Principal Security Architect
Indexed description
The Company is an equal employment opportunity employer.
Responsibilities
The ZTNA Principal Architect & Program Lead is responsible for defining, governing, and delivering the enterprise Zero Trust Network Access (ZTNA) strategy and implementation. This role leads cross-functional programs to transition from legacy network access models to identity-driven, least-privilege architectures, while incorporating advanced capabilities such as automated remediation and AI security controls.
- Define and maintain enterprise ZTNA strategy, roadmap, and reference architectures.
- Lead enterprise-wide ZTNA transformation programs from strategy through execution.
- Design and implement both macro-segmentation and micro-segmentation strategies across network and application environments.
- Architect identity-centric access controls based on user, device, and contextual risk signals.
- Drive integration of ZTNA with the enterprise security ecosystem (SIEM, SOAR, EDR, DLP, IAM).
- Design and implement automated remediation capabilities leveraging SOAR, orchestration platforms, and policy engines to dynamically respond to threats and non-compliance.
- Establish and enforce security controls for AI-enabled systems interacting within ZTNA frameworks, including model access controls, data protection, and monitoring of AI-driven access behaviors.
- Conduct threat modeling and risk assessments across access pathways, segmentation boundaries, and AI-integrated services.
- Lead vendor evaluation and selection for ZTNA, SASE, automation, and AI security technologies.
- Provide executive advisory and governance for Zero Trust and secure access initiatives.
- Mentor architecture and engineering teams and establish a Zero Trust center of excellence.
- Collaborate across security, IT, cloud, and application teams in a fast-paced enterprise environment to drive successful ZTNA adoption.
- 10–15+ years in cybersecurity, network security, or enterprise architecture roles.
- 5+ years leading large-scale security or infrastructure transformation programs.
- Demonstrated experience designing and implementing Zero Trust and ZTNA architectures.
- Strong hands-on experience with both macro-segmentation and micro-segmentation approaches.
- Experience implementing automated remediation capabilities using SOAR platforms, APIs, and orchestration frameworks.
- Experience defining and implementing security controls for AI/ML systems, including access governance, data protection, and monitoring.
- Enterprise security architecture and systems thinking.
- Program leadership and transformation delivery.
- Stakeholder management and executive communication.
- Risk management and threat modeling.
- Automation and security orchestration expertise.
- Understanding of AI security risks and controls in enterprise environments.
- Certifications such as CISSP, CISM, CCSP, or Zero Trust/security architecture certifications.
- Experience with ZTNA/SASE platforms such as Zscaler, Palo Alto Prisma Access, Cisco SSE, or similar.
- Experience with cloud platforms (Azure, AWS, GCP) and identity platforms (e.g., Entra, Okta).
- Experience in regulated environments and familiarity with NIST, ISO 27001, or similar frameworks.
- Bachelor’s degree in Computer Science, Information Security, or related discipline, or equivalent experience.
- Base Salary Range: $127,050.00 - $235,950
- Benefits: Health, Dental, Vision, Life, Disability, Wellness, Paid Time Off, 401(k) and Profit-Sharing plans.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search