> Markdown version of [/jobs/ext/2004445-principal-security-architect](https://www.wearedevelopers.com/jobs/ext/2004445-principal-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Security Architect - **Company:** Metropolitan Life Insurance Company - **Location:** Tampa, FL, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Cloud Computing, Cloud Computing Security, Cyber Security, Data Security, Software Design Patterns, Identity and Access Management, Internetworking, Network Security, Network Segmentation, Role-Based Access Control, Cloud Services, Zero Trust Network Access, Software Security - **Published:** August 9, 2026 - **Apply:** https://us.experteer.com/career/view-jobs/principal-security-architect-tampa-fl-usa-58864793 ## About the Role _ architecture patterns across identity, network, data, cloud, SOC, governance, and AI domains * Develop reusable security reference architectures, guardrails, and design principles to accelerate secure delivery * Provide identity-centric security guidance (authentication, authorization, privileged access, least privilege) * Advise on network segmentation, secure access patterns, zero trust, and B2B/internet connectivity * Define risk-based access policies for users, workloads, devices, apps, and data * Assess current-state vs target-state architecture with roadmap and maturity modeling * Collaborate with enterprise architecture, security, cloud, IAM, data protection, and governance teams to produce pragmatic recommendations * Document decisions, risks, and remediation actions for technical and leadership audiences Tasks * 8-10 years of overall experience * Strong experience in security architecture, enterprise architecture, security engineering, or cyber risk roles * Expertise in threat a reusable risk assessment, attack path analysis, trust-boundary assessment, control gap analysis * Deep understanding of identity-centric security, zero trust, least privilege, defense-in-depth, segmentation, secure-by-design principles * Ability to evaluate security controls and provide risk-based recommendations balancing protection, usability, and delivery speed * Broad knowledge across IAM, network security, endpoint security, application security, data security, cloud security, SOC/GRC/AI security * Experience developing reference architectures, security standards, guardrails, and reusable design patterns * Familiarity with enterprise architecture practices including current/target-state architecture and roadmaps Key requirements * comprehensive health plan * life insurance * 401(k) with employer matching * parantal leave * paid time off and holidays * EAP and digital mental health programs ## Description Experteer Overview In this role you will lead risk-based security architecture reviews and provide enterprise-grade guidance for technology initiatives within MetLife's Global Security team. You'll shape secure patterns across IAM, network, data, cloud, and AI domains, aligning solutions with target architectures and roadmaps. You'll drive threat modeling, risk assessments, and reusable reference architectures to enable secure delivery at scale. This is a hybrid, impact-oriented role that partners across the organization to transform security practices and support enterprise transformation. Compensation / Benefits * Lead Security Architecture Review (SAR) assessments for enterprise initiatives including cloud services, AI, and major transformation programs * Conduct threat modeling and risk assessments to identify design gaps, trust-boundary issues, and data exposure risks * Evaluate security controls and technologies against architecture requirements and risk objectives * Design secure architecture patterns across identity, network, data, cloud, SOC, governance, and AI domains * Develop reusable security reference architectures, guardrails, and design principles to accelerate secure delivery * Provide identity-centric security guidance (authentication, authorization, privileged access, least privilege) * Advise on network segmentation, secure access patterns, zero trust, and B2B/internet connectivity * Define risk-based access policies for users, workloads, devices, apps, and data * Assess current-state vs target-state architecture with roadmap and maturity modeling * Collaborate with enterprise architecture, security, cloud, IAM, data protection, and governance teams to produce pragmatic recommendations * Document decisions, risks, and remediation actions for technical and leadership audiences Tasks * 8-10 years of overall experience * Strong experience in security architecture, enterprise architecture, security engineering, or cyber risk roles * Expertise in threat modeling, risk assessment, attack path analysis, trust-boundary assessment, control gap analysis * Deep understanding of identity-centric security, zero trust, least privilege, defense-in-depth, segmentation, secure-by-design principles * Ability to evaluate security controls and provide risk-based recommendations balancing protection, usability, and delivery speed * Broad knowledge across IAM, network security, endpoint security, application security, data security, cloud security, SOC/GRC/AI security * Experience developing reference architectures, security standards, guardrails, and reusable design patterns * Familiarity with enterprise architecture practices including current/target-state architecture and roadmaps Key requirements * comprehensive health plan * life insurance * 401(k) with employer matching * parantal leave * paid time off and holidays * EAP and digital mental health programs ## Related Videos - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Leverage Cloud Computing Benefits with Serverless Multi-Cloud ML ](https://www.wearedevelopers.com/videos/78-leverage-cloud-computing-benefits-with-serverless-multi-cloud-ml) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [How to govern Vibe Coding for the Enterprise](https://www.wearedevelopers.com/videos/100290-how-to-govern-vibe-coding-for-the-enterprise) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Coffee with Developers - Maria Apazoglou - Making AI understandable for all in production](https://www.wearedevelopers.com/magazine/475-coffee-with-developers-maria-apazoglou-making-ai-understandable-for-all-in-production)