1,384,975open jobs
80,376companies
206,733added this week
Browse all
Salary
$144k – $211k per year
Location
In office (Shakopee, United Kingdom)
Seniority
Architect · 5+ years exp
Employment
Full-Time

Confirmed on the employer's own hiring board on Oct 8, 2026. First seen by Alion on Oct 8, 2026. Entrust scores B on the Alion truth index.

Overview
Company
Impact
Profile match
Entrust is a security technology company headquartered in Shakopee, Minnesota, that provides identity-centric security solutions, including digital identity and credential issuance, public key infrastructure, hardware security modules, payment card issuance systems and secure payment software. The company serves governments, banks and enterprises in more than 150 countries, with major sites in Shakopee, London, Cambridge, Ottawa, Paris, Lisbon, Haarlem and Tokyo. It hires software and firmware engineers, application security architects, field service technicians, production operators, sales development staff and applied science researchers.

Join us at Entrust

At Entrust, we’reshaping the future of identity centric security solutions. From our comprehensive portfolio of solutions to our flexible, global workplace, we empower careers, foster collaboration, and build solutions that help keep the world moving safely.

Get to Know Us

Headquartered in Minnesota, Entrust is an industry leader in identity-centric security solutions, serving over 150 countries with cutting-edge, scalable technologies. But our secret weapon? Our people. It’sthe curiosity, dedication, and innovation that drive our success and help us anticipatethe future.

Entrust is seeking an Information Security Architect to join the Information Security Architecture and Engineering team, reporting to the Director, Information Security Architecture and Engineering. This role partners across Information Security, Information Technology, product, cloud, and business teams to design practical security controls, assess technology risk, and help implement secure, resilient services across enterprise, cloud, software-as-a-service, and hosted environments. This position may be based near an Entrust office and work in a hybrid capacity, subject to current business requirements.

Position Overview:

The Information Security Architect designs and reviews security architectures that support Entrust’s enterprise and customer-facing services. The architect translates business, technical, regulatory, and threat requirements into clear security requirements, logical designs, standards, and implementation guidance. The role works under the direction of senior architects and the Director, contributes to technology evaluations and risk decisions, and remains engaged through implementation and validation. Primary coverage includes:

  • Enterprise artificial intelligence and agent security, including data protection, identity, prompt-injection resistance, logging, monitoring, and containment
  • Cloud, software-as-a-service, and hybrid security architecture
  • Identity and access management, privileged access, machine identities, and Zero Trust design
  • Network security, segmentation, firewalls, web application firewalls, secure access, and cloud-delivered controls
  • Security monitoring and telemetry architecture and related integrations
  • Cloud-native application protection, secure access, vulnerability management, endpoint security, and security posture management
  • Security automation, orchestration, infrastructure as code, policy as code, and repeatable control deployment
  • Resilience, recovery, cryptography, secrets management, and key management

This role works closely with Information Technology, Information Security, product and application teams, and service owners. The architect must be able to collaborate across disciplines, document decisions clearly, and follow designs through implementation. Practical experience configuring, integrating, testing, or operating security controls is important, but the role is not expected to be the senior subject-matter expert for every technology in scope.

Responsibilities:

Overall Security Architecture

  • Learn and apply Entrust security principles, reference architectures, standards, and approved design patterns.
  • Develop security requirements and logical designs for new and changed services across cloud, on-premises, software-as-a-service, and hybrid environments.
  • Assess trust boundaries, data flows, identities, threats, failure modes, and regulatory obligations that materially affect a design.
  • Apply Zero Trust, least privilege, defense in depth, secure-by-design, and privacy-by-design principles.
  • Partner with enterprise, cloud, network, application, identity, data, and security specialists to produce implementable designs.
  • Identify control gaps, document material risk and assumptions, recommend proportionate mitigations, and escalate residual risk for decision when needed.
  • Contribute to security standards, patterns, and reusable guidance based on lessons from architecture engagements.

Detailed Security Design

  • Translate approved requirements into logical and physical security designs, control configurations, and implementation guidance.
  • Design or integrate controls for identity, network, endpoint, cloud, application, data protection, security monitoring, and resilience.
  • Define required security telemetry, logging, alerting, retention, and operational ownership so implemented controls can be monitored and supported.
  • Support threat modeling and technical risk assessments for applications, infrastructure, cloud services, artificial intelligence solutions, and third-party platforms.
  • Evaluate security capabilities and vendor claims through documented requirements, proofs of concept, testing, and evidence.
  • Promote automation, infrastructure as code, policy as code, and secure continuous integration and continuous delivery practices where they improve consistency and control evidence.
  • Work with implementers to validate that designs are feasible, supportable, resilient, and aligned with recovery requirements.

Design Review

  • Review solution designs, data-flow diagrams, threat models, build documentation, test plans, and implementation changes for security impact.
  • Provide clear findings, required actions, and risk-based recommendations to technical teams and decision-makers.
  • Verify that security requirements and control ownership are reflected in implementation and test evidence.
  • Participate in architecture, design, and change reviews for material technology changes.
  • Support troubleshooting of complex issues that cross security, cloud, network, identity, application, or data domains.
  • Research emerging technologies, attack techniques, and control capabilities, including artificial intelligence and agentic systems, and recommend practical adoption or mitigation actions.

