Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Principal Security Infrastructure Architect

Virtusa

Role: Principal Security Infrastructure Architect

Job Description:
Senior NDR & Platform Observability Engineer will support the operational health, visibility, and performance of the enterprise Network Detection & Response (NDR) environment, with a primary focus on the Corelight platform and surrounding telemetry pipelines. This role combines security operations expertise with the ability to build a modern monitoring and observability framework leveraging APIs, time series databases, automation, and data visualization tools.
The engineer will design and implement a comprehensive health monitoring architecture that ensures accurate, timely detection of platform degradation, enhanced visibility into sensor and pipeline performance, and operational insights that support Security Operations, Incident Response, and Network Engineering teams.

This role is responsible for:

  • Operating and maintaining the NDR ecosystem.
  • Developing automated collection of health and performance metrics using Python and REST APIs.
  • Building a production ready observability stack using Grafana, Prometheus, InfluxDB, and Telegraf.
  • Ensuring platform reliability, data quality, and visibility through dashboards, alerts, and automation workflows.
  • Providing advanced troubleshooting support to ensure uninterrupted NDR coverage across the enterprise.
  • The individual will play a critical role in improving detection efficacy, reducing noise, optimizing sensor uptime, and delivering insights that enhance the organization's overall security posture.
Key Responsibilities:

NDR Operations:
  • Oversee daily operations of NDR sensors, appliances, and Zeek based detection pipelines.
  • Monitor sensor health, data ingestion, packet throughput, and drop rates.
  • Perform triage of NDR alerts and work with SOC/IR teams on escalations.
  • Support tuning of Zeek scripts, Suricata rules, and Corelight detection packs.
  • Identify data gaps, ingest delays, or coverage issues and drive resolution.
  • Troubleshoot packet broker connections, SPAN/TAP feeds, and network visibility paths.
  • Observability & Monitoring Architecture
  • Design an enterprise grade observability solution for NDR platform and related telemetry systems.
  • Build metrics collectors using Python to ingest REST API data into monitoring platforms.
  • Integrate metrics into Prometheus, InfluxDB, or similar time series databases.
  • Configure Telegraf pipelines for data collection, parsing, tagging, and forwarding.
  • Develop dashboards and visualizations in Grafana for real time and historical performance analysis.
  • Establish SLIs/SLOs related to NDR reliability, sensor uptime, ingest freshness, and data pipeline availability.
Automation & API Integration
  • Develop Python automation scripts to standardize health checks, data validation, and system reporting.
  • Integrate with SIEM, and packet broker APIs to extract key operational metrics.
  • Build custom Prometheus exporters or collectors when native solutions are not available.
  • Automate repetitive tasks such as sensor status checks, alert validation, and data integrity verification.
Documentation & Knowledge Transfer
  • Create and maintain runbooks, playbooks, architecture diagrams, and troubleshooting guides.
  • Produce regular reports on platform status, performance, alert trends, and risk areas.
  • Train SOC, IR, and engineering teams on dashboards, alerting workflows, and monitoring best practices.
Stakeholder Coordination:
  • Work closely with Security Operations to improve triage precision and reduce alert noise.
  • Partner with the Incident Response team to enhance detection and correlation capabilities.
  • Coordinate with Network Engineering to resolve sensor visibility or traffic path issues.
  • Collaborate with platform owners to support upgrades, tuning cycles, and architectural enhancements.

    Required Qualifications:
  • 5+ years in security operations, NDR, network engineering, or observability engineering.
  • Hands-on experience with Corelight, Endace, cpacket, Zeek, Suricata, or related NDR technologies.
  • Strong Python development skills, especially for API integrations and automation.
  • Experience with monitoring and visualization platforms (Grafana, Prometheus, InfluxDB, Telegraf).
  • Solid understanding of network traffic, packet capture, and troubleshooting.
  • Ability to create dashboards, alerts, and metrics pipelines for large-scale environments.
  • Experience supporting security operations teams or incident response workflows.



    Preferred Qualifications
  • Experience developing custom Prometheus exporters (Python/Go).
  • Prior exposure to Corelight APIs and Zeek script customization.
  • Familiarity with Docker, Kubernetes, or containerized exporters.
  • Experience with SIEM platforms and log ingestion pipelines.
  • Exposure to data engineering platforms (Kafka, Elasticsearch, Loki).
  • Knowledge of MITRE ATT&CK and NDR detection engineering.
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Principal Security Infrastructure Architect in New York, NY vacancy
  • $184k - $230k

     ...Security Architecture Consultant At Early Warning, we've powered and protected the U.S. financial system for over thirty years...  ...architecture teams to ensure that all newly developed and legacy infrastructure implementations are in line with security policy and are... 
    Principal
    Hourly pay
    Work at office
    Immediate start
    Visa sponsorship
    Work visa
    Flexible hours

    Early Warning Services

    New York, NY
    15 hours ago
  •  ...Astera Labs is seeking a Senior Principal Hardware System Architect to lead the design and development of advanced x86 and accelerator-based server platforms. This remote role involves significant collaboration across hardware, firmware, and engineering teams, driving... 
    Principal
    Remote work

    Astera Labs

    New York, NY
    15 hours ago
  •  ...Framework Ventures is looking for a Principal Information Security Engineer to lead the design and implementation of secure architectures for AI/ML components in its cloud security products. The role involves developing a strategic roadmap for product security, conducting... 
    Principal

    Framework Ventures

    New York, NY
    2 days ago
  •  ...A leading technology company is seeking a Principal Security Architect to lead the design of security architectures across multiple disciplines. The successful candidate will implement secure cloud native guardrails, conduct automated architecture assurance, and provide... 
    Principal
    Full time
    Remote work

    ServiceTitan

    New York, NY
    2 days ago
  •  ...A leading tech firm is seeking a Principal Security Architect to oversee and innovate security measures across its digital platforms. The ideal candidate will have over 12 years of experience with a strong focus on security architecture and risk management. Responsibilities... 
    Principal
    Full time
    Remote work

    ServiceTitan

    New York, NY
    2 days ago
  • $96.5k - $207.5k

     ...Information Technology (IT) technical infrastructure, such as hardware, software, network resources, security, and services for new and...  ...to drive to clear outcomes. Architect complex solutions with...  ...ability to travel as required. Principal Enterprise Security Architect... 
    Principal
    Work experience placement
    Work at office

    Fifth Third Bank, N.A.

    New York, NY
    22 hours ago
  • $192.5k - $275k

     ...Zscaler is seeking a Solutions Architect to guide partners in integrating AI services into their architectures. This role requires extensive experience (10+ years) in related fields and a strong understanding of the AI ecosystem. Responsibilities include advising on best... 
    Principal
    Full time
    Remote work

    Framework Ventures

    New York, NY
    2 days ago
  •  ...Principal Security Architect Are you ready to make an impact at DTCC? Do you want to work on innovative projects, collaborate with a dynamic...  ...technology solutions that enable DTCC to be the trusted infrastructure of the global capital markets. The team delivers high-... 
    Principal

    Dtcc

    Jersey City, NJ
    1 day ago
  •  ...Principal, Security Architect page is loaded## Principal, Security Architectlocations: US Remotetime type: Full timeposted on: Posted Todayjob...  ...innovation with uncompromising protection, ensuring our infrastructure is resilient by design rather than by reaction. You will... 
    Principal

    ServiceTitan

    New York, NY
    2 days ago
  • $160k - $225k

     ...Principal Security Architect The Principal Security Architect provides architectural leadership and vision for security across the enterprise...  ...companies. This position reports to the Sr. Director of Infrastructure & Cloud Architecture and works closely with Solution... 
    Principal
    Work at office
    Remote work

    Quest Diagnostics

    Secaucus, NJ
    19 hours ago
  • $144.2k - $288.4k

     ...passionate about navigating the ever-changing security landscape filled with evolving...  ...AI? We are seeking T-shaped Archineers (Architect + Engineer) who can seamlessly transition...  ...Intelligence, APIs, data stores, cloud infrastructures, cloud services, and microservices.... 
    Principal
    Full time
    Work experience placement
    Local area

    Hispanic Alliance for Career Enhancement

    New York, NY
    3 days ago
  • $201k - $272k

     ...Financial Services, with a special focus on security? Do you have a unique combination of...  ...a specialized Security Solutions Architect to work with our largest Financial Services...  ...cloud computing, systems engineering, infrastructure, security, networking, data & analytics... 
    Principal
    Flexible hours

    Amazon

    New York, NY
    8 hours ago
  • A global human capital management firm is seeking a Principal Cloud Security Engineer to lead security initiatives across Azure and AWS environments. This role requires expertise in cloud security architecture and compliance, with responsibilities including CNAPP implementation... 
    Principal

    Ceridian HCM, Inc

    New York, NY
    1 day ago
  •  ...Principal Cloud Security Architect About the Role What if your deep knowledge of cloud architecture could directly prevent the next major breach? We're looking for a Principal Cloud Security Architect to dig into large-scale cloud environments, uncover hidden... 
    Principal
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours

    Alignerr

    New York, NY
    2 days ago
  •  ...of that growth and opportunity! looking for an Sr. Network Security Architect to work on a Contract role, 12+ Months (Role has high Potential...  ...ago Global Service Owner & Cloud Security Architect (W/M/X) Principal Network Architect / Technical SME Web Filtering Security... 
    Full time
    Contract work
    Work experience placement
    Live in
    Remote work

    SGS Technologie

    New York, NY
    2 days ago
  • $200k

     ...A Global MSP is looking for a Principal Architect focused on Enterprise Networking. This position will be the lead on delivering customer projects that are network-focused related to Fortinet. The position requires someone who is hands‑on and will perform the bulk of work... 
    Remote work

