Prepin
Log in
BambooHR

data opportunity

Information Security Architect

The Information Security Architect will lead hands-on security architecture design across BambooHR’s cloud environment and corporate information systems. This role involves leading architecture reviews, defining security patterns, and guiding teams through security tradeoffs.

Utah, United StateshybridFULL_TIME

Posted

About the role

What will you do at BambooHR?

Please Note: This is a Utah-based hybrid position which will require some

regular in-office days each week. Additionally, employment with BambooHR is

contingent on passing both a background and credit check.

AI at BambooHR

At BambooHR, we’re all about setting people free to do great work, and we

believe AI is a powerful partner in that mission. We’re leaning into intelligent

tools to streamline our workflows, giving us more time for high-impact

innovation. We look for curious, forward-thinking people who are ready to

explore how AI can elevate their work and help us reimagine the future of HR.

Essential Job Duties

The Information Security Architect will lead hands-on security architecture

design across BambooHR’s cloud environment and corporate information systems,

partnering with engineering, IT, and security teams to embed security into

platforms, processes, and day-to-day technology decisions. A typical day

includes leading architecture and design reviews, defining secure cloud and

corporate security patterns, advising on identity and data protection

strategies, and guiding teams through complex security tradeoffs to enable

secure, scalable delivery.

The Information Security Architect will own outcomes across cloud and corporate

security architecture, delivering scalable designs, standards, and measurable

risk reduction. This role operates with a high degree of autonomy and influence,

partnering across engineering, IT, product, and security to embed security into

how BambooHR designs, builds, and operates.

You will:

* Lead the design and evolution of security architecture across cloud

infrastructure, SaaS platforms, and corporate information systems, ensuring

solutions are secure-by-design, scalable, and operationally sustainable.

* Own and maintain security architecture standards, reference architectures,

and secure design patterns spanning identity and access management, data

protection, logging/telemetry, endpoint security, and third-party

integrations.

* Conduct and lead security architecture reviews for new systems, material

changes, vendor tools, and integrations; document decisions, required control

outcomes, and implementation guidance that teams can execute.

* Drive threat modeling and architectural risk assessments for strategic

initiatives; translate findings into prioritized remediation plans and

architecture improvements that balance risk reduction with usability and

delivery velocity.

* Define and validate cloud security control expectations, including IAM,

network segmentation, encryption and key management, secrets management,

centralized logging, and least-privilege access models; validate adoption

through partnership with engineering and IT.

* Influence detection and response architecture in collaboration with SecOps to

improve visibility, telemetry quality, and response effectiveness; support

investigations by providing architectural context and remediation guidance as

needed.

* Partner with Security Engineering, Application Security, Security Operations,

and GRC to ensure security controls are consistently designed and implemented

across prevention, detection, response, and governance/audit domains (e.g.,

SOC 2, ISO 27001, and customer requirements).

* Create clear and accessible architecture documentation (standards, diagrams,

patterns, decision records) and communicate security tradeoffs effectively to

both technical and non-technical stakeholders.

* Mentor and guide security practitioners and cross-functional partners by

improving shared understanding, raising architectural maturity, and promoting

consistent adoption of security patterns and secure-by-default approaches.

* Demonstrate an AI-forward mindset and proficiency by actively using AI tools

to improve productivity, quality, and decision-making in security

architecture and engineering workflows, and be able to speak to real-world

examples of using AI to conduct work and to design and implement practical,

secure solutions (e.g., accelerating architecture documentation, threat

modeling, control validation, detection logic development, policy/standard

drafting, or automating analysis).

What You Need to Get the Job Done

* Bachelor’s degree in Information Security, Computer Science, Information

Systems, or a related field, or equivalent professional experience.

* 6–7+ years of hands-on experience in information security, security

engineering, cloud security, or closely related roles.

* Demonstrated experience leading security architecture or design decisions for

production cloud and/or corporate environments.

* Strong working knowledge of at least one major cloud platform (AWS, Azure, or

GCP), including IAM, networking, encryption, key management, and logging.

* Practical experience across corporate security domains such as identity and

access management, endpoint security, SaaS governance, and data protection.

* Ability to independently assess risk, define security control objectives, and

translate them into clear architectural guidance and implementation

requirements.

* Ability to drive architectural consistency across diverse cloud and corporate

systems with varying ownership and constraints.

* Experience balancing security risk reduction with delivery speed, usability,

and operational realities.

