Senior Network Security Architect
Job Summary
Who We Are
Applied Materials is the global leader in materials science and engineering solutions that are at the foundation of virtually every new semiconductor chip and advanced display in the world. The equipment that we create and service is essential to advancing AI and accelerating the commercialization of next-generation semiconductor chips. Join us and push the boundaries of materials science and engineering in a company at the foundation of the electronics industry. The work we do together advances the worlds technology.
What We Offer
Location:
TorontoCANYoull benefit from a supportive work culture that encourages you to learn develop and grow your career as you take on challenges and drive innovative solutions for our customers. We empower our team to push the boundaries of what is possiblewhile learning every day in a supportive leading global company. Visit our Careers website to learn more.
At Applied Materials we care about the health and wellbeing of our employees. Were committed to providing programs and support that encourage personal and professional growth and care for you at work at home or wherever you may go. Learn more about our benefits.
Applied Materials is seeking a highly experienced Senior / Principal Network Security Architect to lead the strategy architecture and governance of the companys global network security infrastructure. This role is responsible for defining the future-state architecture and technology roadmap across enterprise cloud manufacturing (OT) data center and remote access environments.
The ideal candidate is a recognized technical leader with deep expertise in Zero Trust SSE/SASE Network Security Cloud Security SD-WAN OT Security DDoS Protection Network Detection & Response (NDR) and Security Automation. This individual will partner with engineering operations cybersecurity cloud manufacturing and business leadership teams to design and implement secure scalable and resilient solutions that support Applied Materials global operations and digital transformation initiatives.
Key Responsibilities
The Principal Network Security Architect is accountable for defining and governing Applied Materials global network security strategy and architecture. This role leads the design and modernization of enterprise cloud and manufacturing security platforms ensuring secure resilient and scalable services that support business growth operational excellence and cybersecurity objectives worldwide
Enterprise Security Architecture & Strategy
Define and maintain the enterprise network security architecture vision standards and multi-year roadmap.
Develop reference architectures design standards and technical governance processes.
Lead strategic initiatives involving Zero Trust SASE/SSE cloud security SD-WAN segmentation and network modernization.
Evaluate emerging technologies and recommend adoption strategies aligned with business and cybersecurity objectives.
Act as the technical authority for network security architecture decisions across the enterprise.
Network Security Architecture
Architect and govern global network security solutions including:
Next-Generation Firewalls (Palo Alto Fortinet Check Point)
Secure Service Edge (SSE/SASE)
Zero Trust Network Access (ZTNA)
Secure Web Gateway (SWG)
Data Loss Prevention (DLP)
DNS Security
Web Application Firewall (WAF)
DDoS Protection
Network Detection & Response (NDR)
Establish standards for segmentation micro-segmentation and policy enforcement.
Ensure consistent security controls across on-premises cloud and SaaS environments.
Cloud & Hybrid Security Architecture
Design secure connectivity patterns for Azure AWS and hybrid cloud environments.
Architect cloud-native security controls and connectivity frameworks.
Govern ExpressRoute Direct Connect cloud firewalls cloud networking and secure interconnectivity.
Develop secure access models for applications services partners and third-party integrations.
Manufacturing & OT Security
Define and maintain secure network architectures for manufacturing facilities laboratories and operational technology environments.
Drive IT/OT segmentation aligned with ISA-95 Purdue Model NIST CSF and IEC 62443 standards.
Design secure remote access monitoring and management solutions for manufacturing operations.
Partner with factory engineering and cybersecurity teams to identify and mitigate operational risks.
Design Governance & Technical Leadership
Lead architecture reviews and approve High-Level Designs (HLDs) and Low-Level Designs (LLDs).
Chair technical design reviews and architecture governance boards.
Mentor engineers and architects on network security best practices and emerging technologies.
Establish engineering standards and drive design consistency across regions and business units.
Security Risk Compliance & Incident Response
Ensure architecture compliance with:
NIST Cybersecurity Framework
NIST 800-53
CIS Critical Security Controls
ISO 27001
IEC 62443
PCI DSS
Conduct architecture risk assessments and threat modeling exercises.
Support major cyber incident investigations and post-incident architecture improvements.
Partner with Security Operations SOC ISRM and Audit teams to continuously strengthen security posture.
Automation & Innovation
Drive adoption of Infrastructure-as-Code (IaC) APIs and security automation.
Lead AI-driven operational efficiency initiatives within network and security domains.
Develop architectural frameworks for telemetry observability and predictive analytics.
Promote standardization and simplification to reduce operational complexity and risk.
Vendor & Financial Management
Develop business cases TCO analyses and strategic investment recommendations.
Lead vendor evaluations proof-of-concepts and technology selection initiatives.
Manage strategic vendor relationships and influence future product capabilities.
Support licensing contract renewals and budget planning activities.
Leadership Expectations
Recognized subject matter expert and technical leader.
Influences executive business and technical stakeholders across organizational boundaries.
Drives enterprise-wide architectural decisions and technology strategy.
Balances security operational excellence business agility and cost optimization.
Mentors senior engineers and architects while fostering innovation and engineering excellence.
Minimum Qualifications
Bachelors degree in Computer Science Information Technology Cybersecurity Engineering or related discipline.
12 years of experience in enterprise networking and security.
5 years of experience in architecture principal engineering or technical leadership roles.
Proven experience designing and implementing large-scale enterprise security architectures.
Strong knowledge of:
Zero Trust Architecture
Network Security and Firewalls
SSE/SASE Platforms
SD-WAN
Routing & Switching
Cloud Security
DNS PKI and Identity Integration
Network Detection & Response (NDR)
Preferred Qualifications
Global enterprise and manufacturing industry experience.
Experience supporting semiconductor industrial or operational technology environments.
Expertise with:
Palo Alto Networks
Zscaler
Akamai
ExtraHop/Corelight/Vectra
ClearPass/Forescout
Azure and AWS Networking
Experience leading globally distributed engineering teams.
Preferred Certifications
CISSP
CCIE Enterprise Infrastructure/Security
CCNP Enterprise
Palo Alto PCNSE
Azure Security Engineer Associate
AWS Security Specialty
CCSP
Zscaler Certified Architect
Additional Information
Time Type:
Full timeEmployee Type:
Assignee / RegularTravel:
Yes 10% of the TimeRelocation Eligible:
NoApplied Materials is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race color national origin citizenship ancestry religion creed sex sexual orientation gender identity age disability veteran or military status or any other basis prohibited by law.
Required Experience:
Senior IC
About Company
Applied Materials, Inc. is the global leader in materials engineering solutions for the semiconductor, flat panel display and solar photovoltaic (PV) industries.