Principal Security Infrastructure Architect
Virtusa
Role: Principal Security Infrastructure Architect
Job Description:
Senior NDR & Platform Observability Engineer will support the operational health, visibility, and performance of the enterprise Network Detection & Response (NDR) environment, with a primary focus on the Corelight platform and surrounding telemetry pipelines. This role combines security operations expertise with the ability to build a modern monitoring and observability framework leveraging APIs, time series databases, automation, and data visualization tools.
The engineer will design and implement a comprehensive health monitoring architecture that ensures accurate, timely detection of platform degradation, enhanced visibility into sensor and pipeline performance, and operational insights that support Security Operations, Incident Response, and Network Engineering teams. This role is responsible for:
NDR Operations:
Job Description:
Senior NDR & Platform Observability Engineer will support the operational health, visibility, and performance of the enterprise Network Detection & Response (NDR) environment, with a primary focus on the Corelight platform and surrounding telemetry pipelines. This role combines security operations expertise with the ability to build a modern monitoring and observability framework leveraging APIs, time series databases, automation, and data visualization tools.
The engineer will design and implement a comprehensive health monitoring architecture that ensures accurate, timely detection of platform degradation, enhanced visibility into sensor and pipeline performance, and operational insights that support Security Operations, Incident Response, and Network Engineering teams. This role is responsible for:
- Operating and maintaining the NDR ecosystem.
- Developing automated collection of health and performance metrics using Python and REST APIs.
- Building a production ready observability stack using Grafana, Prometheus, InfluxDB, and Telegraf.
- Ensuring platform reliability, data quality, and visibility through dashboards, alerts, and automation workflows.
- Providing advanced troubleshooting support to ensure uninterrupted NDR coverage across the enterprise.
- The individual will play a critical role in improving detection efficacy, reducing noise, optimizing sensor uptime, and delivering insights that enhance the organization's overall security posture.
NDR Operations:
- Oversee daily operations of NDR sensors, appliances, and Zeek based detection pipelines.
- Monitor sensor health, data ingestion, packet throughput, and drop rates.
- Perform triage of NDR alerts and work with SOC/IR teams on escalations.
- Support tuning of Zeek scripts, Suricata rules, and Corelight detection packs.
- Identify data gaps, ingest delays, or coverage issues and drive resolution.
- Troubleshoot packet broker connections, SPAN/TAP feeds, and network visibility paths.
- Observability & Monitoring Architecture
- Design an enterprise grade observability solution for NDR platform and related telemetry systems.
- Build metrics collectors using Python to ingest REST API data into monitoring platforms.
- Integrate metrics into Prometheus, InfluxDB, or similar time series databases.
- Configure Telegraf pipelines for data collection, parsing, tagging, and forwarding.
- Develop dashboards and visualizations in Grafana for real time and historical performance analysis.
- Establish SLIs/SLOs related to NDR reliability, sensor uptime, ingest freshness, and data pipeline availability.
- Develop Python automation scripts to standardize health checks, data validation, and system reporting.
- Integrate with SIEM, and packet broker APIs to extract key operational metrics.
- Build custom Prometheus exporters or collectors when native solutions are not available.
- Automate repetitive tasks such as sensor status checks, alert validation, and data integrity verification.
- Create and maintain runbooks, playbooks, architecture diagrams, and troubleshooting guides.
- Produce regular reports on platform status, performance, alert trends, and risk areas.
- Train SOC, IR, and engineering teams on dashboards, alerting workflows, and monitoring best practices.
- Work closely with Security Operations to improve triage precision and reduce alert noise.
- Partner with the Incident Response team to enhance detection and correlation capabilities.
- Coordinate with Network Engineering to resolve sensor visibility or traffic path issues.
- Collaborate with platform owners to support upgrades, tuning cycles, and architectural enhancements. Required Qualifications:
- 5+ years in security operations, NDR, network engineering, or observability engineering.
- Hands-on experience with Corelight, Endace, cpacket, Zeek, Suricata, or related NDR technologies.
- Strong Python development skills, especially for API integrations and automation.
- Experience with monitoring and visualization platforms (Grafana, Prometheus, InfluxDB, Telegraf).
- Solid understanding of network traffic, packet capture, and troubleshooting.
- Ability to create dashboards, alerts, and metrics pipelines for large-scale environments.
