Job Closed
This listing is no longer active.
Bringing our heart to every moment of your health.
Principal Security Architect
Location
Connecticut
Posted
89 days ago
Salary
$144.2K - $288.4K / year
Seniority
Lead
Job Description
Principal Security Architect
CVS Health
• Be part of a team responsible for enabling secure technology solutions that meets our business strategy and drives business value • Define and collaborate on the creation of security roadmaps, security reference architectures, standards, best practice documents, and secure-by-design reference implementations that accelerate delivery while ensuring safety and compliance • Evaluate market trends in cybersecurity, execute buy vs. build decisions and assess cost and the risk impact on targeted business outcomes • Define future state security architecture that supports secure adoption of Artificial Intelligence, APIs, data stores, cloud infrastructures, cloud services, and microservices • Collaborate and consult with technology, cybersecurity, and business partners to optimize business applications and systems that adopt modern and secure architectures, especially around AI • Develop and maintain a strategic vision for the secure use of AI technologies, aligned to the CVS Health platform based on key business drivers, regulatory requirements, and emerging threat trends • Define and collaborate on the creation of security frameworks for the enterprise that promote reuse, reduces cost, manages risk, and increases speed to market • Effectively build and maintain strong relationships with technology, cybersecurity, and business partners to establish trust and influence key security decisions • Provide guidance, direction and mentorship to engineers and other stakeholders regarding security architecture and secure design of enterprise applications • Ensure all Non-Functional Security Requirements (e.g., authentication, authorization, resilience, encryption, auditability, availability, etc.) are properly articulated, and work with all parties to guarantee that delivered software products meet these objectives • Participate in high-level security estimation and security evaluation of AI-enabled solutions • Mentor and coach junior architects and seek the opportunity to bring continuous improvement in secure engineering and enterprise security practices
Job Requirements
- 15+ years of relevant work experience (8+ years in architecture)
- 10+ years of experience building or securing large-scale business applications using modern technologies and architectural patterns
- 10+ years of experience designing secure integrations with a focus on performance, resilience, and loose coupling using APIs, microservices, and event-driven architecture
- 8+ years of experience and proficiency with modern languages, frameworks, and associated secure development practices
- 6+ years of experience facilitating implementation of secure north star architectures by delivery teams through mentoring and building POCs, secure patterns, and other collaborative activities
- Expert-level understanding of security architectural methodologies/best practices, regulatory and compliance requirements, and risk frameworks that influence architecture decisions
- Recognized technical leader with full stack technology knowledge and recognized as an expert in one or more security domains like Identity & access management (IAM), network security, cloud security (AWS/Azure/GCP), data protection, zero trust, or security operations
- Experience recognizing the impact security architecture decisions can have on strategic business decisions
- Substantial experience with requirements analysis, risk assessment, estimation, and secure application design
- Experience defining architecture using the C4 model or equivalent, with a focus on system context, container, component diagrams, including secure trust boundaries
- Expert understanding of architectural governance, security design patterns, AI safety controls, secure development standards, and best practices
- A diverse technical background with key areas of depth around AI/ML/Agentic AI security, cloud security, data platform security, hybrid solutions and operating securely at scale
- Excellent collaboration, influencing, negotiation, coaching and coalition-building skills.
