freehire is live on Product Hunt today.

Support the launch →

Senior Network Security Architect

Who We Are


Applied Materials is the global leader in materials science and engineering solutions that are at the foundation of virtually every new semiconductor chip and advanced display in the world. The equipment that we create and service is essential to advancing AI and accelerating the commercialization of next-generation semiconductor chips. Join us and push the boundaries of materials science and engineering in a company at the foundation of the electronics industry. The work we do together advances the world’s technology.


What We Offer


Location:

Toronto,CAN

You’ll benefit from a supportive work culture that encourages you to learn, develop, and grow your career as you take on challenges and drive innovative solutions for our customers. We empower our team to push the boundaries of what is possible—while learning every day in a supportive leading global company. Visit our Careers website to learn more.

At Applied Materials, we care about the health and wellbeing of our employees. We’re committed to providing programs and support that encourage personal and professional growth and care for you at work, at home, or wherever you may go. Learn more about our benefits.

Applied Materials is seeking a highly experienced Senior / Principal Network Security Architect to lead the strategy, architecture, and governance of the company's global network security infrastructure. This role is responsible for defining the future-state architecture and technology roadmap across enterprise, cloud, manufacturing (OT), data center, and remote access environments.

The ideal candidate is a recognized technical leader with deep expertise in Zero Trust, SSE/SASE, Network Security, Cloud Security, SD-WAN, OT Security, DDoS Protection, Network Detection & Response (NDR), and Security Automation. This individual will partner with engineering, operations, cybersecurity, cloud, manufacturing, and business leadership teams to design and implement secure, scalable, and resilient solutions that support Applied Materials' global operations and digital transformation initiatives.

Key Responsibilities

The Principal Network Security Architect is accountable for defining and governing Applied Materials' global network security strategy and architecture. This role leads the design and modernization of enterprise, cloud, and manufacturing security platforms, ensuring secure, resilient, and scalable services that support business growth, operational excellence, and cybersecurity objectives worldwide

Enterprise Security Architecture & Strategy

  • Define and maintain the enterprise network security architecture vision, standards, and multi-year roadmap.

  • Develop reference architectures, design standards, and technical governance processes.

  • Lead strategic initiatives involving Zero Trust, SASE/SSE, cloud security, SD-WAN, segmentation, and network modernization.

  • Evaluate emerging technologies and recommend adoption strategies aligned with business and cybersecurity objectives.

  • Act as the technical authority for network security architecture decisions across the enterprise.

Network Security Architecture

  • Architect and govern global network security solutions, including:

    • Next-Generation Firewalls (Palo Alto, Fortinet, Check Point)

    • Secure Service Edge (SSE/SASE)

    • Zero Trust Network Access (ZTNA)

    • Secure Web Gateway (SWG)

    • Data Loss Prevention (DLP)

    • DNS Security

    • Web Application Firewall (WAF)

    • DDoS Protection

    • Network Detection & Response (NDR)

  • Establish standards for segmentation, micro-segmentation, and policy enforcement.

  • Ensure consistent security controls across on-premises, cloud, and SaaS environments.

Cloud & Hybrid Security Architecture

  • Design secure connectivity patterns for Azure, AWS, and hybrid cloud environments.

  • Architect cloud-native security controls and connectivity frameworks.

  • Govern ExpressRoute, Direct Connect, cloud firewalls, cloud networking, and secure interconnectivity.

  • Develop secure access models for applications, services, partners, and third-party integrations.

Manufacturing & OT Security

  • Define and maintain secure network architectures for manufacturing facilities, laboratories, and operational technology environments.

  • Drive IT/OT segmentation aligned with ISA-95, Purdue Model, NIST CSF, and IEC 62443 standards.

  • Design secure remote access, monitoring, and management solutions for manufacturing operations.

  • Partner with factory engineering and cybersecurity teams to identify and mitigate operational risks.

Design Governance & Technical Leadership

  • Lead architecture reviews and approve High-Level Designs (HLDs) and Low-Level Designs (LLDs).

  • Chair technical design reviews and architecture governance boards.

  • Mentor engineers and architects on network security best practices and emerging technologies.

  • Establish engineering standards and drive design consistency across regions and business units.

Security Risk, Compliance & Incident Response

  • Ensure architecture compliance with:

    • NIST Cybersecurity Framework

    • NIST 800-53

    • CIS Critical Security Controls

    • ISO 27001

    • IEC 62443

    • PCI DSS

  • Conduct architecture risk assessments and threat modeling exercises.

  • Support major cyber incident investigations and post-incident architecture improvements.

  • Partner with Security Operations, SOC, ISRM, and Audit teams to continuously strengthen security posture.

Automation & Innovation

  • Drive adoption of Infrastructure-as-Code (IaC), APIs, and security automation.

  • Lead AI-driven operational efficiency initiatives within network and security domains.

  • Develop architectural frameworks for telemetry, observability, and predictive analytics.

  • Promote standardization and simplification to reduce operational complexity and risk.

Vendor & Financial Management

  • Develop business cases, TCO analyses, and strategic investment recommendations.

  • Lead vendor evaluations, proof-of-concepts, and technology selection initiatives.

  • Manage strategic vendor relationships and influence future product capabilities.

  • Support licensing, contract renewals, and budget planning activities.

Leadership Expectations

  • Recognized subject matter expert and technical leader.

  • Influences executive, business, and technical stakeholders across organizational boundaries.

  • Drives enterprise-wide architectural decisions and technology strategy.

  • Balances security, operational excellence, business agility, and cost optimization.

  • Mentors senior engineers and architects while fostering innovation and engineering excellence.

Minimum Qualifications

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or related discipline.

  • 12+ years of experience in enterprise networking and security.

  • 5+ years of experience in architecture, principal engineering, or technical leadership roles.

  • Proven experience designing and implementing large-scale enterprise security architectures.

  • Strong knowledge of:

    • Zero Trust Architecture

    • Network Security and Firewalls

    • SSE/SASE Platforms

    • SD-WAN

    • Routing & Switching

    • Cloud Security

    • DNS, PKI, and Identity Integration

    • Network Detection & Response (NDR)

Preferred Qualifications

  • Global enterprise and manufacturing industry experience.

  • Experience supporting semiconductor, industrial, or operational technology environments.

  • Expertise with:

    • Palo Alto Networks

    • Zscaler

    • Akamai

    • ExtraHop/Corelight/Vectra

    • ClearPass/Forescout

    • Azure and AWS Networking

  • Experience leading globally distributed engineering teams.

Preferred Certifications

  • CISSP

  • CCIE Enterprise Infrastructure/Security

  • CCNP Enterprise

  • Palo Alto PCNSE

  • Azure Security Engineer Associate

  • AWS Security Specialty

  • CCSP

  • Zscaler Certified Architect

Additional Information

Time Type:

Full time

Employee Type:

Assignee / Regular

Travel:

Yes, 10% of the Time

Relocation Eligible:

No

Applied Materials is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, national origin, citizenship, ancestry, religion, creed, sex, sexual orientation, gender identity, age, disability, veteran or military status, or any other basis prohibited by law.

See also

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available