Executive Director, Application Security Architect

1 Month ago • 10 Years + • System Design • $205,000 PA - $258,000 PA

Job Summary

Job Description

We are looking for a visionary Executive Director of Security Architecture with expertise in Application Security/DevSecOps, Data Security, and Cloud. This role involves leading the strategic design, implementation, and continuous improvement of Sony Pictures' application security posture. The ideal candidate will have prior experience in application architecture and engineering, with a focus on information and cybersecurity. Responsibilities include defining robust security design patterns, reference architecture across applications, data, and cloud environments, proactively addressing cyber risks, promoting secure coding practices, and leading security architecture review processes. The role requires assessing security risks, developing mitigation strategies, recommending design patterns, and evaluating security technologies.
Must have:
  • Mastery of Security Architecture Principles
  • Deep understanding of defense-in-depth strategies
  • Expertise in Application Security
  • Proficiency in Cloud Security
  • Excellent Network Security knowledge
  • Proficiency in Major Frameworks (NIST, ISO 27001)
  • Strong leadership and strategic thinking skills
  • Excellent communication and problem-solving abilities
Good to have:
  • AI Security, Product Security, Threat modeling
  • GPDR and privacy knowledge
  • DevSecOps, Secure Coding Principles
  • Full Stack WebApp/API security
  • SAST/DAST, API security, Authentication/Authorization Best Practices
  • Cloud security models (IaaS, PaaS, SaaS)
  • AWS and Azure security
  • IDS/IPS, network segmentation, VPNs
  • OWASP, SAFECode, TPN, MotionLabs

Job Details

We are seeking a visionary and hands-on Executive Director of Security Architecture with mature skill in Application Security/DevSecOps, Data Security and Cloud who will excel in leading the strategic design, implementation, and continuous improvement of Sony Pictures application security posture. This is a highly influential role, requiring both deep technical expertise and business-aligned leadership. The ideal candidate will have previous experience in application architecture and engineering and is now focused on information and cybersecurity to define robust security design patterns, reference architecture across applications, data, and cloud environments, proactively addressing cyber risks and promoting secure coding practices aligned with the Sony Pictures goals.

Key Responsibilities

  • Strategic Vision: Develop and articulate a comprehensive security architecture strategy for application, data and cloud for Sony Pictures information and content assets. Continuously evaluate emerging threats and industry best practices to evolve our security posture.
    • Define, document, and promote security architecture, DevSecOps, and technical standards throughout Sony Pictures.
    • Lead the development and implementation of comprehensive security architecture strategies for application, data and cloud environments to protect against current and emerging threats.
  • Architecture Design and Engineering: Lead hands-on design and implementation reviews of security solutions across application, data and cloud domains. Thoroughly assess security risks in existing and planned systems and infrastructure. Define technical security standards and governance processes.
    • Lead security architecture review processes, ensuring all new systems and changes to existing systems comply with Sony’s security standards.
    • Conduct in-depth assessments of current security architectures, identify threats and vulnerabilities, and develop mitigation strategies.
    • Recommend design patterns and security best practices for technology and application implementations.
  • Security Solution Evaluation and Selection: Research, evaluate, and recommend cutting-edge security technologies and tools. Oversee proof-of-concept initiatives and guide vendor selection.
    • Conduct market research to assess the landscape of available security solutions in specific areas (e.g., data security, cloud security, application security).
    • Liaise with IT and security operations teams to define and orchestrate POC testing for shortlisted security solutions.
  • Enterprise Security: Work closely with IT infrastructure, application development, DevSecOps, and business stakeholders to embed application security principles throughout all phases of technology development and deployment.
    • Develop and maintain security architecture documentation and standards.
    • Collaborate with IT and business units to integrate security best practices into the development lifecycle of projects and technology initiatives.
  • Governance and Compliance Maintain a deep understanding of security regulations and frameworks (e.g., NIST, ISO 27001, PCI DSS, OWASP, SAFECode) for designing systems and processes that not only protect data but also demonstrate adherence to industry standards and regulations.

Required Qualifications

Technical Skills

  • Mastery of Security Architecture Principles: Deep understanding of defense-in-depth strategies, zero-trust models, identity and access management (IAM), AI Security, Product Security, Threat modeling, GPDR and privacy, vulnerability assessment techniques, DevSecOps, Secure Coding Principles and Practices.
  • Application Security Expertise: Demonstrated experience with Full Stack WebApp/API, firewalls (WAFs), secure software development lifecycles (S-SDLCs), DevSecOps, IaC, Docker/Container Security, Data Security, static/dynamic application security testing (SAST/DAST), API security, Authentication/Authorization Best Practices, and Secure Coding Standards and Techniques.
  • Cloud Security Expertise: Proficient in cloud security models (IaaS, PaaS, SaaS), cloud-native security tools, encryption and key management, privileged access management (PAM), security posture and compliance within cloud environments, mainly AWS and Azure.
  • Network Security Expertise: Excellent knowledge of firewalls, intrusion detection/prevention systems (IDS/IPS), network segmentation, VPNs, network access control (NAC), DMZ design, and DDoS mitigation.
  • Proficiency in Major Frameworks:  Demonstrated knowledge of NIST Cybersecurity Framework, ISO 27001/27002, PCI DSS (if handling payment card data), OWASP, SAFECode, and other relevant entertainment industry guidelines such as TPN and MotionLabs.
  • Translation to Practice: The ability to take concepts from frameworks and benchmarks and apply them practically to the design of security solutions. This includes mapping controls, risk assessment techniques, and documentation in alignment with standards.

Leadership Skills

  • Leadership: Strong ability to lead, motivate, and develop a team of security professionals. Foster a collaborative and results-oriented environment.
  • Strategic Thinking: Capacity to align security objectives with Sony broader business and Cybersecurity goals, effectively quantifying risks and prioritizing initiatives for optimal impact.
  • Communication and Influence: Excellent written and verbal communication skills. The ability to translate technical concepts for non-technical audiences and secure buy-in at the executive level.
  • Problem-solving: Analytical mindset with demonstrated adeptness in solving complex security challenges.
  • Adaptability: Ability to thrive in a dynamic, fast-paced environment where technologies and threat landscapes rapidly evolve.

Education and Experience

  • Bachelor's degree in Computer Science, Information Security, or a related field. Advanced technical certifications strongly preferred (CISSP, CCSP, CSSLP, OSCP, or vendor-specific architecture and security certifications).
  • Minimum of 10+ years of progressive experience in cybersecurity, application security engineering, with at least 5+ years in a security architecture leadership role with hands-on experience.

The anticipated base salary for this position is $205,000-$258,000. This role may also qualify for annual incentive and/or comprehensive benefits. The actual base salary offered will depend on a variety of factors, including without limitation, the qualifications of the individual applicant for the position, years of relevant experience, level of education attained, certifications or other professional licenses held, and if applicable, the location of the position.

Sony Pictures Entertainment is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, age, sexual orientation, gender identity, or other protected characteristics.

SPE will consider qualified applicants with arrest or conviction records in accordance with applicable law.

To request an accommodation for purposes of participating in the hiring process, you may contact us at SPE_Accommodation_Assistance@spe.sony.com.

Similar Jobs

Veeam Software - Virtualization Backup Engineer (Italian speaker)

Veeam Software

Poland (Remote)
3 Months ago
Capgemini - Salesforce Commerce Cloud

Capgemini

Bengaluru, Karnataka, India (On-Site)
2 Months ago
Granicus - Strategic Account Manager

Granicus

Seattle, Washington, United States (Remote)
5 Months ago
Scopely - Senior Analytics Engineer

Scopely

Barcelona, Catalonia, Spain (Hybrid)
8 Months ago
Cubic corporation - Associate Systems Support Engineer

Cubic corporation

Salfords, England, United Kingdom (Hybrid)
1 Year ago
caliogo - Senior IT Systems Engineer

caliogo

Lucknow, Uttar Pradesh, India (On-Site)
1 Month ago
Applied materials  - System Engineer

Applied materials

Bengaluru, Karnataka, India (On-Site)
2 Months ago
Apple - Cellular RF Systems Engineer

Apple

Waltham, Massachusetts, United States (On-Site)
3 Months ago
Nahc.io - Software Engineer (Embedded Systems / Firmware)

Nahc.io

Hong Kong (On-Site)
10 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Fieldguide - Principal Program Manager

Fieldguide

San Francisco, California, United States (Remote)
1 Month ago
Lead Venture - SEO Migration Specialist

Lead Venture

Mexico (Remote)
5 Months ago
entrata - Regional Vice President of Sales | IC Role | Northeast Region

entrata

United States (Remote)
10 Months ago
Dialpad AI - Lead, Advanced Support Partner Services