- Experience supporting security operations teams or incident response workflows.
Preferred Qualifications - Experience developing custom Prometheus exporters (Python/Go).
- Prior exposure to Corelight APIs and Zeek script customization.
- Familiarity with Docker, Kubernetes, or containerized exporters.
- Experience with SIEM platforms and log ingestion pipelines.
- Exposure to data engineering platforms (Kafka, Elasticsearch, Loki).
- Knowledge of MITRE ATT&CK and NDR detection engineering.
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Principal Security Infrastructure Architect in New York, NY vacancy
$184k - $230k
...Security Architecture Consultant At Early Warning, we've powered and protected the U.S. financial system for over thirty years... ...architecture teams to ensure that all newly developed and legacy infrastructure implementations are in line with security policy and are...PrincipalHourly payWork at officeImmediate startVisa sponsorshipWork visaFlexible hours- ...Astera Labs is seeking a Senior Principal Hardware System Architect to lead the design and development of advanced x86 and accelerator-based server platforms. This remote role involves significant collaboration across hardware, firmware, and engineering teams, driving...PrincipalRemote work
- ...Framework Ventures is looking for a Principal Information Security Engineer to lead the design and implementation of secure architectures for AI/ML components in its cloud security products. The role involves developing a strategic roadmap for product security, conducting...Principal
- ...A leading technology company is seeking a Principal Security Architect to lead the design of security architectures across multiple disciplines. The successful candidate will implement secure cloud native guardrails, conduct automated architecture assurance, and provide...PrincipalFull timeRemote work
- ...A leading tech firm is seeking a Principal Security Architect to oversee and innovate security measures across its digital platforms. The ideal candidate will have over 12 years of experience with a strong focus on security architecture and risk management. Responsibilities...PrincipalFull timeRemote work
$96.5k - $207.5k
...Information Technology (IT) technical infrastructure, such as hardware, software, network resources, security, and services for new and... ...to drive to clear outcomes. Architect complex solutions with... ...ability to travel as required. Principal Enterprise Security Architect...PrincipalWork experience placementWork at office$192.5k - $275k
...Zscaler is seeking a Solutions Architect to guide partners in integrating AI services into their architectures. This role requires extensive experience (10+ years) in related fields and a strong understanding of the AI ecosystem. Responsibilities include advising on best...PrincipalFull timeRemote work- ...Principal Security Architect Are you ready to make an impact at DTCC? Do you want to work on innovative projects, collaborate with a dynamic... ...technology solutions that enable DTCC to be the trusted infrastructure of the global capital markets. The team delivers high-...Principal
- ...Principal, Security Architect page is loaded## Principal, Security Architectlocations: US Remotetime type: Full timeposted on: Posted Todayjob... ...innovation with uncompromising protection, ensuring our infrastructure is resilient by design rather than by reaction. You will...Principal
$160k - $225k
...Principal Security Architect The Principal Security Architect provides architectural leadership and vision for security across the enterprise... ...companies. This position reports to the Sr. Director of Infrastructure & Cloud Architecture and works closely with Solution...PrincipalWork at officeRemote work$144.2k - $288.4k
...passionate about navigating the ever-changing security landscape filled with evolving... ...AI? We are seeking T-shaped Archineers (Architect + Engineer) who can seamlessly transition... ...Intelligence, APIs, data stores, cloud infrastructures, cloud services, and microservices....PrincipalFull timeWork experience placementLocal area$201k - $272k
...Financial Services, with a special focus on security? Do you have a unique combination of... ...a specialized Security Solutions Architect to work with our largest Financial Services... ...cloud computing, systems engineering, infrastructure, security, networking, data & analytics...PrincipalFlexible hours- A global human capital management firm is seeking a Principal Cloud Security Engineer to lead security initiatives across Azure and AWS environments. This role requires expertise in cloud security architecture and compliance, with responsibilities including CNAPP implementation...Principal
- ...Principal Cloud Security Architect About the Role What if your deep knowledge of cloud architecture could directly prevent the next major breach? We're looking for a Principal Cloud Security Architect to dig into large-scale cloud environments, uncover hidden...PrincipalHourly payOngoing contractContract workFreelanceRemote workFlexible hours
- ...of that growth and opportunity! looking for an Sr. Network Security Architect to work on a Contract role, 12+ Months (Role has high Potential... ...ago Global Service Owner & Cloud Security Architect (W/M/X) Principal Network Architect / Technical SME Web Filtering Security...Full timeContract workWork experience placementLive inRemote work
