Skip to content

Open nowPosted 30 days ago

Network Security Architect (Hybrid)

firstam22 open roles

Pay
$129,300 – $172,300 a year
Where
USA, California, Santa Ana
Work mode
Hybrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowNetwork Security Architect (Hybrid)firstam · USA, California, Santa Ana
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on firstam's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.2% of postings close within 7 days. Measured by our own scanner across the market. firstam postings stay open a median of 4 days.

Share of postings closed within
  1. 1.9%1 day
  2. 3.8%3 days
  3. 8.2%7 days
  4. 15.2%14 days
  5. 34.1%30 days
This job: posted 30 days ago

firstam median: 4 days open

The posting

Who We Are

Join a team that puts its People First! Since 1889, First American (NYSE: FAF) has held an unwavering belief in its people. They are passionate about what they do, and we are equally passionate about fostering an environment where all feel welcome, supported, and empowered to be innovative and reach their full potential. Our inclusive, people-first culture has earned our company numerous accolades, including being named to the Fortune 100 Best Companies to Work For® list for eleven consecutive years. We have also earned awards as a best place to work for women, diversity and LGBTQ+ employees, and have been included on more than 50 regional best places to work lists. First American will always strive to be a great place to work, for all. For more information, please visit www.careers.firstam.com.

What We Do

The Network Security Architect is responsible for defining, designing, and governing enterprise network security architectures that support business objectives, technology modernization initiatives, and risk management requirements. This role collaborates closely with internal IT teams, client managers, business stakeholders, third-party partners, vendors, and auditors to ensure effective security outcomes. Working alongside Security Engineers, the Security Architect develops secure architectural solutions and provides guidance for successful implementation and operational adoption by Security Engineers and Analysts.

What You’ll Do:

  • Define and maintain the enterprise network security architecture roadmap, ensuring alignment with business objectives, risk management requirements, and technology strategies.
  • Serve as the technical authority for network security architecture decisions and provide design governance across enterprise technology initiatives.
  • Lead the architecture, design, and deployment of network security solutions supporting enterprise infrastructure and business applications.
  • Lead the design and governance of enterprise firewall architectures, network segmentation strategies, secure remote access solutions, and Zero Trust initiatives.
  • Architect, design, and review secure network and connectivity solutions across on-premises, cloud, hybrid, and third-party environments.
  • Establish architectural standards and reference designs for network security technologies, including firewalls, VPNs, network access controls, and cloud-delivered security services.
  • Conduct and oversee technical risk assessments and security exposure analyses across systems, networks, and applications.
  • Lead security design reviews for new applications, infrastructure, and technology initiatives.
  • Serve as a trusted advisor to IT and business teams by assessing and communicating security risks associated with technology changes.
  • Recommend and promote information security policies, standards, best practices, and regulatory compliance requirements.
  • Lead initiatives to audit security controls, address policy violations, and ensure compliance with established security standards and procedures.
  • Research, evaluate, and recommend emerging security technologies and industry best practices to strengthen the organization's security posture and support strategic technology decisions.
  • Drive continuous improvement of security processes, operational procedures, and departmental practices to enhance efficiency and effectiveness.
  • Provide technical leadership and mentorship within the Information Security function, acting as a security subject matter expert.
  • Support critical business needs by providing after-hours coverage when required.

Job Complexities & Impact

  • Maintains a comprehensive understanding of information technology, cybersecurity, and business operations to align security architecture and strategic initiatives with organizational objectives.
  • Applies advanced professional expertise and deep industry knowledge to address complex security, operational, and business challenges.
  • Provides architectural guidance for the resolution of complex network security challenges and mentors engineers on security design and implementation best practices.
  • Exercises sound judgment when making decisions, recognizing that actions and errors at this level can have significant operational, financial, regulatory, and reputational impact.

