Founded in 2001, Fastly is a privately-held internet company offering the Fastly Edge Cloud platform, a content delivery network that helps digital businesses s
Senior Security Architect
Location
California + 2 moreAll locations: California | Colorado | New York
Posted
43 days ago
Salary
$181.2K - $217.5K / year
Seniority
Senior
Job Description
Senior Security Architect
Fastly
• Own and evolve the enterprise security architecture for Fastly’s corporate IT and business systems, ensuring scalable, risk-aligned protection across a modern SaaS-first environment. • Define and drive technical security strategy across key domains including endpoint security, identity and access management, MDM, data protection, SaaS, remote access, and collaboration platforms. • Act as the security architecture lead for business-critical platforms (e.g., ERP, CRM, analytics), ensuring secure design, configuration, and ongoing risk management. • Embed security into system design and adoption, partnering with IT and business teams to ensure new technologies and workflows are implemented securely from the outset. • Lead risk-based security assessments across infrastructure and applications, identifying meaningful threats, control gaps, and pragmatic mitigation strategies. • Translate risk into action by defining clear, prioritized security controls and partnering with system owners and leadership to drive implementation. • Establish and maintain secure configuration standards and design patterns for enterprise tools (e.g., productivity suites, collaboration platforms, AI tools), ensuring consistent and scalable security practices. • Provide architectural guidance and advisory support to senior leaders and technical teams on high-risk or high-impact initiatives. • Partner cross-functionally with IT, Engineering, Legal, and business stakeholders to align security with operational and business objectives. • Continuously improve security posture by evaluating emerging threats, technologies, and architectural patterns.
Job Requirements
- 6+ years of experience in security architecture, engineering, or risk-focused roles
- Demonstrated ability to design and influence security architecture at scale, balancing risk, usability, and business velocity
- Strong experience in risk identification and prioritization—the ability to cut through noise and focus on what actually matters
- Ability to translate complex technical risks into clear business impact, and influence both technical and non-technical stakeholders
- Proven track record of driving security outcomes through partnership, not just authority
- Experience turning security policies and standards into practical, deployable architectures and controls
- Familiarity with modern security frameworks (e.g., NIST CSF) and expertise in core security domains (e.g., Identity and Access Management, Endpoint Security, Data Protection) , with the ability to apply them pragmatically
- Experience securing SaaS platforms and enterprise applications (e.g., ERP, CRM, collaboration tools), including configuration hardening and access models
- Understanding of third-party risk and vendor security assessments, including how to evaluate and mitigate external risk
- Strong systems thinking and the ability to operate across ambiguity, scale, and organizational boundaries.
Benefits
- medical, dental, and vision insurance
- Family planning
- mental health support
- Employee Assistance Program
- Insurance (Life, Disability, and Accident)
- a Flexible Vacation policy
- up to 18 days of accrued paid sick leave
- 401(k) (including company match)
- Employee Stock Purchase Program
- 12 paid local holidays
- 12 paid company wellness days
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Manage and lead security initiatives, new processes, security scrums and demos, to expand and mature capabilities for the organization. • Identify and track internal and external assets to identify potential risks. Communicate these risks to internal and external stakeholders and build a plan of action. • Research and evaluate vendor and open source tools and their security and manage their compliance with security practices. • Manage and collaborate with internal and external teams to answer customer questionnaires, compliance audits and represent security internally and externally. • Oversee security awareness and phishing campaigns, and drive security maturity initiatives. • Define and own GenAI security, policies, standards, governance, monitoring, integrations. • Manage security architecture and security engineering for GenAI systems and their integrations in CI/CD, including LLMs, RAG, agents, APIs, and integrations. • Design, implement, and improve controls for access management, data protection, prompt injection, misuse, and model-related threats. • Conduct threat modeling, design reviews, access reviews, and security assessments. • Build or guide security tooling, automation, and secure development practices for AI and product teams. • Establish monitoring and lead response for AI-specific and traditional security threats. • Lead incident response, including investigation, containment, remediation, and lessons learned. • Coordinate vulnerability management, including identification, prioritization, remediation tracking, and partnership with engineering teams. • Support core security operations including security alert response and cross-functional security coordination. • Represent security in internal and external meetings to discuss security analysis, findings and security/compliance responses. • Review past incidents and identify attack trends. Finetune and reconfigure alerts based on prior incidents to improve detection.
