Enterprise Security Architect

Apply Now

Company: Corebridge Financial

Location: Jersey City, NJ 07305

Description:

Who We Are

At Corebridge Financial, we believe action is everything. That's why every day we partner with financial professionals and institutions to make it possible for more people to take action in their financial lives, for today and tomorrow.

We align to a set of Values that are the core pillars that define our culture and help bring our brand purpose to life:
We are stronger as one: We collaborate across the enterprise, scale what works and act decisively for our customers and partners
We deliver on commitments: We are accountable, empower each other and go above and beyond for our stakeholders
We learn, improve and innovate: We get better each day by challenging the status quo and equipping ourselves for the future
We are inclusive: We embrace different perspectives, enabling our colleagues to make an impact and bring their whole selves to work

About the role

The Enterprise Security Architect will help to lead the design, implementation, and oversight of secure systems and architectures across our organization. This role is critical to embedding security into enterprise processes, aligning with industry standards, and building a scalable security foundation. The ideal candidate will bring deep technical expertise, strong communication skills, and the ability to work independently or collaboratively to drive security initiatives and foster a security-first culture.
  • Design, document, and maintain secure architecture patterns, diagrams, and reference architectures to guide security implementations across the organization.
  • Conduct comprehensive security reviews of applications, systems, and networks, identifying vulnerabilities and recommending secure design strategies.
  • Perform threat modeling and risk assessments to identify potential vulnerabilities and recommend appropriate mitigating controls.
  • Partner with enterprise and line-of-business architects to integrate security seamlessly into designs and processes.
  • Translate complex technical security concepts into clear, actionable insights for C-level executives, business leaders, non-technical stakeholders, and technical engineering teams.
  • Recommend mitigating controls, security tools, and remediation strategies to address security gaps and minimize risk.
  • Stay current on security threats, vulnerabilities, and technologies to enhance the organization's security posture.
  • Promote a security-first culture by mentoring technical teams, educating stakeholders, and embedding security best practices into organizational workflows.


Please note: The job can only be performed in the State location listed: Jersey City, NJ, Durham, NC, and Houston, TX.

What we are looking for

Required Qualifications:
  • 7+ years of hands-on experience in infrastructure, systems, networks, applications, or cloud security.
  • Ability to create and review diagrams using tools such as Visio or Lucidchart.
  • Familiarity with secure architecture patterns, reference architectures, and frameworks.
  • Expertise in SaaS, PaaS, and IaaS environments, including platforms like AWS, Azure, M365, and Salesforce.
  • Experience working with various identity and access management (IAM) solutions such as CyberArk, Okta, Ping Identity, Entra ID/Azure AD, and other tools supporting SSO, MFA, and PAM.
  • Familiarity with tools like Jira, Confluence, and ServiceNow for workflow management and documentation.
  • Expertise in threat modeling, vulnerability management, and risk assessments.
  • Working knowledge of regulatory requirements and compliance standards such as NYDFS, CCPA, GLBA, PCI-DSS, HIPAA, SOX, and GDPR.
  • Relevant certifications such as CISSP, CCSP, or equivalent.
  • Ability to work independently or collaboratively in a team-oriented environment.
  • Bachelor's degree in a relevant field or proven record of experience in Information Technology and Cyber Security roles.


Technical Skills:
  • Familiarity with protocols such as SAML, OAuth, OIDC, FIDO, PKI, JWT, LDAP, and Kerberos.
  • Strong knowledge of common network protocols, including TCP/IP, HTTP/HTTPS, DNS, SMTP, SNMP, SSH, and VPN technologies.
  • Expertise in encryption technologies (e.g., TLS, AES, RSA) and key management practices (e.g., KMS, HSM, PKI).
  • Familiarity with firewalls, IDS/IPS, WAF, VPN, Routers, Switches, Load Balancers, Zero-Trust, microsegmentation, and SD-WAN security solutions, CASB, Proxy, SSE.
  • Experience with SIEM tools such as Splunk, QRadar, or ArcSight and logging/monitoring best practices.
  • Knowledge of Docker, Kubernetes, EKS, ECS, and OCP, including their security considerations.
  • Proficiency in integrating security into DevOps pipelines with tools such as Jenkins, GitHub, Artifactory, Terraform, and Vault.


Common Security and Architecture Frameworks
  • Security Frameworks:
  • NIST Cybersecurity Framework (CSF)
  • ISO 27001 and 27002
  • CSA CCM (Cloud Controls Matrix)
  • CIS Controls
  • Architecture Frameworks:
  • SABSA (Sherwood Applied Business Security Architecture)
  • TOGAF (The Open Group Architecture Framework)
  • AWS Well-Architected Framework


Preferred Certifications:
  • TOGAF (The Open Group Architecture Framework)
  • SABSA Foundation or Practitioner
  • CISSP-ISSAP (Concentration in Security Architecture)
  • Certified Cloud Security Professional (CCSP)
  • GIAC Security Architecture (GDSA)
  • AWS Certified Solutions Architect - Associate or Professional
  • AWS Certified Security - Specialty
  • Microsoft Certified: Azure Solutions Architect Expert


Soft Skills:
  • Strong analytical and problem-solving abilities.
  • Excellent interpersonal and collaboration skills.
  • Strong organizational and time management skills.
  • Adaptability and a commitment to continuous learning of new technologies and methodologies.
  • Attention to detail and dedication to delivering high-quality results.
  • High level of integrity and ethical conduct.


Industry-Specific Experience:
  • Experience in financial services, insurance, or other regulated environments.
  • Proven ability to design and implement security controls that align with industry regulations and standards.
  • Experience conducting security assessments and audits in regulated industries.
  • Familiarity with industry-specific threats and vulnerabilities to tailor security solutions.


For position based in Jersey City, NJ, the base salary range is $128,000 - $155,000 and the position is eligible for a bonus in accordance with the terms of the applicable incentive plan. In addition, we're proud to offer a range of competitive benefits.

#LI-SAFG #LI-CW1 #LI-Hybrid

This role is deemed a "covered associate" under SEC Rule 206(4)-5, 17 CFR 275.206(4)-5, Political contributions by certain investment advisers, and other federal and state pay-to-play rules. Candidates for the role must not have made any political contributions that, under 17 CFR 275.206(4)-5 or other federal or state pay-to-play regulations, would disqualify the candidate or Corebridge Financial from conducting Corebridge Financial's business, or that would otherwise create a conflict of interest for Corebridge Financial. Applicants who are selected to move forward with the application process will be required to disclose all U.S. political contributions they and their household family members have made over the past two years.

Applications will be accepted for this position until a satisfactory candidate pool has been identified.

Why Corebridge?

At Corebridge Financial, we prioritize the health, well-being, and work-life balance of our employees. Our comprehensive benefits and wellness program is designed to support employees both personally and professionally, ensuring that they have the resources and flexibility needed to thrive.

Benefit Offerings Include:
Health and Wellness: We offer a range of medical, dental and vision insurance plans, as well as mental health support and wellness initiatives to promote overall well-being
Retirement Savings: We offer retirement benefits options, which vary by location. In the U.S., our competitive 401(k) Plan offers a generous dollar-for-dollar Company matching contribution of up to 6% of eligible pay and a Company contribution equal to 3% of eligible pay (subject to annual IRS limits and Plan terms). These Company contributions vest immediately.
Employee Assistance Program: Confidential counseling services and resources are available to all employees
Matching charitable donations: Corebridge matches donations to tax-exempt organizations 1:1, up to $5,000
Volunteer Time Off: Employees may use up to 16 volunteer hours annually to support activities that enhance and serve communities where employees live and work
Paid Time Off: Eligible employees start off with at least 24 Paid Time Off (PTO) days so they can take time off for themselves and their families when they need it.

Eligibility for and participation in employer-sponsored benefit plans and Company programs will be subject to applicable law, governing Plan document(s) and Company policy.

We are an Equal Opportunity Employer

Corebridge Financial, is committed to being an equal opportunity employer and we comply with all applicable federal, state, and local fair employment laws. All applicants will be considered for employment based on job-related qualifications and without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, disability, neurodivergence, age, veteran status, or any other protected characteristic. The Company is also committed to compliance with all fair employment practices regarding citizenship and immigration status. At Corebridge Financial, we believe that diversity and inclusion are critical to building a creative workplace that leads to innovation, growth, and profitability. Through a wide variety of programs and initiatives, we invest in each employee, seeking to ensure that our colleagues are respected as individuals and valued for their unique perspectives.

Corebridge Financial is committed to working with and providing reasonable accommodations to job applicants and employees, including any accommodations needed on the basis of physical or mental disabilities or sincerely held religious beliefs. If you believe you need a reasonable accommodation in order to search for a job opening or to complete any part of the application or hiring process, please send an email to TalentandInclusion@corebridgefinancial.com. Reasonable accommodations will be determined on a case-by-case basis, in accordance with applicable federal, state, and local law.

We will consider for employment qualified applicants with criminal histories, consistent with applicable law.

To learn more please visit: www.corebridgefinancial.com

Corebridge Financial is committed to working with and providing reasonable accommodations to job applicants and employees with physical or mental disabilities. If you believe you need a reasonable accommodation in order to search for a job opening or to complete any part of the application or hiring process, please send an email to TalentandInclusion@corebridgefinancial.com. Reasonable accommodations will be determined on a case-by-case basis.

Applications will be accepted for this position until a satisfactory candidate pool has been identified

Functional Area:
IT - Information Technology

Estimated Travel Percentage (%): Up to 25%

Relocation Provided: No

American General Life Insurance Company

Similar Jobs