Talent.com
No longer accepting applications
Zero Trust Architect

Zero Trust Architect

Charles SchwabSouthlake, TX, US
1 day ago
Job type
  • Full-time
Job description

Your opportunity

At Schwab, you're empowered to make an impact on your career. Here, innovative thought meets creative problem solving, helping us "challenge the status quo" and transform the finance industry together.

We believe in the importance of in-office collaboration and fully intend for the selected candidate for this role to work on site in the specified location(s).

In Schwab Cybersecurity Services (SCS), Office of CISO, we provide platforms, services, and security operations capabilities which enable the firm to produce successful client and shareholder outcomes securely and safely. Securing our IT assets, data, and access to applications is the core of who we are and what we do. We ensure only the appropriate entities have access to IT resources and that we adhere to best practices and standards to ensure a safe and compliant environment is maintained.

At Schwab, you're empowered to make an impact on your career. Here, innovative thought meets creative problem solving, helping us "challenge the status quo" and transform the finance industry together.

The Zero Trust Architect is an individual contributor supporting the Firm's Network security and Zero Trust strategy including domain security architecture vision and development. This position will drive and synchronize security strategies aligned with technology and business priorities along with validating future directions as it relates to zero trust and various network security technologies. This role works with various Schwab technology and security teams on the architectural, engineering, and implementation of technology solutions and methodologies to ensure visibility, secure connectivity, and service availability.

In this role, the Zero Trust Architect will have responsibility for identifying, defining, developing, leading security technology strategy across a broad portfolio of security and related technology systems, and the assessment of new and emerging security technologies at the very large enterprise scale. To include the road mapping and security architecture design to guide engineering implementing, and maintaining network security capabilities including segmentation, zero trust, network and platform resiliency, enhanced network visibility and implementation of solutions to address security control gaps. Collaborating with product and project teams to understand needs and enablement with security products.

As a senior member of Schwab Cybersecurity Services (SCS), you will engage and partner with senior leaders across the organization leveraging your extensive background in (managing / delivering / implementing / architecting) various security technologies, combined with expertise in organizational and cross-functional communication, influence roadmaps, solution adoption, champion strategic opportunities / execution plans with the aim to improve security capabilities, reduce risk, and position forward looking platform security enhancements.

Responsibilities include, but are not limited to :

Responsible for defining an architectural vision for Zero Trust and architecture for large complex solutions, which aligns with the enterprise architecture strategy, technology, and platform choices

Ensures the solution is fit for purpose and use by working with stakeholders, vendors / service providers, and evaluating the impact of strategic design decisions

Contributes to best practices, guidelines, standard templates, and the architecture roadmap for defined domains.

Creates security reference architecture patterns for reusability.

Contributes to the creation of the architecture roadmap of defined domains (Business, Application, Data and Technology) in support of the product roadmap

Partner with Schwab counterparts to implement designs and technologies that reduce network security deficiencies and deliver on the network strategy.

Translate / engineer architectural requirements and high-level design into a deployable and manageable implementation.

Develop technical solutions to ensure 3rd party partners connect to us in a way that protects our systems and client data.

Participate in development, implementation of security design & engineering principles and standards and build a network strategy that leaps the enterprise into a next gen approach

The Zero Trust Architect must interpret business, technology and threat drivers, and develop practical security roadmaps

Clarifies the architecture for the development teams to support implementation, and provides solution options to resolve any architectural impediments

Performs design reviews to ensure all non-functional requirements for a solution are sufficiently met (e.g. security, performance, maintainability, scalability, usability, and reliability)

Liaises with other security architects and security practitioners to share best practices and insights

What you have

4-year college / university degree required

Minimum 10+ years of experience in Cyber Security preferably in the financial services industry

Subject matter expertise in one or more of the following domains :

Network Security

Deep understanding of core network security principles, such as Confidentiality, Integrity, and Availability (CIA triad)

Expertise in designing and implementing robust network security architectures, including firewalls, intrusion prevention systems (IPS), network segmentation, endpoint security, and access controls.

Knowledge of current and emerging network threats like ransomware, phishing, zero-day exploits, insider threats, and IoT vulnerabilities.

Proficiency in various security tools such as firewalls, intrusion detection / prevention systems (IDPS), virtual private networks (VPNs), encryption, Security Information and Event Management (SIEM), and endpoint security solutions.

Familiarity with best practices for network security management, including regular updates, vulnerability assessments, incident response planning, network segregation, and strong access controls

Zero Trust

Zero Trus Architecture like next generation access such as Security Service Edge (SSE) and Secure Access Service Edge (SASE) components

Understanding and ability to articulate the fundamental principles of Zero Trust : 'never trust, always verify,' verify explicitly, least-privilege access, and assume breach.

Proficiency in managing user identities, implementing multi-factor authentication (MFA), role-based access control (RBAC), and attribute-based access control (ABAC) for fine-grained access control.

Knowledge and experience in network micro segmentation to limit the impact of breaches and control lateral movement.

Zscaler

Deep knowledge of the Zscaler Zero Trust Exchange platform and its various components, such as Zscaler Internet Access (ZIA), Zscaler Private Access (ZPA), Zscaler Digital Experience (ZDX), and Zscaler Workload Communications.

Understanding of ZIA's capabilities for secure web gateway (SWG), SSL inspection, cloud firewall, data loss prevention (DLP), cloud access security broker (CASB), and threat protection.

Proficiency in using ZPA to provide secure, direct access to private applications, and replacing traditional VPNs.

Knowledge of ZDX for monitoring and improving user experience across applications and networks.

Expertise in securing application-to-application communication in cloud and hybrid environments using Zero Trust principles.

Experience with deploying, configuring, and managing Zscaler solutions, including client connectors, app connectors, policy creation, and integration with other security tools like SIEM and identity management systems.

Ability to leverage Zscaler's cloud-native architecture to implement and extend Zero Trust principles across various environments, including remote work, hybrid clouds, and IoT / OT devices.

  • Experience implementing / configuring cloud services and tools aligned to our security priorities

Demonstrates flexibility within a variety of changing situations, while working with individuals and groups.

Excellent written and verbal communication skills.

Strong ability to effectively communicate with and present to C level as well as the senior leadership team.

Experience with assessment, development, implementation, integration, optimization, and documentation of a comprehensive and broad set of security technologies and processes in on premise, public, and private cloud environments.

Experience with DevSecOps process, AI security, and data warehousing.

Strong knowledge of enterprise security concepts / frameworks and products, secure design principles, and best practices

Experience implementing industry / compliance frameworks (NIST 800-53, CIS benchmarks, ISO 27000 series, COBIT, etc.)

Must be able to quickly and succinctly design and create technical solution / process documentation

Must be a self-starter, strong leader who is able to influence senior engineers and architects; work with limited supervision & be able to work well with others in a globally diverse IT environment

CISSP, CCSP, and TOGAF certification preferred. Other related certifications a plus

In addition to the salary range, this role is also eligible for bonus or incentive opportunities.

What's in it for you

At Schwab, you're empowered to shape your future. We champion your growth through meaningful work, continuous learning, and a culture of trust and collaboration—so you can build the skills to make a lasting impact. Our Hybrid Work and Flexibility approach balances our ongoing commitment to workplace flexibility, serving our clients, and our strong belief in the value of being together in person on a regular basis.

We offer a competitive benefits package that takes care of the whole you – both today and in the future :

  • 401(k) with company match and Employee stock purchase plan
  • Paid time for vacation, volunteering, and 28-day sabbatical after every 5 years of service for eligible positions
  • Paid parental leave and family building benefits
  • Tuition reimbursement
  • Health, dental, and vision insurance
  • J-18808-Ljbffr

    Create a job alert for this search

    Zero Trust Architect • Southlake, TX, US

    Related jobs
    Senior Data Architect / W2 Contract

    Senior Data Architect / W2 Contract

    Axiom Software Solutions LimitedDallas, TX, US
    Full-time
    Quick Apply
    Work location : Bellevue WA / Atlanta GA / Dallas TX / Overland Park KS (Onsite).We are seeking an experienced and strategic Solution Architect with expertise in cloud technologies to design and imp...Show moreLast updated: 30+ days ago
    • Promoted
    Microsoft Identity & Devices Security Architect - Client Consulting

    Microsoft Identity & Devices Security Architect - Client Consulting

    Cyclotron, Inc.Dallas, TX, US
    Full-time
    F;Anywhere in US (Fully Remote) .As a Security Architect at Cyclotron, you’ll make an impact on diverse enterprise organizations by architecting, designing, and executing enterprise depl...Show moreLast updated: 3 days ago
    Application Architect III_Senior Oracle EBS Cloud Financials Consultant

    Application Architect III_Senior Oracle EBS Cloud Financials Consultant

    Innova SolutionsPlano, TX,Texas,United States
    Full-time +1
    Quick Apply
    Innova Solutions has a client that is immediately hiring for an.Application Architect III_Senior Oracle EBS Cloud Financials Techno-Functional Consultant (w / Oracle Fusion Financial modules (AP, FA...Show moreLast updated: 9 days ago
    Data Architect

    Data Architect

    MetroSysDallas, TX, US
    Full-time
    Quick Apply
    POSITION OVERVIEW MetroSys is seeking a seasoned Data Architect to lead the design, implementation, and optimization of scalable, high-performance data systems. Reporting directly to the CTO, this i...Show moreLast updated: 30+ days ago
    • Promoted
    Z / OS Lead / Architect

    Z / OS Lead / Architect

    Ravin IT SolutionsPlano, TX, US
    Full-time
    Only apply if you have served at client as an Z / OS Lead / Architect.We are seeking a highly experienced z / OS Architect to lead mainframe infrastructure initiatives, including hardware planning, dat...Show moreLast updated: 4 days ago
    • Promoted
    Solution Architect