Benefits
- Affordable medical plan options
- 401(k) plan (including matching company contributions)
- Employee stock purchase plan
- No-cost programs for all colleagues including wellness screenings, tobacco cessation and weight management programs, confidential counseling and financial coaching
- Benefit solutions that address the different needs and preferences of our colleagues including paid time off, flexible work schedules, family leave, dependent care resources, colleague assistance programs, tuition assistance, retiree medical access and many other benefits depending on eligibility.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Ready to be pushed beyond what you think you’re capable of? At Coinbase, our mission is to increase economic freedom in the world. It’s a massive, ambitious opportunity that demands the best of us, every day, as we build the emerging onchain platform — and with it, the future global financial system. To achieve our mission, we’re seeking a very specific candidate. We want someone who is passionate about our mission and who believes in the power of crypto and blockchain technology to update the financial system. We want someone who is eager to leave their mark on the world, who relishes the pressure and privilege of working with high caliber colleagues, and who actively seeks feedback to keep leveling up. We want someone who will run towards, not away from, solving the company’s hardest problems. Our work culture is intense and isn’t for everyone. But if you want to build the future alongside others who excel in their disciplines and expect the same from you, there’s no better place to be. While many roles at Coinbase are remote-first, we are not remote-only. In-person participation is required throughout the year. Team and company-wide offsites are held multiple times annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported. We are looking for a Senior Data Protection Engineer to lead and expand our data protection capabilities, ensuring the Coinbase ecosystem remains resilient against sophisticated security threats. You will be responsible for executing a long-term strategy that balances robust security controls with the speed of a decentralized tech environment. You will leverage an automation-first mindset, utilizing LLMs and agentic AI to build scalable, next-gen Data Loss Prevention operations while collaborating cross-functionally to mitigate risk and ensure global regulatory compliance. What you’ll be doing (ie. job duties): - Lead and expand data loss prevention capabilities to protect Coinbase ecosystem from sophisticated data security incidents - Execute the long term strategy for the Data prevention program to harden security posture against data security threats - Evaluate and direct complex designs/controls across a decentralized tech environment to promote security without impeding the speed of business - Implement and deploy DLP tools and technologies in concert with cross functional teams (ie. endpoint security, information technology, and others) - Enhance operational efficiency across a wide array of DLP Engineering & Operations leveraging LLMs and agentic AI - Bring an automation first mindset to champion and drive a more streamlined and scalable approach towards DLP operations - Produce quantitative and qualitative metrics to apprise Data Protection Leadership of programmatic impact and challenges - Collaborate across Security and Privacy Teams and lead cross functional data protection initiatives - You’ll lead a culture of excellence by mentoring peers and share knowledge - You’ll collaborate with cross functional teams like engineering, product development, compliance to ensure timely remediation - Work in concert with risk teams to measure control effectiveness and address changes in laws/regulations globally What we look for in you (ie. job requirements): - You are an experienced security engineering the data protection space who can deliver measurable results - You have the technical acumen to solve operational issues with an engineering solution - You have direct experience testing, tuning, and implementing data loss prevention controls across multiple OS stack - You are comfortable manipulating and orchestrating controls to address multiple operating systems (iOS / Chrome) and decentralized datasets - You are adept at creating scalable processes, automating where possible, and leveraging ML/AI where feasible to maximize efficiency - You can be trusted to be discreet and thoughtful while working cross functionally to mitigate risk - You are actively aware of the insider threat landscape, and understand the legal, regulatory, and ethical considerations of working with sensitive data across a global enterprise - You have experience with Insider Threat technologies (such as Security Information Event Management - SIEM, User Behavioral Analytics - UBA, Data Loss Prevention - DLP) and an understanding of investigations and/or the intelligence cycle - You have excellent verbal and written communication skills. Other team members ask for your input to communicate clearly and concisely and you are comfortable composing briefs and assessments consumed by leadership - You prefer to play as a team and are equally comfortable as the ‘novice’ or the ‘expert’ - Business acumen: Proven understanding of business dynamics, goals, and product strategy. Knowledge of how Security fits into Coinbase’s overall business. - The ability to balance business needs, a sense of urgency, conflicting constraints, and shipping high quality and pragmatic solutions in a fast-moving and quickly-growing company. - Demonstrates the ability to responsibly use generative AI tools and copilots (e.g., LibreChat, Gemini, Glean) in daily workflows, continuously learn as tools evolve, and apply human‑in‑the‑loop practices to deliver business‑ready outputs and drive