Lead Security Architect (Director level, individual contributor)

Remote Full-time
About the position Responsibilities • Architectural Design: Lead the design and development of robust security frameworks, standards, and best practices for global systems, data, and networks. This includes creating reference architectures and implementation patterns for security solutions. • Strategic Planning: Translate business, technology, and threat drivers into practical security roadmaps. You'll ensure our security strategy is aligned with broader organizational goals. • Financial Analysis: Conduct financial evaluations of security technologies, including quantifying purchasing and licensing options, estimating labor costs, and calculating the total cost of ownership (TCO), return on investment (ROI), or payback period. • Project Management: Draft project plans for security service and technology deployments and coordinate with stakeholders across the organization to ensure successful implementation. • Collaboration & Integration: Work closely with various teams across Manulife's business and IT units—including enterprise architecture, development, and risk management—to seamlessly integrate security throughout the entire project lifecycle. • Risk Management: Conduct comprehensive risk assessments to identify vulnerabilities and define necessary controls. Partner with global information risk management teams to prioritize and mitigate risks effectively. • Security Evaluation: Continuously evaluate the security of new and emerging technologies and potential solutions. You will stay ahead of the curve on cybersecurity trends to recommend and implement innovative solutions. • Mentorship & Communication: Act as a security subject matter expert, coaching and mentoring development teams. You will also communicate complex security standards and strategies to both technical staff and senior management with clarity and influence. • AI Security: Design and implement security frameworks for Machine Learning (ML), Generative AI (GenAI), and Agentic AI systems. Evaluate AI-powered security tools and integrate artificial intelligence capabilities into security operations and threat detection. • Application Security: Assess solution architectures for compliance with security standards, define secure service interfaces, and provide guidance to application security engineers on threat modelling and secure software development methodologies. • Cloud Security: Provide deep expertise in securing multi-cloud computing environments (SaaS, IaaS, PaaS), with a strong focus on platforms like Microsoft Azure and AWS. Requirements • Bachelor's or master's degree in computer science, information systems, cybersecurity, or a related field. • Relevant industry certifications such as CISSP (Certified Information Systems Security Professional) or CCSP (Certified Cloud Security Professional) are required. • At least 10 years of experience specifically in senior information security architecture roles, with demonstrated progression in responsibility and complexity. • Proven experience in the financial services industry, with understanding of regulatory requirements, compliance frameworks, and industry-specific security challenges. • Experience in using architecture methodologies such as SABSA, Zachman, and/or TOGAF. • Direct, hands-on experience or strong working knowledge of managing security infrastructure—e.g., firewalls, intrusion prevention systems (IPSs), web application firewalls (WAFs), endpoint protection, SIEM, and log management technology. • Verifiable experience reviewing application code for security vulnerabilities. • Experience securing CI/CD pipelines. • Direct, hands-on experience or a strong working knowledge of vulnerability management tools. • Documented experience and a strong working knowledge of the methodologies to conduct threat-modelling exercises on new applications and services. • Experience designing the deployment of applications and infrastructure into public cloud services. • Direct experience designing IAM technologies and services, including Active Directory, Lightweight Directory Access Protocol (LDAP), and Amazon Web Service (AWS) IAM. • Extensive knowledge of full-stack IT infrastructure, including: • Applications • Databases • Operating systems—Windows, Unix, and Linux • Hypervisors • IP networks—WAN and LAN • Storage networks—Fibre Channel, iSCSI, and NAS • Backup networks and media • Containers/Kubernetes • Communication: Excellent verbal and written communication skills are crucial for articulating complex technical concepts and influencing stakeholders at all levels. You must be able to translate complex security matters into business terms that are easily understood by colleagues and senior management. • Problem-Solving: Strong analytical, problem-solving, and decision-making abilities. • Collaboration: The capacity to balance competing priorities and maintain a collaborative and positive attitude. • Travel Flexibility: Willingness and ability to travel within Canada and USA to support business operations and stakeholder engagement Nice-to-haves • Experience from large complex environment is highly preferred but not a must. • Experience from large financial Org’s is a definite plus but not a must. Benefits • We’ll empower you to learn and grow the career you want. • We’ll recognize and support you in a flexible environment where well-being and inclusion are more than just words. • As part of our global team, we’ll support you in shaping the future you want to see. • Manulife offers eligible employees a wide array of customizable benefits, including health, dental, mental health, vision, short- and long-term disability, life and AD&D insurance coverage, adoption/surrogacy and wellness benefits, and employee/family assistance plans. We also offer eligible employees various retirement savings plans (including pension and a global share ownership plan with employer matching contributions) and financial education and counseling resources. Our generous paid time off program in Canada includes holidays, vacation, personal, and sick days, and we offer the full range of statutory leaves of absence. Apply tot his job
Apply Now

Similar Opportunities

Remote Security Specialist jobs Jobs in West Des Moines, Iowa | Remote Work From Home

Remote

Executive Security Advisor, AWS Security Assurance Services

Remote

Senior Cyber Incident Responder

Remote

Deloitte Cyber Security Controls Assessor/Auditor Senior Consultant (remote) in New Orleans, Louisiana

Remote

Cybersecurity Business Intelligence and Reporting Specialist

Remote

Cybersecurity Lead

Remote

TEKsystems Application Security Architect (Remote) in Albuquerque, New Mexico

Remote

Associate Cyber Security Automation Engineer

Remote

Security Engineer with Automation

Remote

QA Automation Engineer, Browser Extension

Remote

**Flexible Part-Time Data Entry Specialist – Unlock Your Potential with blithequark**

Remote

Inside Higher Ed is hiring: Animation and Game Art Adjunct Faculty in Tallahasse

Remote

[Remote] JR.WEB DEVELOPER - REMOTE

Remote

**Experienced Data Scientist - Advanced Innovation Team at United Airlines, Remote Work Opportunity with Competitive $25/Hour Salary**

Remote

Experienced Customer Service Representative - Nights and Weekends (Full-Time) at blithequark

Remote

[Remote] Part-Time Field Technician -Brandon/Souris, Manitoba

Remote

**Experienced Full Stack Pharmacy Technician – Remote Data Entry and Customer Service Specialist at blithequark**

Remote

Experienced Part-Time Weekend and Night Shift Customer Service Associate - Remote Opportunities in West Berlin, NJ with blithequark

Remote

Experienced Rust Developer and Advocate for Open-Source Projects - Remote Work Opportunity with Collabora

Remote

Experienced Customer Care Manager for Educational Technology – Remote Leadership Opportunity in Customer Service Excellence

Remote
← Back to Home