Senior Security Enterprise Architect

Insight Global
Wilmington, DE, United States
1 day ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Temporary to permanent
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Proxy Servers Applications Architecture Microsoft Azure Cloud Computing Cloud Computing Security Cloud Engineering Cyber Security Software Design Patterns Network Address Translation Domain Name System (DNS) Identity and Access Management
+21 more
Virtual Private Networks (VPN) Information Systems Security Architecture Professional Network Security Virtual Desktops Routing Public Key Infrastructure Remote Access Technology Azure Active Directory Anti-Phishing Application Data Security Information and Event Management Data Streaming Software Vulnerability Management Data Logging Transport Layer Security Software Security HybridCloud Microsoft InTune Palo Alto Networks Microsoft Sentinel Servicenow

Job description

A global electronic and semi-conductor manufacturing company is seeking a strong Senior Security Architect to define secure, practical cybersecurity patterns across their global enterprise, cloud, network, endpoint, email, manufacturing, and application environments. This role will partner closely with Cybersecurity Engineering, Network, Cloud, Infrastructure, Endpoint, Identity, Manufacturing IT, Cybersecurity Operations, and project teams. The architect will develop reference architectures and standards, review designs, and provide practical implementation options that balance security, reliability, cost, and delivery timelines. This is a hands-on architecture role requiring broad cybersecurity knowledge. The successful candidate must be comfortable moving between strategic design and detailed technical discussions involving cloud architecture, network security, endpoint controls, email security, identity, application security dependencies, logging, vulnerability management, data flows, and security operations.

This is an immediate, 6 month contract to hire opportunity and ideally, this role will be based on-site (hybrid) in Wilmington, DE.

Key Responsibilities * Develop cybersecurity reference architectures, standards, and approved design patterns across cloud, network, endpoint, email, identity, infrastructure, and application environments. * Define secure patterns for Azure, enterprise networking, remote access, internet egress, endpoint security, email security, application publishing, third-party connectivity, and manufacturing environments. * Review solution and application architectures to identify security requirements, risks, dependencies, and required controls. * Translate cybersecurity requirements into practical technical designs that engineering and project teams can implement. * Provide preferred approaches and acceptable alternatives rather than a single rigid solution. * Develop patterns integrating security technologies including Microsoft Entra ID, Defender, Sentinel, Intune, Azure, PKI, Palo Alto Networks, vulnerability management, email security, and security operations platforms. * Support hybrid cloud and enterprise infrastructure designs involving routing, DNS, TLS, private connectivity, segmentation, identity, endpoint controls, and application data flows. * Develop security patterns for manufacturing and operational technology environments, including segmentation, remote support, privileged access, endpoint protection, and monitoring. * Partner with project teams to identify and resolve security architecture issues early in the design process. * Define architectural requirements for security logging, monitoring, telemetry, vulnerability management, policy ownership, access control, and operational support. * Evaluate new technologies and cybersecurity capabilities and determine how they should integrate with the broader security architecture. * Support the development and maturation of cybersecurity programs, standards, control frameworks, and engineering practices. * Maintain clear, usable architecture documentation, diagrams, reference patterns, and technical decision records.

Professional Characteristics * Broadly knowledgeable, technically credible, and comfortable working across cybersecurity disciplines. * Able to recognize when specialist expertise is required and effectively engage the appropriate engineering teams. * Pragmatic and comfortable challenging weak designs. * Able to explain both what must change and how it can be implemented. * Flexible in approach without weakening core security requirements. * Comfortable working in a developing organization where standards, reference architectures, and operating models are still being established. * Produces architecture that engineering and project teams can actually use.

Requirements

  • Significant experience in cybersecurity architecture, security engineering, or a senior technical security role within a complex enterprise. * Broad knowledge across multiple cybersecurity domains, including cloud security, network security, endpoint security, email security, identity and access management, vulnerability management, logging, and security operations. * Strong understanding of Microsoft Azure and enterprise cloud security concepts. * Strong understanding of enterprise networking concepts including routing, DNS, NAT, VPNs, proxies, TLS, segmentation, and secure connectivity. * Experience with endpoint protection, device management, EDR, and modern endpoint security architectures. * Familiarity with enterprise email security, phishing protection, secure email gateways, and Microsoft 365 security controls. * Experience integrating security controls with SIEM, identity, endpoint, network, vulnerability-management, and IT service-management platforms. * Ability to understand application architectures and translate business and technical requirements into secure, supportable designs. * Experience developing reference architectures, engineering standards, control patterns, and reusable technical guidance. * Ability to work across multiple technical disciplines without requiring deep specialization in every technology. * Strong written, verbal, and diagramming skills. * Demonstrated judgment in balancing security requirements with operational and project constraints. * Experience in a global manufacturing or industrial environment. * Familiarity with Purdue-model segmentation and operational technology security. * Experience with Microsoft Sentinel, Defender, Entra ID, Intune, Azure, Palo Alto Networks, Proofpoint, ServiceNow, FireMon, PKI, or comparable enterprise security technologies. * Experience with Azure networking, private endpoints, ExpressRoute, Windows 365, Azure Virtual Desktop, and hybrid connectivity. * Experience participating in or helping develop cybersecurity programs such as vulnerability management, security monitoring, endpoint security, cloud security, network security, identity security, or security architecture. Relevant certifications such as CISSP, CCSP, Microsoft Azure, GIAC, PCNSE, or comparable technical security certifications.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira ¡ Coffee With Developers

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele ¡ World Congress 2025

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos ¡ LIVE

2:27 min

Establishing a simulated technical environment for the workflow demo

Tobias Dunn-Krahn ¡ LIVE

1:35 min

Configuring file-based routing and Vue page layouts

Alexander Lichter ¡ World Congress 2023

1:33 min

Recapping vital capability shifts across security and enterprise infrastructure

Sergej Reznik Sergej Reznik ¡ Europe 2026 Virtual

Videos

See all

Related articles

See all