Enterprise Security Architect at Corebridge Financial leading secure system designs and implementation. Collaborating with technical teams to foster a security-first culture and align on security initiatives.
Responsibilities
Design, document, and maintain secure architecture patterns, diagrams, and reference architectures to guide security implementations across the organization.
Conduct comprehensive security reviews of applications, systems, and networks, identifying vulnerabilities and recommending secure design strategies.
Perform threat modeling and risk assessments to identify potential vulnerabilities and recommend appropriate mitigating controls.
Partner with enterprise and line-of-business architects to integrate security seamlessly into designs and processes.
Translate complex technical security concepts into clear, actionable insights for C-level executives, business leaders, non-technical stakeholders, and technical engineering teams.
Recommend mitigating controls, security tools, and remediation strategies to address security gaps and minimize risk.
Stay current on security threats, vulnerabilities, and technologies to enhance the organization’s security posture.
Promote a security-first culture by mentoring technical teams, educating stakeholders, and embedding security best practices into organizational workflows.
Requirements
7+ years of hands-on experience in infrastructure, systems, networks, applications, or cloud security.
5+ years of enterprise architecture experience required.
Ability to create and review diagrams using tools such as Visio or Lucidchart.
Familiarity with secure architecture patterns, reference architectures, and frameworks.
Expertise in SaaS, PaaS, and IaaS environments, including platforms like AWS, Azure, M365, and Salesforce.
Experience working with various identity and access management (IAM) solutions such as CyberArk, Okta, Ping Identity, Entra ID/Azure AD, and other tools supporting SSO, MFA, and PAM.
Familiarity with tools like Jira, Confluence, and ServiceNow for workflow management and documentation.
Expertise in threat modeling, vulnerability management, and risk assessments.
Working knowledge of regulatory requirements and compliance standards such as NYDFS, CCPA, GLBA, PCI-DSS, HIPAA, SOX, and GDPR.
Relevant certifications such as CISSP, CCSP, or equivalent.
Ability to work independently or collaboratively in a team-oriented environment.
Bachelor’s degree in a relevant field or proven record of experience in Information Technology and Cyber Security roles.
Benefits
Health and Wellness: We offer a range of medical, dental and vision insurance plans, as well as mental health support and wellness initiatives to promote overall well-being.
Retirement Savings: We offer retirement benefits options, which vary by location. In the U.S., our competitive 401(k) Plan offers a generous dollar-for-dollar Company matching contribution of up to 6% of eligible pay and a Company contribution equal to 3% of eligible pay (subject to annual IRS limits and Plan terms). These Company contributions vest immediately.
Employee Assistance Program: Confidential counseling services and resources are available to all employees.
Matching charitable donations: Corebridge matches donations to tax-exempt organizations 1:1, up to $5,000.
Volunteer Time Off: Employees may use up to 16 volunteer hours annually to support activities that enhance and serve communities where employees live and work.
Paid Time Off: Eligible employees start off with at least 24 Paid Time Off (PTO) days so they can take time off for themselves and their families when they need it.
Vice President leading Technology Governance at LPL Financial, enhancing cyber program strategy and governance. Collaborating across teams to ensure compliance and risk management in financial services.
Senior Cyber Security Consultant developing ISMS/BCMS with a focus on customer success and strategic growth. Leading projects, ensuring compliance, and driving business development initiatives.
IT Support Specialist managing security - related issues for customers and support team in a rapidly growing IT company. Troubleshooting, audits, and guiding on best practices in cloud environments.
Business Information Security Officer overseeing Information Security policies and compliance for Engine by Starling. Managing a team and responding to client needs in a hybrid working environment.
IT Service Operations Manager overseeing service quality for NOC/SOC and Cyber Security operations. Collaborating with stakeholders to ensure stability and compliance across IT services.
IT Operations Manager ensuring service quality for complex IT platforms in NOC/SOC environments. Managing incidents, changes, and SLA compliance with a focus on collaboration and process improvement.
Business Exp Plan & Admin Spec Sr. role at PNC executing growth strategies within physical security. Collaborating with teams for effective planning and reporting to meet business objectives.
Cyber Security Consultant managing governance, risk, and compliance for Var Group in Italy. Focusing on NIS2 and supporting clients on cyber security challenges across industries.
Consultant for cybersecurity and compliant software development supporting medical device manufacturers. Creating security documentation and facilitating workshops in a hybrid or remote setting.
IT - Systemadministrator managing network infrastructure and security solutions for MONTANA. Responsible for optimizing firewalls and coordinating IT projects with external partners in a growing energy company.