* Excellent written and verbal communication skills, with the ability to

influence and align technical and non-technical stakeholders.

* Strong organizational and prioritization skills; ability to manage multiple

initiatives in a fast-paced environment.

* Experience in a SaaS or cloud-first organization.

What Will Make Us REALLY Love You

* Experience supporting SOC 2, ISO 27001, and customer security assessments.

* Familiarity with infrastructure-as-code, CI/CD pipelines, and cloud-native

architectures.

* Experience with SSO/IdP platforms, MDM/endpoint management tools, and modern

SaaS security controls.

* Security certifications such as AWS Security Specialty, CCSK, SSCP, CISSP

(Associate or full), or equivalent.

What You'll Love About Us

* A Great Company Culture

[https://www.greatplacetowork.com/certified-company/5003334] that has been

recognized by multiple organizations like Inc

[https://www.inc.com/profile/bamboohr], and Salt Lake Tribune

[https://topworkplaces.com/company/bamboohr-llc/saltlake/]

* Comprehensive health, life, and disability insurance

* Generous leave policies that include 4 weeks of vacation, 12 company

holidays, parental leave, and volunteer time off so you can enjoy quality of

life

* 401k plans with up to 6% company match

* $2000 Paid-Paid Vacation bonus

* EAP through Headspace

* Check out all our benefits that benefit you

[https://www.bamboohr.com/careers/benefits]

About Us

At BambooHR, we're building something different: we're building a people

intelligence platform that transforms HR and sets people free to do great work!

We're a proven market leader driving innovation while building lasting success

through thoughtful, sustainable growth. Here, you'll find a place that champions

growth: both professional and personal, both individual and collective.

We invest in potential, giving you the space to stretch your capabilities and

turn good ideas into reality while providing the safety net of a supportive,

values-driven culture. Our approach combines meaningful work with meaningful

lives, offering competitive benefits, professional development, and the

flexibility to thrive both in and outside the office.

What sets us apart isn't just what we do, but how we do it: with openness,

integrity, and a shared commitment to doing the right thing. Join us in creating

HR software that makes work better for everyone, while we make work better for

you.

Review

[https://www.greatplacetowork.com/images/profiles/5003334/companyBadge.png]http://www.greatplacetowork.com/certified-company/5003334

BambooHR is committed to the full inclusion of all qualified individuals and

will ensure that persons with disabilities are provided reasonable

accommodations throughout the hiring process. If you would like to request

accommodations, please let your recruiter know.

BambooHR is An Equal Opportunity Employer--M/F/D/V

Because our team members are trusted to handle sensitive information, we require

all candidates that receive and accept employment offers to complete a

background check before being hired.

For information on California Privacy Policy, click here

[https://www.bamboohr.com/legal/california-privacy-notice].

Our process utilizes AI as an assistant to efficiently process and analyze

candidate data. Recruiters and hiring managers maintain full oversight and

accountability, ensuring that all final selection and rejection decisions are

human-made and based solely on objective job qualifications. Please see our

General Privacy Notice [https://www.bamboohr.com/legal/privacy-policy] and

California Privacy Notice

[https://www.bamboohr.com/legal/california-privacy-notice] for more details.

See our AI Guidelines for Candidates

[https://www.bamboohr.com/about-bamboohr/careers/ai-guidelines-for-candidates]

for details on how BambooHR uses AI in recruiting, how we expect candidates to

use AI, and what is not allowed.

Which skills does this role require?

Information SecuritySecurity ArchitectureCloud SecurityIdentity ManagementData ProtectionRisk AssessmentThreat ModelingSecurity StandardsDocumentationCommunicationMentoringAI ToolsSaaS GovernanceEndpoint SecurityNetworkingEncryptionKey ManagementLoggingTelemetrySecurity OperationsGovernanceAuditSOC 2ISO 27001Infrastructure-as-CodeCI/CD PipelinesSSOIdP PlatformsMDMSecurity CertificationsAWSGCPAzure

Make your next move

Build a shortlist and prepare

Identify the requirements you can demonstrate, then choose examples from your work to discuss with the hiring team.

Review the responsibilities and requirements before adding an opening to your shortlist.

Role information can change. Confirm current details on the original application page.

Product

AI Candidate AgentCompaniesBrowse JobsDeep ProfileSkill AssessmentOpportunity Matching
Prepin.ai

© 2026 Prepin | All rights reserved.