Goldman Sachs
Posted 1d ago

Engineering - Cloud Security - Security Architecture & Platform Engineering - Vice President - Seattle

Goldman Sachs
Seattle, Washington, United States
$150k-$250k/yrOnsiteFull Time
Responsibilities
  • designing architectures
  • leading deployments
  • mentoring engineers
Requirements
  • Requires 6+ years relevant experience
  • 3+ years AWS familiarity
  • Bachelor's degree in computer science or equivalent
  • Cloud security architecture, IaC
  • DevOps
  • Programming
  • Databases
  • Authentication
  • Compliance, and leadership expertise
Technical tools mentioned
AWSNISTCDKTerraformAWS CloudFormationSaltStackSplunkDatadogFluentDELKJavaPythonJavaScriptTypeScriptNodeOAuth 2.0OIDCSAMLmTLSSOC 2ISO 27001

Job description

What We Do

At Goldman Sachs, our Engineers don’t just make things – we make things possible.  Change the world by connecting people and capital with ideas.  Solve the most challenging and pressing engineering problems for our clients.  Join our engineering teams that build massively scalable software and systems, architect low latency infrastructure solutions, proactively guard against cyber threats, and leverage machine learning alongside financial engineering to continuously turn data into action.  Create new businesses, transform finance, and explore a world of opportunity at the speed of markets. Goldman Sachs Engineers are innovators and problem-solvers, building solutions in Artificial Intelligence, risk management, big data, mobile and more.

 

Cloud Platform

As part of Core Engineering at Goldman Sachs, the Cloud Platform team is responsible for enabling the use of public cloud services across the firm. You will be working as part of multi-disciplinary team responsible for researching, architecting and building a cutting-edge platform that enable Goldman Sachs teams to deploy and manage services in public cloud safely and securely. We are at an early stage of modernizing our services around cloud native principles, and you will be directly contributing to platform that programmatically enforces safety, security and compliance of services and enables engineers to innovate faster.

The organization is seeking highly collaborative, creative, and intellectually curious engineers who are passionate about developing and implementing cutting-edge cloud computing solutions. The ideal candidate will thrive in a DevOps culture and contribute to customer-centric product development. They will work closely with cross-functional teams, and will be creative collaborators who evolve, adapt to change and thrive in a fast-paced global environment.

Key Responsibilities:

Cloud Security Architecture & Platform Leadership:

  • Design, implement, and maintain secure cloud architecture aligned with NIST frameworks and industry-recognized cloud security standards, ensuring compliance, resilience, and least-privilege access across cloud environments
  • Lead deployment and integration of cloud security posture management platforms with enterprise services including risk management systems, monitoring infrastructure, security information and event management (SIEM), and compliance frameworks
  • Architect policy-as-code frameworks for infrastructure security controls, enabling shift-left security and automated compliance validation across multi-cloud environments
  • Define and implement secure-by-default infrastructure patterns for cloud account provisioning and service onboarding

Technical Leadership & Expertise:

  • Demonstrates thought leadership: Guides and upskills other engineers and clients in cloud best practices; demonstrates expertise with automation and infrastructure as code (IaC)
  • Deep understanding of AWS services and how to leverage them
  • Lead strategic initiatives for cloud-native authentication and authorization, including certificate-based service identity frameworks and fine-grained access control systems
  • Partner with middleware and platform engineering teams on secure messaging infrastructure migration from on-premise to cloud-native solutions
  • Provide regional timezone coverage for cloud access and security platform operational issues, participating in 24/7 follow-the-sun support model

DevOps & Platform Engineering:

  • Past enterprise level experience in DevOps, Software, Infrastructure or Site Reliability Engineering
  • Proficient in infrastructure as code practices using technologies such as CDK, Terraform, AWS CloudFormation, and/or SaltStack
  • Experience building CI/CD pipelines from scratch with integrated security gates and automated policy enforcement
  • Hands-on experience developing and improving all phases of the software development/delivery lifecycle
  • Strong grasp of container technology and container orchestration 

Observability & Operational Excellence:

  • Proficient in one or more enterprise scale observability tools such as Splunk, Datadog, FluentD, ELK
  • Experience maintaining and improving the reliability of applications and infrastructure
  • Implement SLO/SLI frameworks, monitoring strategies, and automated remediation workflows
  • Lead root cause analysis for security and access control incidents, implementing preventive measures

Collaboration & Documentation:

  • Ability to document solutions, cloud architectural patterns, and best practices to ensure that clients have guidance as needed
  • Proven ability to partner with cloud hyperscale partners to define and troubleshoot cloud architectures and service enablements
  • Establish trusted partnerships with Tech Risk, Compliance, Platform Engineering, and business unit stakeholders
  • Mentor Associate and Analyst-level engineers on platform internals, security best practices, and operational excellence

Software Development & Architecture:

  • Solid understanding of Microservices and APIs
  • Design and implement automated workflows for security finding management, remediation tracking, and compliance reporting
  • Build self-service capabilities for business units to manage security posture and access controls
  • Eager to problem solve and troubleshoot issues that may arise day to day

Basic Qualifications:

  • Minimum 6+ years of relevant professional experience with at least 3+ years of familiarity with AWS services
  • B.S. or higher in Computer Science (or equivalent work experience)
  • Familiarity with disciplines of enterprise software development such as configuration and release management, source code and version controls along with operating considerations such as monitoring
  • Experience in a consultative/advisory role with demonstrated ability to influence executive-level stakeholders
  • Experience performing and/or leading root cause analysis following incidents
  • Experience in Security or Data engineering preferably in an SRE/DevOps environment
  • Practiced in Java, Python, Javascript / Typescript / Node
  • Proficient using relational and NoSQL database technologies
  • Strong written and verbal communication skills with ability to present to senior audiences
  • Ability to establish trusted partnerships with product leads and executive level stakeholders
  • Comfort with agile operating model and DevOps culture
  • Experience with leading large-scale platform migrations and security transformations
  • Experience with authentication protocols (OAuth 2.0, OIDC, SAML, mTLS, certificate-based authentication)
  • Knowledge of regulatory compliance frameworks (SOC 2, ISO 27001, NIST) and financial services security requirements

 

About Goldman Sachs

At Goldman Sachs, we commit our people, capital and ideas to help our clients, shareholders and the communities we serve to grow. Founded in 1869, we are a leading global investment banking, securities and investment management firm. Headquartered in New York, we maintain offices around the world. 

We believe who you are makes you better at what you do. We're committed to fostering and advancing diversity and inclusion in our own workplace and beyond by ensuring every individual within our firm has several opportunities to grow professionally and personally, from our training and development opportunities and firmwide networks to benefits, wellness and personal finance offerings and mindfulness programs. Learn more about our culture, benefits, and people at GS.com/careers.  

We’re committed to finding reasonable accommodation for candidates with special needs or disabilities during our recruiting process. Learn more: https://www.goldmansachs.com/careers/footer/disability-statement.html

Salary Range 

The expected base salary for this Seattle, Washington, United States-based position is $150000-$250000. In addition, you may be eligible for a discretionary bonus if you are an active employee as of fiscal year-end.

Benefits 

Goldman Sachs is committed to providing our people with valuable and competitive benefits and wellness offerings, as it is a core part of providing a strong overall employee experience. A summary of these offerings, which are generally available to active, non-temporary, full-time and part-time US employees who work at least 20 hours per week, can be found here.

We Offer Best-In-Class Benefits

Healthcare & Medical Insurance

We offer a wide range of health and welfare programs that vary depending on office location. These generally include medical, dental, short-term disability, long-term disability, life, accidental death, labor accident and business travel accident insurance.

Holiday & Vacation Policies

We offer competitive vacation policies based on employee level and office location. We promote time off from work to recharge by providing generous vacation entitlements and a minimum of three weeks expected vacation usage each year.

Financial Wellness & Retirement

We assist employees in saving and planning for retirement, offer financial support for higher education, and provide a number of benefits to help employees prepare for the unexpected. We offer live financial education and content on a variety of topics to address the spectrum of employees’ priorities.

Health Services

We offer a medical advocacy service for employees and family members facing critical health situations, and counseling and referral services through the Employee Assistance Program (EAP). We provide Global Medical, Security and Travel Assistance and a Workplace Ergonomics Program. We also offer state-of-the-art on-site health centers in certain offices.

Fitness

To encourage employees to live a healthy and active lifestyle, some of our offices feature on-site fitness centers. For eligible employees we typically reimburse fees paid for a fitness club membership or activity (up to a pre-approved amount).

Child Care & Family Care

We offer on-site child care centers that provide full-time and emergency back-up care, as well as mother and baby rooms and homework rooms. In every office, we provide advice and counseling services, expectant parent resources and transitional programs for parents returning from parental leave. Adoption, surrogacy, egg donation and egg retrieval stipends are also available.

Benefits at Goldman Sachs

Read more about the full suite of class-leading benefits our firm has to offer.

About Goldman Sachs

Global investment banking, securities, and investment management firm.

