Executive Director, Application Security Architect
6 days ago
We are seeking a visionary and hands-on Executive Director of Security Architecture with mature skill in Application Security/DevSecOps, Data Security and Cloud who will excel in leading the strategic design, implementation, and continuous improvement of Sony Pictures application security posture. This is a highly influential role, requiring both deep technical expertise and business-aligned leadership. The ideal candidate will have previous experience in application architecture and engineering and is now focused on information and cybersecurity to define robust security design patterns, reference architecture across applications, data, and cloud environments, proactively addressing cyber risks and promoting secure coding practices aligned with the Sony Pictures goals.
Key Responsibilities
- Strategic Vision: Develop and articulate a comprehensive security architecture strategy for application, data and cloud for Sony Pictures information and content assets. Continuously evaluate emerging threats and industry best practices to evolve our security posture.
- Define, document, and promote security architecture, DevSecOps, and technical standards throughout Sony Pictures.
- Lead the development and implementation of comprehensive security architecture strategies for application, data and cloud environments to protect against current and emerging threats.
- Architecture Design and Engineering: Lead hands-on design and implementation reviews of security solutions across application, data and cloud domains. Thoroughly assess security risks in existing and planned systems and infrastructure. Define technical security standards and governance processes.
- Lead security architecture review processes, ensuring all new systems and changes to existing systems comply with Sony's security standards.
- Conduct in-depth assessments of current security architectures, identify threats and vulnerabilities, and develop mitigation strategies.
- Recommend design patterns and security best practices for technology and application implementations.
- Security Solution Evaluation and Selection: Research, evaluate, and recommend cutting-edge security technologies and tools. Oversee proof-of-concept initiatives and guide vendor selection.
- Conduct market research to assess the landscape of available security solutions in specific areas (e.g., data security, cloud security, application security).
- Liaise with IT and security operations teams to define and orchestrate POC testing for shortlisted security solutions.
- Enterprise Security: Work closely with IT infrastructure, application development, DevSecOps, and business stakeholders to embed application security principles throughout all phases of technology development and deployment.
- Develop and maintain security architecture documentation and standards.
- Collaborate with IT and business units to integrate security best practices into the development lifecycle of projects and technology initiatives.
- Governance and Compliance Maintain a deep understanding of security regulations and frameworks (e.g., NIST, ISO 27001, PCI DSS, OWASP, SAFECode) for designing systems and processes that not only protect data but also demonstrate adherence to industry standards and regulations.
Required Qualifications
Technical Skills
- Mastery of Security Architecture Principles: Deep understanding of defense-in-depth strategies, zero-trust models, identity and access management (IAM), AI Security, Product Security, Threat modeling, GPDR and privacy, vulnerability assessment techniques, DevSecOps, Secure Coding Principles and Practices.
- Application Security Expertise: Demonstrated experience with Full Stack WebApp/API, firewalls (WAFs), secure software development lifecycles (S-SDLCs), DevSecOps, IaC, Docker/Container Security, Data Security, static/dynamic application security testing (SAST/DAST), API security, Authentication/Authorization Best Practices, and Secure Coding Standards and Techniques.
- Cloud Security Expertise: Proficient in cloud security models (IaaS, PaaS, SaaS), cloud-native security tools, encryption and key management, privileged access management (PAM), security posture and compliance within cloud environments, mainly AWS and Azure.
- Network Security Expertise: Excellent knowledge of firewalls, intrusion detection/prevention systems (IDS/IPS), network segmentation, VPNs, network access control (NAC), DMZ design, and DDoS mitigation.
- Proficiency in Major Frameworks: Demonstrated knowledge of NIST Cybersecurity Framework, ISO 27001/27002, PCI DSS (if handling payment card data), OWASP, SAFECode, and other relevant entertainment industry guidelines such as TPN and MotionLabs.
- Translation to Practice: The ability to take concepts from frameworks and benchmarks and apply them practically to the design of security solutions. This includes mapping controls, risk assessment techniques, and documentation in alignment with standards.
Leadership Skills
- Leadership: Strong ability to lead, motivate, and develop a team of security professionals. Foster a collaborative and results-oriented environment.
- Strategic Thinking: Capacity to align security objectives with Sony broader business and Cybersecurity goals, effectively quantifying risks and prioritizing initiatives for optimal impact.
- Communication and Influence: Excellent written and verbal communication skills. The ability to translate technical concepts for non-technical audiences and secure buy-in at the executive level.
- Problem-solving: Analytical mindset with demonstrated adeptness in solving complex security challenges.
- Adaptability: Ability to thrive in a dynamic, fast-paced environment where technologies and threat landscapes rapidly evolve.
Education and Experience
- Bachelor's degree in Computer Science, Information Security, or a related field. Advanced technical certifications strongly preferred (CISSP, CCSP, CSSLP, OSCP, or vendor-specific architecture and security certifications).
- Minimum of 10+ years of progressive experience in cybersecurity, application security engineering, with at least 5+ years in a security architecture leadership role with hands-on experience.
Sony Pictures Entertainment is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, age, sexual orientation, gender identity, or other protected characteristics.
SPE will consider qualified applicants with arrest or conviction records in accordance with applicable law.
To request an accommodation for purposes of participating in the hiring process, you may contact us
-
Director of Field Marketing
5 days ago
Culver City, California, United States Pressed Juicery Full time $80,000 - $120,000 per yearPressed is growing and seeking aDirector of Field Marketingto fuel community connection, store growth, and brand visibility.From 5Ks and school partnerships to corporate coupon programs and community fairs, this leader ensures that something meaningful happens every week in every storeAbout Pressed JuiceryPressed Juicery is at the forefront of the wellness...
-
Vice President of Security
5 days ago
Culver City, California, United States Paychex, Inc. Full time $150,000 - $200,000 per yearThis important position, Vice President of Security, directs the development, planning and daily operations of the Behavioral Health Security Services (BHSS) security services provided under contract to other agencies. Directs the monitoring, compliance and required reporting security incidents in conjunction with contracted agencies Regulatory Officer,...
-
Account Executive, Brands
1 day ago
Culver City, California, United States Sensor Tower Full time $100,000 - $105,000 per yearThe candidate we are looking for will have a successful record in closing new SaaS business in North America. A tenacious hunter with a strong comprehension of the digital economy's processes and technology fundamentals, you can clearly and successfully understand a client's business and needs and translate those learnings into a successful SaaS license.We...
-
Creative Executive, AI Studio
1 day ago
Culver City, California, United States Amazon Full time $100,500 - $183,900 per yearDESCRIPTIONExternal Summary: The Live Action team of our AI Studio is seeking Creative Executives across all experience levels. We are seeking technology-forward creative and production leaders responsible for the production of GenAI live-action projects. These roles combine deep traditional production experience with cutting-edge GenAI artistry, enabling us...
-
Creative Director, Brand
5 days ago
Culver City, California, United States Audible Full time $127,100 - $210,300 per yearDescriptionAt Audible, we believe stories have the power to transform lives. It's why we work with some of the world's leading creators to produce and share audio storytelling with our millions of global listeners. We are dreamers and inventors who come from a wide range of backgrounds and experiences to empower and inspire each other. Imagine your future...
-
Lead Application Security Engineer
3 days ago
Foster City, California, United States Replit Full time $150,000 - $250,000 per yearReplit is the fastest way to turn ideas into software. With our powerful AI-powered Agent and Assistant, anyone can create and launch apps from natural language in just one click. Build and deploy full-stack applications directly from your browser—no setup required. Never written a line of code in your life? No problem. Replit makes software creation...
-
CRM Enterprise Architect
3 days ago
Foster City, California, United States Zoox Full time $190,000 - $239,000We are seeking an experienced and dynamic Salesforce CRM Architect & Multidisciplinary Leader with 8+ years of experience to drive the evolution of our Salesforce implementation and lead complex, cross-functional programs across our organization. As a key leader, you will combine strategic vision with hands-on expertise to not only optimize our Salesforce...
-
Enterprise Architect
5 days ago
Redwood City, California, United States INFICARE SOFTWARE TECHNOLOGIES PRIVATE LIMITED Full time $120,000 - $250,000 per yearEnterprise Architect -Location: Redwood City, CAKey Skills:Cloud MigrationNetwork SecurityInfra + AWS + Data CenterMust have skillsEnterprise architect with capability across Infra, Cloud and Networks.Core understanding of Security concepts.Ability to decode enterprise architecture for apps. (with appropriate conversations)Communication and people management...
-
Security Officer
1 day ago
Culver City, California, United States Allied Universal Full time $98,384 per yearOverview Allied Universal, North America's leading security and facility services company, offers rewarding careers that provide you a sense of purpose. While working in a dynamic, welcoming, and collaborative workplace, you will be part of a team that contributes to a culture that positively impacts the communities and customers we serve. Job Description As...
-
Senior Development Architect
5 days ago
Redwood City, California, United States Informatica Full time $150,000 - $250,000 per yearBuild Your Career at InformaticaWe seek innovative thinkers who believe in the power of data to drive meaningful change. At Informatica, we welcome adventurous, work-from-anywhere minds eager to solve the world's most complex challenges. Our employees are empowered to push their bold ideas forward, and we are united by a shared passion for using data to do...