Dialpad AI

Kitchener, Ontario, Canada (On-Site)
3 Weeks ago
appier - Machine Learning Scientist (Intern)

appier

Taipei City, Taiwan (Hybrid)
2 Months ago
reversing labs  - Vice President, Product Marketing

reversing labs

United States (Remote)
2 Months ago
Survay Monkey - New Business Account Executive

Survay Monkey

Dublin, County Dublin, Ireland (Hybrid)
2 Months ago
C3 IoT - Senior Human Resources Manager

C3 IoT

Redwood City, California, United States (On-Site)
1 Month ago
attentive - Senior Sales Development Manager

attentive

United States (Remote)
1 Month ago
Tencent - Tencent Cloud - Senior Cloud Architect (R&D & Solution Design)

Tencent

Singapore (On-Site)
9 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Culver City, California, United States

Meow Wolf - Show Audio Designer

Meow Wolf

Los Angeles, California, United States (On-Site)
1 Year ago
Open Systems Technologies - Installation Technician

Open Systems Technologies

Houston, Texas, United States (On-Site)
3 Weeks ago
Gearbox - UI Technical Artist

Gearbox

Frisco, Texas, United States (On-Site)
1 Year ago
PHINIA - Manufacturing Systems Test Engineering Intern

PHINIA

Auburn Hills, Michigan, United States (Hybrid)
3 Weeks ago
pentair - Business Analyst

pentair

Golden Valley, Minnesota, United States (On-Site)
1 Month ago
GOAT Group - Manager, CRM

GOAT Group

United States (Remote)
3 Months ago
bytedance - Student Researcher (Doubao (Seed) - Foundation Model - Vision and Language) - 2025 Start (PhD)

bytedance

Seattle, Washington, United States (On-Site)
9 Months ago
Kavalirio - Case Management Assistant

Kavalirio

Sacramento, California, United States (Remote)
1 Month ago
CookUnity - Culinary Operatons Lead

CookUnity

New York, United States (On-Site)
3 Weeks ago
attentive - Manager, Solutions Marketing

attentive

United States (Remote)
1 Month ago

Get notifed when new similar jobs are uploaded

System Design Jobs

Ion - System Engineer Control Room, Italy

Ion

Parma, Emilia-Romagna, Italy (Hybrid)
10 Months ago
bytedance - Senior Machine Learning Ops Engineer, ML System - Foundation Model

bytedance

San Jose, California, United States (On-Site)
6 Months ago
bytedance - Optical System Engineer

bytedance

San Jose, California, United States (On-Site)
4 Months ago
ARHS - Systems Engineer

ARHS

Valletta, Malta (On-Site)
9 Months ago
Alten Technology - Systems Engineer (Robotics)

Alten Technology

Boston, Massachusetts, United States (Hybrid)
1 Month ago
Apple - AI/ML Wireless Systems Engineer

Apple

Sunnyvale, California, United States (On-Site)
2 Months ago
ARHS - Senior System Engineer

ARHS

Leuven, Flanders, Belgium (On-Site)
10 Months ago
Valeo - LiDAR System Design Intern

Valeo

Tokyo, Japan (On-Site)
1 Month ago
Apple - Software Engineer - System Scheduling Performance

Apple

San Diego, California, United States (On-Site)
2 Months ago
bytedance - Software Engineer in Machine Learning Systems

bytedance

San Jose, California, United States (On-Site)
9 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Hi, we’re Sony Pictures EntertainmentWe are in the business of creativity … making some of the most beloved film and television of all time for every platform in the world. As the most creative and proudly independent studio, our future is boundless.Sony Pictures Entertainment is a division of Sony Corporation, a creative entertainment company built on a foundation of technology. Along with our sister companies, we make movies, television, music and games that engage billions of people, connecting creators and audiences around the globe.We are looking for innovators to join us as we forge the future of entertainment!

Culver City, California, United States (Hybrid)

Culver City, California, United States (On-Site)

Culver City, California, United States (On-Site)

Culver City, California, United States (On-Site)

Los Angeles, California, United States (Hybrid)

Los Angeles, California, United States (Hybrid)

Culver City, California, United States (On-Site)

Los Angeles, California, United States (Hybrid)

Bogota, Colombia (Hybrid)

Los Angeles, California, United States (Hybrid)

View All Jobs

Get notified when new jobs are added by Sony Pictures Entertainment

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug