Principal Enterprise Security Architect
Core
Define and advance enterprise security architecture and technical standards protecting corporate systems, employee infrastructure, and business applications for a broadband ISP serving 1M+ subscribers.
Role type
Principal Enterprise Security Architect (Senior IC)
Builds
Zero Trust strategy, threat detection architecture, cloud and application security designs, identity and access management frameworks.
Domain
Telecommunications / Broadband ISP / Cybersecurity
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure
Required skills
Security architecture design, Zero Trust implementation, Network security engineering, Cloud security (AWS/Azure/GCP), Identity and Access Management (IAM), Threat detection engineering, Compliance framework mapping
Preferred skills
Experience in broadband ISP or critical infrastructure, Hands-on security tooling knowledge, Risk-to-technical-design translation
Technologies
Palo Alto, Fortinet, ZTNA, SASE, SIEM, SOAR, EDR/XDR, AWS, Azure, Google Cloud, Kubernetes, TACACS+, RADIUS, DNSSEC, NetFlow/IPFIX
Responsibilities
Define enterprise security architecture including network segmentation and Zero Trust strategy; Architect firewall and perimeter strategy including next-gen firewall selection and rule governance; Design identity and access management (IAM) architecture covering MFA, PAM, and SSO; Establish network security architecture for infrastructure including OOB management and DDoS protection; Define SIEM, SOC tooling, and vulnerability management architecture; Partner with GRC to translate regulatory requirements into security control designs.
Seniority
Principal, hands-on IC with strategic direction