Principal Security Architect
$120k - $190kMetLife
Description and Requirements
The Team You Will Join
As part of MetLife’s Global Security team, you’ll work alongside world-class experts to protect MetLife, our customers and our colleagues. The team is responsible for managing cybersecurity, IT risks and vulnerabilities, physical security, and more. In this fast-paced, mission-driven environment, you’ll join outstanding teammates to expand your skills, collaborate across the organization and implement innovative approaches to safeguard MetLife when it matters most. Ready to make an impact? Join us if you want to embrace the rapidly evolving environment and use transformative technology to integrate and build security into the foundation of key initiatives across MetLife.
The Opportunity
The Principal Security Architect will lead risk-based security architecture reviews and provide enterprise-grade security guidance for technology and platform initiatives submitted through the Security Architecture Review process. This role will evaluate proposed architectures, identify material risks, recommend appropriate security controls, and help teams align solutions to target-state architecture, reference patterns, and roadmaps. The successful candidate will bring deep expertise in threat modeling, security control evaluation, architecture design, identity-centric security, network segmentation, secure access, risk-based access policy design, and broad security domain knowledge across IAM, network, devices, applications, data, SOC, cloud, governance/risk/compliance, and AI. This role is expected to influence architecture decisions, develop reusable reference architectures, and support enterprise transformation through current-state assessment, maturity modeling, strategic planning, and roadmap development.
Key Responsibilities
· Lead Security Architecture Review (SAR) assessments for enterprise technology initiatives, including applications, platforms, cloud services, infrastructure, AI solutions, integrations, and major transformation programs.
· Perform threat modeling and risk assessments to identify security design gaps, control weaknesses, trust-boundary concerns, attack paths, data exposure risks, and operational impacts.
· Evaluate security controls, tools, and technologies against architecture requirements, enterprise standards, risk posture, and control effectiveness objectives.
· Design and recommend secure architecture patterns across identity, network, endpoint/device, application, data, cloud, SOC/security operations, governance/risk/compliance, and AI domains.
· Develop and maintain reusable security reference architectures, decision patterns, implementation guardrails, and design principles to accelerate secure delivery at scale.
· Provide identity-centric security architecture guidance, including authentication assurance, authorization models, privileged access, least privilege, role-based access, non-human identity considerations, and lifecycle integration.
· Advise on network segmentation, micro segmentation, secure access, zero trust access patterns, ingress/egress controls, and connectivity models for internal, internet-facing, and B2B integrations.
· Design risk-based access policies for users, workloads, devices, applications, data, and administrative functions, considering sensitivity, exposure, business criticality, and operational requirements.
· Assess current-state security architecture and define target-state architecture, transition roadmaps, maturity models, and strategic recommendations for enterprise security transformation.
· Drive integration of security architecture with the five security pillars: IAM, network, devices, applications, and data, while ensuring alignment with security automation, orchestration, monitoring, detection, and response capabilities.
· Partner with enterprise architecture, application teams, cloud/platform teams, network engineering, IAM, data protection, SOC, GRC, privacy, legal, and risk stakeholders to develop pragmatic and implementable security recommendations.
· Document architecture decisions, risks, assumptions, compensating controls, and required remediation actions clearly for technical teams, governance bodies, and leadership audiences.
Required Qualifications
- 8- 10 years of overall experience.
- Strong experience in security architecture, enterprise architecture, security engineering, or cyber risk roles with demonstrated responsibility for reviewing or designing complex technology solutions.
- Demonstrated expertise in threat modeling, risk assessment, attack path analysis, trust-boundary assessment, control gap analysis, and security remediation planning.
- Deep understanding of security architecture patterns, including identity-centric security, zero trust, least privilege, defense-in-depth, segmentation, secure access, data protection, secure integration, and secure-by-design principles.
- Ability to evaluate security controls and technologies, determine control applicability, assess architecture fit, and provide risk-based recommendations that balance protection, usability, delivery speed, and operational feasibility.
- Broad knowledge across IAM, network security, endpoint/device security, application security, data security, cloud security, SOC/security operations, governance/risk/compliance, and/or AI security.
- Experience developing reference architectures, security standards, guardrails, architecture decision records, or reusable design patterns for enterprise teams.