• Own, build, and scale the team and systems for Censys’ corporate security infrastructure • Own company security needs from endpoint provisioning to deploying tools that improve our overall security posture while keeping things simple for all employees • Manage the Security team; delegate day-to-day workloads and ensure coverage of critical functions during PTO to maintain a high SLA • Own the complete endpoint lifecycle including provisioning, application deployment, security controls, and asset retirement • Work closely with internal teams to enforce compliance across endpoints and help users understand how security policies impact their daily work • Manage and secure cloud environments and coordinate security configuration of software and tools • Develop and deliver Security Awareness Training to internal users • Collect and create documentation for security processes and build out a knowledge base for the team • Design, implement, and manage the company’s Data Loss Prevention (DLP) program, including policies, tooling, and enforcement across endpoints, cloud, and email • Own and operate the insider threat program, including behavioral monitoring, investigation workflows, and coordination with Legal, HR, and senior leadership as required • Partner with engineering and infrastructure teams to ensure security telemetry and logging coverage meets both operational and compliance requirements • Lead the development and implementation of Censys’ compliance strategy to achieve and maintain compliance with ISO 27001, SOC 2 Type 2, UK NCSC Cyber Essentials+, and CMMC, in partnership with the Security and Operations teams • Develop, review, and update organizational policies and procedures to align with compliance and governance requirements • Oversee timely responses to security questionnaires and other sales requests relating to organizational and product security and privacy • Validate and respond to inbound legal process as required by federal law • Assist in the procurement process to review proposed purchases for security and privacy concerns • Manage control and process libraries • Conduct ongoing risk assessments • Other duties as assigned
End User Computing Security Engineer I
Texas Health ResourcesLocated in Arlington Texas, Texas Health Resources is a nonprofit, faith-based healthcare provider that has been providing a wide range of healthcare services to the communities th
Role Description This position works daily on the End Point Security for user devices. This includes working with: - Anti-Virus and Endpoint Detection and Resolution (EDR) applications such as McAFee, Cylance, and Windows Defender - Disk encryption solutions (Microsoft BitLocker and McAfee) - Tracking systems (Computrace/Absolute) for Microsoft Windows devices Responsibilities include: - Troubleshooting client agent issues, reporting, and managing exception processes - Daily management of security audits and corresponding remediation - Updating SCCM/Tanium and GPO to roll out updates and changes to the security configuration of devices - Supporting client software installation/configuration - Troubleshooting application issues that may be impacted by security tools Specific tasks include: - Detecting and installing AV and EDR agents on all required devices - Configuring white list for application protection - Configuring security settings to meet security requirements - Performing application upgrades and patches - Monitoring application health - Performing standard practices to test all updates and changes prior to agent deployment - Following ITIL and THR change management practices - Running weekly reports on encrypted devices - Locking computers that remain un-encrypted based upon security standards - Providing security with weekly reports - Working with application vendor to resolve issues - Providing technical assistance to other team members - Providing on-call after hours support Qualifications - Bachelor's Degree in Computer Science, Information Technology/Systems, Business or related field OR 4 years relevant experience in lieu of a degree (Required) - 6 Months experience working in a large enterprise environment managing end points, specifically security products, including antivirus, disk encryption on Windows - Remediation of HRV (High Risk Vulnerabilities) experience (Highly Preferred) - Anti-virus and EDR experience (Preferred) - CISSP - Certified Information Systems Security Professional Upon Hire (Highly Preferred) - MCSA - Microsoft Certified System Administrator Upon Hire (Preferred) Requirements - Full-time, Day shift; 40 hours, Monday – Friday, 8:00am to 5:00pm - Primarily Remote – must live in the Dallas-Fort Worth Metroplex Benefits - 401k - PTO - Medical - Dental - Paid Parental Leave - Flex spending - Tuition reimbursement - Student Loan forgiveness - Several other benefits - Delivery of high quality of patient care through nursing education, nursing research and innovations in nursing practice - Strong Unit Based Council (UBC) - A supportive, team environment with outstanding opportunities for growth
Information Security Assistant
C&A BrasilNossa moda é feita de pessoas que fazem acontecer. Clique em "vagas" e a gente se encontra na C&A 💙
• Support ensuring compliance with information security policies and regulations; • Support the implementation of governance with business and Technology areas on matters related to information security and cyber risk; • Assist in creating and formatting security-related documents that need to be frequently updated, modified, stored and made available for reference and audit purposes; • Work closely with other information security teams to ensure the overall effectiveness of C&A's information security program; • Support the information security maturity assessment process for vendors; • Assist with information security awareness activities for associates and third parties; • Support the development and measurement of information security metrics;