Basic Qualifications:

  • Bachelor’s degree in cybersecurity, computer science, information systems, engineering, or a related field, or equivalent relevant experience.
  • Typically five or more years of relevant experience across information security, infrastructure, cloud, networking, software engineering, or technology risk, including at least two years contributing to security design, engineering, or architecture work.
  • Working knowledge of security architecture principles, common threats and vulnerabilities, risk assessment, and compensating controls.
  • Experience with at least two relevant domains, such as cloud security, identity and access management, network security, application security, security monitoring, endpoint security, data protection, or vulnerability management.
  • Experience reviewing technical designs and converting requirements and risks into practical security controls.
  • Familiarity with public cloud and software-as-a-service security concepts, shared-responsibility models, and modern identity-centered security.
  • Ability to create clear architecture diagrams, requirements, decision records, standards, and implementation guidance.
  • Ability to communicate effectively with engineers, architects, service owners, risk and compliance partners, and business stakeholders.
  • Ability to work across multiple teams, manage assigned architecture engagements, and follow work through implementation and validation.
  • Work authorization and travel requirements will be defined for the hiring location and business need.

Preferred Qualifications:

  • Hands-on experience with Microsoft Azure, Amazon Web Services, Microsoft Sentinel, Microsoft Defender, Microsoft Purview, or comparable security platforms.
  • Experience with Zero Trust, cloud-native application protection, data loss prevention, cloud access security brokers, security information and event management, endpoint detection and response, web application firewalls, network segmentation, or privileged access.
  • Experience with threat modeling, application programming interface security, containers, Kubernetes, DevSecOps, infrastructure as code, or policy as code.
  • Exposure to artificial intelligence security, agent security, model and prompt risk, machine identities, or governance controls for enterprise artificial intelligence.
  • Knowledge of recognized frameworks and standards such as the National Institute of Standards and Technology Cybersecurity Framework, NIST Zero Trust Architecture, International Organization for Standardization 27001, Payment Card Industry Data Security Standard, Federal Risk and Authorization Management Program, or Cloud Security Alliance guidance.
  • Experience in a global enterprise, regulated environment, software-as-a-service provider, managed service, or high-availability environment.
  • Industry certification such as Certified Information Systems Security Professional, Certified Cloud Security Professional, Azure Security Engineer Associate, AWS Certified Security - Specialty, or a comparable credential.
  • Experience evaluating security products, conducting proofs of concept, or validating controls with implementation and test evidence.

At Entrust, we don’tjust offer jobs - we offer career journeys. Here is what you can expect when you join our team:

  • Career Growth: Whether you’rea budding developer or a seasoned expert, we’reinvested in your professional journey. With learning-forwardinitiatives and exciting challenges, your growth is our priority.

  • Flexibility: Life is all about balance. Whether you’reremote, hybrid, or on-site, we offer flexible options that fit your lifestyle.

  • Collaboration: Here, your voice matters. Our teams thrive on sharing ideas, brainstorming solutions, and working together to build a better tomorrow.

We believe in securing identities-but it doesn’tstop there. At Entrust, we’repassionate about valuing all identities. Our culture is built on diversity, inclusion, and respect. From unconscious biastraining for our leaders to global affinity groups that connect colleagues across the globe, we’recreating a community where everyone is encouraged to be themselves.

Ready to Make an Impact?

If you’reexcited by the prospect of innovating, growing your career, and collaborating in a dynamic environment, Entrust is the place for you. Join us in making a difference. Let’sbuild a more secure world-together.

Apply today!

For more information, visit www.entrust.com. Follow us on, LinkedIn, Facebook, Instagram, and YouTube

Compensation Range:

The anticipated starting base pay for this position is: $143,635-$210,664 per year (in the primary posting location). Actual compensation will be determined based on geographic location, education, skills and experience. This position is also eligible for the company’s discretionary annual incentive plan. In addition to your pay, Entrust offers eligible colleagues and their dependents comprehensive health and well-being programs which include medical, vision, dental, a generous 401(k) matching contribution, life and disability insurance, mental health coaching, virtual fitness programs, paid personal time off plus 12 paid holidays, parental leave and education reimbursement. Please speak with the recruiter for more details. Note: Benefit and Compensation programs are subject to eligibility requirements and other terms of the applicable plan or program. Entrust has the right to end, suspend or amend any of its plans at any time in whole or in part.

For US roles, or where applicable:

Entrust is an EEO/AA/Disabled/VeteransEmployer

For Canadian roles, or where applicable:

Entrust values diversity and inclusion and we are committed to building a diverse workforce with wide perspectives and innovative ideas. We welcome applications from qualified individuals of all backgrounds, and we strive to provide an accessible experience for candidates of all abilities.