What You'll Bring:

  • Minimum 5 years of experience designing, implementing, and governing enterprise network security architectures in large-scale, complex environments.
  • Demonstrated experience leading the architecture and design of network security solutions, including enterprise firewalls, secure remote access, network segmentation, Zero Trust, and cloud connectivity.
  • Must have experience integrating network security architectures with enterprise identity, directory, and infrastructure services.
  • Must have experience evaluating security products, conducting proof-of-concept assessments, and managing vendor and strategic partner relationships.
  • Must have a strong hands-on knowledge of network and security technologies, including firewalls, routers, network segmentation, access control lists (ACLs), intrusion detection/prevention systems (IDS/IPS), virtual private networks (VPNs), multifactor authentication (MFA), and public key infrastructure (PKI).
  • Must have a deep understanding of networking concepts, including WAN, LAN, cloud connectivity, Internet protocols, network services, and hybrid infrastructure environments.
  • Must have working knowledge of information security frameworks, standards, and regulatory requirements, including ISO 27001/27002, NIST, CIS Controls, COBIT, and related governance frameworks.
  • Must have excellent communication and consulting skills, with the ability to translate technical security concepts into business-focused recommendations for stakeholders at all organizational levels.
  • Has proven ability to develop and communicate security policies, standards, procedures, and architectural guidelines.
  • Demonstrated ability to balance business objectives, operational requirements, and security priorities to enable secure business outcomes.
  • Must have experience designing modern network security architectures, including Zero Trust, SASE/SSE, ZTNA, CASB, SD-WAN, network segmentation, and micro segmentation strategies.
  • Must have proven experience designing and governing enterprise network security architectures in large-scale, complex environments.
  • Must have extensive experience with Palo Alto Networks technologies, including Next-Generation Firewalls, Panorama, GlobalProtect, and Prisma Access.
  • Must have experience securing cloud network architectures and hybrid connectivity models across Azure, AWS, and/or Google Cloud environments.
  • Bachelor's degree in Computer Science, Information Systems, Information Security, Engineering, or a related field, or equivalent combination of education and experience.
  • Advanced security training, professional certifications, and continuing education in cybersecurity, networking, and cloud technologies are preferred.

Preferred Certifications

  • CISSP (Certified Information Systems Security Professional)
  • CISM (Certified Information Security Manager)
  • CCSP (Certified Cloud Security Professional)
  • PCNSE (Palo Alto Networks Certified Network Security Engineer)
  • CCSK (Certificate of Cloud Security Knowledge)
  • CCNP Security
  • AWS Certified Security – Specialty

Pay Range: $129,300.00 - $172,300.00 Annually

This hiring range is a reasonable estimate of the base pay range for this position at the time of posting. Pay is based on a number of factors which may include job-related knowledge, skills, experience, business requirements and geographic location.

** Note that the following statements only apply to candidates who will be working from an unincorporated area within Los Angeles County. **

First American will consider for employment all qualified applicants, including those with arrest or conviction records, in a manner consistent with the requirements of applicable state and local laws (e.g., the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act).

First American intends to conduct a review of an applicant’s criminal history in connection with a conditional offer. First American reasonably believes that a criminal history may have a direct, adverse and negative relationship with the following material job duties for this position potentially resulting in the withdrawal of the conditional offer of employment: handling of confidential, proprietary or trade secret information belonging to First American or its customers, administrating or facilitating financial transactions, and the ability to meet customer-imposed criminal history requirements.

What We Offer

By choice, we don’t simply accept individuality – we embrace it, we support it, and we thrive on it! Our People First culture is inclusive for all employees - not just because it's the right thing to do, but because it's the key to our success. We are proud to foster an authentic and inclusive workplace For All. You are free and encouraged to bring your entire, unique self to work. First American is an equal opportunity employer in every sense of the term.

Based on eligibility, First American offers a comprehensive benefits package including medical, dental, vision, 401k, PTO/paid sick leave and other great benefits like an employee stock purchase plan.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against firstam's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on firstam's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    firstam's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.