Principal Security Architect
$120k - $190kMetLife
Description and Requirements
The Team You Will Join
As part of MetLife’s Global Security team, you’ll work alongside world-class experts to protect MetLife, our customers and our colleagues. The team is responsible for managing cybersecurity, IT risks and vulnerabilities, physical security, and more. In this fast-paced, mission-driven environment, you’ll join outstanding teammates to expand your skills, collaborate across the organization and implement innovative approaches to safeguard MetLife when it matters most. Ready to make an impact? Join us if you want to embrace the rapidly evolving environment and use transformative technology to integrate and build security into the foundation of key initiatives across MetLife.
The Opportunity
The Principal Security Architect will lead risk-based security architecture reviews and provide enterprise-grade security guidance for technology and platform initiatives submitted through the Security Architecture Review process. This role will evaluate proposed architectures, identify material risks, recommend appropriate security controls, and help teams align solutions to target-state architecture, reference patterns, and roadmaps. The successful candidate will bring deep expertise in threat modeling, security control evaluation, architecture design, identity-centric security, network segmentation, secure access, risk-based access policy design, and broad security domain knowledge across IAM, network, devices, applications, data, SOC, cloud, governance/risk/compliance, and AI. This role is expected to influence architecture decisions, develop reusable reference architectures, and support enterprise transformation through current-state assessment, maturity modeling, strategic planning, and roadmap development.
Key Responsibilities
· Lead Security Architecture Review (SAR) assessments for enterprise technology initiatives, including applications, platforms, cloud services, infrastructure, AI solutions, integrations, and major transformation programs.
· Perform threat modeling and risk assessments to identify security design gaps, control weaknesses, trust-boundary concerns, attack paths, data exposure risks, and operational impacts.
· Evaluate security controls, tools, and technologies against architecture requirements, enterprise standards, risk posture, and control effectiveness objectives.
· Design and recommend secure architecture patterns across identity, network, endpoint/device, application, data, cloud, SOC/security operations, governance/risk/compliance, and AI domains.
· Develop and maintain reusable security reference architectures, decision patterns, implementation guardrails, and design principles to accelerate secure delivery at scale.
· Provide identity-centric security architecture guidance, including authentication assurance, authorization models, privileged access, least privilege, role-based access, non-human identity considerations, and lifecycle integration.
· Advise on network segmentation, micro segmentation, secure access, zero trust access patterns, ingress/egress controls, and connectivity models for internal, internet-facing, and B2B integrations.
· Design risk-based access policies for users, workloads, devices, applications, data, and administrative functions, considering sensitivity, exposure, business criticality, and operational requirements.
· Assess current-state security architecture and define target-state architecture, transition roadmaps, maturity models, and strategic recommendations for enterprise security transformation.
· Drive integration of security architecture with the five security pillars: IAM, network, devices, applications, and data, while ensuring alignment with security automation, orchestration, monitoring, detection, and response capabilities.
· Partner with enterprise architecture, application teams, cloud/platform teams, network engineering, IAM, data protection, SOC, GRC, privacy, legal, and risk stakeholders to develop pragmatic and implementable security recommendations.
· Document architecture decisions, risks, assumptions, compensating controls, and required remediation actions clearly for technical teams, governance bodies, and leadership audiences.
Required Qualifications
- 8- 10 years of overall experience.
- Strong experience in security architecture, enterprise architecture, security engineering, or cyber risk roles with demonstrated responsibility for reviewing or designing complex technology solutions.
- Demonstrated expertise in threat modeling, risk assessment, attack path analysis, trust-boundary assessment, control gap analysis, and security remediation planning.
- Deep understanding of security architecture patterns, including identity-centric security, zero trust, least privilege, defense-in-depth, segmentation, secure access, data protection, secure integration, and secure-by-design principles.
- Ability to evaluate security controls and technologies, determine control applicability, assess architecture fit, and provide risk-based recommendations that balance protection, usability, delivery speed, and operational feasibility.
- Broad knowledge across IAM, network security, endpoint/device security, application security, data security, cloud security, SOC/security operations, governance/risk/compliance, and/or AI security.
