AVP, Security Architect
About the Role
LPL's Information Security team is seeking an exceptional AVP, Security Architect to engage on project efforts in M&As, Data, Cloud, and On-prem security architectures. You will work side by side with our Development, Operations, Business units, and Enterprise Architecture teams to ensure our environments are secured and monitored. The right person for this role will have a broad technical security background with a focus on security design, detection, prevention, and response to security threats.
Responsibilities
- Supports efforts to mature network, infrastructure, and data security capabilities for LPL Financial.
- Serves as a subject matter expert, providing guidance on industry best practices.
- Supports M&A integrations and secure design and solution implementation.
- Creates best-of-class infrastructure/data security architecture designs and patterns for LPL, using defensible industry reference architectures and standards.
- Collaborates with Data and Enterprise Architects on securing data with advanced methods such as masking and tokenization, considering the pros & cons of each security control.
- Documents, socializes, maintains, and trains key stakeholders on security requirements that enable secure design and build of solutions.
- Identifies cybersecurity issues, strengths, and weaknesses across various cyber domains and partner organizations that introduce risk and provides solutions.
- Develops, reviews, and approves cybersecurity security standards and works with partner cyber domain teams and organizations to align on security requirements, while tracking and validating controls are being met.
- Participates in and drives security advisory boards and committees, providing security architecture review and process ownership for new and existing solutions.
- Analyzes potential impact of new threats and exploits, develops and implements solutions to mitigate those threats, and communicates risks to relevant business units.
Requirements
- 8+ years’ experience in information security and IT risk management with prior technical experience in a technical infrastructure or systems role.
- 2+ years’ experience working on M&A integrations.
- 5+ years of experience working knowledge of information security controls, guidelines, and standards (e.g., ISO27000 series, OWASP, CSA CCM, CIS 20 Critical Security Controls, SOX, and NIST).
Core Competencies
- Must be self-driven, yet flexible and highly adept at consulting, negotiating, communicating, consensus building, and presenting.
- Ability to remain calm under pressure while managing multiple tasks.
- Demonstrated ability to learn from mistakes and apply constructive feedback to improve performance.
Preferences
- CCSP/Other Cloud Specific Certification, CISSP, and/or GIAC are a plus.
- In-depth knowledge of AWS and its core services, including EC2, S3, IAM, VPC, and security-related services like security groups, ACLs, AWS Security Hub, AWS WAF.
- Working knowledge of Terraform, Cloud Formation, Pulumi, and/or Ansible.
- Solid experience securing scalable web architectures and distributed systems.
- Solid understanding of malware, emerging threats, attacks, and vulnerability management.
Pay
Pay Range: $122,673.00 - $204,455.00. Actual base salary varies based on factors, including but not limited to, relevant skill, prior experience, education, base salary of internal peers, demonstrated performance, and geographic location.
Benefits
LPL offers a highly competitive Total Rewards package designed to support your success at work, at home, and at play – such as 401K matching, health benefits, employee stock options, paid time off, volunteer time off, and more.
About LPL Financial
LPL Financial Holdings Inc. (Nasdaq: LPLA) is among the fastest-growing wealth management firms in the U.S. As a leader in the financial advisor-mediated marketplace, LPL supports over 32,000 financial advisors and the wealth management practices of approximately 1,100 financial institutions, servicing and custodying approximately $2.3 trillion in brokerage and advisory assets on behalf of approximately 8 million Americans. The firm provides a wide range of advisor affiliation models, investment solutions, fintech tools, and practice management services, ensuring that advisors and institutions have the flexibility to choose the business model, services, and technology resources they need to run thriving businesses.