Job Information
The Estee Lauder Companies Lead, Security Architect and ZeroTrust Solution Engineer in Long Island City, New York
Description
As the Lead, Cybersecurity Architect and Zero Trust solution Engineer within ECR’s Cybersecurity Architecture, Technology & Solutions team, you will serve as the primary technical lead and subject-matter expert for Illumio rollout , responsible for architecture design, implementation oversight, and operational integration within the broader Zero Trust framework. This role combines architectural leadership with hands-on execution , ensuring segmentation strategy translates into measurable protection outcomes across servers, cloud workloads, endpoints, and OT environments. You will play a key role in leading tasks including, but not limited to, the following.
Lead architecture design and implementation- of Illumio microsegmentation and Zero Trust network controls across data centers, cloud, and OT environments.
Develop enterprise security architecture blueprints- that define segmentation strategy, enforcement zones, and secure communication pathways.
Integrate Illumio with security ecosystems — including CMDB, SIEM, SOAR, and vulnerability management tools.
Provide architectural governance - and design reviews to ensure consistent adoption of Zero Trust principles.
Collaborate with infrastructure, cloud, and application teams- to design secure workload architectures and define security guardrails.
Create architecture standards, reference designs, and policy frameworks - for segmentation and secure access.
Assess emerging threats and technologies -, recommending architectural improvements that enhance visibility and containment.
Support risk assessments, compliance initiatives - and technology evaluations for network and workload segmentation.
Mentor security engineers- and drive knowledge sharing around Illumio architecture, enforcement best practices, and operational handoffs.
Developing and managing productive working relationships with vendors, business partners, and service providers to ensure they meet the needs of the organization.
Partnering with IT teams to ensure disaster recovery policies and procedures are effectively implemented.
You will be responsible for:
Partner with ECR team members, IT stakeholders, and business owners to bring down the risk of technology to the company by identifying and evaluating technology and cyber risks as they are identified
Responsible for reviewing risks through triage and evaluative score risk level and severity with a focus on defining a potential path for remediation
Collaborate to define appropriate solutions to mitigate or remediate the risk by partnering with key stakeholders
Enable balanced risk decisions by providing recommendations, escalating based on severity and risk level to ensure appropriate cyber protection capabilities and resiliency are built into the plans.
Maintain basic project management documentation tracking project tasks, status, ownership, issue closure, and timelines.
Coordinate and support cross-functional project teams to track overall remediation status while coordinating with applicable team and Program Managers.
Prepare and provide reporting and dashboard status(s) on a scheduled basis to include Risk Reduction Governance Meetings.
Develops and delivers risk reports including vulnerabilities and threats
Partners with the appropriate ECR leadership in data reporting to drive remediation of vulnerabilities oversight, ensuring appropriate risk escalation and reporting
Qualifications
Bachelor’s degree in computer science, Information Security, or related field
7+ years of experience in cybersecurity architecture or engineering , with a focus on enterprise or hybrid environments.
3+ years of hands-on experience with Illumio Core and/or Edge , including policy design, PCE/VEN management, and segmentation strategy.
Strong understanding of Zero Trust Architecture (ZTA) and lateral movement defense techniques .
Experience in network and cloud architecture (Azure, AWS, GCP) and containerized environments (Kubernetes, Docker).
Proficient in Excel, PowerPoint and Power BI Reporting. Required Education
You have an undergraduate degree in technology or equivalent professional experience Certifications (Preferred)
Illumio Certified Technical Specialist (ICTS) or equivalent.
CISSP, CCSP, or GIAC (e.g., GDSA, GRID).
Cloud security certifications (Azure/AWS Security Specialty).
NIST Zero Trust or SABSA/TOGAF certification a plus. Technical Requirements
Deep understanding of TCP/IP, routing, firewalls, DNS, and access control .
Experience designing Zero Trust enforcement policies and segmentation models (role-based, app-based, and zone-based).
Hands-on exposure to Illumio integrations (SIEM, SOAR, CMDB, EDR, or vulnerability tools).
Familiarity with identity-centric architectures , Zero Trust Network Access (ZTNA) , and microsegmentation alternatives (Cisco Secure Workload, Guardicore, etc.).
Strong skills in automation and scripting (Python, REST APIs, PowerShell).
Ability to map complex application dependencies for segmentation and risk prioritization.
Problem-Solving and Proactivity: Ability to identify opportunities for improvement and assist in the implementation of solutions. Initiative and autonomy in supporting ECR’s strategic and operational goals.
Cybersecurity Knowledge: Cybersecurity skills include exposure to multiple cybersecurity domains e.g. cybersecurity architecture, engineering, operations, IDAM.
Expertise in cybersecurity attacks and controls and how one works against the other. Experience with industry cybersecurity best practices and domains, with a constant willingness to learn more.
Leadership Experience
A Natural Leader and Results-Driven Lead: You inspire and guide collaborative team with a clear vision, setting goals that align with organizational objectives.
An Effective Communicator and Change Champion: You foster open communication within team, making informed decisions and lead your projects and goals through change with adaptability and resilience.
Performance Management & Development: You have demonstrated success in managing your performance across key projects/programs.
Analytical Thinking: You possess strong analytical skills to assess and address complex challenges.
Attention to Detail: You demonstrate meticulous attention to detail in designing and implementing secure processes.
Collaboration / Relationship Building: You thrive in a highly collaborative environment, building strong partnerships with various stakeholders and cross-functional partners.
Equal Opportunity Employer
It is Company's policy not to discriminate against any employee or applicant for employment on the basis of race, color, creed, religion, national origin, ancestry, citizenship status, age, sex or gender (including pregnancy, childbirth and related medical conditions), gender identity or gender expression (including transgender status), sexual orientation, marital status, military service and veteran status, physical or mental disability, protected medical condition as defined by applicable state or local law, genetic information, or any other characteristic protected by applicable federal, state, or local laws and ordinances. The Company will endeavor to provide a reasonable accommodation consistent with the law to otherwise qualified employees and prospective employees with a disability and to employees and prospective employees with needs related to their religious observance or practices. Should you wish to apply for this position or any other position with the Company and you believe you require assistance to complete an application or participate in an interview, please contact USApplicantAccommodations@Estee.com.