- Experience developing reference architectures, security standards, guardrails, architecture decision records, or reusable design patterns for enterprise teams.
- Strong understanding of enterprise architecture practices, including current-state assessment, target-state architecture, roadmap planning, maturity modeling, capability modeling, and transformation leadership.
Preferred Qualifications
· Experience supporting Security Architecture Review, Architecture Review Board, technology governance, cloud governance, or risk acceptance processes in a large enterprise environment.
· Hands-on or architecture experience with identity platforms, privileged access management, conditional/risk-based access, role-based access control, federation, secrets management, and workload/non-human identity patterns.
· Experience with secure access service edge, zero trust network access, micro segmentation, API security, B2B connectivity, cloud connectivity, and secure hybrid network architecture.
· Experience with cloud-native architectures, container platforms, Kubernetes, DevSecOps pipelines, infrastructure as code, policy-as-code, vulnerability management, posture management, logging, monitoring, detection, and response integration.
· Familiarity with AI security risks and controls, including model misuse, sensitive data exposure, excessive agency, prompt injection, insecure integrations, supply chain risk, AI governance workflows, and secure AI deployment patterns.
· Experience influencing cross-functional architecture decisions and leading stakeholders toward target-state designs, standard patterns, measurable maturity improvements, and practical implementation roadmaps.
· Relevant certifications such as CISSP, CCSP, SABSA, TOGAF, Microsoft Cybersecurity Architect, cloud security certifications, or other security architecture credentials are a plus.
#LI-WRAPJOB
Location Expectation: This is a hybrid role requiring a minimum of 3 days per week in office.
The expected salary range for this position is $120,000 - $190,000. This role may also be eligible for annual short-term incentive compensation and stock-based long-term incentives. All incentives and benefits are subject to the applicable plan terms.
Benefits We Offer
Our U.S. benefits address holistic well-being with programs for physical and mental health, financial wellness, and support for families. We offer a comprehensive health plan that includes medical/prescription drug and vision, dental insurance, and no-cost short- and long-term disability. We also provide company-paid life insurance and legal services, a retirement pension funded entirely by MetLife and 401(k) with employer matching, group discounts on voluntary insurance products including auto and home, pet, critical illness, hospital indemnity, and accident insurance, as well as Employee Assistance Program (EAP) and digital mental health programs, parental leave, paid time off, paid holidays, volunteer time off, tuition assistance and much more! For more information regarding MetLife’s U.S. benefits, please [1] click here.
About MetLife
Recognized on Fortune magazine's list of the "World's Most Admired Companies", Fortune World’s 25 Best Workplaces™, as well as the Fortune 100 Best Companies to Work For®, MetLife, through its subsidiaries and affiliates, is one of the world’s leading financial services companies; providing insurance, annuities, employee benefits and asset management to individual and institutional customers. With operations in more than 40 markets, we hold leading positions in the United States, Latin America, Asia, Europe, and the Middle East.
As part of our New Frontier strategy, MetLife is building an AI-enabled, people-centered future. We’re looking for people who bring curiosity, adaptability, and a growth mindset as we use AI to enhance how we serve customers, support communities, and evolve the way work gets done. At MetLife, AI is a responsible partner that supports human judgment, creativity, and continuous improvement while helping us build trust, inclusion, and long-term value.
Our purpose is simple - to help our colleagues, customers, communities, and the world at large create a more confident future. United by purpose and guided by our core values - Win Together, Do the Right Thing, Deliver Impact Over Activity, and Think Ahead - we’re inspired to transform the next century in financial services. At MetLife, it’s [2] #AllTogetherPossible. Join us!
MetLife is an Equal Opportunity Employer. All employment decisions are made without regards to race, color, national origin, religion, creed, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity or expression, age, disability, marital or domestic/civil partnership status, genetic information, citizenship status (although applicants and employees must be legally authorized to work in the United States), uniformed service member or veteran status, or any other characteristic protected by applicable federal, state, or local law ("protected characteristics").
If you need an accommodation due to a disability, please email us at View email address on click.appcast.io. This information will be held in confidence and used only to determine an appropriate accommodation for the application process.
MetLife maintains a drug-free workplace.
It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liabilities.
