Full-Time

Security Architect

Product

College Board

College Board

Compensation Overview

$156k - $172k/yr

Remote in USA

Remote

Fully remote option; hybrid (Tuesday and Wednesday in office) also available.

Category
IT & Security (1)
Required Skills
Microsoft Azure
Threat modeling
Infrastructure as Code (IaC)
AWS
Cryptography
Serverless
Google Cloud Platform
Requirements
  • Meaningful experience in security architecture, application security, or cloud security, with ownership of architectural decisions and trade-offs
  • Strong understanding of security risks in modern multi-tenant software-as-a-service architectures including APIs, microservices or event-driven patterns, identity, and data protection
  • Experience leading threat modeling, architecture reviews, and risk assessments, translating findings into clear, actionable guidance for technical and non-technical audiences
  • Cloud security depth (AWS preferred; comparable depth in Azure or Google Cloud Platform is valued)
  • Experience securing third-party and customer integrations at scale (e.g., SSO/identity federation and data exchange)
  • Experience in K–12 or higher education ecosystems (e.g., student information systems or classroom platforms) is a strong advantage
  • A pragmatic, risk-based approach and comfort operating with ambiguity, able to exercise agency and make decisions within guardrails
  • Familiarity with or ability to articulate AI-native usage, including where it helps, risks, and guardrails
  • Strong collaboration and influence skills; able to mentor others and partner effectively across engineering, product, privacy, and compliance
  • Authorization to work in the United States
  • Clear and concise communication skills, written and verbal
Responsibilities
  • Secure SaaS Architectures (50%) – Serve as a trusted security advisor to engineering and product teams, offering clear guidance on secure architecture, design decisions, and remediation strategies
  • Secure SaaS Architectures (50%) – Review system and application architectures, identifying gaps, recommending enhancements, and aligning solutions with College Board’s Product Security Framework and zero-trust principles
  • Secure SaaS Architectures (50%) – Partner with product teams early in the lifecycle to conduct architectural assessments, threat modeling, and data flow review, ensuring that secure-by-design practices guide every phase of development
  • Secure SaaS Architectures (50%) – Advise on secure implementation of cloud-native services, client/mobile applications, IAM, encryption, storage, access control and data protection, and serverless design patterns
  • Secure SaaS Architectures (50%) – Provide architectural guidance that supports audit and compliance readiness by ensuring security and privacy requirements are reflected in system design, technical controls, and documented patterns
  • Secure SaaS Architectures (50%) – Support the evaluation of new technologies, third-party integrations, and design proposals to assess security impact and ensure alignment to enterprise standards, including large-scale customer integrations (SSO/identity federation and data exchange) common in K–12 and higher education ecosystems
  • Secure SaaS Architectures (50%) – Partner with engineering teams to evaluate failure modes, dependency risks, and systemic weaknesses as part of architectural reviews and threat modeling
  • Secure SaaS Architectures (50%) – Embed deeply within one of more product domains, partnering early with engineering and product teams as the primary security architecture advisor
  • Secure SaaS Architectures (50%) – Lead risk-based trade-off discussions (security, privacy, usability, delivery), documenting key decisions and rationale to help teams move quickly and consistently
  • Elevate Product Security (25%) – Lead the creation and documentation of secure architectural reference patterns for recurring use cases across College Board (e.g., external API patterns, secure data ingestion)
  • Elevate Product Security (25%) – Collaborate with other architects to shape the long-term technical strategy for secure software and cloud architecture
  • Elevate Product Security (25%) – Contribute to the continuous improvement of Product Security standards and threat modeling methodologies, ensuring consistency and scalability
  • Elevate Product Security (25%) – Analyze emerging security and privacy threats, industry trends, and cloud-security advancements to proactively update architectural patterns and security guidance
  • Elevate Product Security (25%) – Mentor junior security engineers and developers, providing coaching on architectural thinking, secure design, and modern application security concepts
  • Elevate Product Security (25%) – Work with security partner team in maturing product-specific risk registers
  • Improve Product Security Operations (25%) – Partner with engineering, DevSecOps, and cloud platform teams to create secure design patterns in continuous integration/continuous deployment, infrastructure-as-code, and runtime environments
  • Improve Product Security Operations (25%) – Support the design of security and platform guardrails that improve system resilience at scale, including secure defaults, automated rollback, isolation controls, and observable failure detection
  • Improve Product Security Operations (25%) – Support governance workflows as stakeholders in broader multi-team processes
  • Improve Product Security Operations (25%) – Contribute to development of metrics, key performance indicators, and maturity indicators to measure architectural security posture and influence roadmap planning
  • Improve Product Security Operations (25%) – Assist in implementing automated guardrails and tooling that enforce architectural best practices at scale
  • Improve Product Security Operations (25%) – Participate in evaluating and improving new and existing security policies and standards, tools, and controls across the organization to enhance the overall security posture
Desired Qualifications
  • Experience in K–12 or higher education ecosystems is a strong advantage

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A