure. This role provides deep expertise in security frameworks such as NIST CSF, ISO 27001, and Zero Trust , along with knowledge of cloud security, identity and access management (IAM), and data protection technologies . The Lead Architect assesses security risks, defines technical requirements, and develops strategies to mitigate vulnerabilities while aligning with organizational and regulatory standards. The position involves designing secure network and cloud architectures, implementing strong access control models, and establishing encryption and monitoring mechanisms to enhance resilience across hybrid environments.
The role plays a vital part in risk management , conducting assessments, identifying control gaps, and driving remediation strategies that strengthen the company's overall security posture. As a technical leader , the Information Security Lead Architect provides guidance, mentorship, and direction to security and technology teams, fostering collaboration, innovation, and continuous improvement. Serving as a trusted subject matter expert , this role influences the selection, design, and implementation of moderate- to high-complexity security solutions, ensuring alignment with business objectives, compliance requirements, and industry best practices.
Job Responsibilities
- Develops and contributes to the implementation of the information security architecture strategy and roadmap, aligning it with business objectives, regulatory requirements, and industry best practices
- Provides guidance to the security team, overseeing the design and integration of security solutions
- Works with business units, IT teams, executive leadership, and vendors to communicate security risks and strategies
- Recommends and implements new security technologies and tools
- Defines and enforces security standards and frameworks
- Collaborates with enterprise architects to integrate security controls into IT architecture
- Develops and promotes security architecture processes and templates
- Conduct security architecture reviews and risk assessments, identifying potential vulnerabilities, weaknesses, and gaps in existing systems and proposing effective solutions to mitigate risks
- Serves as a mentor to junior security architects and team members
- Participates in security forums and conferences
- Provides technical leadership and guidance to the information security team and other stakeholders, overseeing the design, implementation, and integration of security solutions across the organization
- Ensures collaboration of business units, IT teams, and vendors to assess security requirements, evaluate solution options, and architect secure systems and applications that meet business needs while maintaining a strong security posture
- Defines and enforces information security standards, frameworks, and reference architectures, ensuring consistent and standardized security practices across all technology domains and projects
- Oversees the conduct of security architecture reviews and risk assessments, identifying potential vulnerabilities, weaknesses, and gaps in existing systems and proposing effective solutions to mitigate risks
- Oversees the design and implementation of security controls, such as firewalls, intrusion detection/prevention systems, encryption mechanisms, and secure network architectures, to protect the organization's assets and data
- Collaborates with enterprise architects and IT stakeholders to integrate security controls and requirements into overall IT architecture frameworks, ensuring the security-by-design principle is followed throughout the development and implementation lifecycle
- Provides subject matter expertise in security technologies and solutions, evaluating emerging security trends and products, and making recommendations for the adoption of new technologies to enhance the organization's security posture
Participate in security incident response and investigation activities, coordinating with internal teams and external entities to effectively respond to and mitigate security incidents, and providing guidance on post-incident remediation actions
Job Qualifications
- 10+ years of experience in Information Security or related field.
Bachelor's degree in Computer Science, Information Technology or a related field and/or commensurate experience. Master's degree in related field is preferred.
Certifications
- Certified Information Systems Security Professional (CISSP
- Certified Information Security Manager (CISM)
- Azure Solutions Architect (Preferred), AWS Certified Solutions Architect
- TOGAF
Other relevant certifications
Preferred Qualifications, Skills, and Capabilities
Technology Knowledge:
- Expertise in security practices and tools designed to protect containerized applications, including container image scanning, runtime protection, least-privilege configurations, and native container security measures.
- Experience in the design, implementation, and ongoing reviews of security controls for one or more public cloud providers (e.g., Azure, AWS).
- Skills in the design, assessment, and implementation of encryption security controls, including protections against emerging quantum computing threats.
- Proficiency in assessing overall network security posture and vulnerabilities, and designing and implementing network security controls (e.g., Firewalls, IPS, ZTNA).
- Background in application security and the software development lifecycle.
Frameworks:
- Familiarity with the NIST Cybersecurity Framework.
- Knowledge of ISO/IEC 27001 standards
- Understanding of the SABSA framework.
Regulatory:
- Awareness of GDPR (General Data Protection Regulation) requirements.
- Knowledge of New York Department of Financial Services (DFS) cyber security regulations.
Understanding of the California Consumer Privacy Act (CCPA).