This posting is for a current vacancy and is anticipated to remain open for at least 90 days from the listed posting date. References
Visible links
$120k - $190k
...Requirements The Team You Will JoinAs part of MetLife’s Global Security team, you’ll work alongside world-class experts to protect... ...of key initiatives across MetLife.The OpportunityThe Principal Security Architect will lead risk-based security architecture reviews and...PrincipalFull timeTemporary workWork at officeLocal areaRelocation package3 days per week$182.71k - $274.07k
Citrix is looking for a Principal Security Technology Strategist to enhance customer engagements in North America. This role requires strong cybersecurity expertise and communication skills to assist customers in improving their security posture using Citrix’s solutions...PrincipalRemote work$182.8k - $247.3k
...computing and AI on Financial Services, with a special focus on security? Do you have a unique combination of broad and deep security... ...Web Services (AWS) is seeking a specialized Security Solutions Architect to work with our largest Financial Services customers. In this...PrincipalFlexible hours$218.4k - $365.2k
...you are the future of Salesforce.The ExperienceThe Enterprise Security Technology team builds and operates highly scalable, fault-tolerant... ...Management (CSPM) and SaaS Security Posture Management (SSPM)Architect messaging and gateway defense, including email security tools...SuggestedFull time$100k - $165k
...Requirements The Team You Will JoinAs part of MetLife’s Global Security team, you’ll work alongside world-class experts to protect... ...initiatives across MetLife.The OpportunityThe Sr. AI & Agentic Security Architect is responsible for defining, governing, and securing MetLife’s...SuggestedFull timeTemporary workWork at officeLocal areaRelocation package3 days per week- Find a JobJoin IDR Internal TeamStaffing ServicesConsultantsAbout UsBlog
$222.5k - $261.9k
Are you ready to make an impact?Security Architect - IT/OT Modernization Cybersecurity & Enterprise Technology | Energy & Utilities Focus Are you ready to help secure and modernize the infrastructure that powers critical industries? West Monroe is seeking a Security Architect...Local areaImmediate startFlexible hours$176k - $264k
Principal Enterprise Architect / Business ArchitectNorthwestern Mutual is seeking an Enterprise Architect with strong Business Architecture capabilities... ...’s business objectives.Partner with technology, data, security, and platform teams to guide solution design and ensure...PrincipalFull time- ...WashingtonLocation Type: HybridBusiness Unit: Business ProfessionalsFunction: TechnologyFull Time or Part Time: Full TimeApply: Security Architect for Network and Cloud will lead the design and development of the Firm's cloud network security solutions. The role-holder...Part timeWork experience placementWorldwide
- DescriptionWe are seeking a Security Architect to lead the design and implementation of enterprise security solutions across cloud, network, and application environments. In this hybrid role, you will define technical security architecture, guide cross-domain projects,...Work experience placementRemote work
$190k - $240k
...The Senior Security Architect is responsible for developing and leading a modern security architecture framework that ensures systems, applications, and data are secure by design. This role drives the evaluation, integration, and governance of security solutions, including...Visa sponsorshipWork visa- Concept Plus is seeking an experienced Senior Principal Consultant to lead Human Capital Management (HCM) initiatives, focusing on security configuration, integrations, and data migration. The ideal candidate will have a strong background in HCM systems and proven consulting...
- ...Cloud Software Group's Citrix unit seeks a Principal Security Technology Strategist to help customers adopt Citrix security solutions across North America. Work with account teams and the Security BU to drive secure access initiatives and extend security DNA across client...
$178.69k - $293.56k
The Principal Enterprise Architect is a senior architecture leader responsible for shaping, guiding, and advancing enterprise architecture across... ...capabilities, applications, platforms, data, integration, cloud, security, and emerging technology domains. While architecture is...PrincipalFull timeH1bVisa sponsorshipWork visaFlexible hours- Artemis Security is seeking a senior Security Engineer to own our internal security posture from day one. You will own endpoint, identity, network, email, and cloud security for the corporate environment, while collaborating with IT and security teams across the company...
