About this role
Endpoint Security Architect
Cybersecurity – Enterprise Cybersecurity Engineering – Endpoint Security Architect
Location: This is an in-office position - 4 days onsite based at GPC HQ in Atlanta, GA, or APC HQ in Birmingham, AL.
Candidates must reside within commuting distance of the designated work location. Up to 20% travel.
Southern Company is seeking an Endpoint Security Architect to lead enterprise endpoint security architecture. This position defines the strategic vision, technology roadmap, and governance standards for endpoint security across workstations, servers, mobile devices, and emerging endpoint technologies.
In this role, you will partner with Cybersecurity Operations, Cybersecurity Architecture, Infrastructure, Cloud Security, and business stakeholders to design endpoint security solutions that reduce risk, enable business objectives, guide technology decisions, and align with enterprise architecture standards, regulatory requirements, and evolving threats.
Job Responsibilities:
- Serve as the technical authority and primary subject matter expert for enterprise endpoint security architecture, defining standards, reference architectures, design patterns, and security requirements while providing architectural leadership for strategic initiatives, enterprise deployments, modernization efforts, mergers and acquisitions, and other work impacting endpoint security.
- Define and maintain the endpoint security strategy and multi-year roadmap across workstations, servers, mobile devices, and emerging endpoint technologies.
- Partner with Cybersecurity Operations, Infrastructure, Cloud Security Architecture, AI Governance, and business stakeholders to design endpoint security solutions that reduce risk and enable technology innovation.
- Guide strategic initiatives from architecture through implementation and operational transition, ensuring delivered solutions remain aligned with approved designs, security requirements, and roadmap outcomes.
- Lead evaluation, proof-of-concept, selection, and adoption of endpoint security technologies, including Endpoint Protection Platforms (EPP), Endpoint Detection and Response (EDR), mobile security, endpoint hardening, device management, AI-enabled controls, and emerging security capabilities.
- Conduct architecture reviews and security assessments of endpoint-related technologies, platforms, and projects to identify risks, control gaps, and opportunities for improvement.
- Establish baselines, maturity measures, strategic metrics, and success criteria to evaluate endpoint security effectiveness and support risk-informed decisions.
- Develop business cases, technology recommendations, and executive-level presentations that communicate security value, investment needs, roadmap priorities, and risk reduction outcomes.
- Monitor emerging threats, regulatory requirements, industry trends, and technology advancements to improve endpoint visibility, resilience, detection, response, and efficiency.
- Define endpoint security controls for AI-enabled technologies, endpoint-based AI workloads, copilots, automation platforms, and emerging agentic technologies in partnership with Cloud Security Architecture and AI Governance stakeholders.
Job Qualifications:
Minimum
- 7+ years of experience in cybersecurity, information security, infrastructure security, endpoint security, or related technology disciplines.
- 3+ years of experience designing, governing, or providing architectural leadership for enterprise cybersecurity solutions.
- Demonstrated experience defining security standards, architecture patterns, control requirements, reference architectures, and technology roadmaps for enterprise environments.
- Strong knowledge of endpoint security architectures, including EPP, CrowdStrike Falcon EDR, endpoint hardening, device management, mobile security, and enterprise endpoint visibility.
- Experience conducting security architecture reviews, risk assessments, and control evaluations to identify risks, gaps, and mitigation strategies.
- Working knowledge of Windows, Linux, mobile operating systems, endpoint management platforms, and enterprise security controls.
- Experience evaluating security technologies, developing recommendations, and influencing adoption decisions across cybersecurity, infrastructure, cloud, and business teams.
- Ability to translate complex security concepts into business, risk, and investment recommendations for technical, executive, and cross-functional audiences.
Preferred
- Experience serving as a cybersecurity architect, solution architect, security engineering lead, or equivalent strategic security role.
- Experience developing cybersecurity roadmaps, business cases, maturity models, strategic metrics, and executive-level technology recommendations.
- Experience supporting endpoint security programs in large environments, including environments with 10,000+ endpoints.
- Experience with Microsoft Defender, Microsoft Intune, mobile device management, mobile threat defense, or equivalent enterprise endpoint security platforms.
- Experience evaluating AI-enabled security capabilities, endpoint protections for AI applications, automation platforms, copilots, or emerging agentic technologies.
- Experience integrating endpoint security controls with cloud security, identity, Zero Trust, vulnerability management, and security operations capabilities.
- Experience supporting cybersecurity architecture initiatives in regulated, critical infrastructure, energy, utility, or large enterprise environments.
- Relevant professional certifications preferred, such as CISSP, CISM, CCSP, SABSA, TOGAF, GIAC, Microsoft, CrowdStrike, or cloud security certifications.
Additional Information
- This position falls under the company’s Insider Threat Program and will have access to, and control over sensitive data, systems or assets. Enhanced personnel screening, which includes a background review, drug screen and psychological assessment, will be required if you are selected for this position.