Thorlabs

photonics

CloudSecurityArchitect

$117–152k Newton, New Jersey, United States FULL TIME
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Senior candidates.

The Brief

“Cloud Security Architect at Thorlabs. Skills: Microsoft Azure security architecture, M365 security architecture, Cloud security architecture, Identity and Access Management (IAM), SOC management. Designing and optimizing secure architectures for cloud environments. Ensuring effective deployment of cloud infrastructure and security solutions”

What You'll Achieve.

Ensure the security of operations; Drive the adoption of best practices in SOC, IAM, and cloud security architecture; Enhancing the effectiveness of the security monitoring process in accordance with SOC standards; Ensure alignment with security operations, IT infrastructure, and operations best practices; Ensure alignment with best practices for IAM tools and solutions; Ensure the environment remains secure and up-to-date with emerging threats and requirements

Industry & Context.

photonics
Problems you'll solve

problem-solving and analytical skills, with the ability to anticipate security risks in cloud environments

Eligibility Requirements

Undertake duties at other Thorlabs locations from time to time, Ability to lift files, open filing cabinets and bend or stand, as necessary

What They're Looking For.

Must Have

Minimum 7 years of experience in Enterprise IT, Minimum of 4 years in cloud security architecture or similar roles, Expertise in designing and implementing security architecture in cloud environments, particularly with Microsoft Azure and M365, Experience in managing identity and access management (IAM) in cloud environments, including RBAC, PAM, and SoD frameworks, Experience with cloud compliance requirements and regulatory frameworks like GDPR, HIPAA, CCPA, and NIST, Bachelor’s degree in computer science, Engineering, related field, or equivalent work experience, Expertise in Microsoft Azure and M365 security architecture, Expertise in cloud-native security tools such as Microsoft Sentinel, Defender for Endpoint, Defender for Identity, and Intune, Experience in security engineering disciplines such as SIEM (Microsoft Sentinel), IAM, and SOC management, Deep understanding of identity management, authentication, and authorization protocols (OAuth, MFA, etc.), Proficient in automating security processes and ensuring compliance with cloud security standards, problem-solving and analytical skills, with the ability to anticipate security risks in cloud environments, knowledge of security concepts, including system hardening, vulnerability management, and incident response, Excellent communication and leadership skills with the ability to influence across teams, Familiarity with SOC operations, especially managing or overseeing outsourced SOC vendors

Nice to Have

Certifications such as CISSP, CISM, CEH or relevant Microsoft cloud certifications (Cybersecurity Architect and Azure Solutions Architect etc. )

What You'll Do.

Designing and optimizing secure architectures for cloud environments

Ensuring effective deployment of cloud infrastructure and security solutions

Guiding security architecture and identity and access management (IAM) practices

Overseeing the outsourced Security Operations Center (SOC) vendor

Ensuring the security of operations

Driving the adoption of best practices in SOC

and cloud security architecture

Design secure cloud architectures that align with business requirements and mitigate security risks

Review and provide guidance on the implementation of cloud security technologies

Ensure baseline security measures are in place

Collaborate with IT teams to implement automated security controls and maintain secure cloud configurations

Collaborate with Security Engineering and IT Infrastructure and Operations teams to optimize and enhance a comprehensive suite of IAM tools and solutions

Lead the IAM architecture function

Establish IAM policies and procedures

Define and recommend the operating model for IAM

Design the lifecycle of identities

Oversee the outsourced SOC vendor

Monitor vendor performance and ensure timely response to security incidents

Collaborate with the SOC to continuously improve security monitoring

and response protocols

Partner closely with Security Engineering

IT Infrastructure and Operations

Serve as the subject matter expert in cloud security

and divestiture of cloud security solutions

Lead and nurture creativity in secure service delivery for the cloud

How You'll Work.

Team & Collaboration

Collaborates across teams to guide security architecture and identity and access management (IAM) practices; Collaborate with IT teams to implement automated security controls and maintain secure cloud configurations across infrastructure; Collaborate with Security Engineering and IT Infrastructure and Operations teams to optimize and enhance a comprehensive suite of IAM tools and solutions; Partner closely with Security Engineering, IT Infrastructure and Operations, DevOps, and GRC (Governance, Risk, and Compliance) teams to ensure security is embedded into all aspects of infrastructure and application development; Providing guidance and assurance to stakeholders

Communication Scope

Excellent communication and leadership skills with the ability to influence across teams

Full Job Description

At Thorlabs, we design and manufacture components, instruments, and systems that transform the world by identifying, enabling, and accelerating key photonics (i.e., light-based) technologies. Backed by a dedicated workforce of more than 3,000 employees worldwide, Thorlabs contributes to cutting-edge research and real-world innovation. Whether you're early in your career or bringing years of experience, you’ll find opportunities to grow, take ownership, and make meaningful contributions from day one. We know every employee brings unique talents and perspectives that fuel our success, and we seek driven individuals who are excited to make an impact in a fun, fast-moving culture. **Purpose of the Position** The Cloud Security Architect is responsible for designing and optimizing secure architectures for cloud environments, with a primary focus on Microsoft Azure, M365, and related security technologies. This role ensures the effective deployment of cloud infrastructure and security solutions to address evolving threats. The architect collaborates across teams to guide security architecture and identity and access management (IAM) practices, while also overseeing the outsourced Security Operations Center (SOC) vendor. By supporting the organization’s cloudfirst strategy, the Cloud Security Architect ensures the security of operations and drives the adoption of best practices in SOC, IAM, and cloud security architecture. Although the location of the position is in Newton, NJ, from time to time it may be required to undertake duties at other Thorlabs locations. **Essential Job Functions include the following,** but are not limited to: **Cloud Security Architecture & Operations:** * Design secure cloud architectures that align with business requirements and mitigate security risks, primarily within the Microsoft technology stack (Azure, M365, Microsoft Sentinel, Defender suite, Intune, and Entra). * Review and provide guidance on the implementation of cloud security techno

Free ATS check

Applying for this Cloud Security Architect role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

ANONYMOUS · UNFILTERED

What do employees actually say about Thorlabs?

Real rants from real employees. Read before you apply.

Read Company Rants →