    MDP Global

    New York, NY
    1 day ago
  • $90 - $105 per hour

     ...Staffing Solutions & Project Delivery in IT Infrastructure - Vivid USA - loui.cowles@...  ...3 0030 Contract Opportunity: Network Security Architect (Vendor-Agnostic) Location: Remote (U...  ...$180,000.00-$250,000.00 2 weeks ago Principal Network Architect / Technical SME Director... 
    Contract work
    Immediate start
    Remote work

    Vivid Resourcing

    New York, NY
    2 days ago
  •  ...Description : We have an exciting opportunity for a Network Security Architect to support a financial services client in designing and...  ...role plays a critical part in securing cloud and on-premise infrastructure through comprehensive inspection, decryption, and data... 
    Local area

    ShiftCode Analytics

    Jersey City, NJ
    4 days ago
  •  ...DFIN – because being YOU thrives here. Summary: The Network Security Architect will perform Network and Network Security assessments and...  ...various types of solutions residing in public/private/hybrid infrastructure or SaaS‑based solutions. This individual will provide... 
    Flexible hours

    Donnelley Financial Solutions

    New York, NY
    2 days ago
  • $80 per hour

     ...business domains, partner with domain architect or act as the domain architect to ensure...  ...Accountable for projects/applications/infrastructure meeting business needs are delivered in...  ...hands-on and design experience on various security technologies including HPE Aruba... 
    Contract work
    Remote work

    CRG

    New York, NY
    2 days ago
  • $240k - $330k

     ...Senior Network Security & Services Architect - CTO Office Location New York Business Area Engineering and CTO Ref # 10048627...  ...networking (SDN) for secure application connectivity and network infrastructure, network function softwarization, network security,... 
    Temporary work
    For contractors
    Work experience placement
    Work at office
    Worldwide

    Bloomberg

    New York, NY
    3 days ago
  • $240k - $330k

    A leading financial technology firm is seeking a seasoned network security architect to evolve their network security landscape. The ideal candidate will have extensive experience in network perimeter security, overseeing load balancing, and implementing zero trust networking... 

    Bloomberg New Energy Finance

    New York, NY
    15 hours ago
  •  ...Principal Network Architect / Technical SME Principal Network Architect / Technical SME Equal Employment...  ...(Certified Information Systems Security Professional) CCIE or equivalent senior...  ...incorporating: Wired and wireless infrastructure IPv4/IPv6 dual‑stack implementations... 
    Principal
    Contract work
    Work at office
    Remote work

    N-Ovation Technology Group LLC

    New York, NY
    2 days ago
  •  ...Job Description Job Description Network Security Architect Principal Responsibilities: Architect and implement network communication...  ...Secure and harden the network, server, data and end user infrastructure Architect and implement end user device solutions... 

    The Rockridge Group

    New York, NY
    12 days ago
  • $124.51k - $150k

     ...Conduent is looking for a Network Security Architect in the United States to design and implement security architectures on Palo Alto firewalls and Azure. The role requires a Bachelor's degree in a relevant field and extensive hands-on experience in enterprise settings... 

    Conduent

    New York, NY
    2 days ago
  • $155k - $195k

     ...are looking for a talented and experienced Modern Infra and Security Architect, Vice President who is hardworking, collaborative and...  ...delivery tools, modern scripting languages, cloud automation, and infrastructure design and operating solutions built on AWS, Azure, or GCP... 
    Work at office
    Local area
    Remote work

    MUFG in the Americas

    Jersey City, NJ
    more than 2 months ago
  •  ...Government Services company is seeking a Principal Network / Systems Architect to support KITS and our government...  ...& Duties Converged Infrastructure Design Architect integrated solutions...  ...foundation for agency data. Zero Trust & Secure Access Service Edge (SASE) Lead the... 
    Principal
    Local area
    Remote work
    Flexible hours

    Koniag Information Security Services, LLC

    Fort Lee, NJ
    15 hours ago
  • $96.5k - $207.5k

     ...Fifth Third Bank, N.A. is seeking a Principal Enterprise Security Architect to design and govern IT systems that support the enterprise architecture. This role requires a Bachelor's degree in a relevant technology field, eight years of IT experience, and strong problem... 

    Fifth Third Bank, N.A.

    New York, NY
    22 hours ago
  •  ...Blink Health is seeking a Senior AI Security Engineer to lead AI security and risk management. This role requires strong expertise in...  .... The ideal candidate will work closely with various teams to architect an AI security program across the organization. Join a collaborative... 

    Blink Health

    New York, NY
    15 hours ago
  •  ...Nerdleveltech is hiring a Security Architect to lead the development of an embedded cybersecurity platform. You will work on groundbreaking technologies including cryptographic key management and secure boot for high-assurance environments. Ideal candidates have strong... 

    Nerdleveltech

    New York, NY
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Principal Security Infrastructure Architect. Be the first to apply!