DTCC

Principal Azure Security Architect

DTCC$130K — $160K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in cybersecurity
  • Strong background in Microsoft Azure cloud security architecture
  • Experience in agile and DevSecOps environments
  • Bachelor's degree preferred or equivalent experience
  • Deep understanding of application and API security

Responsibilities

  • Embed security architecture into Azure-native and hybrid cloud solutions
  • Define and publish reusable security patterns across Microsoft ecosystems
  • Partner with engineering teams to secure AI and data governance capabilities
  • Mentor on security architecture and secure coding practices
  • Drive consistency with governed security patterns

Benefits

  • Access to cutting-edge security tools and technologies
  • Opportunity to influence key security practices across the organization
  • Collaborative work culture with cross-functional teams
  • Professional development through mentoring and training opportunities
  • Flexibility in work environment with potential for remote work options
Full Job Description
Job Description

The Impact you will have in this role:

Being a member of CISO team and as a Security Architect for the Cybersecurity Architecture Team, you will be an ambassador for the shift in the technology culture at DTCC to a Security-First culture, interacting with stakeholders to create, collaborate, and influence changes in control standards, creating design architecture documentation and evaluating PoC (Proof of Concept) of candidate designs prior to deployment, and furthering the maturity of DTCC's security tooling. This role will work closely with application development and engineering teams across the organization to integrate security into the product lifecycle from design through deployment. The Security Architect is a subject matter expert in defining security requirements, performing security assessments, and providing remediation guidance and advice. The Security Architect should expect to be pulled in at short notice to evaluate a new system, review a proposed application change, or supply guidance on application security/coding best practices.

Your Primary Responsibilities:
  • Embed security architecture into Azure-native and hybrid cloud solutions from design through deployment.
  • Define and publish reusable security patterns across Microsoft ecosystems (Azure, Power Platform, Copilot Studio).
  • Partner with platform and engineering teams to ensure secure adoption of AI, low-code, and data governance capabilities.
  • Mentor engineering teams on security architecture, secure coding, and cloud-native control implementations.
  • Drive consistency through governed, scalable security patterns that reduce the need for per-integration reviews.

**NOTE: The Primary Responsibilities of this role are not limited to the details above. **

Qualifications:
  • 5+ years of cybersecurity work experience
  • Strong background in cloud security architecture, with emphasis on Microsoft Azure.
  • Experience working with enterprise engineering teams in agile and DevSecOps environments.
  • Bachelor's degree preferred (or equivalent experience).

Talents Needed for Success:

Cloud & Platform Security
  • Deep experience with Microsoft Azure security architecture (IAM, networking dependencies, PaaS security, RBAC, Conditional Access).
  • Experience implementing security controls across hybrid and multi-cloud environments.

Microsoft Ecosystem Expertise
  • Microsoft Purview (data governance, data classification, DLP, insider risk concepts).
  • Power Platform security model:
    • Environment strategy, tenant isolation, connector governance
    • Data loss prevention (DLP) policies
  • Copilot Studio / AI platform security considerations:
    • Secure plugin/integration design
    • Prompt and data protection considerations
    • Identity-aware access control patterns

Application & API Security
  • Strong understanding of authentication, authorization (OAuth2/OIDC), and token-based access models.
  • Secure API and integration patterns, including RESTful services and event-driven architectures.
  • Knowledge of OWASP Top 10, SAMM, and application security testing approaches (SAST, DAST, SCA).

DevSecOps & Engineering Practices
  • Experience integrating security into CI/CD pipelines and cloud-native development workflows.
  • Familiarity with infrastructure-as-code security and policy-as-code enforcement.

Architecture & Governance
  • Experience creating reusable security patterns and reference architectures.
  • Ability to define enforceable standards that align with governance bodies (e.g., Architecture Review Boards).
  • Strong ability to translate risk into actionable engineering guidance.

Core Competencies
  • Strong analytical and problem-solving skills.
  • Ability to communicate complex technical concepts to both technical and non-technical stakeholders.
  • Excellent written, presentation, and collaboration skills.

The salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations.

Learn more about Clearance and Settlement by clicking here.

About DTCC

The Depository Trust & Clearing Corporation (DTCC) is a financial services company that provides clearing, settlement, and information services for the global financial industry. DTCC was founded in 1999 and is headquartered in New York City. The company operates through subsidiaries that provide services such as trade matching, risk management, and asset servicing. DTCC is owned by its users, which include broker-dealers, banks, and other financial institutions. The company is committed to reducing risk and increasing efficiency in the financial markets.
Learn more about DTCC
Size
4,000 employees
Industry
Founded
1973

Similar Jobs

More Jobs at DTCC

More Information Technology Jobs

Find similar Principal Azure Security Architect jobs: