About the Role
Lead the strategy, architecture, and engineering of perimeter security capabilities to protect the organization from external threats targeting enterprise networks, internet-facing services, applications, and remote access environments.
Responsibilities
- Define and drive the enterprise perimeter security strategy, architecture, and roadmap.
- Lead the evaluation, implementation, and continuous improvement of perimeter security controls and technologies.
- Partner with Network Engineering, Infrastructure, Cloud, and Application teams to design and deploy secure network and internet-facing architectures.
- Collaborate with the Cyber Defense Center (CDC) to enhance detection, investigation, threat hunting, and response capabilities for network and perimeter-based attacks.
- Lead security initiatives involving next-generation firewalls, web application firewalls (WAF), DDoS protection, secure web gateways, remote access security, API protection, and Zero Trust technologies.
- Drive integration of perimeter security platforms with SIEM, SOAR, threat intelligence, and security analytics solutions.
- Develop security standards, architecture patterns, and implementation guidance for perimeter security technologies.
- Lead proof-of-concepts, product evaluations, and vendor assessments for network and perimeter security solutions.
- Track and report key metrics related to threat prevention, attack surface reduction, control effectiveness, and risk reduction.
- Serve as a subject matter expert for perimeter security and defensive engineering initiatives.
- Develop security strategies, roadmaps, and architecture standards.
- Assess emerging threats and translate risks into security controls and engineering priorities.
Requirements
- Experience with perimeter security technologies such as Zscaler, Palo Alto Networks, Cloudflare, F5, or similar platforms.
- Strong understanding of network security, perimeter defense, segmentation, secure access, and Zero Trust architectures.
- Experience securing internet-facing applications, APIs, and remote access services.
- Familiarity with technologies such as WAF, DDoS protection, ZTNA, SSE, SASE, VPN, and network access controls.
- Experience integrating security platforms with SIEM, SOAR, and threat intelligence solutions.
- Strong analytical, troubleshooting, automation, and problem-solving skills.
- Excellent communication and stakeholder management skills.
- Experience working in financial services or other regulated industries preferred.
- Relevant certifications such as CISSP, CCSP, PCNSE, CCNP Security, or equivalent preferred.
- Familiarity with cloud and hybrid network security architectures.
- Strong collaboration skills and ability to work across Cyber Security, Infrastructure, Cloud, and Engineering organizations.
Skills
- Zscaler
- Palo Alto Networks
- Cloudflare
- F5
- Network security
- Perimeter defense
- Segmentation
- Secure access
- Zero Trust architectures
- WAF
- DDoS protection
- ZTNA
- SSE
- SASE
- VPN
- Network access controls
- SIEM
- SOAR
- Threat intelligence
- Analytical skills
- Troubleshooting skills
- Automation skills
- Problem-solving skills
- Communication skills
- Stakeholder management skills
Location
- Hybrid
Work Type
- Hybrid
- Full-time
Experience Level
- 8+ years of experience in cybersecurity, network security, security engineering, or security architecture.
- 5+ years of hands-on experience designing and implementing perimeter security technologies and controls.
Education Level
- Bachelor's degree in Computer Science, Information Security, Engineering, or a related field, or equivalent practical experience.
Salary/Compensations
- $120,000 - $202,500
Benefits
- Retirement savings plan (401K) with company match
- Insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages
- Paid-time off including vacation, sick leave, short term disability, and family care responsibilities
- Access to Employee Assistance Program
- Incentive compensation including eligibility for annual performance-based awards
- Eligibility for certain tax advantaged savings plans
- Inclusive development opportunities
- Flexible work-life support
- Paid volunteer days
- Vibrant employee networks
About the Company
- Across the globe, institutional investors rely on us to help them manage risk, respond to challenges, and drive performance and profitability.
- We keep our clients at the heart of everything we do, and smart, engaged employees are essential to our continued success.
- We are committed to fostering an environment where every employee feels valued and empowered to reach their full potential.
- As an essential partner in our shared success, you’ll benefit from inclusive development opportunities, flexible work-life support, paid volunteer days, and vibrant employee networks that keep you connected to what matters most.
- Join us in shaping the future.
Equal Opportunity
- As an Equal Opportunity Employer, we consider all qualified applicants for all positions without regard to race, creed, color, religion, national origin, ancestry, ethnicity, age, disability, genetic information, sex, sexual orientation, gender identity or expression, citizenship, marital status, domestic partnership or civil union status, familial status, military and veteran status, and other characteristics protected by applicable law.
