> Markdown version of [/jobs/ext/2879150-cyber-enterprise-security-architect-senior-consulting](https://www.wearedevelopers.com/jobs/ext/2879150-cyber-enterprise-security-architect-senior-consulting). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber - Enterprise Security Architect - Senior - Consulting - **Company:** Ernst & Young LLP - **Location:** Los Angeles, CA, United States - **Experience:** Expert - **Salary:** $125,800.0 - $209,700.0 - **Contract:** Permanent contract - **Skills:** Microsoft Word, Microsoft Excel, Amazon Web Services, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cyber Security, Information Systems, Information Leak Prevention, Enterprise Architecture Framework, Infrastructure as a Service (IaaS), Identity and Access Management, Information Systems Security Architecture Professional, Network Security, Platform as a Service (PAAS), PCI Data Security Standards, Microsoft PowerPoint, Systems Development Life Cycle, Zero Trust Network Access, Sherwood Applied Business Security Architecture, Security Information and Event Management, Software Engineering, Zachman Framework, Google Cloud, Data Classification, Software Security, Multi-Cloud, Togaf, Information Technology, CIS Benchmarks, Devsecops, Security Orchestration, Automation & Response - **Published:** September 13, 2026 - **Apply:** https://www.beyondlosangeles.com/job.asp?id=3388783725&tx=KJ7979FFQ&pt=1&aff=0B19D771-A501-4A5E-8338-2A822B784D54&utm_source=Job%20Feed&utm_medium=textkernel&utm_campaign=DE&utm_term=0B19D771-A501-4A5E-8338-2A822B784D54 ## About the Role * Strong understanding of enterprise security architecture principles, patterns, and frameworks, with the ability to design solutions across network, cloud, application, data, identity, and endpoint security domains. * Hands-on experience conducting security architecture assessments, threat modeling, and architecture risk analysis across complex enterprise environments. * Ability to design and document security reference architectures, technology blueprints, and security patterns that align to business objectives and risk appetite. * Experience applying Zero Trust architecture principles and translating them into practical, implementable security designs. * Knowledge of cloud security architecture across major cloud platforms (AWS, Azure, GCP), including hybrid and multi-cloud environments. * Familiarity with enterprise architecture frameworks such as SABSA, TOGAF, or Zachman as applied to security architecture engagements. * Strong critical thinking, analytical, and problem-solving skills applied to complex security architecture challenges. * Ability to communicate technical architecture concepts effectively to both engineering teams and executive stakeholders. * Experience developing architecture documentation, executive presentations, and client-facing deliverables. * Strong verbal and written communication skills. * Ability to manage competing priorities in a fast-paced consulting environment. * Strong attention to detail and commitment to high-quality client service. * Ability to build relationships and collaborate effectively across multidisciplinary teams and client organizations. * Demonstrated initiative, adaptability, and a commitment to continuous learning across an evolving technology and threat landscape. To Qualify for the Role, You Must Have * A bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or a related field, and approximately 3-5 years of relevant experience; or a graduate degree and 2-4 years of relevant experience. * Experience in one or more of the following areas: * Enterprise security architecture assessments and future-state architecture design * Network security architecture, including segmentation, secure access, and perimeter design * Cloud security architecture across AWS, Azure, or GCP, including IaaS, PaaS, and SaaS security * Identity and access management architecture, including Zero Trust and privileged access design * Application security architecture, secure SDLC, and DevSecOps integration * Data protection architecture, including encryption, data classification, and data loss prevention * Security architecture governance, standards development, and architecture review processes * Knowledge of cybersecurity frameworks and standards, including NIST CSF, NIST 800-53, ISO 27001/27002, CIS Controls, and SABSA. * Experience conducting security architecture reviews, threat modeling, and risk assessments in complex enterprise environments. * Strong Microsoft PowerPoint, Excel, and Word skills. * Willingness to travel based on client and business needs; travel estimated at 25-50% Ideally, You'll Also Have * Professional certifications such as CISSP, CCSP, SABSA Chartered Architect (SCF/SCM), TOGAF, or other relevant security architecture credentials. * Hands-on experience with security architecture tooling, including architecture modeling platforms, threat modeling tools, and cloud-native security services. * Experience designing and implementing Zero Trust architectures, including microsegmentation, identity-centric access, and continuous verification models. * Knowledge of security technology domains including SIEM, SOAR, EDR/XDR, PAM, IAM, CNAPP, and CASB, with the ability to assess their architectural fit within enterprise environments. * Exposure to regulatory and compliance requirements-such as HIPAA, PCI DSS, FISMA, GDPR, or NYDFS-and their implications for security architecture decisions. * Experience facilitating client workshops, technical design sessions, and architecture review board engagements. * Background in software development, infrastructure engineering, or network engineering that informs deep technical architecture credibility. * Experience within a consulting, professional services, or advisory environment. * Knowledge of regulated industries such as financial services, healthcare, life sciences, government, or critical infrastructure. What We Look For We are seeking professionals who combine deep technical security architecture expertise with the advisory skills needed to translate complex design decisions into clear, actionable client guidance. Successful candidates bring hands-on architecture experience across multiple security domains alongside strong business judgment and the ability to engage confidently with both engineering teams and executive stakeholders. The ideal candidate is passionate about designing security that enables business outcomes, committed to delivering exceptional client service, and eager to contribute to the growth and innovation of EY's Cyber practice. ## Description As organizations undertake large-scale digital transformation, cloud migration, and technology modernization initiatives, the need for robust, scalable security architecture has never been greater. Security architecture decisions made today define an organization's risk posture for years to come-shaping how data is protected, how systems are connected, and how threats are detected and contained. As a Senior Consultant within EY's Cyber practice focused on Enterprise Security Architecture, you will work with clients to assess existing security architectures, design future-state security frameworks, and develop practical roadmaps that align security capabilities with enterprise strategy. This role offers the opportunity to engage in technically hands-on architecture work alongside strategic advisory engagements across diverse industries., As a Senior Consultant in Enterprise Security Architecture, you will play an active and technically engaged role in delivering security architecture assessments, design engagements, and transformation initiatives while collaborating closely with clients and EY engagement teams. You will evaluate existing security architectures, identify gaps and risks across network, cloud, application, data, and identity domains, and develop actionable recommendations grounded in industry frameworks and leading practices. You will design and document future-state security architectures, reference models, and security patterns that address client-specific risk profiles and business objectives, and support clients in defining technology roadmaps that guide security investment and capability development., In addition, as a Senior Consultant, you will contribute to the development of enterprise security architecture standards, policies, and governance frameworks that embed security requirements into technology and business change programs. You will support clients in applying Zero Trust principles, securing hybrid and multi-cloud environments, and aligning architecture decisions to established frameworks such as SABSA, TOGAF, and NIST. You will prepare client deliverables, architecture documentation, and executive-level presentations that communicate complex technical concepts to both technical and non-technical audiences. You will collaborate with multidisciplinary teams to deliver high-quality work products, support project planning and management activities, mentor junior team members, and contribute to business development initiatives, thought leadership, and practice-building efforts within EY's Cyber practice. ## Related Videos - [The Open-source Java SDK for Multi-Cloud Development - Sandeep Pal](https://www.wearedevelopers.com/videos/2113-the-open-source-java-sdk-for-multi-cloud-development-sandeep-pal) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)