{"schemaVersion":"jobsearcher.job.v1","id":"6f5b2ae8d1094c2cd3b1d94e","url":"https://jobsearcher.com/jobs/6f5b2ae8d1094c2cd3b1d94e","canonicalUrl":"https://jobsearcher.com/jobs/6f5b2ae8d1094c2cd3b1d94e","title":"Security Engineer - Security Architecture and Engineering","description":"Job ID 10137015 Location Burbank, California, United States / Orlando, Florida, United States / Seattle, Washington, United States Business The Walt Disney Company (Corporate) Date posted Nov. 26, 2025\nJob Summary:\nDepartment Description:\n\nAt Disney, we’re storytellers. We make the impossible, possible. The Walt Disney Company (TWDC) is a world-class entertainment and technological leader. Walt’s passion was to continuously envision new ways to move audiences around the world—a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences — and we’re constantly looking for new ways to enhance these exciting experiences.\nThe Enterprise Technology mission is to deliver technology solutions that align to business strategies while enabling enterprise efficiency and promoting cross-company collaborative innovation. Our group drives competitive advantage by enhancing our consumer experiences, enabling business growth, and advancing operational excellence.\nThe Global Information Security (GIS) organization strives to secure the magic by employing best-in-class services to assess, prevent, detect, and respond to cyber threats that present risk to The Walt Disney Company. We enable the business by integrating enterprise and business segment-specific supported services to create a robust, efficient, and adaptable cybersecurity program. Our key objectives are to:\nSecure the Magic by protecting information systems and platforms.\nReduce Risk by proactively assessing, preventing, and detecting to prevent harm to the Company and our Guests.\nStrengthen the business through optimizing execution, application, and technology used to protect the Company.\nInnovate by investing in core capabilities to enhance operational efficiency.\nTeam Description:\nThe GIS Security Architecture and Engineering team is Disney’s trusted authority in security architecture, solution engineering, and secure product delivery. We provide innovative, standards-based capabilities and exceptional service that evolve with our clients’ needs—ensuring protection, agility, and peace of mind across the enterprise. We empower transformational innovation by designing and implementing scalable security architectures and frameworks that enhance resiliency, enable agility, and safeguard Disney’s global technology ecosystem. Our work protects the integrity of Disney’s storytelling, experiences, and operations—reducing risk, enabling agility, and ensuring resilience in a rapidly evolving threat landscape.\nWe are hiring a Security Engineer - Security Architecture and Engineering!\nResponsibilities of the Role:\nDesign, develop, and implement secure solutions and reference architectures that align with business objectives, enterprise standards, and evolving threats.\nProvide situation-based guidance during solution design, leveraging in-depth knowledge of security technologies, policies, and controls to ensure alignment with Disney’s security requirements and industry best practices.\nTranslate security requirements into scalable technical controls integrated across systems, applications, and cloud environments.\nExecute advanced risk and threat analysis activities, including threat modeling, architecture risk reviews, and vulnerability assessments.\nIncorporate internal incident trends and external threat intelligence to proactively shape security decisions and architectural guidance.\nEvaluate security posture across platforms and technologies, recommending pragmatic and business-aligned mitigations.\nCreate and maintain security architecture artifacts such as reference architectures, control frameworks, design patterns, standards, and policies.\nSupport governance through documentation of control mapping, compliance alignment (e.g., NIST, CIS, ISO 27001), and integration into solution development.\nTranslate complex security issues into understandable terms and balanced recommendations that consider business context, impact, and feasibility.\nFacilitate security reviews and ensure follow-through on findings, including mitigation planning, exception tracking, and risk acceptance where appropriate.\nDocument engineering designs, security findings, risk decisions, and solution status to support transparency, auditability, and knowledge-sharing across the organization.\nEnsure configuration standards align with internal policy, regulatory requirements, and industry benchmarks such as CIS Benchmarks, NIST 800-53, and DISA STIGs.\nMust Haves:\n3+ years’ experience in Security Architecture & Engineering\n3+ years’ experience securing workloads and services in public cloud environments (e.g., AWS, Azure, Google Cloud Platform), including implementing native cloud security controls, identity and policy management, and secure configuration of cloud services.