Similar jobs

Security Architect roles near Seattle, Washington
1w
Save
Mark Applied
Hide
Security Architect - IT/OT Modernization
Chicago or Los Angeles or New York City or San Francisco or Seattle or District of Columbia
$194k-$228k/yr OnsiteFull Time
West Monroe
West Monroe: Business and technology consultancy specializing in digital transformation.
7+ YOERequires 7–10+ years in security architecture or enterprise cybersecurity, IT/OT and ICS security expertise, cybersecurity tooling experience, regulated-industry experience, executive communication, and client travel availability.
SCADA, EMS, ADMS, DERMS, ERP, CRM, IAM, EDR, XDR, SIEM, SOAR, Dragos, DLP, SOC, NERC CIP, IEC 62443, NIST CSF, NIST 800-53, ISO 27001, AI/ML, Splunk, Microsoft Sentinel, Google SecOps, Palo Alto, ServiceNow SecOps, SailPoint, Okta, CrowdStrike
2w
Save
Mark Applied
Hide
Senior Principal Engineer, Security Architect (2026- 346)
San Jose or Seattle
$190k-$240k/yr OnsiteFull Time
Astera Labs
Astera LabsNASDAQ: ALAB: Designs connectivity solutions for cloud and AI infrastructure.
12+ YOEBachelor's degree in CS/CE/EE,12+ years security engineering/architecture across hardware, firmware, software and cloud; expertise in cryptography, identity, network security, Azure/Microsoft enterprise, and threat modeling.
Microsoft Azure, Microsoft Entra, Microsoft M365, Microsoft Active Directory, PCIe, CXL, COSMOS, MITRE ATT&CK, CI/CD, EDA
1mo
Save
Mark Applied
Hide
Senior Security Architect - Hardware
Santa Clara or Austin or Hillsboro or Durham or Redmond
$184k-$357k/yr OnsiteFull Time
NVIDIA
NVIDIANASDAQ: NVDA: Designs GPU-accelerated computing and artificial intelligence hardware.
8+ YOE8+ years relevant experience; BS/MS/PhD (or equivalent) in EE/CS/CE; experience with SoC/GPU ASIC design, HW root of trust, secure boot; programming in C/C++, Verilog, ARM assembly, Python/Perl; strong communication skills.
C/C++, Verilog, ARM assembly, Python, Perl, TPM
1mo
Save
Mark Applied
Hide
Principal Security Architect, Cloud & Infrastructure
Cambridge or Budapest or Chennai or Seattle or Tokyo or Zagreb
OnsiteFull Time
Cambridge Mobile Telematics
Cambridge Mobile Telematics: Providing telematics and behavioral analytics for safer driving and insurance.
7+ YOE7+ years security experience with hands-on application/product security architecture, threat modeling, secure SDLC, API/mobile security, experience influencing engineering teams, and working knowledge of AI/LLM security.
OWASP, LLM
1w
Save
Mark Applied
Hide
AI Security Architect
Seattle, Washington, United States
$168k-$221k/yr HybridFull Time
Qualtrics
Qualtrics: Software for managing customer, employee, and product experiences.
5+ YOERequires 5+ years in AI/ML security or cybersecurity architecture, expertise in adversarial machine learning, model security, threat modeling, secure MLOps, encryption, and secure system design, plus initiative leadership and communication skills.
Model Context Protocol (MCP), MLOps
2w
Save
Mark Applied
Hide
Information Security Architect
Olympia, Washington, United States
$115k-$147k/yr HybridFull Time
Washington State Department of Ecology
Washington State Department of Ecology: Provides environmental regulation and conservation services for Washington state.
15+ YOE15 years IT experience including 6 years networking/security/cloud admin, 5 years info security architecture, 2 years standards support, 2 years leading complex IT projects; ability to ensure compliance with security standards.
TOGAF, Zachman, FEAF, ISO 27001, ISO 27002, COBIT, NIST 800-53, NIST CSF, ITIL, HIPAA, CJIS
2w
Save
Mark Applied
Hide
Senior Product Security Architect
Austin or San Jose or Seattle
$185k-$258k/yr OnsiteFull Time
Expedia Group
Expedia GroupNASDAQ: EXPE: Operates a global platform for travel bookings and services.
10+ YOEBachelor's or equivalent,10+ years product security and development experience, extensive threat modeling and architecture review experience, experience applying Generative AI, cloud and container familiarity, strong communication.
AWS, Kubernetes, Docker, CI/CD
3w
Save
Mark Applied
Hide
Lead Architect – Application Security
San Jose or Seattle
$298k-$446k/yr HybridFull Time
F5
F5NASDAQ: FFIV: Provides application delivery networking and multi-cloud security solutions.
20+ YOE20+ years in software/security architecture with 10+ years in application-layer security (WAAP, DDoS, API security, bot protection); deep protocol, TLS, identity, zero-trust, and cloud-native expertise.
HTTP/2, HTTP/3, WebSockets, gRPC, TLS, OAuth2, OIDC, SAML, Kubernetes, Istio, Envoy, MITRE ATT&CK, OWASP Top 10