> Markdown version of [/jobs/ext/3570887-security-architect](https://www.wearedevelopers.com/jobs/ext/3570887-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Architect - **Company:** California Department of Public Health - **Location:** Yolo County, CA, United States (Remote available) - **Salary:** $103,500.0 - $138,684.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Amazon Web Services, Software System Penetration Testing, Systems Engineering, Cloud Computing Security, Cyber Security, Enterprise Information Management, Internet Security, Intrusion Detection and Prevention, Intrusion Detection Systems, Network Segmentation, Security Information and Event Management, Software Engineering, Software Vulnerability Management, Data Logging, In-Plane Switching (IPS), Firewalls (Computer Science), Cybercrime, Vulnerability Analysis - **Published:** October 3, 2026 - **Apply:** https://www.calcareers.ca.gov/CalHrPublic/Jobs/JobPosting.aspx?JobControlId=515955 ## About the Role * Experience designing or supporting security architecture for enterprise level systems. * Experience using SIEM tools to perform searches, threat detection, or security monitoring. * Experience creating dashboards, reports, or automated alerts for security operations. * Experience developing or maintaining technical documentation such as architectural diagrams, strategic plans, and roadmaps for information security and enterprise architecture initiatives. * Experience providing security guidance to project teams, architects, or vendors. * Experience conducting or supporting security based technical or architectural reviews. * Experience working with security governance, compliance, or risk-management processes. * Strong written and verbal communication skills, including the ability to explain technical concepts clearly. * Knowledge of: + Logging and monitoring of both system and security logs across servers, endpoints, and cloud environments + NIST Cybersecurity Framework, ISO/IEC 27001 and Center for Internet Security Critical Security Controls + Network segmentation + Identity and access controls + Encryption standards and methods + Penetration testing + Vulnerability assessment and remediation, This position is not eligible for visa sponsorship. Applicants must be authorized to work in the US without the need for visa sponsorship by the start date of employment with CalSTRS. ## Description Under the direction of the Teachers' Retirement Board and the administrative direction of the Chief Executive Officer, the Office of the General Counsel provides advice on legal issues as they affect the overall programs and policies of California State Teachers Retirement System (CalSTRS), manages CalSTRS legal program, and represents the System in litigation, appeals, and other legal matters. The Office of the General Counsel is comprised of multiple highly visible and complex business areas: Office of Legal Ethics & Accountability, Enterprise Information Management & Legal Operations, Information Security Office, Legal Services, Investment Counsel, and Litigation Services. The Information Security Office (ISO) is CalSTRS' authority on information security and cybersecurity matters. The Information Security Office protects CalSTRS data assets from unauthorized access, use, misuse, disclosure, destruction, modification, or disruption. Read about the programs in ISO below. Under the general direction of the Security Services Manager, the incumbent serves as a Security Architect for the CalSTRS' BenefitConnect pension administration system. The incumbent will provide leadership and technical expertise in the design and blueprinting of security controls; security monitoring and threat management; and communicate the security direction for compliance, auditing, and risk management strategies. This position is in the Information Security Engineering, IT Project Management, System Engineering, and Software Engineering domains., Interested individuals must submit a Statement of Qualifications (SOQ) in addition to the standard state application (form STD 678). Your SOQ will be considered the first interview for this position. If your qualifications are competitive, you will be invited to an interview. When completing the SOQ, please include all relevant experience, education, and training, as applicable, and explain all answers thoroughly. Your SOQ should not exceed two pages, single-spaced, 12-point font, and address the following questions: 1. Describe your experience working with a third-party vendor hired to implement a large technology project. Include how you evaluated and managed security risks and the approach you used to ensure the vendor met security requirements. 2. Describe your experience defining security controls for a complex application. Explain which framework you used, how you selected the controls, and what the review and approval process was for your recommendations. 3. Describe your skills, experiences and education or training credentials in the following areas: (1) Security assessments (e.g., penetration testing, vulnerability management, threat hunting) (2) Enterprise security tools and technologies (SIEM, EDR, IDS/IPS, firewalls, cloud security tools, etc.) (3) Secure system hardening in a Windows or AWS environment., Investment Branch employees are required to participate in the CalSTRS Personal Trading Program which allows CalSTRS to monitor employees' personal trading transactions in order to reduce risks associated with insider trading, front running, and misusing material non-public information. Upon accepting a position within the Investment Branch, you will be required to disclose your personal broker account information and be required to utilize a personal broker from a designated list as provided by CalSTRS. Background Investigation Prior to employment with CalSTRS, a background investigation (BI) will be conducted. The BI consists of a Personal History Statement and fingerprinting through the Department of Justice. The BI will check criminal and civil records and, if applicable, verify education and check driving records. CalSTRS Disclosure Requirements This position may be subject to disclosure and disqualification requirements concerning economic conflict of interest in government work, including the Conflict of Interest Code that applies to CalSTRS team members and the Political Reform Act, which require disclosure of certain investment information and use of a designated trading platform for securities transactions, as well as filing a Statement of Economic Interest (Form 700). Incompatible Activities This position is subject to the provisions of Government Code Section 19990. Upon accepting a position at CalSTRS, you will also be required to comply with the CalSTRS Incompatible Activities Policy by ensuring that outside work or activities are compatible and align with your professional activities or workplace obligations. Application Instructions Completed applications and all required documents must be received or postmarked by the Final Filing Date in order to be considered. Dates printed on Mobile Bar Codes, such as the Quick Response (QR) Codes available at the USPS, are not considered Postmark dates for the purpose of determining timely filing of an application. Final Filing Date: 10/25/2026 Who May Apply Individuals who are currently in the classification, eligible for lateral transfer, eligible for reinstatement, have list or LEAP eligibility, are in the process of obtaining list eligibility, or have SROA and/or Surplus eligibility (please attach your letter, if available). SROA and Surplus candidates are given priority; therefore, individuals with other eligibility may be considered in the event no SROA or Surplus candidates apply.