Security Domain Architect - Expert
Independence Pet HoldingsAbout the role
Established in 2021, Independence Pet Holdings is a corporate holding company that manages a diverse and broad portfolio of modern pet health brands and services, including insurance, pet education, lost recovery services, and more throughout North America.
We believe pet insurance is more than a financial product and build solutions to simplify the pet parenting journey and help improve the well-being of pets. As a leading authority in the pet category, we operate with a full stack of resources, capital, and services to support pet parents. Our multi-brand and omni-channel approach include our own insurance carrier, insurance brands and partner brands.
Architecture for: IAM; Endpoint Protection / EDR / XDR; Endpoint Management; SIEM & MDR; DLP & Data Governance; Email Archiving; Email Security; Patch ManagementITSM / Asset Management;Security Awareness;Web & Network Security;Cloud Security;AppSec / DevSecOps;Incident Response;Backup / DR;Password Management;Governance / GRC;SAST / DAST;Third-Party Risk Management;OFAC Screening;;- Principal Architect – Security Architecture This hands-on leader - Security Architect will lead enterprise-wide security architecture, standards, and governance across all insurance and non-insurance brands. The role is pivotal in safeguarding IPH’s assets and driving digital transformation, ensuring compliance, resilience, and trust as we scale to become the world’s largest pet insurance and pet health provider.Reporting Structure
- Reports to: Chief Architect (Head of Architecture)
- Partners with: Chief Information Security Officer (CISO), Other key partners: Platform Engineering, SecOps, Data/AI, Infra & Ops, Legal & Compliance
- Location: Remote/Hybrid – Chicago preferred - 2 days a week in office.
- Role OverviewIn close collaboration with the CISO team, this role defines and governs enterprise security architecture for IPH, embedding security into all platforms, applications, and processes. The Security Architect will enable secure adoption of cloud-native services, AI-driven automation, and zero-trust principles across the enterprise, while ensuring compliance with global regulatory frameworks.Key Focus Areas
- Establishing unified security architecture across multiple zones/domains/lines of business
- Driving Zero Trust adoption and identity-centric security
- Governing AI/ML security and Responsible AI aligned to NIST AI RMF
- Embedding security in DevOps and defining reusable security patterns
- Mapping controls to regulatory frameworks (PCI-DSS, SOC 2, HIPAA, GDPR/CCPA, NAIC, Quebec Law 25)
- Secure and Align with IPH Calandra Toolkit and Skylark Security Stack for standards and implementation
- Key Responsibilities
- Enterprise Security Architecture (30%)
- Define and maintain security architecture standards for the enterprise (we are Microsoft technology, Azure-centric, Insurance-focused)
- Architect and govern Zero Trust across landing zones; implement unified Conditional Access and identity governance for Internal and external users.
- Publish reusable security patterns for multi-tenant and cross-brand scenarios
- Oversee security for AKS, API management, and cloud-native infrastructure
- Ensure alignment with Calandra Toolkit and Skylark Security Stack for architecture reviews and compliance
- Identity & Access Management (20%)
- Drive CIAM strategy (Ping vs Microsoft Entra External ID) and support governance for unified identity across all brands
- Implement MFA with adaptive logic to reduce friction and cost while mitigating VOIP-based fraud
- Integrate IAM for all internal users.
- Compliance & Risk Management (20%)
- Architect and develop a security controls catalog mapped to PCI-DSS, SOC 2, HIPAA, GDPR/CCPA, NAIC, Quebec Law 25
- Support audits: evidence collection, control mapping, documentation, and posture improvement
- Embed KYC, AML, and ABC checks into Skylark workflows; automate OFAC, UK, and EU watchlist checks
- Cloud & Application Security (15%)
- Define secure patterns for APIs, microservices, and integration pipelines
- Implement container security, workload isolation, and encryption standards
- Drive DevSecOps adoption (SAST/DAST/Secrets/IaC) and govern GitHub Advanced Security and Azure DevOps integrations
- AI/ML & Responsible AI Governance (10%)
- Architect security for Azure AI/ML platforms (Azure OpenAI, Copilot Studio, Databricks)
- Lead Responsible AI security governance aligned t
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s