Location
Hybrid – defined as working three or more days per week in the office if the employee's residence is within 50 miles of Westfield Center, OH; or Remote – if the employee resides more than 50 miles from Westfield Center, OH
Behavioral Competencies
- Directs work
- Collaborates
- Develops talent
- Customer focus
- Communicates effectively
- Ensures accountability
- Decision quality
- Business insight
- Nimble learning
- Builds effective teams
Manages complexity
This job description describes the general nature and level of work performed in this role. It is not intended to be an exhaustive list of all duties, skills, responsibilities, knowledge, etc. These may be subject to change and additional functions may be assigned as needed by management.
-
Security Officer
4 days ago
Westfield Center, Ohio, United States Allied Universal Full timeOverview Allied Universal, North America's leading security and facility services company, offers rewarding careers that provide you a sense of purpose. While working in a dynamic, welcoming, and collaborative workplace, you will be part of a team that contributes to a culture that positively impacts the communities and customers we serve. We offer a...
-
Security Engineering Intern
2 weeks ago
Westfield Center, Ohio, United States Westfield Insurance Full time $60,000 - $80,000 per yearJob SummaryJoin our Security Engineering team as an intern and gain hands-on experience securing and supporting the technologies that protect Westfield's network, data, and users. You'll work alongside experienced engineers to help automate security processes, evaluate new tools, and support initiatives that improve visibility, detection, and response...
-
Security Engineering Intern
2 weeks ago
Westfield Center, Ohio, United States Westfield Insurance Full time $60,000 - $90,000 per yearJob SummaryJoin our Security Engineering team as an intern and gain hands-on experience securing and supporting the technologies that protect Westfield's network, data, and users. You'll work alongside experienced engineers to help automate security processes, evaluate new tools, and support initiatives that improve visibility, detection, and response...
-
Data Technology Lead
17 minutes ago
Westfield Center, Ohio, United States Westfield Insurance Full timeDescriptionJob SummaryThe role is part of the Data, Analytics and Reporting team. This role leads a team of data engineers and data testers to deliver secure, scalable, and high-quality data solutions that support analytics, reporting, and business operations. The Data Technology Lead collaborates with stakeholders to understand technology and data...
-
Middle Market Lead Field Underwriter
2 weeks ago
Westfield Center, Ohio, United States Westfield Insurance Full timeJob SummaryThe Commercial Lines Middle Market Lead Field Underwriter, working under limited supervision, represents the company among a defined territory of agencies, with responsibility for the profitable production and ongoing management of commercial and agribusiness accounts utilizing advanced technical underwriting and sales ability. The role leads the...
-
Middle Market Lead Field Underwriter
9 hours ago
Westfield Center, Ohio, United States Westfield Insurance Full timeDescriptionJob SummaryThe Middle Market Lead Field Underwriter, working under limited supervision, represents the company among a defined territory of agencies, with responsibility for the profitable production and ongoing management of commercial and agribusiness accounts utilizing advanced technical underwriting and sales ability. The role leads the...
-
DevSecOps Leader
1 week ago
Westfield Center, Ohio, United States Westfield Insurance Full timeJob SummaryWe are seeking a dynamic and experienced DevSecOps Leader to drive secure, scalable, and resilient software delivery across our organization. This role blends deep technical expertise in DevSecOps practices with strategic oversight of Change and Release Management, ensuring that all deployments are secure, compliant, and seamlessly...
-
Auto Physical Damage Claims Lead Appraiser
2 weeks ago
Westfield Center, Ohio, United States Westfield Full time $60,000 - $120,000 per yearJob SummaryThe Auto Physical Damage Claims Lead Appraiser works within significant limits and authority on Automobile Physical Damage (APD) and specialty equipment claim. The role appraises, analyzes, negotiates, and settles auto physical damage (APD) and specialty equipment claims requiring physical inspection while delivering quality customer service in a...
-
IT Quality Engineering Manager
2 weeks ago
Westfield Center, Ohio, United States Westfield Insurance Full timeJob SummaryThe IT Manager is responsible for overseeing the organization's information technology systems and infrastructure. The Quality Engineering Manager role is specifically responsible for leading and managing quality engineering on asset teams as they implement, enhance and support business applications and ensures the efficient delivery of...
-
Threat and Vulnerability Management
4 days ago
Westfield Center, Ohio, United States Westfield Insurance Full timeJob SummaryYou will be part of the Threat and Vulnerability Management (TVM) team, contributing to identifying, analyzing, and mitigating security vulnerabilities. You will gain hands-on experience with vulnerability assessment tools and techniques, participate in security incident simulations, and assist in creating reports on vulnerabilities and security...