- Strong understanding of enterprise architecture practices, including current-state assessment, target-state architecture, roadmap planning, maturity modeling, capability modeling, and transformation leadership.
Preferred Qualifications
· Experience supporting Security Architecture Review, Architecture Review Board, technology governance, cloud governance, or risk acceptance processes in a large enterprise environment.
· Hands-on or architecture experience with identity platforms, privileged access management, conditional/risk-based access, role-based access control, federation, secrets management, and workload/non-human identity patterns.
· Experience with secure access service edge, zero trust network access, micro segmentation, API security, B2B connectivity, cloud connectivity, and secure hybrid network architecture.
· Experience with cloud-native architectures, container platforms, Kubernetes, DevSecOps pipelines, infrastructure as code, policy-as-code, vulnerability management, posture management, logging, monitoring, detection, and response integration.
· Familiarity with AI security risks and controls, including model misuse, sensitive data exposure, excessive agency, prompt injection, insecure integrations, supply chain risk, AI governance workflows, and secure AI deployment patterns.
· Experience influencing cross-functional architecture decisions and leading stakeholders toward target-state designs, standard patterns, measurable maturity improvements, and practical implementation roadmaps.
· Relevant certifications such as CISSP, CCSP, SABSA, TOGAF, Microsoft Cybersecurity Architect, cloud security certifications, or other security architecture credentials are a plus.
#LI-WRAPJOB
Location Expectation: This is a hybrid role requiring a minimum of 3 days per week in office.
The expected salary range for this position is $120,000 - $190,000. This role may also be eligible for annual short-term incentive compensation and stock-based long-term incentives. All incentives and benefits are subject to the applicable plan terms.
Benefits We Offer
Our U.S. benefits address holistic well-being with programs for physical and mental health, financial wellness, and support for families. We offer a comprehensive health plan that includes medical/prescription drug and vision, dental insurance, and no-cost short- and long-term disability. We also provide company-paid life insurance and legal services, a retirement pension funded entirely by MetLife and 401(k) with employer matching, group discounts on voluntary insurance products including auto and home, pet, critical illness, hospital indemnity, and accident insurance, as well as Employee Assistance Program (EAP) and digital mental health programs, parental leave, paid time off, paid holidays, volunteer time off, tuition assistance and much more! For more information regarding MetLife’s U.S. benefits, please [1] click here.
About MetLife
Recognized on Fortune magazine's list of the "World's Most Admired Companies", Fortune World’s 25 Best Workplaces™, as well as the Fortune 100 Best Companies to Work For®, MetLife, through its subsidiaries and affiliates, is one of the world’s leading financial services companies; providing insurance, annuities, employee benefits and asset management to individual and institutional customers. With operations in more than 40 markets, we hold leading positions in the United States, Latin America, Asia, Europe, and the Middle East.
As part of our New Frontier strategy, MetLife is building an AI-enabled, people-centered future. We’re looking for people who bring curiosity, adaptability, and a growth mindset as we use AI to enhance how we serve customers, support communities, and evolve the way work gets done. At MetLife, AI is a responsible partner that supports human judgment, creativity, and continuous improvement while helping us build trust, inclusion, and long-term value.
Our purpose is simple - to help our colleagues, customers, communities, and the world at large create a more confident future. United by purpose and guided by our core values - Win Together, Do the Right Thing, Deliver Impact Over Activity, and Think Ahead - we’re inspired to transform the next century in financial services. At MetLife, it’s [2] #AllTogetherPossible. Join us!
MetLife is an Equal Opportunity Employer. All employment decisions are made without regards to race, color, national origin, religion, creed, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity or expression, age, disability, marital or domestic/civil partnership status, genetic information, citizenship status (although applicants and employees must be legally authorized to work in the United States), uniformed service member or veteran status, or any other characteristic protected by applicable federal, state, or local law ("protected characteristics").
If you need an accommodation due to a disability, please email us at View email address on click.appcast.io. This information will be held in confidence and used only to determine an appropriate accommodation for the application process.
MetLife maintains a drug-free workplace.
It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liabilities.
