{"schemaVersion":"jobsearcher.job.v1","id":"f8ea26efac01e28cbd49ba84","url":"https://jobsearcher.com/jobs/f8ea26efac01e28cbd49ba84","canonicalUrl":"https://jobsearcher.com/jobs/f8ea26efac01e28cbd49ba84","title":"Associate Enterprise Security Architect","description":"Location:\n5501 Headquarters Dr, Plano, Texas, 75024, United States of America\n\nAssociate Enterprise Security Architect\nWho We Are\nAt Upbound Group, we are committed to elevating financial opportunity for all through innovative, inclusive, and technology-driven financial solutions that address the evolving needs and aspirations of consumers. The Company’s customer-facing operating units include industry-leading brands such as Rent-A-Center, Acima and Brigit that facilitate consumer transactions across a wide range of store-based and digital retail channels, including over 2,400 company-branded retail units across the United States, Mexico, New York and Puerto Rico. Upbound Group, Inc. is headquartered in Plano, Texas.\nRole Summary\nThe Associate Enterprise Security Architect helps shape and scale the organization’s security architecture across the enterprise. This role partners with Enterprise Architecture, Security Engineering, IT, Platform Engineering, Cloud Operations, Privacy and Risk/Compliance to define security standards, reference architectures, and guardrails that ensure technology solutions are secure, consistent, and aligned with business objectives.\nThis is a growth role for someone who understands core security domains and wants to expand into enterprise-level architecture, strategy, and cross-team influence.\nKey Responsibilities\nAssist in developing and maintaining enterprise security architecture standards, patterns, reference architectures and designs (identity, network segmentation, endpoint, cloud, application, data protection, AI, etc.).\nAssist in building the Enterprise Security Architecture framework for the company utilizing SABSA methodology at the direction of a SABSA certified architect.\nParticipate in architecture and design reviews to ensure major initiatives align with enterprise security principles, approved patterns, and business objectives.\nHelp define security requirements and controls that can be reused across teams, products, and platforms, including AI controls focused on GenAI, Agents, Agentic, MCP, RAG, etc.\nSupport the creation and maintenance of target-state security roadmaps (e.g., Zero Trust adoption, logging and detection strategy, IAM modernization, AI Security).\nContribute to security governance processes, including exception handling, risk acceptance support, and documenting architectural decisions.\nPartner with Security Engineering and IT to ensure enterprise standards can be implemented operationally (pragmatic, measurable, and supportable).\nAssist in vendor and technology evaluations to ensure tools align with architectural standards and integrate with the broader ecosystem.\nHelp map security architecture to compliance frameworks and internal policies (NIST CSF, NIST AI RMF, SOC 2, ISO 27001, PCI DSS, etc.), ensuring designs support auditability.\nContribute to metrics and reporting on architecture adoption (pattern usage, exceptions, gaps, and roadmap progress).\nMaintain clear architecture documentation and communicate standards to stakeholders through presentations, docs, and working sessions.\nFocus Areas:\nIdentity and Access Management (SSO, MFA, lifecycle automation, privileged access)\nNetwork and segmentation models (Zero Trust, secure access, remote connectivity)\nCloud security baselines (landing zones, guardrails, policy-as-code)\nData classification and protection (encryption, key management, DLP, DSPM)\nAI Security (data security and governance, model security, API, IAM, IRP)\nLogging, monitoring, and detection architecture (SIEM strategy, telemetry standards)\nSecure SDLC guardrails (security gates, code scanning standards, secrets management)\nRequired Qualifications\n2 to 5+ years of experience in information security, security engineering, IT, systems engineering, or related technical roles.\nWorking knowledge of core security domains: IAM, network security, endpoint security, vulnerability management, encryption, and logging/monitoring, data protection.\nFamiliarity with cloud concepts and shared responsibility (AWS, Azure, and/or GCP) and how security guardrails are implemented in cloud environments.