Security Architect
Informa TechTarget · Newton, MA
Apply & track with Apply EdgeDo you want to develop your career and make an impact in the fast-growth, fast-moving B2B technology space?At Informa TechTarget, you’ll collaborate and grow alongside some of the industry’s most respected experts. You’ll work with leading brands and be exposed to world-shaping innovations. You’ll apply your energy and intellect to helping clients be faster to market and faster to revenue.We’re a vibrant community of world-class practitioners – over 2000 colleagues strong – with offices in 19 locations around the world. We’re traded on Nasdaq and also part of Informa PLC, a global leader in business-to-business events, digital services, and academic research in the FTSE 100.About Informa TechTargetInforma TechTarget (Nasdaq: TTGT) informs, influences and connects the world’s technology buyers and sellers, to accelerate growth from R&D to ROI.With an unparalleled reach of over 220 highly targeted technology-specific websites and more than 50 million permissioned first-party audience members, Informa TechTarget has a unique understanding of and insight into technology markets.Underpinned by those audiences and their data, we offer expert-led, data-driven, and digitally enabled services that deliver significant impact and measurable outcomes to our clients. We provide our customers with:Trusted information that shapes the industry and informs investmentIntelligence and advice that guides and influences strategyAdvertising that grows reputation and establishes thought leadershipCustom content that engages and prompts actionIntent and demand generation that more precisely targets and convertsOur organization is committed to sustainability, diversity, wellbeing, and ethical working practices. Visit informatechtarget.com and follow us on LinkedIn.For more information, visit informatechtarget.com and follow us on LinkedInJob DescriptionThis role is based in our Newton, MA office.We are seeking a strategic Security Architect to define and drive our cloud and enterprise security architecture. You will own the security architecture vision, establish governance frameworks, and partner with Product, Engineering, and Infrastructure teams to embed security throughout our technology ecosystem.Core ResponsibilitiesStrategic Architecture & GovernanceOwn and evolve the enterprise security architecture, including long-term roadmap and reference architectures for cloud, hybrid, and on-premises environmentsDefine organizational security principles, frameworks, and standards that align with business objectives and regulatory requirementsDevelop and present security strategy, roadmaps, and strategic initiatives to executive leadership and stakeholdersEstablish security metrics and KPIs to measure architecture effectiveness and communicate security posture to senior leadershipEnsure compliance with industry regulations and standards including ISO 27001, SOC 2, GDPR, and SOXLead security audits and assessments, driving remediation plans and continuous improvement initiativeCloud & Infrastructure SecurityOwn cloud security architecture across AWS and GCP, including Cloud Security Posture Management (CSPM), Cloud Infrastructure Entitlement Management (CIEM), and Wiz remediation strategiesDesign and implement Identity and Access Management (IAM) architecture based on least privilege principles and Zero Trust security modelsArchitect secure network segmentation strategies and defense-in-depth controls across all infrastructure layersOwn the architecture and strategic direction for key security platforms including SIEM, vulnerability management, endpoint security, and threat detection systemsManage and optimize internal security platforms to ensure robust protection of organizational assetsDesign secure cloud infrastructures and hybrid environment protections that scale with business growthConduct threat modeling and risk analyses to identify infrastructure vulnerabilities and recommend mitigation strategiesApplication & Development SecurityLead Secure Software Development Lifecycle (SDLC) and DevSecOps initiatives across the organizationIntegrate security controls into CI/CD pipelines, championing shift-left security practices in collaboration with DevOps leadershipEnsure software architecture and applications are designed to mitigate vulnerabilities and prevent exploitsProvide technical guidance and mentorship to development and DevOps teams on secure coding practices and emerging threatsCollaborate with cross-functional teams to embed security throughout the system development lifecycleDefine security requirements and controls that support agile development while maintaining strong security postureInnovation & Technical LeadershipLead security architecture for emerging technologies including AI/LLM initiatives, ensuring responsible and secure implementationServe as the technical authority on security architecture, advising on security-related technologies and assessing risks associated with proposed changesStay current with emerging security threats, vulnerabilities, and technologies to drive continuous innovation in security practicesInspire and influence engineering teams to execute security principles and adopt security-first mindsetsMentor and provide technical guidance to DevOps, operations, and development teams on security best practicesPartner strategically with Product, Engineering, and Infrastructure leaders to align security architecture with business innovationDrive thought leadership through security documentation, architecture diagrams, design specifications, and security control matricesAdditional ResponsibilitiesLead incident response management and develop security policies that protect organizational assets from cyber threatsIdentify organizational vulnerabilities and weaknesses through systematic security assessmentsRecommend and implement security controls and solutions that balance security requirements with business enablement Qualifications Bachelor’s or master’s degree in computer science, information technology or a related field7+ years of cybersecurity experience with deep cloud security expertiseProven track record leading enterprise security architecture in multi-cloud environmentsDeep understanding of cloud service provider security best practices around (AWS, GCP)Organization PoliciesAutomated threat detection toolsCentral logging/Siem practicesLest privilege architectureVPC design/perimeter controlsData Exfiltration preventionEncryption/Key Management designIdentity and Access Management (IAM) best practices.Web application security testing: Expertise in identifying and mitigating vulnerabilities in web applications, leveraging tools and methodologies like OWASP.Network vulnerability scanning: Skilled in detecting and addressing vulnerabilities in network configurations and infrastructure.Container and Kubernetes security: Proficiency in securing containerized environments, including Docker and Kubernetes, using best practices and tools like Trivy or Aqua Security.Experience with security testing tools and platforms: Familiarity with industry-standard tools for vulnerability scanning, penetration testing, and security auditing.Ability to lead security discussions with system architects and business leaders.Strong analytical and computer skillsExpert level understanding of cybersecurity and how it affects the modern business world.Thorough understanding of Unix operation systemsAwareness of frameworks such as NIST, COBIT, ISO and Soc2Certifications: CISSP, CCSP, AWS Security Specialty, or Google Professional Cloud Security EngineerAdditional InformationTechTarget, Inc., doing business as Informa TechTarget, including its subsidiaries is an equal opportunity employer and complies with all applicable federal, state, and local fair employment practices laws. We strictly prohibit and do not tolerate discrimination against employees, applicants, or any other covered persons because of race, color, sex (including pregnancy), age, national origin or ancestry, ethnicity, religion, creed, sexual orientation, gender identity or expression, status as a veteran, and basis of disability or any other federal, state or local protected class. This policy applies to all terms and conditions of employment, including, but not limited to, hiring, training, promotion, discipline, compensation, benefits, and termination of employment. If you would like to request reasonable adjustments or accommodations to assist your participation in the hiring process and, or in the advertised position, please inform the appropriate Talent Acquisition Partner for the role once they have been in touch. Your request will be reviewed and considered in confidence. Informa TechTarget complies with the Americans with Disabilities Act (ADA), as amended by the ADA Amendments Act, and all applicable federal, state or local law. We believe that great things happen when people connect face-to-face. That's why we work in-person with each other, or with customers and partners, three days a week or more. When you’re not spending time together in one of our offices or other workplaces – like at an Informa event – you get the flexibility and support to work from home or remotely.Our benefits include: Great community: a welcoming culture with in-person and online social events, our fantastic Walk the World charity day and active colleague groups and networks promoting a positive, supportive, and collaborative work environmentBroader impact: take up to four days per year to volunteer with a philanthropic organizationCareer opportunity: the opportunity to develop your career with bespoke training and learning, mentoring platforms and on-demand access to thousands of courses on LinkedIn Learning. When it’s time for the next step, we encourage and support internal job moves Time out: Open Vacation, plus 10 national holidays, and the chance to work from (almost!) anywhere for up to four weeks a year Competitive benefits, including a 401k match, health, vision and dental insurance, parental leave and an ESPP offering company shares at a minimum 15% discount Strong wellbeing support through EAP assistance, mental health first aiders, free access to a wellness app and more Recognition for great work, with global awards and kudos programs As an international company, the chance to collaborate with teams around the world The salary range for this role is $175K-$200K/YR, based on experience.This posting will automatically expire on October 2, 2026.