This posting is for a current vacancy and is anticipated to remain open for at least 90 days from the listed posting date. References
Visible links
- ...Principal Security Architect We are seeking a Principal Security Architect to lead the design, review, and evolution of secure technology solutions across cloud, hybrid, and on-premises environments. This individual will serve as a trusted cybersecurity leader, driving...PrincipalWork at officeLocal areaRemote work
- Citrix is seeking a Principal Security Technology Strategist to enhance customer security DNA across the engagements. This role involves providing security guidance and strategy, managing complex projects, and driving the adoption of Citrix security solutions. Applicants...PrincipalRemote work
- Senior Application Security Architect- Hybrid in Cary, NC or Glasgow, Scotland or Remote in EST or GMT time zoneWe’re a leader in data and AI. Through our software and services, we inspire customers around the world to transform data into intelligence - and questions into...SuggestedFull timeWork at officeLocal areaRemote workWork visaEarly shift
- AI/Model Security Architect- Hybrid, Cary, North CarolinaWe’re a leader in data and AI. Through our software and services, we inspire customers around the world to transform data into intelligence - and questions into answers.If you're looking for a dynamic, fulfilling...SuggestedFull timeLocal areaWork visa
- At Cadence, we hire and develop leaders and innovators who want to make an impact on the world of technology.Experienced Millimeter-Wave (mmWave) IC designer specialize in engineering high-frequency (30 GHz+) transceivers and components for 5G/6G communications, aerospace...PrincipalFull time
- ...MetLife is seeking a Principal Security Architect to lead risk-based security architecture reviews and provide enterprise-grade guidance for technology initiatives. You will evaluate proposed architectures, identify material risks, and develop reusable reference architectures...
$120.5k - $231k
...up, everywhere & always. Want in? Join the #VTeamLife.What you’ll be doing...The Verizon Network Security team is looking for a highly motivated and experienced Principal Engineer to join the Net-Sec Defense Organization under the Broadband Access team. You will be responsible...PrincipalFull timeTemporary workPart timeWork experience placementWork at officeWork from homeShift work3 days per week$154k - $286k
At Cadence, we hire and develop leaders and innovators who want to make an impact on the world of technology.Work with the Cadence global silicon solutions teams who are designing semiconductor IP for the top electronic product companies in the world, in leading edge semiconductor...PrincipalFull time$136.5k - $253.5k
...world of technology.Cadence is the leader in hardware emulation-acceleration technologies and products. As a Physical Design Senior Principal Hardware Engineer, you will drive solutions for complex designs from synthesis to GDS through tape-out. You are knowledgeable...PrincipalFull time$135.8k - $213.4k
RELOCATION ASSISTANCE: Relocation assistance may be availableCLEARANCE REQUIRED FOR START: YesCLEARANCE TYPE: SCITRAVEL: Yes, 10% of the TimeDescriptionAt Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's...PrincipalFull timeRelocation packageShift work$114k - $163.2k
...Grumman’s Space Systems Sector is looking for an experienced Principal Or Sr. Principal DevOps Engineer to augment our team. This position... ...software and system management tools.Oversee the company’s security, backup, and redundancy strategies.Evaluate application...PrincipalFull timeRelocation packageShift work- ...Verizon is seeking a Principal Architect - Solutions Architect to design and deliver complex wireless and networking solutions for customers... ...roadmaps to leadership. This role emphasizes 5G, LTE, and secure interconnects across platforms. The position requires deep...Principal
$135.8k - $213.4k
...Leaders from entry-level to the most senior chief engineers and architects to Product Owners and Scrum Masters. This engineering... ...be considered):Must have an active U.S. Government Top Secret security clearance at time of application, current and within scope, with...PrincipalFull timeRemote workRelocation packageShift work- ...Metabolon, Inc., located in Morrisville, NC, is hiring a Principal Software Development Engineer. This full-stack role involves leading engineering efforts to deliver resilient, scalable systems, focusing on both back-end and front-end technologies. As a technical leader...Principal
$135.8k - $213.4k