$200k
...A Global MSP is looking for a Principal Architect focused on Enterprise Networking. This position will be the lead on delivering customer projects that are network-focused related to Fortinet. The position requires someone who is hands‑on and will perform the bulk of work...Remote work$90 - $105 per hour
...Staffing Solutions & Project Delivery in IT Infrastructure - Vivid USA - loui.cowles@... ...3 0030 Contract Opportunity: Network Security Architect (Vendor-Agnostic) Location: Remote (U... ...$180,000.00-$250,000.00 2 weeks ago Principal Network Architect / Technical SME Director...Contract workImmediate startRemote work- ...Description : We have an exciting opportunity for a Network Security Architect to support a financial services client in designing and... ...role plays a critical part in securing cloud and on-premise infrastructure through comprehensive inspection, decryption, and data...Local area
- ...DFIN – because being YOU thrives here. Summary: The Network Security Architect will perform Network and Network Security assessments and... ...various types of solutions residing in public/private/hybrid infrastructure or SaaS‑based solutions. This individual will provide...Flexible hours
$80 per hour
...business domains, partner with domain architect or act as the domain architect to ensure... ...Accountable for projects/applications/infrastructure meeting business needs are delivered in... ...hands-on and design experience on various security technologies including HPE Aruba...Contract workRemote work$240k - $330k
...Senior Network Security & Services Architect - CTO Office Location New York Business Area Engineering and CTO Ref # 10048627... ...networking (SDN) for secure application connectivity and network infrastructure, network function softwarization, network security,...Temporary workFor contractorsWork experience placementWork at officeWorldwide$240k - $330k
A leading financial technology firm is seeking a seasoned network security architect to evolve their network security landscape. The ideal candidate will have extensive experience in network perimeter security, overseeing load balancing, and implementing zero trust networking...- ...Principal Network Architect / Technical SME Principal Network Architect / Technical SME Equal Employment... ...(Certified Information Systems Security Professional) CCIE or equivalent senior... ...incorporating: Wired and wireless infrastructure IPv4/IPv6 dual‑stack implementations...PrincipalContract workWork at officeRemote work
- ...Job Description Job Description Network Security Architect Principal Responsibilities: Architect and implement network communication... ...Secure and harden the network, server, data and end user infrastructure Architect and implement end user device solutions...
$124.51k - $150k
...Conduent is looking for a Network Security Architect in the United States to design and implement security architectures on Palo Alto firewalls and Azure. The role requires a Bachelor's degree in a relevant field and extensive hands-on experience in enterprise settings...$155k - $195k
...are looking for a talented and experienced Modern Infra and Security Architect, Vice President who is hardworking, collaborative and... ...delivery tools, modern scripting languages, cloud automation, and infrastructure design and operating solutions built on AWS, Azure, or GCP...Work at officeLocal areaRemote work- ...Government Services company is seeking a Principal Network / Systems Architect to support KITS and our government... ...& Duties Converged Infrastructure Design Architect integrated solutions... ...foundation for agency data. Zero Trust & Secure Access Service Edge (SASE) Lead the...PrincipalLocal areaRemote workFlexible hours
$96.5k - $207.5k
...Fifth Third Bank, N.A. is seeking a Principal Enterprise Security Architect to design and govern IT systems that support the enterprise architecture. This role requires a Bachelor's degree in a relevant technology field, eight years of IT experience, and strong problem...- ...Blink Health is seeking a Senior AI Security Engineer to lead AI security and risk management. This role requires strong expertise in... .... The ideal candidate will work closely with various teams to architect an AI security program across the organization. Join a collaborative...
- ...Nerdleveltech is hiring a Security Architect to lead the development of an embedded cybersecurity platform. You will work on groundbreaking technologies including cryptographic key management and secure boot for high-assurance environments. Ideal candidates have strong...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Security Infrastructure Architect. Be the first to apply!
Related searches
- cyber security architect New York, NY
- cloud security architect New York, NY
- aws security architect New York, NY
- lead security architect New York, NY
- security architect New York, NY
- security solutions architect New York, NY
- infrastructure architect New York, NY
- network architect New York, NY
- cloud network architect New York, NY
- senior network architect New York, NY


