> Markdown version of [/jobs/ext/3091758-security-manager-security-architecture-data-protection](https://www.wearedevelopers.com/jobs/ext/3091758-security-manager-security-architecture-data-protection). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Manager - Security Architecture & Data Protection - **Company:** California Statewide Automated Welfare System - **Location:** Gold River, CA, United States - **Experience:** Experienced - **Salary:** $116,209.0 - $184,500.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, User Authentication, Cloud Computing Security, Cyber Security, Information Systems, Data Discovery, Data Security, Java Persistence API, Network Security, Role-Based Access Control, Software Engineering, Data Streaming, Software Vulnerability Management, Enterprise Data Management, Data Logging, Information Technology - **Published:** September 26, 2026 - **Apply:** https://careersingovernment.com/job/3132554/security-manager-security-architecture-data-protection-for-calsaws/ ## About the Role * Be an experienced security professional who can operate comfortably at both the architectural and enterprise governance levels. * Have hands-on experience conducting security architecture and design reviews for complex enterprise systems. * Be comfortable reviewing cloud architecture, challenging application designs, evaluating identity and integration patterns, and discussing data flows with engineers. * Bring strong expertise in enterprise data protection, including DSPM, DLP, Insider Risk, data discovery, and classification. * Possess a strong understanding of authentication and authorization, encryption, key and secret management, network security, least privilege, logging and monitoring, vulnerability management, and secure software development. * Understand privacy-by-design principles, including data minimization, appropriate use, retention, transparency, and sharing constraints. * Effectively translate complex security risks and technical findings into clear, practical recommendations for leadership and business partners. * Demonstrate strong judgment when balancing security requirements with operational, technical, and delivery considerations. * Be highly organized and capable of managing multiple concurrent reviews, requests, risks, and stakeholder relationships. * Communicate clearly and concisely through decision logs, technical summaries, recommendations, and audit- or client-ready documentation. * Thrive in a collaborative environment requiring partnership across security, technology, procurement, compliance, and business teams. * Be motivated by creating a culture in which security and data protection are incorporated into technology decisions from the start. Preferred certifications may include: * CISSP, CISM, CRISC, CCSP, CDPSE, CIPM, or equivalent security certifications * GIAC certifications * Security+ or equivalent * Cloud security certifications * AWS Security Architect or equivalent All positions may be subject to some short-term travel in order to conduct project business with the state and counties. The CalSAWS project office is currently located in Gold River, California., * Graduation from an accredited college with a bachelor's degree in information security, computer science, information systems, cybersecurity, or a related field. A master's degree is preferred. * Six (6) years of progressively responsible, full-time, paid experience in security architecture, information security, data protection, privacy, data security, or a similar operational role, with demonstrated depth in DSPM, DLP, and Insider Risk disciplines in a multi-cloud environment. At least two (2) years of experience must have been in a supervisory capacity. Candidates should also demonstrate: * Hands-on experience performing security architecture and design reviews for complex enterprise systems * Experience with data protection-by-design, AI/ML systems, input/output monitoring, data residency enforcement, and access controls * Strong knowledge of authentication and authorization controls, encryption, key management, secret management, network security, classification, retention, least privilege, logging and monitoring, vulnerability management, and secure software development * Working knowledge of privacy-by-design principles * Working knowledge of data security and security architecture reviews * Experience supporting vendor onboarding, system and security reviews, procurement/third-party risk management processes, and data inventories * Experience managing structured workflows involving intake, triage, documentation tracking, and closure across multiple stakeholders Experience working in large-scale enterprise or public-sector environments is strongly preferred. ## Description We're looking for an experienced Security Manager- Security Architecture & Data Protection to shift security left and shape how security is designed across applications, cloud, integrations, and data. Do you have the technical expertise to evaluate cloud architecture, application designs, integrations, data flows, and emerging technologies while translating complex security risks into practical recommendations? Are you ready to help CalSAWS strengthen enterprise security and protect sensitive data across one of the nation's largest public-sector technology environments?, The Security Manager - Security Architecture & Data Protection reports to the Chief Information Security Officer (CISO) and plays a critical role in strengthening the CalSAWS enterprise security program by ensuring security is incorporated into technology, applications, data, and business processes from the start. This position leads security architecture reviews for new and changing technologies, evaluates security risks and design decisions, and establishes effective controls to protect sensitive information. The Security Manager partners closely with innovation, application, infrastructure, security, and business teams to advance secure-by-design practices and strengthen CalSAWS' enterprise data protection capabilities.