Cyber - Enterprise Security Architect - Senior - Consulting
Job description
Location: Anywhere in Country
At EY, we’re all in to shape your future with confidence.
We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world.
The Opportunity
As organizations undertake large-scale digital transformation, cloud migration, and technology modernization initiatives, the need for robust, scalable security architecture has never been greater. Security architecture decisions made today define an organization's risk posture for years to come—shaping how data is protected, how systems are connected, and how threats are detected and contained. As a Senior Consultant within EY's Cyber practice focused on Enterprise Security Architecture, you will work with clients to assess existing security architectures, design future-state security frameworks, and develop practical roadmaps that align security capabilities with enterprise strategy. This role offers the opportunity to engage in technically hands-on architecture work alongside strategic advisory engagements across diverse industries.
Your Key Responsibilities
As a Senior Consultant in Enterprise Security Architecture, you will play an active and technically engaged role in delivering security architecture assessments, design engagements, and transformation initiatives while collaborating closely with clients and EY engagement teams. You will evaluate existing security architectures, identify gaps and risks across network, cloud, application, data, and identity domains, and develop actionable recommendations grounded in industry frameworks and leading practices. You will design and document future-state security architectures, reference models, and security patterns that address client-specific risk profiles and business objectives, and support clients in defining technology roadmaps that guide security investment and capability development.
In addition, as a Senior Consultant, you will contribute to the development of enterprise security architecture standards, policies, and governance frameworks that embed security requirements into technology and business change programs. You will support clients in applying Zero Trust principles, securing hybrid and multi-cloud environments, and aligning architecture decisions to established frameworks such as SABSA, TOGAF, and NIST. You will prepare client deliverables, architecture documentation, and executive-level presentations that communicate complex technical concepts to both technical and non-technical audiences. You will collaborate with multidisciplinary teams to deliver high-quality work products, support project planning and management activities, mentor junior team members, and contribute to business development initiatives, thought leadership, and practice-building efforts within EY's Cyber practice.
Skills and Attributes for Success
- Strong understanding of enterprise security architecture principles, patterns, and frameworks, with the ability to design solutions across network, cloud, application, data, identity, and endpoint security domains.
- Hands-on experience conducting security architecture assessments, threat modeling, and architecture risk analysis across complex enterprise environments.
- Ability to design and document security reference architectures, technology blueprints, and security patterns that align to business objectives and risk appetite.
- Experience applying Zero Trust architecture principles and translating them into practical, implementable security designs.
- Knowledge of cloud security architecture across major cloud platforms (AWS, Azure, GCP), including hybrid and multi-cloud environments.
- Familiarity with enterprise architecture frameworks such as SABSA, TOGAF, or Zachman as applied to security architecture engagements.
- Strong critical thinking, analytical, and problem-solving skills applied to complex security architecture challenges.
- Ability to communicate technical architecture concepts effectively to both engineering teams and executive stakeholders.
- Experience developing architecture documentation, executive presentations, and client-facing deliverables.
- Strong verbal and written communication skills.
- Ability to manage competing priorities in a fast-paced consulting environment.
- Strong attention to detail and commitment to high-quality client service.
- Ability to build relationships and collaborate effectively across multidisciplinary teams and client organizations.
- Demonstrated initiative, adaptability, and a commitment to continuous learning across an evolving technology and threat landscape.
To Qualify for the Role, You Must Have
- A bachelor's degree in Cybersecurity, Computer Science, Information Systems, Engineering, or a related field, and approximately 3–5 years of relevant experience; or a graduate degree and 2–4 years of relevant experience.
- Experience in one or more of the following areas:
- Enterprise security architecture assessments and future-state architecture design
- Network security architecture, including segmentation, secure access, and perimeter design
- Cloud security architecture across AWS, Azure, or GCP, including IaaS, PaaS, and SaaS security
- Identity and access management architecture, including Zero Trust and privileged access design
- Application security architecture, secure SDLC, and DevSecOps integration
- Data protection architecture, including encryption, data classification, and data loss prevention
- Security architecture governance, standards development, and architecture review processes
- Knowledge of cybersecurity frameworks and standards, including NIST CSF, NIST 800-53, ISO 27001/27002, CIS Controls, and SABSA.
- Experience conducting security architecture reviews, threat modeling, and risk assessments in complex enterprise environments.
- Strong Microsoft PowerPoint, Excel, and Word skills.
- Willingness to travel based on client and business needs; travel estimated at 25–50%
Ideally, You'll Also Have
- Professional certifications such as CISSP, CCSP, SABSA Chartered Architect (SCF/SCM), TOGAF, or other relevant security architecture credentials.
- Hands-on experience with security architecture tooling, including architecture modeling platforms, threat modeling tools, and cloud-native security services.
- Experience designing and implementing Zero Trust architectures, including microsegmentation, identity-centric access, and continuous verification models.
- Knowledge of security technology domains including SIEM, SOAR, EDR/XDR, PAM, IAM, CNAPP, and CASB, with the ability to assess their architectural fit within enterprise environments.
- Exposure to regulatory and compliance requirements—such as HIPAA, PCI DSS, FISMA, GDPR, or NYDFS—and their implications for security architecture decisions.
- Experience facilitating client workshops, technical design sessions, and architecture review board engagements.
- Background in software development, infrastructure engineering, or network engineering that informs deep technical architecture credibility.
- Experience within a consulting, professional services, or advisory environment.
- Knowledge of regulated industries such as financial services, healthcare, life sciences, government, or critical infrastructure.
What We Look For
We are seeking professionals who combine deep technical security architecture expertise with the advisory skills needed to translate complex design decisions into clear, actionable client guidance. Successful candidates bring hands-on architecture experience across multiple security domains alongside strong business judgment and the ability to engage confidently with both engineering teams and executive stakeholders. The ideal candidate is passionate about designing security that enables business outcomes, committed to delivering exceptional client service, and eager to contribute to the growth and innovation of EY's Cyber practice.
What we offer you
At EY, we harness our collective strength to empower you to shape your future with confidence through professional growth, personal fulfillment and an inclusive culture. Learn more at ey.com/us/careers.
- The salary range for this job is:
- New York City, Boston, and Washington DC Metro Areas, Washington State, and Southern California offices – $125,800 to $209,700
- Bay Area California offices – $131,100 to $218,500
- All other offices locations in the US, including Sacramento – $104,800 to $192,200
- Individual salaries within these ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.
Are you ready to shape your future with confidence? Apply today.
- To make the most of your application experience, please limit yourself to two applications within a six-month period.
- EY accepts applications for this position on an on-going basis.
- For those living in California, please click here for additional information.
- At EY, our values set the foundation for how we work and the behaviors we expect of our people. Any misrepresentation or falsification of information or lack of integrity at any point in the recruiting process may result in withdrawal of your candidacy, revocation of an offer or immediate termination of employment.
EY | Building a better working world
EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.
Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.
EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.
All in to shape the future with confidence.
EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law.
EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY’s Talent Shared Services Team (TSS) or email the TSS at ssc.customersupport@ey.com.