Carpenter Technology is seeking an experienced Security Architect to lead the security strategy and implementation for our next-generation cloud data & AI platforms. This full-time leadership role holds long-term responsibility for securing a unified analytics environment (built primarily on Microsoft Azure and related services) that will host highly sensitive and regulated data (including ITAR-controlled information). The role requires a visionary leader who can define multi-year security roadmaps and promote a security-first culture, as well as a hands-on expert capable of designing and deploying robust security controls. Operating with influence across both the enterprise cybersecurity team and the data/AI platform team, the Lead Architect will ensure security is embedded by design without stifling innovation, enabling Carpenter to deliver data-driven and AI solutions safely and in compliance with all requirements.
Key Responsibilities of Position:
KNOW-HOW
Know-How includes every kind of relevant knowledge, skill, and experience, however acquired, needed for acceptable performance in a job or role. Know-How has three dimensions: Practical/Technical Knowledge, Planning, Organizing and Managerial Knowledge; and Communicating & Influencing Skills. In the space below, please list the minimum requirements within each of the categories.
Education and/or Training:
Relevant Work Experience:
Other Qualifications/Skills:
Cloud Platforms & Tools: Strong expertise in cloud security technologies and best practices. Hands-on experience with public cloud services (e.g., Azure, AWS, or GCP), with deep knowledge of securing cloud data services (data lakes, warehouses, streaming, etc.). Familiarity with modern analytics platforms (for instance, Azure Synapse, Microsoft Fabric, Databricks, or similar) and their security models is highly desirable.
Technical Proficiency: Demonstrated skills in key security domains:
Identity & Access Management: roles, SSO/MFA, identity governance.
Network Security: VPC/VNet design, firewalls, VPN/ExpressRoute, zero-trust network access.
Cryptography: data encryption strategies, key management systems (KMS), PKI.
Data Protection & DLP: implementing classification, DLP tools/policies, data masking.
Monitoring & DevSecOps: cloud logging/telemetry, SIEM integration, incident management, and automating security controls via code (e.g., Terraform, Azure Policy, CI/CD security checks).
Regulated Data & Compliance: Experience securing sensitive and regulated data in a cloud environment. Knowledge of regulatory frameworks (such as ITAR, HIPAA, GDPR, or similar) and experience implementing controls to comply with them. Capable of translating regulatory and risk requirements into actionable technical solutions (e.g., enforcing geo-restrictions, user screening, encryption, and auditing to meet compliance).
This Lead Security Architect role is a unique opportunity to shape the security of a flagship data & AI initiative from the ground up. The successful candidate will combine strategic foresight with hands-on expertise to ensure Carpenter's data-driven future is built on a foundation of security, resilience, and trust.
Carpenter Technology Company offers a competitive salary and a comprehensive benefits package including life, medical, dental, vision, flexible spending accounts, disability coverage, 401k with company contributions as well as many other options to employees.
Carpenter Technology Corporation's policy is to fully and effectively maintain a program of equal employment opportunity and nondiscrimination for all employees, to employ affirmative action for all protected classes, and to recruit and develop the best qualified persons available regardless of age, race, color, religion, sex, gender identity, sexual orientation, marital status, national origin, political affiliation or any other characteristic protected by law. The Company also will recruit, develop and provide opportunities for qualified persons with disabilities and protected veterans.