measurable improvements in efficiency, cost, and quality. Nice to haves: - 5+ years of security engineering experience solving complex security challenges across enterprise-wide DLP Programs - Solving operational problems leveraging engineering / automation first mindset - Experience in Web3 and crypto forward organizations or traditional financial institutions Job ID: P75878 #LI-Remote Pay Transparency Notice: Depending on your work location, the target annual base salary for this position can range as detailed below. Total compensation may also include equity and bonus eligibility and benefits (including medical, dental, vision and 401(k)). Annual base salary range (excluding equity and bonus): $180,370—$212,200 USD Please be advised that each candidate may submit a maximum of four applications within any 30-day period. We encourage you to carefully evaluate how your skills and interests align with Coinbase's roles before applying. Commitment to Equal Opportunity Coinbase is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, sex, gender expression or identity, sexual orientation or any other basis protected by applicable law. Coinbase will also consider for employment qualified applicants with criminal histories in a manner consistent with applicable federal, state and local law. For US applicants, you may view the Employee Rights and the Know Your Rights notices by clicking on their corresponding links. Additionally, Coinbase participates in the E-Verify program in certain locations, as required by law. Coinbase is also committed to providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please contact us at accommodations[at]coinbase.com to let us know the nature of your request and your contact information. For quick access to screen reading technology compatible with this site click here to download a free compatible screen reader (free step by step tutorial can be found here). Global Data Privacy Notice for Job Candidates and Applicants Depending on your location, the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA) may regulate the way we manage the data of job applicants. Our full notice outlining how data will be processed as part of the application procedure for applicable locations is available here. By submitting your application, you are agreeing to our use and processing of your data as required. For US applicants only, by submitting your application you are agreeing to arbitration of disputes as outlined here. AI Disclosure For select roles, Coinbase is piloting an AI tool based on machine learning technologies to conduct initial screening interviews to qualified applicants. The tool simulates realistic interview scenarios and engages in dynamic conversation. A human recruiter will review your interview responses, provided in the form of a voice recording and/or transcript, to assess them against the qualifications and characteristics outlined in the job description. For select roles, Coinbase is also piloting an AI interview intelligence platform to transcribe and summarize interview notes, allowing our interviewers to fully focus on you as the candidate. The above pilots are for testing purposes and Coinbase will not use AI to make decisions impacting employment. To request a reasonable accommodation due to disability, please contact accommodations[at]coinbase.com
Security Engineer
SeesawSeesaw cares about building a diverse and inclusive team to better advocate for the needs of our incredibly diverse K-12 users. We prioritize work-life balance and actually walk the walk — we care a lot about our work, but care more about our employee's well-being. We encourage everyone to work at a sustainable pace and have a flexible vacation policy that people actually use. Seesaw provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, religious creed, color, sex, sex stereotype, gender, gender identity/gender expression/transgender, national origin, ancestry, physical or mental disability, medical condition, genetic information/characteristics, marital status/registered domestic partner status, age, sexual orientation, or military or veteran status. Seesaw is committed to protecting your personal data. Learn more about the personal information we collect, how we use it, and how to exercise your rights here: U.S. Privacy Notice. Our company participates in E-Verify.
About Us: Trusted and loved by 25 million educators, students, and families worldwide, Seesaw is the only elementary learning experience platform, offering a suite of award-winning tools, resources, and curriculum for teachers to deliver joyful, inclusive instruction. Through interactive lessons, digital portfolios, and two-way communication features, Seesaw keeps everyone in the learning loop by providing continuous visibility into the student's learning experience to support and celebrate their learning. Our Mission: Seesaw’s mission is to provide every elementary student with joyful and connected learning experiences that lay the foundation for success in life. Your team: As Seesaw continues to grow, security has become a core operational dependency rather than a support function. The Security Engineer will help scale our security foundations by embedding security practices directly into our infrastructure and development workflows.This role bridges Engineering and Security: focusing on automation, enablement, and building the technical guardrails that let teams move quickly and safely. You’ll work closely with Engineering and IT teams to design and implement secure and observable systems in AWS, and our corporate tooling. The ideal candidate is a hands-on builder who enjoys making complex security processes simple and reliable through automation. Key Day-to-Day Responsibilities: - - Build and maintain automated security controls across AWS, CI/CD, and application infrastructure. - Develop custom security tooling