Job offer
Sr Lead - Security Architect
The Sr Lead - Security Architect is responsible for developing security architectures and strategies at Northern Trust and is expected to act as a security subject matter expert in the planning and implementation of IT projects. The position requires in-depth knowledge of information security and experience working with diverse teams.
Job description
Tasks
- Architectures that are used by several business or application systems
- Provide extensive, in-depth technical advice to customers, partners and management to develop plans and directions for the integration of business unit requirements
- Collaborate with security teams, infrastructure and application teams to improve overall security posture through secure design/architecture
- Acts as a security expert for cloud migration projects
- Understands the decision-making processes involved in technology selection, such as design, data security, client-server communication, etc.
- Work with management to build new and ongoing partnerships with various teams and business units
- Evaluates and selects from existing and new technologies those that best fit the business/project requirements
- Shares expertise through consulting, presentations and documentation, etc.
- Experienced, functional expert with technical and/or business knowledge and functional expertise
- Executes complex initiatives that span multiple disciplines and/or ambiguous projects
- Demonstrates a holistic, cross-functional perspective that works with business teams to improve efficiency, effectiveness and productivity
- Strategic in the development, implementation and management of programs in various areas
Management tasks
- Leads and influences security architects to align with overall strategy and priorities
- Experience in security consulting for application teams
- Knowledge of network architecture concepts, including topology, protocols and components
- Knowledge of WPAF, App Proxy and C2D
- Deep understanding of SIEM and experience with Microsoft Defender, Entra, KQL, APIM, endpoint protection, scripting, GitPilot
- Very good understanding of Zero Trust architecture and experience with relevant tools/technologies
- Knowledge of privileged access management, threat hunting, data protection, encryption, authentication/authorization, vulnerability management systems, cloud security status management
- Very good understanding of concepts of Docker, containers, serverless computing and Kubernetes
- Knowledge of third-party security/risk areas
- Must be able to represent the safety function in technical discussions and work towards outcomes with minimal guidance
- Knowledge of AI/ML, DevSecOps, CI/CD pipelines, IaC and relevant tools
Requirements
- Bachelor's degree and experience in information security or an equivalent combination of education and work experience
- Excellent consultative and communication skills and the ability to work effectively with clients, partners and IT managers and staff
- Six years industry experience with at least four years in a mainstream information security role
- CISSP, CISM, CISSP or Security+ certification preferred
- Strong collaboration and analytical skills
- Deep knowledge of application or infrastructure system architecture, typically experience with multiple system technologies
Requirements/responsibilities
- Experience with endpoint security status management
- Very good understanding of the data security domain and relevant standards, controls and best practices
We offer
- Salary range: $114,500 - $194,700 USD
- Comprehensive benefits package, including retirement benefits (401k and pension), health and welfare benefits (health insurance, dental insurance, vision insurance, spending accounts and disability insurance), paid vacation, parental and dependent care leave, life and accident insurance and other voluntary and non-materi
Job details