Principal Applications Security Architect
Job Description
<div class="content-intro"><p>ZoomInfo is where careers accelerate. We move fast, think boldly, and empower you to do the best work of your life. You’ll be surrounded by teammates who care deeply, challenge each other, and celebrate wins. With tools that amplify your impact and a culture that backs your ambition, you won’t just contribute. You’ll make things happen–fast.</p></div><h4><strong>Team:</strong> Information Security</h4> <p><strong>Summary:</strong></p> <p>ZoomInfo is seeking a seasoned, business-minded Enterprise Security Architect to define and advance the security architecture that protects our corporate systems, data, and applications at scale.</p> <p>This principal-level role will serve as a senior technical authority across the company, translating business strategy, customer commitments, regulatory requirements, and evolving threats into pragmatic, scalable security architecture. The Enterprise Security Architect will partner closely with IT, Business Systems, Legal, Privacy, Engineering, and Security teams to embed security into enterprise technology decisions from strategy through implementation.</p> <p>The ideal candidate combines deep hands-on security expertise with enterprise architecture leadership, strong executive communication skills, and the ability to influence technical direction across a complex, cloud-first environment.</p> <h4><strong>What You Will Do</strong></h4> <ul> <li><strong>Architectural Review:</strong> Conduct in-depth security reviews of new and existing systems, analyzing everything from network topology and data flows to authentication methods and cloud service configurations.</li> <li><strong>Threat Modeling:</strong> Lead and perform threat modeling exercise to proactively identify and mitigate design-level security flaws before they reach production.</li> <li><strong>Pattern & Standard Development:</strong> Design, document, and build reusable security patterns, reference architectures, and technical standards for critical areas like cloud infrastructure, API security, and data protection.</li> <li><strong>Technical Consultation:</strong> Serve as a deep subject matter expert for engineering and IT teams, providing clear, actionable guidance on how to implement security controls and build secure solutions.</li> <li><strong>Technology Evaluation:</strong> Research, prototype, and evaluate emerging security technologies and tools to determine their technical merit and potential value to the company.</li> </ul> <h4><strong>What You Will Bring</strong></h4> <ul> <li><strong>Experience:</strong> 12+ years of experience in information security, with a strong background in security engineering or architecture in a cloud-native environment (AWS, GCP).</li> <li><strong>Technical Expertise:</strong> Deep, hands-on knowledge across multiple security domains, including endpoint, network, application, and identity security.</li> <li><strong>Architectural Skill:</strong> The ability to analyze complex, distributed systems, identify risks, and design effective, scalable security controls.</li> <li><strong>Collaboration:</strong> A proven ability to work effectively with other engineers and technical teams. You can engage in constructive technical debate, build consensus, and partner with others to solve problems.</li> <li><strong>Clear Communication:</strong> The ability to document and explain complex technical concepts clearly and concisely to both technical and non-technical audiences.</li> <li><strong>Problem-Solving:</strong> A pragmatic and analytical approac