to automate manual processes. - Work closely with Engineering and external bug bounty participants to mitigate vulnerabilities in the Seesaw Learning platform. - Make improvements to the Seesaw Learning platform codebase to support secure-by-default development. - Improve our infrastructure by aiding in the development of our Infrastructure-As-Code configurations. - Partner with Engineering to integrate scanning, alerting, and compliance checks into daily development workflows to shift security left. - Improve observability and detection through enhanced logging, alerting, and vulnerability pipelines. - Projects the candidate will be working on (Top 3–5 bullet points): - Transitioning all normal engineering workflows to Infrastructure-As-Code to minimize AWS Console usage. - Improving vulnerability management processes across the application and infrastructure. - Developing runbooks to document manual procedures and automating wherever possible. - Deploying automated code scanning in GitHub Actions. - Hardening AWS IAM roles and policies to enforce least privilege and support cross-environment isolation. - Implementing monitoring and compliance automation using Troposphere, AWS CloudFormation, and DataDog. - Must-Have Skills/Experience: - 3+ years of experience in DevOps, Cloud Engineering, or Security Engineering roles, ideally within a small or fast-growing company. - Backend web application development experience in Python or a similar language. - Deep familiarity with AWS core services (IAM, CloudTrail, CloudFormation, ECS, Lambda, S3, KMS). - Familiarity with application security and platform security best practices including frameworks such as OWASP. - Experience building or maintaining infrastructure with infrastructure-as-code tooling (e.g. Troposphere, Terraform, CloudFormation, AWS CDK). - Proficiency with CI/CD automation tools (GitHub Actions, GitLab CI, or similar). - Strong time management and organizational skills; able to balance multiple priorities and projects effectively. - Collaborative mindset and comfort working across distributed teams and time zones. Compensation & Benefits: Our salary ranges are based on paying competitively for our size and industry. Salary is just one part of our total compensation package that includes equity, perks & benefits, and development opportunities at Seesaw. Individual pay decisions are based on several factors, including qualifications for the role, experience level, skillset, geography, and balancing internal equity relative to other Seesawers. It is our expectation that the majority of candidates who are offered roles at Seesaw will land well within our salary ranges based on these factors. The Annual base salary range for this position is: $125,000 to $145,000 This is an exempt position. Benefits include: Medical/Dental + Orthodontics/Vision Coverage, 401k Match, Flexible Paid Time Off, Mindfulness First Fridays, Monthly Technology Stipend, Home Office Setup Stipend, Professional Development Stipend, Paid Parental Leave, Charitable Donation Matching, Volunteer Days. Seesaw provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, religious creed, color, sex, sex stereotype, gender, gender identity/gender expression/transgender, national origin, ancestry, physical or mental disability, medical condition, genetic information/characteristics, marital status/registered domestic partner status, age, sexual orientation, or military or veteran status. In addition to federal law requirements, Seesaw complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training. Seesaw is committed to protecting your personal data. Learn more about the personal information we collect, how we use it, and how to exercise your rights here: International Privacy Policy. Our company participates in E-Verify.
Intermediate Infrastructure Security Engineer (USA)
GitLabBuild software faster. The One DevOps Platform enables your entire org to collaborate around your code. We're hiring.
GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50 million registered users and more than 50% of the Fortune 100* trust GitLab to ship better, more secure software faster. The same principles built into our products are reflected in how our team works: we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. GitLab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems. Co-create the future with us as we build technology that transforms how the world develops software. *Fortune 500® is a registered trademark of Fortune Media IP Limited, used under license. Claim based on GitLab data. Fortune 100 refers to the top 20% ranked companies in the 2025 Fortune 500 list, published in June 2025. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of GitLab. As a member of the Infrastructure Security Team within the Product Security Department you will work with teams across GitLab to ensure that the components that comprise our cloud infrastructure are built with the resiliency and security expectations that our customers depend on to power their software factories. We’re looking for an Intermediate Infrastructure Security Engineer to further our automation efforts in support of our GitLab Dedicated for Government product offering. You’ll have the opportunity to contribute to tooling that operates our FedRAMP environment, identify and develop remediations for infrastructure vulnerabilities, and partner with more senior engineers to review upcoming project architectures to ensure that they are built to the rigorous standards we hold. What you’ll do in this role: - Support the Public Sector SRE team as a stable counterpart - Identify and help mitigate security issues, misconfigurations, and vulnerabilities related to GitLab’s cloud, container and Kubernetes infrastructure - Build tooling to increase our visibility into environments to expedite vulnerability detection - Own efforts securing GitLab's FedRAMP environment - Support other security teams as an Infrastructure SME - Document best practices and remediations to help engineers learn from common vulnerability types - Partner with senior engineers to review new architectures and projects and provide feedback cross-functionally - Fulfill the Product Security Division Mission of securing GitLab Infrastructure with our own product (“dogfooding”) What you'll bring: - Proof of U.S. citizenship and residency - Hands-on experience with public cloud providers (ex. AWS, GCP, Azure) - Development experience with Ruby, Python, Go - Experience with Infrastructure-as-Code (IaC) tools (ex. Terraform, Ansible, Chef) - Knowledge of the Linux operating system - Familiarity with containers (Docker) and orchestration platforms (Kubernetes) - An interest in Information Security - Demonstrated experience working collaboratively with cross-functional teams. - Proficiency to communicate over a text-based medium (Slack, GitLab Issues, Email) and can succinctly document technical details - Share our values, and work in accordance with those values The base salary range for this role’s listed level is currently for residents of the United States only. This range is intended to reflect the role's base salary rate in locations throughout the US. Grade level and salary ranges are determined through interviews and a review of education, experience, knowledge, skills, abilities of the applicant, equity with other team members, alignment with market data, and geographic location. The base salary range does not include any bonuses, equity, or benefits. See more information on our benefits and equity. Sales roles are also eligible for incentive pay targeted at up to 100% of the offered base salary. United States Salary Range $103,600—$185,000 USD How GitLab will support you - Benefits to support your health, finances, and well-being - Flexible Paid Time Off - Team Member Resource Groups - Equity Compensation & Employee Stock Purchase Plan - Growth and Development Fund - Parental leave - Home office support Please note that we welcome interest from candidates with varying levels of experience; many successful candidates do not meet every single requirement. Additionally, studies have shown that people from underrepresented groups are less likely to apply to a job unless they meet every single qualification. If you're excited about this role, please apply and allow our recruiters to assess your application. Country Hiring Guidelines: GitLab hires new team members in countries around the world. All of our roles are remote, however some roles may carry specific location-based eligibility requirements. Our Talent Acquisition team can help answer any questions about location after starting the recruiting process. Privacy Policy: Please review our Recruitment Privacy Policy. Your privacy is important to us. GitLab is proud to be an equal opportunity workplace and is an affirmative action employer. GitLab’s policies and practices relating to recruitment, employment, career development and advancement, promotion, and retirement are based solely on merit, regardless of race, color, religion, ancestry, sex (including pregnancy, lactation, sexual orientation, gender identity, or gender expression), national origin, age, citizenship, marital status, mental or physical disability, genetic information (including family medical history), discharge status from the military, protected veteran status (which includes disabled veterans, recently separated veterans, active duty wartime or campaign badge veterans, and Armed Forces service medal veterans), or any other basis protected by law. GitLab will not tolerate discrimination or harassment based on any of these characteristics. See also GitLab’s EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know during the recruiting process.
Workday Business Process and Security Administrator
Community College of VermontVermonters Helping Vermonters Go to College
• Configure and maintain and optimize Workday business processes across HCM and/or Financials, including approval chains, condition rules, validations, notifications and routing logic. • Evaluate existing workflows and partner with functional stakeholders to redesign processes that improve efficiency, compliance, and user experience. • Monitor, troubleshoot, and resolve business process errors, alerts, and escalations, ensuring timely resolution and root‑cause analysis. • Assess the downstream and cross‑module impacts of proposed configuration changes and system updates. • Design, implement, and maintain tenant‑wide security architecture, including role‑based access, security groups, business process security policies, and domain permissions. • Manage user provisioning and de‑provisioning processes in alignment with job responsibilities, separation procedures, and internal controls. • Conduct regular audits of security roles and access to ensure compliance with institutional policy, regulatory requirements, and audit standards. • Evaluate security implications of Workday releases, new features, and configuration changes, recommending mitigation strategies as needed. • Design, build, and maintain custom reports, dashboards, and calculated fields to support operational and strategic decision‑making. • Ensure data governance standards are upheld across business processes, reporting, and security configurations. • Develop and maintain technical documentation, configuration records, and process artifacts to support audit readiness and knowledge transfer. • Lead and support testing for Workday feature releases, patches, and enhancements, including regression testing and documentation of impacts. • Create and deliver training materials and targeted guidance for functional administrators and end users related to business processes and security. • Perform other duties as assigned.