\nProven ability to create conceptual, logical, and physical security architecture diagrams, with a deep understanding of common vulnerabilities and countermeasures across systems and networks.\nExperience in designing and implementing security controls, including those for information protection, identity and access management (e.g., Kerberos, NTLM, Active Directory), and networking technologies (e.g., routing, switching, SDN, containerization, elastic compute).\nStrong working knowledge of risk analysis methodologies and the design of compensating controls in complex environments.\nFamiliarity with leading cybersecurity frameworks and methodologies, such as NIST 800-53, NIST 800-30, MITRE ATT&CK, STRIDE, and general compliance programs and regulations (e.g., SOX, HIPAA, PCI DSS).\nNice to Haves:\n3+ years of experience in at least 2 of the following domains: Security and Risk Management, Asset Security, Communications and Network Security, Identity and Access Management (IAM), Security Assessment and Testing, Security Operations, Software Development Security (including DevSecOps or secure coding practices)\nFamiliarity with enterprise architecture frameworks such as TOGAF, and their application in aligning security requirements with business and IT strategies.\nKnowledge in applying cybersecurity principles in the implementation of Artificial Intelligence (AI)\nSecurity Certifications: CISSP, CCSP, AWS Certified Public Cloud Architect, CISM, CRISC, CISA, MCSE Cloud, VMWare VCP6 Cloud, EMCCA cloud computing Architect, or GIAC\nEducation:\nBachelor’s degree in Computer Science, Information Systems, Software, Electrical or Electronics Engineering, or comparable field of study, and/or equivalent work experience\n#DISNEYTECH\n\nThe hiring range for this position in Seattle, WA is $112,000 - $150,100 per year and in Burbank, CA is $106,900 - $143,300 per year. The base pay actually offered will take into account internal equity and also may vary depending on the candidate’s geographic region, job-related knowledge, skills, and experience among other factors. A bonus and/or long-term incentive units may be provided as part of the compensation package, in addition to the full range of medical, financial, and/or other benefits, dependent on the level and position offered.","company":"Disney","rawCompany":"disney","city":"Burbank","state":"CA","isRemote":false,"isActive":false,"createdAt":"2026-07-15T12:19:40.474Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541330","title":"Engineering Services","slug":"engineering-services"},{"code":"561621","title":"Security Systems Services (except Locksmiths)","slug":"security-systems-services-except-locksmiths"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Security Engineer - Security Architecture and Engineering","description":"Job ID 10137015 Location Burbank, California, United States / Orlando, Florida, United States / Seattle, Washington, United States Business The Walt Disney Company (Corporate) Date posted Nov. 26, 2025\nJob Summary:\nDepartment Description:\n\nAt Disney, we’re storytellers. We make the impossible, possible. The Walt Disney Company (TWDC) is a world-class entertainment and technological leader. Walt’s passion was to continuously envision new ways to move audiences around the world—a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences — and we’re constantly looking for new ways to enhance these exciting experiences.\nThe Enterprise Technology mission is to deliver technology solutions that align to business strategies while enabling enterprise efficiency and promoting cross-company collaborative innovation. Our group drives competitive advantage by enhancing our consumer experiences, enabling business growth, and advancing operational excellence.\nThe Global Information Security (GIS) organization strives to secure the magic by employing best-in-class services to assess, prevent, detect, and respond to cyber threats that present risk to The Walt Disney Company. We enable the business by integrating enterprise and business segment-specific supported services to create a robust, efficient, and adaptable cybersecurity program. Our key objectives are to:\nSecure the Magic by protecting information systems and platforms.\nReduce Risk by proactively assessing, preventing, and detecting to prevent harm to the Company and our Guests.\nStrengthen the business through optimizing execution, application, and technology used to protect the Company.\nInnovate by investing in core capabilities to enhance operational efficiency.\nTeam Description:\nThe GIS Security Architecture and Engineering team is Disney’s trusted authority in security architecture, solution engineering, and secure product delivery. We provide innovative, standards-based capabilities and exceptional service that evolve with our clients’ needs—ensuring protection, agility, and peace of mind across the enterprise. We empower transformational innovation by designing and implementing scalable security architectures and frameworks that enhance resiliency, enable agility, and safeguard Disney’s global technology ecosystem. Our work protects the integrity of Disney’s storytelling, experiences, and operations—reducing risk, enabling agility, and ensuring resilience in a rapidly evolving threat landscape.