\nExperience with design and implementation of AI security controls for enterprise environments.\nAbility to translate security risk into clear requirements and actionable guidance for engineering and IT teams.\nStrong documentation and communication skills (comfortable writing standards and presenting to stakeholders).\nUnderstanding of common security frameworks and control concepts (e.g., NIST CSF, NIST AI RMF, NIST 800-53, CIS Controls, OWASP, PCI/DSS, etc.).\nFamiliarity with SABSA Enterprise Security methodology\nSelf-accountability is a must\nPreferred Qualifications\nExposure to enterprise architecture concepts (capability models, target-state roadmaps, architecture review boards).\nExposure to SABSA Enterprise Security methodology, in practice.\nExperience contributing to Zero Trust programs, segmentation strategies, enterprise IAM modernization and enterprise AI security.\nFamiliarity with GRC processes (risk exceptions, control mapping, audit support), without being purely a compliance role.\nExperience with security architecture modeling or diagramming (e.g., C4, ArchiMate, Visio/Lucidchart).\nExperience in security solutions design and evaluation.\nCertifications (nice to have, not required): SABSA Foundation, CCSP, Security+, AZ-500, AWS Security Specialty, CISSP (Associate), Logging/SIEM/Security Vendor certifications\nWork Location\nAbility to work in the Plano, Texas office, Monday through Friday.\nSponsorship\nApplicants must be authorized to work for ANY employer in the U.S. We are unable to sponsor or take over sponsorship of an employment visa at this time.\nEqual Opportunity Employer\nUpbound Group is an equal opportunity employer committed to ensuring all employment decisions are made on a non-discriminatory basis in accordance with applicable federal, state, and local laws.\nThis job description is not intended to be all-inclusive. Coworker may perform other related duties as negotiated to meet the ongoing needs of the organization.","company":"Upboundgroup","rawCompany":"upboundgroup","city":"Plano","state":"TX","isRemote":false,"isActive":false,"createdAt":"2026-08-03T13:32:35.406Z","occupations":[{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"13-1199.07","title":"Security Management Specialists","slug":"security-management-specialists"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Associate Enterprise Security Architect","description":"Location:\n5501 Headquarters Dr, Plano, Texas, 75024, United States of America\n\nAssociate Enterprise Security Architect\nWho We Are\nAt Upbound Group, we are committed to elevating financial opportunity for all through innovative, inclusive, and technology-driven financial solutions that address the evolving needs and aspirations of consumers. The Company’s customer-facing operating units include industry-leading brands such as Rent-A-Center, Acima and Brigit that facilitate consumer transactions across a wide range of store-based and digital retail channels, including over 2,400 company-branded retail units across the United States, Mexico, New York and Puerto Rico. Upbound Group, Inc. is headquartered in Plano, Texas.\nRole Summary\nThe Associate Enterprise Security Architect helps shape and scale the organization’s security architecture across the enterprise. This role partners with Enterprise Architecture, Security Engineering, IT, Platform Engineering, Cloud Operations, Privacy and Risk/Compliance to define security standards, reference architectures, and guardrails that ensure technology solutions are secure, consistent, and aligned with business objectives.\nThis is a growth role for someone who understands core security domains and wants to expand into enterprise-level architecture, strategy, and cross-team influence.\nKey Responsibilities\nAssist in developing and maintaining enterprise security architecture standards, patterns, reference architectures and designs (identity, network segmentation, endpoint, cloud, application, data protection, AI, etc.).\nAssist in building the Enterprise Security Architecture framework for the company utilizing SABSA methodology at the direction of a SABSA certified architect.\nParticipate in architecture and design reviews to ensure major initiatives align with enterprise security principles, approved patterns, and business objectives.\nHelp define security requirements and controls that can be reused across teams, products, and platforms, including AI controls focused on GenAI, Agents, Agentic, MCP, RAG, etc.