Principal Security Architect
Berkley Technology Services · Urbandale, IA · 2 days ago
Information TechnologyFull-time
Responsibilities
- Define and maintain enterprise ZTNA strategy, roadmap, and reference architectures.
- Lead enterprise-wide ZTNA transformation programs from strategy through execution.
- Design and implement both macro-segmentation and micro-segmentation strategies across network and application environments.
- Architect identity-centric access controls based on user, device, and contextual risk signals.
- Drive integration of ZTNA with the enterprise security ecosystem (SIEM, SOAR, EDR, DLP, IAM).
- Design and implement automated remediation capabilities leveraging SOAR, orchestration platforms, and policy engines to dynamically respond to threats and non-compliance.
- Establish and enforce security controls for AI-enabled systems interacting within ZTNA frameworks, including model access controls, data protection, and monitoring of AI-driven access behaviors.
- Conduct threat modeling and risk assessments across access pathways, segmentation boundaries, and AI-integrated services.
- Lead vendor evaluation and selection for ZTNA, SASE, automation, and AI security technologies.
- Provide executive advisory and governance for Zero Trust and secure access initiatives.
- Mentor architecture and engineering teams and establish a Zero Trust center of excellence.
- Collaborate across security, IT, cloud, and application teams in a fast-paced enterprise environment to drive successful ZTNA adoption.
Qualifications
- 10–15+ years in cybersecurity, network security, or enterprise architecture roles.
- 5+ years leading large-scale security or infrastructure transformation programs.
- Demonstrated experience designing and implementing Zero Trust and ZTNA architectures.
- Strong hands-on experience with both macro-segmentation and micro-segmentation approaches.
- Experience implementing automated remediation capabilities using SOAR platforms, APIs, and orchestration frameworks.
- Experience defining and implementing security controls for AI/ML systems, including access governance, data protection, and monitoring.
- Enterprise security architecture and systems thinking.
- Program leadership and transformation delivery.
- Stakeholder management and executive communication.
- Risk management and threat modeling.
- Automation and security orchestration expertise.
- Understanding of AI security risks and controls in enterprise environments.
Preferred Qualifications
- Certifications such as CISSP, CISM, CCSP, or Zero Trust/security architecture certifications.
- Experience with ZTNA/SASE platforms such as Zscaler, Palo Alto Prisma Access, Cisco SSE, or similar.
- Experience with cloud platforms (Azure, AWS, GCP) and identity platforms (e.g., Entra, Okta).
- Experience in regulated environments and familiarity with NIST, ISO 27001, or similar frameworks.
Education Requirement
- Bachelor’s degree in Computer Science, Information Security, or related discipline, or equivalent experience.