$240k - $330k
Senior Network Security & Services Architect - CTO Office Location New York Business Area Engineering and CTO Ref # 10048627 Description & Requirements Our Team: The CTO Network Platform and Architecture team is responsible for developing and evolving...Temporary workFor contractorsWork experience placementWork at officeWorldwide$150k - $190k
...workplace embraces diversity and inclusion - it’s a place where you can grow, belong and thrive.Your day at NTT DATAThe Senior Security Solutions Architect is an advanced subject matter expert responsible for consulting with clients and partnering with internal Technology...Full timeTemporary workRemote workFlexible hours- Workday in the USA NY Metro Tri-State region is seeking a Principal Enterprise Architect to craft strategy for complex SaaS solutions in the Financial Services sector. You will partner with sales, product, and services teams to drive value, lead architecture discussions...Principal
$192k - $264k
...Role:We are looking for a curious, smart, and “learn it all” Architect with proven experience and a passion for designing transformative... ...Engineering, Product Management, Data Ops, and Information Security teams.You will be responsible for supporting engagements with...PrincipalFull timeWork at officeLocal areaImmediate startRemote workWorldwideFlexible hours$120k - $175k
Technology Cyber Security ArchitectCooley is seeking a Cyber Security Architect to join the technology team.Position summary: Cooley Technology embraces a culture of customer service excellence, and all members of the department are expected to move this agenda forward...Full timeTemporary workWork at officeFlexible hoursWeekend work- ...-discovery harnesses using multi-agent architectures. You will architect runtimes, orchestration layers, and parallel agents to validate... ...engineering fundamentals. The role emphasizes Azure DevOps, SARIF, and secure production-readiness workflows. #J-18808-Ljbffr Jobleads-US
- ...model: 2 days in-officePrincipal Enterprise Architect, Infrastructure and OperationsOur... ...right place. Why this job’s a big deal:As a Principal Enterprise Architect for Infrastructure... ...Operations—building reliable, scalable, secure, and cost-effective foundations so product...PrincipalFull timeInterim roleSummer workWork at officeRemote workFlexible hours
- ...agentic vulnerability-discovery harness from end to end. ~ Architect the agent runtime, orchestration layer, and parallel vulnerability... ...experience. Preferred Qualifications Application security, vulnerability discovery, and exploit development. CodeQL,...
- ...Cybersecurity Architect Key responsibilities Define and maintain the organization's cybersecurity strategy, principles, standards, and reference architectures. Design secure architectures for enterprise applications, networks, cloud platforms, APIs, data platforms...
$60 per hour
...Our client is seeking a Security Architect to support and strengthen their security architecture and governance programs. The Security Architect will work closely with IT, engineering, and governance teams to ensure security controls align with regulatory and business...$130k - $140k
...Must Have Technical/Functional Skills • AI and GenAI security architecture • Secure LLM deployment patterns • AI/ML threat modeling and security risk assessment • Prompt injection, jailbreak, data leakage, and model abuse controls • Retrieval-Augmented Generation...- ...IDR is seeking a M365 Security Architect to join one of our top clients for an remote opportunity. This role involves designing and implementing security solutions within the Microsoft 365 security ecosystem, focusing on Microsoft Purview, Intune, and Microsoft Defender...Work at officeRemote work
- ...Security Architect Job Title Security Architect Job Summary We are seeking an experienced Security Architect to design, implement, and oversee secure enterprise architectures that protect applications, infrastructure, networks, and data....Flexible hours
- ...AI Security Architecture Consultant Our client is seeking an AI Security Architecture Consultant to support the secure design, development, and deployment of AI/ML and Generative AI solutions across the enterprise. This role will partner with engineering, data science...
- ...Role: IT Security Architect Position: Full Time Location: NYC, NY - Onsite - 4 Days a Week Job Description The Security analyst is an integral part of the Client Technology team. The Security Analyst is responsible for the day -to -day administration...Full timeFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Security Architect. Be the first to apply!
- cloud security architect New York, NY
- security architect New York, NY
- cyber security architect New York, NY
- aws security architect New York, NY
- senior principal cloud computing engineer New York, NY
- principal solution architect New York, NY
- principal scientist New York, NY
- principal architect New York, NY
- principal consultant New York, NY
- principal designer New York, NY


