Cybersecurity Architect
AllstateAbout the role
At Allstate, great things happen when our people work together to protect families and their belongings from life’s uncertainties. And for more than 90 years our innovative drive has kept us a step ahead of our customers’ evolving needs. From advocating for seat belts, air bags and graduated driving laws, to being an industry leader in pricing sophistication, telematics, and, more recently, device and identity protection.
Job Description
Allstate’s Enterprise Cybersecurity Platform Consulting Team evaluates solutions relative to the broader enterprise security architecture and strategic direction. We thoughtfully craft and iterate paths towards strategic solutions that emphasize simplification and reuse while driving enterprise level informed decision-making to create optimal paths to value. Engineering excellence, outcome based iterative delivery, strategic design / systems thinking, along with impact and influence are key success factors in our toolkits to be both efficient and effective as we mature our practice.As a Cybersecurity Architect (specialization Zero Trust Security Architecture) you will:
1. Drive outcome-based delivery leadership to mature our cybersecurity platforms and services.
2. Develop formal enterprise-level strategies and authoritative documentation.
3. Drive decision clarity when addressing complex cross-functional challenges (for key design decisions, cyber risk and return decisions, and GRC issues).
This new role on our team will be responsible for helping to design a comprehensive enterprise security architecture based on "Zero Trust" principles, which means never implicitly trusting any device, user, or network, requiring continuous verification before granting access to critical systems and data. Key responsibilities include assessing existing roadmaps, identifying maturity gaps, helping to select appropriate Zero Trust technologies, and defining policies to enforce strict access controls across our entire IT environment.
Key Responsibilities
Architecture Design:
Help refine and expand our Zero Trust security architecture blueprint, defining how to segment networks, implement granular access controls, and continuously monitor user activity across different platforms.
Define security policies and standards aligned with Zero Trust principles, including least privilege access, multi-factor authentication, and strong identity management.
Provide experience in architecting Zero Trust solutions, roadmaps, and capabilities in alignment with industry standards, including NIST SP 800-207 (ZTA), SP 1800-35 (Implementing ZTA), SP 800-63 (digital identity guidelines) along with Microsoft guidance for the CISA Zero Trust Maturity Model.
Influence Engineering team’s implementations and deployments:
Consult with various technical SMEs as they deploy Zero Trust security controls across the IT infrastructure, including on-premises and our public cloud environments.
Align with various stakeholders on their roadmaps of various security tools to enforce Zero Trust policies, such as granular access controls, real-time threat analysis, and continuous monitoring.
Consult with network engineers that will implement network segmentation strategies to isolate critical systems and data.
Security Assessment and Cyber Risk Management:
Provide thought leadership for our security assessments to identify vulnerabilities and potential threats within the Zero Trust architecture.
Partner with response teams that analyze security incidents and breaches to refine Zero Trust policies and improve overall security posture.
Provide thought leadership on how to monitor compliance with relevant security regulations and industry standards related to Zero Trust principles.
Collaboration and Communication:
Collaborate with IT and Information Security teams across the organization to integrate Zero Trust security capabilities/controls into existing systems and applications.
Communicate Zero Trust security strategies and policies to key stakeholders, including executive management, senior management, and technical teams.
Champion Zero Trust concepts and best practices across our architecture domains of Identity, Endpoints, Data, Applications, Infrastructure, Networking, and Security Operations.
Key Skills & Qualifications
8+ years of experience desired in governance, risk management, compliance, designing, and/or engineering enterprise IT and cybersecurity solutions, and architecture design and solutions.
BS in Computer Science, Engineering, Software Development, Informat
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s