\nSupport the creation and maintenance of target-state security roadmaps (e.g., Zero Trust adoption, logging and detection strategy, IAM modernization, AI Security).\nContribute to security governance processes, including exception handling, risk acceptance support, and documenting architectural decisions.\nPartner with Security Engineering and IT to ensure enterprise standards can be implemented operationally (pragmatic, measurable, and supportable).\nAssist in vendor and technology evaluations to ensure tools align with architectural standards and integrate with the broader ecosystem.\nHelp map security architecture to compliance frameworks and internal policies (NIST CSF, NIST AI RMF, SOC 2, ISO 27001, PCI DSS, etc.), ensuring designs support auditability.\nContribute to metrics and reporting on architecture adoption (pattern usage, exceptions, gaps, and roadmap progress).\nMaintain clear architecture documentation and communicate standards to stakeholders through presentations, docs, and working sessions.\nFocus Areas:\nIdentity and Access Management (SSO, MFA, lifecycle automation, privileged access)\nNetwork and segmentation models (Zero Trust, secure access, remote connectivity)\nCloud security baselines (landing zones, guardrails, policy-as-code)\nData classification and protection (encryption, key management, DLP, DSPM)\nAI Security (data security and governance, model security, API, IAM, IRP)\nLogging, monitoring, and detection architecture (SIEM strategy, telemetry standards)\nSecure SDLC guardrails (security gates, code scanning standards, secrets management)\nRequired Qualifications\n2 to 5+ years of experience in information security, security engineering, IT, systems engineering, or related technical roles.\nWorking knowledge of core security domains: IAM, network security, endpoint security, vulnerability management, encryption, and logging/monitoring, data protection.\nFamiliarity with cloud concepts and shared responsibility (AWS, Azure, and/or GCP) and how security guardrails are implemented in cloud environments.\nExperience with design and implementation of AI security controls for enterprise environments.\nAbility to translate security risk into clear requirements and actionable guidance for engineering and IT teams.\nStrong documentation and communication skills (comfortable writing standards and presenting to stakeholders).\nUnderstanding of common security frameworks and control concepts (e.g., NIST CSF, NIST AI RMF, NIST 800-53, CIS Controls, OWASP, PCI/DSS, etc.).\nFamiliarity with SABSA Enterprise Security methodology\nSelf-accountability is a must\nPreferred Qualifications\nExposure to enterprise architecture concepts (capability models, target-state roadmaps, architecture review boards).\nExposure to SABSA Enterprise Security methodology, in practice.\nExperience contributing to Zero Trust programs, segmentation strategies, enterprise IAM modernization and enterprise AI security.\nFamiliarity with GRC processes (risk exceptions, control mapping, audit support), without being purely a compliance role.\nExperience with security architecture modeling or diagramming (e.g., C4, ArchiMate, Visio/Lucidchart).\nExperience in security solutions design and evaluation.\nCertifications (nice to have, not required): SABSA Foundation, CCSP, Security+, AZ-500, AWS Security Specialty, CISSP (Associate), Logging/SIEM/Security Vendor certifications\nWork Location\nAbility to work in the Plano, Texas office, Monday through Friday.\nSponsorship\nApplicants must be authorized to work for ANY employer in the U.S. We are unable to sponsor or take over sponsorship of an employment visa at this time.\nEqual Opportunity Employer\nUpbound Group is an equal opportunity employer committed to ensuring all employment decisions are made on a non-discriminatory basis in accordance with applicable federal, state, and local laws.\nThis job description is not intended to be all-inclusive. Coworker may perform other related duties as negotiated to meet the ongoing needs of the organization.","datePosted":"2026-08-03T13:32:35.406Z","dateModified":"2026-08-03T13:32:35.406Z","hiringOrganization":{"@type":"Organization","name":"Upboundgroup","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Plano","addressRegion":"TX","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"f8ea26efac01e28cbd49ba84"},"url":"https://jobsearcher.com/jobs/f8ea26efac01e28cbd49ba84"}}