...making history.Northrop Grumman Space Systems is seeking a Sr. Principal Electromechanical Engineer to join our team. This position is... ...experience required.Must have an active U.S. Government DoD Top Secret security clearance at time of application, current and within scope,...PrincipalFull timeRelocationShift work- ...for the connections that are changing business and society. About Our Team This position is for a Senior Software Security Architect in the Security Center of Excellence for PC and Smart Devices business (PCSD). This is an exciting role where you will be...Local areaHome office
- ...developing innovative products and solutions to meet our global customers' evolving needs and help make people’s lives easier, safe and secure. Maximize your performance and wellbeing in our flexible and inclusive work environment. Our people-first culture and global...PrincipalLocal areaRemote workFlexible hours
- Overview We are seeking a highly skilled Principal Recruiter with deep expertise in research-based sourcing for AI, Data, and Digital Application Skill stack. As an individual contributor and subject matter expert, you will lead talent acquisition efforts to identify and...Principal
$167.9k
Principal Engineer Analog Design #WeAreIn for jobs that impact everyone's life. What if your ideas could change the way the world connects... ...energy, clean and safe mobility, as well as smart and secure IoT. Together, we drive innovation and customer success, while...PrincipalLocal area- ...technology.Role SummaryCadence is hiring a Principal AI Forward Deployment Engineer to embed... ...methodology, PDKs, compute fabric, and security boundaries.Success here directly... ...and packaging.Applied AI for Chip Design. Architect and tune agentic workflows, prompt strategies...PrincipalFull timeRelocation
$104.9k - $174.7k
Principal Security Engineer, Business EngagementAbout the TeamWe are revamping how the Information Security Business Engagement team works within LexisNexis Legal & Professional. This team sits at the intersection of security, product, and technology, working directly...PrincipalFull timeLocal area- ...circuit breakers, among others. With our products, solutions and services, we collaborate with customers to improve power delivery and security, enhance energy management, efficiency and operational reliability, as we seek to achieve a low carbon society. go.abb/...Principal
- Company DescriptionSonsoft , Inc. is a USA based corporation duly organized under the laws of the Commonwealth of Georgia. Sonsoft Inc. is growing at a steady pace specializing in the fields of Software Development, Software Consultancy and Information Technology Enabled...PrincipalPermanent employmentFull timeH1b
$87.6k - $131.4k
...an active Top Secret/Sensitive Compartmented Information (SCI) security clearance at the time of applicationBachelor's degree in a... ...written and oral communications skillsBasic Qualifications for a Principal Engineer Systems:Must have an active Top Secret/Sensitive Compartmented...PrincipalFull timeRelocation packageShift work- ...of world-class environment, character and concept artists who strive to innovate and inspire.What You'll DoEpic is looking for a Principal Technical FX Artist to join Rocket League, a live-service game with a huge passionate fanbase. You'll own FX systems, solve hard technical...Principal
- Principal, Product Commercialization for Channels- Hybrid, Cary, North Carolina or Hybrid, Scotland or Remote in EST time zoneWe’re a leader in data and AI. Through our software and services, we inspire customers around the world to transform data into intelligence - and...PrincipalRemote workWork visa
- ...of what’s next in electronics. Job DescriptionWe are seeking a Principal Analog Design Engineer to serve as a global technical authority... ...' evolving needs and help make people’s lives easier, safe and secure. Maximize your performance and wellbeing in our flexible and inclusive...PrincipalLocal areaRemote workFlexible hours
$137k - $239k
...Want in? Join the #VTeamLife.What you’ll be doing... As a Principal Solutions Architect you will drive excellence in B2B strategy, solutions... ...vertical to drive sales of Fixed Wireless Access, OneTalk, Security, and Strategic Phones.Increasing market penetration, account...PrincipalFull timeTemporary workPart timeWork experience placementShift work- ...computing users in the world.What You'll DoAs Technical Lead / Principal Engineer on the AI Engineering team, you'll provide technical... ...opportunities and design/build/validate new platformsDesign and implement security, governance, and compliance protocols for AI platforms,...Principal
- ...We are looking for a curious, smart, and "learn it all" Architect with proven experience and a passion for designing transformative... ...Value Engineering, Product Management, Data Ops, and Information Security teams. You will be responsible for supporting engagements with...PrincipalFull timeWork at officeLocal areaRemote workWorldwideFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Security Architect. Be the first to apply!