If you require an accommodation, contact [email protected].

Recruiter:

Steve [email protected]
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,384,975 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Shakopee
$190k – $260k per year • Equity • Remote (United States) • Full-Time • 5+ years exp
Python
Go
Java
Kotlin
C#
DevOps
GCP
Cybersecurity
OWASP Top 10
HIPAA
Least Privilege
Threat Modeling
Apply
≈ $104k – $206k per year (Estimated) • Hybrid • Manchester
Python
DevOps
Splunk
Azure
AWS
Linux
Windows
TCP/IP
Cybersecurity
SIEM
Apply
≈ $106k – $209k per year (Estimated) • Hybrid • 5+ years exp • Manchester
Python
DevOps
Splunk
Terraform
Puppet
Ansible
OpenShift
AWS CDK
Chef
CloudFormation
Prometheus
CI/CD
AWS
Kubernetes
Grafana
Configuration Management
IAM
Amazon ECS
Amazon CloudWatch
Cybersecurity
Microsoft Sentinel
Least Privilege
SIEM
Apply
$70k – $85k per year • Equity • Hybrid • Full-Time • 5+ years exp • United States
AI/ML
AI Agents
Cybersecurity
ISO 27001
SOC 2
GDPR
Apply
≈ $114k – $226k per year (Estimated) • Equity • Hybrid • Full-Time • 5+ years exp • United States
AI/ML
AI Agents
DevOps
Terraform
AWS
Cybersecurity
Orca Security
SIEM
Apply
≈ $18k – $40k per year (Estimated) • Hybrid • Full-Time • 5+ years exp • PhD • Hyderabad
Python
PowerShell
Bash
DevOps
Splunk
Terraform
Ansible
Red Hat
OpenShift
VMWare
Debian
GitLab CI
Azure
CI/CD
GitOps
Windows Server
Jenkins
Git
AWS
Kubernetes
Ubuntu
SRE
Platform Engineering
Configuration Management
Linux
TCP/IP
DNS
Cybersecurity
NIST CSF
Least Privilege
Active Directory
PKI
Apply
$135k – $140k per year • In office • Full-Time • 7+ years exp • Bachelor's Degree • Austin
PowerShell
DevOps
Terraform
Azure
CI/CD
AWS
Kubernetes
Platform Engineering
Azure AKS
FinOps
Linux
Windows
Cybersecurity
Zero Trust
Microsoft Entra ID
Active Directory
Apply
$157k – $290k per year • In office • Full-Time • Irving • Chicago
AI/ML
AI Agents
Knowledge Graph
Apply
≈ $31k – $68k per year (Estimated) • Remote (Canada) • 1+ year exp • Vancouver
DevOps
Self-Healing
Cybersecurity
Zero Trust
Analytics
Microsoft Excel
Management
Outlook
Marketing
Salesforce
YouTube
Apply
$187k – $254k per year • Remote (United States) • Full-Time • 2+ years exp • High School Diploma • Thousand Oaks
Python
AI/ML
RAG
Agentic Workflows
Machine Learning
DevOps
Terraform
CI/CD
AWS
Apply
$110k – $161k per year • In office • Full-Time • 5+ years exp • Bachelor's Degree • Shakopee
PHP
PHP
Drupal
Management
SharePoint
Marketing
YouTube
LinkedIn
Instagram
Apply
≈ $99k – $225k per year (Estimated) • In office • Full-Time • 10+ years exp • Bachelor's Degree • London
AI/ML
AI Agents
Cybersecurity
Zero Trust
Marketing
YouTube
LinkedIn
Instagram
Apply
≈ $65k – $116k per year (Estimated) • In office • Full-Time • 5+ years exp • London • Lisbon
Analytics
Looker
Management
Jira
Agile
Apply
In office • Full-Time • London
Robotics
Apollo
Marketing
Salesforce
YouTube
LinkedIn
Instagram
Apply
$44k – $70k per year • In office • Full-Time • 2+ years exp • High School Diploma • United States
Apply
$115k – $140k per year • In office • 5+ years exp • Bachelor's Degree • Shakopee
Python
Java
C
C++
C
SDL
DevOps
Azure
AWS
Docker
Kubernetes
Linux
Cybersecurity
CVE
CWE
CVSS
Threat Modeling
SBOM
OWASP
Apply
≈ $42k – $85k per year (Estimated) • In office • Internship • Shakopee
Design
SolidWorks
AutoCAD
Apply
$110k – $161k per year • In office • Full-Time • 5+ years exp • Bachelor's Degree • Shakopee
PHP
PHP
Drupal
Management
SharePoint
Marketing
YouTube
LinkedIn
Instagram
Apply
Part Time Driver I 1 day ago
$32k per year • In office • Part-Time • High School Diploma • Shakopee
Apply
≈ $79k – $155k per year (Estimated) • In office • Full-Time • 5+ years exp • High School Diploma • Shakopee
Management
Telegram
WhatsApp
Apply
See all jobs
This is one of many
1,384,975 more open roles from verified company boards, updated every day.