    Solution Architect

    TradeJobsWorkForce75243 Dallas, TX, US
    Full-time
    Solution Architect Job Duties : Responsible for assisting in the establishment of an IT Archit...Show moreLast updated: 30+ days ago
    • Promoted
    Cloud Architect - Open Shift SME

    Cloud Architect - Open Shift SME

    Startekk IncPlano, TX, US
    Full-time
    StarTekk’s adoption of Digital Transformation is to accelerate organizational growth, increase efficiencies and help Star Workforce achieve focused business goals. The Employee will help our o...Show moreLast updated: 30+ days ago
    • Promoted
    Solution Architect, ServiceNow Security Workflows

    Solution Architect, ServiceNow Security Workflows

    MCKESSONIrving, TX, United States
    Full-time
    McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare.We are known for delivering insights, products, and services that make quality care more accessibl...Show moreLast updated: 30+ days ago
    Solution Architect

    Solution Architect

    SnipebridgePlano, TX, US
    Full-time
    Quick Apply
    LOCATION Dallas, TX OR Remote CLIENT As the market leader in decision management software, our client helps the world's largest companies in digitally transforming their integrated business ...Show moreLast updated: 30+ days ago
    • Promoted
    Architect

    Architect

    TradeJobsWorkforce76162 Fort Worth, TX, US
    Full-time
    Architect Job Duties : Researches, programs, plans, designs, and administers buildi...Show moreLast updated: 30+ days ago
    DOMO Data Architect

    DOMO Data Architect

    DSI SystemsRichardson, TX, US
    Full-time
    Quick Apply
    AT&T partner and premier Dallas-based sales enablement company, is looking for a highly skilled and experienced DOMO Data Architect to join our growing data and analytics team.You'll be respons...Show moreLast updated: 30+ days ago
    Direct To Consumer Domain Architect

    Direct To Consumer Domain Architect

    PepsiCoUSA, Texas, Plano
    Full-time
    The Direct to Consumer (DTC) Domain Architect role is responsible for evolving the global north star architecture for IBP (capabilities, technology standards), governing and ensure organization ali...Show moreLast updated: 26 days ago
    Senior Solution Architect- DP

    Senior Solution Architect- DP

    Axiom Software Solutions LimitedFrisco, TX, US
    Full-time
    Quick Apply
    Job Title : Senior Solution Architect- DP.We are seeking an experienced and strategic Solution Architect with expertise in cloud technologies to design and implement scalable, secure, and efficient ...Show moreLast updated: 30+ days ago
    Azure Architect

    Azure Architect

    Stellent IT LLCDallas, TX, United States
    Full-time
    Quick Apply
    MailOriginal"> Hi, Hope you are doing well.This is Dheeraj from Stellent IT .We are hiring for the given job requirement....Show moreLast updated: 3 days ago
    • Promoted
    Senior Security Architect

    Senior Security Architect

    TradeJobsWorkForce75240 Dallas, TX, US
    Full-time
    Senior Security Architect Job Duties : Enhances security team accomplishments and competence by planning deliv...Show moreLast updated: 30+ days ago
    Cloud Architect

    Cloud Architect

    eTeam IncFort Worth, Texas, United States
    Full-time
    Quick Apply
    YOE : 10 JAVA, 5 Azure Cloud, 8 Architectural Design.Oversees and contributes to the technical approach of application design. Collaborate with developers to guide the architecture approach for the F...Show moreLast updated: 30+ days ago
    Azure Teradata Migration Architect

    Azure Teradata Migration Architect

    Tiger AnalyticsDallas, TX, US
    Full-time
    Quick Apply
    Tiger Analytics is a fast-growing advanced analytics consulting firm.Our consultants bring deep expertise in Data Science, Machine Learning and AI. We are the trusted analytics partner for several F...Show moreLast updated: 30+ days ago
    • Promoted
    Architect

    Architect

    TradeJobsWorkForce76107 Fort Worth, TX, US
    Full-time
    Architect Job Duties : Researches, programs, plans, designs, and administers buil...Show moreLast updated: 30+ days ago
    • Promoted
    Sr. Azure Solution Architect

    Sr. Azure Solution Architect

    Wright Technical ServicesDallas, TX, US
    Permanent
    Wright Technical Services is proud to represent a highly respected manufacturer making strides in their industry.We are seeking a highly skilled Sr. Solution Architect to join our dynamic team.In th...Show moreLast updated: 2 days ago
    Technical Architect

    Technical Architect

    Coalescence Cloud ConsultingFrisco, Texas, United States, 75033
    Full-time
    Coalescence Cloud, you will design and build scalable, integrated Salesforce and ERP / PSA platforms that are the backbone of our client solutions and internal technical standards.Youll combine syste...Show moreLast updated: 1 day ago