\nWe are hiring a Security Engineer - Security Architecture and Engineering!\nResponsibilities of the Role:\nDesign, develop, and implement secure solutions and reference architectures that align with business objectives, enterprise standards, and evolving threats.\nProvide situation-based guidance during solution design, leveraging in-depth knowledge of security technologies, policies, and controls to ensure alignment with Disney’s security requirements and industry best practices.\nTranslate security requirements into scalable technical controls integrated across systems, applications, and cloud environments.\nExecute advanced risk and threat analysis activities, including threat modeling, architecture risk reviews, and vulnerability assessments.\nIncorporate internal incident trends and external threat intelligence to proactively shape security decisions and architectural guidance.\nEvaluate security posture across platforms and technologies, recommending pragmatic and business-aligned mitigations.\nCreate and maintain security architecture artifacts such as reference architectures, control frameworks, design patterns, standards, and policies.\nSupport governance through documentation of control mapping, compliance alignment (e.g., NIST, CIS, ISO 27001), and integration into solution development.\nTranslate complex security issues into understandable terms and balanced recommendations that consider business context, impact, and feasibility.\nFacilitate security reviews and ensure follow-through on findings, including mitigation planning, exception tracking, and risk acceptance where appropriate.\nDocument engineering designs, security findings, risk decisions, and solution status to support transparency, auditability, and knowledge-sharing across the organization.\nEnsure configuration standards align with internal policy, regulatory requirements, and industry benchmarks such as CIS Benchmarks, NIST 800-53, and DISA STIGs.\nMust Haves:\n3+ years’ experience in Security Architecture & Engineering\n3+ years’ experience securing workloads and services in public cloud environments (e.g., AWS, Azure, Google Cloud Platform), including implementing native cloud security controls, identity and policy management, and secure configuration of cloud services.\nProven ability to create conceptual, logical, and physical security architecture diagrams, with a deep understanding of common vulnerabilities and countermeasures across systems and networks.\nExperience in designing and implementing security controls, including those for information protection, identity and access management (e.g., Kerberos, NTLM, Active Directory), and networking technologies (e.g., routing, switching, SDN, containerization, elastic compute).\nStrong working knowledge of risk analysis methodologies and the design of compensating controls in complex environments.\nFamiliarity with leading cybersecurity frameworks and methodologies, such as NIST 800-53, NIST 800-30, MITRE ATT&CK, STRIDE, and general compliance programs and regulations (e.g., SOX, HIPAA, PCI DSS).\nNice to Haves:\n3+ years of experience in at least 2 of the following domains: Security and Risk Management, Asset Security, Communications and Network Security, Identity and Access Management (IAM), Security Assessment and Testing, Security Operations, Software Development Security (including DevSecOps or secure coding practices)\nFamiliarity with enterprise architecture frameworks such as TOGAF, and their application in aligning security requirements with business and IT strategies.\nKnowledge in applying cybersecurity principles in the implementation of Artificial Intelligence (AI)\nSecurity Certifications: CISSP, CCSP, AWS Certified Public Cloud Architect, CISM, CRISC, CISA, MCSE Cloud, VMWare VCP6 Cloud, EMCCA cloud computing Architect, or GIAC\nEducation:\nBachelor’s degree in Computer Science, Information Systems, Software, Electrical or Electronics Engineering, or comparable field of study, and/or equivalent work experience\n#DISNEYTECH\n\nThe hiring range for this position in Seattle, WA is $112,000 - $150,100 per year and in Burbank, CA is $106,900 - $143,300 per year. The base pay actually offered will take into account internal equity and also may vary depending on the candidate’s geographic region, job-related knowledge, skills, and experience among other factors. A bonus and/or long-term incentive units may be provided as part of the compensation package, in addition to the full range of medical, financial, and/or other benefits, dependent on the level and position offered.","datePosted":"2026-07-15T12:19:40.474Z","dateModified":"2026-07-15T12:19:40.474Z","hiringOrganization":{"@type":"Organization","name":"Disney","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Burbank","addressRegion":"CA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"6f5b2ae8d1094c2cd3b1d94e"},"url":"https://jobsearcher.com/jobs/6f5b2ae8d1094c2cd3b1d94e"}}