Senior Information Cloud Security Architect
Listed on 2026-01-12
-
IT/Tech
Cybersecurity, Cloud Computing, Systems Engineer, Data Security
Who We Are
Join a team that puts its People First! Since 1889, First American (NYSE: FAF) has held an unwavering belief in its people. They are passionate about what they do, and we are equally passionate about fostering an environment where all feel welcome, supported, and empowered to be innovative and reach their full potential. Our inclusive, people‑first culture has earned our company numerous accolades, including being named to the Fortune 100 Best Companies to Work For list for ten consecutive years.
We have also earned awards as a best place to work for women, diversity and LGBTQ+ employees, and have been included on more than 50 regional best places to work lists. First American will always strive to be a great place to work, for all. For more information, please visit
We are looking for an innovative and proactive Senior Security Architect to lead the strategic planning, implementation, and ongoing enhancement of First American’s security framework. This pivotal role requires a blend of strong technical proficiency and effective business leadership. The ideal candidate will develop and articulate a robust security strategy encompassing network, application, identity, data and cloud environments, ensuring proactive management of cyber risks.
Provide long‑term solutions to Information Security Technology needs, including protecting information and information systems from unauthorized access, use, disclosure, disruption, modification, perusal, inspection, recording or destruction.
This role will be hybrid two days per week onsite in Santa Ana, CA.
What You’ll DoCloud Security Architecture & Zero Trust Design: Lead the design and implementation of Zero Trust security models within multi‑cloud environments (Azure, AWS, GCP) to implement Zero Trust principles within the organization’s cloud infrastructure. This includes securing data, network access, identities, applications, privatization of workloads and network micro‑segmentation based on the principle of least privilege.
Governance Models for Security:
- a. Application Security Governance: Collaborate with Application Security Architects to design and enforce application security governance models that integrate secure software development practices, secure APIs, and application‑level access controls.
- b. Identity and Access Management (IAM): Collaborate with Identity Architects to design and enforce comprehensive IAM policies as part of the Zero Trust model, ensuring least‑privilege access evolving to JIT Just‑In‑Time based access, strong authentication mechanisms (including multi‑factor authentication), password‑less authentication, and identity federation across cloud platforms (Entra , AWS IAM, GCP Identity).
- c. Data Governance: Collaborate with Data Architects to develop and enforce governance models that protect sensitive and critical data within cloud environments.
Cloud Security
Risk Management:
Identify and mitigate security risks associated with cloud deployments and continuously improve security posture in line with Zero Trust principles.
Cloud Security Posture Management: Regulate policy enforcement, monitor compliance, and implement remediation strategies based on Prisma Cloud findings to improve cloud security posture. Configure and manage Prisma Cloud policies to monitor and identify misconfigurations, vulnerabilities, and threats in cloud infrastructure, applications, and services.
Security Automation & Orchestration: Utilize automation tools to integrate security controls into cloud workflows as part of Dev‑Sec‑Ops model. Automate deployment of security policies and governance models using Infrastructure as Code (IaC) tools ensuring security consistency across cloud resources.
Continuous Improvement: Stay up to date with the latest cloud security threats, trends, and technologies.
What You’ll Bring- Minimum of 5 years of experience in cloud security architecture, governance, and risk management across Entra , Azure, AWS, and GCP.
- At least 2 years of experience designing and implementing Zero Trust security models.
- At least 2 years of hands‑on experience with Microsoft Defender for Cloud and managing Entra controls.
- Combina…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).