Security Risk Architect
Listed on 2026-09-14
-
IT/Tech
Cybersecurity, Information Security & Data Protection
About L.E.K. Consulting
L.E.K. Consulting is a premier global strategy consulting firm that partners with clients to solve their most critical business challenges and deliver high-impact outcomes. We bring deep industry expertise and rigorous, evidence-based insight to global corporations, growth companies and private equity investors, helping them turn strategy into action.
About L.E.K. ConsultingL.E.K. Consulting is a premier global strategy consulting firm that partners with clients to solve their most critical business challenges and deliver high-impact outcomes. We bring deep industry expertise and rigorous, evidence-based insight to global corporations, growth companies and private equity investors, helping them turn strategy into action.
How do we deliver impact? It’s the people. We hire exceptional individuals and invest in their growth through hands‑on client work, close collaboration and a culture of ownership, inclusion and continuous learning. Across every level, curiosity unites us and challenge excites us.
Founded more than 40 years ago, L.E.K. employs more than 2,200 professionals worldwide and is consistently recognized as one of the industry's best firms to work for.
For more information, visit
Overview Of RoleThe Security & Risk Architect is a senior technical leader within the Information Security team, responsible for advancing the firm’s cybersecurity strategy and strengthening enterprise security capabilities across infrastructure, cloud platforms, applications, and emerging AI technologies.
This role partners closely with IT, engineering, and business stakeholders to manage security operations, vulnerability management, incident response, secure software development practices, and AI security governance. The position supports a global environment aligned to the NIST Cybersecurity Framework and ISO 27001 standards.
The IT team is prioritizing hiring in Boston and / or Chicago.
Responsibilities Security Operations & Risk Management- Identify, assess, and respond to cybersecurity and privacy risks across the organization
- Serve as a technical escalation point for security incidents, investigations, and threat response activities
- Support incident response, digital forensics, and coordination during critical security events
- Monitor threat intelligence and recommend proactive risk mitigation strategies
- Lead the management and optimization of enterprise security tools and platforms
- Evaluate security technologies, identify capability gaps, and recommend improvements
- Manage security controls across Active Directory, Azure, Entra , endpoint security, and cloud environments
- Ensure systems and infrastructure maintain secure and hardened configurations
- Oversee vulnerability management processes, reporting, and remediation coordination
- Configure and maintain security monitoring, reporting, and compliance metrics
- Drive continuous improvement initiatives across security processes, tools, and policies
- Support disaster recovery, backup oversight, and operational resilience efforts
- Integrate security requirements into the software development lifecycle
- Partner with development teams to implement secure‑by‑design practices within CI/CD pipelines
- Lead application security reviews, code analysis, and penetration testing activities
- Promote secure coding standards aligned with OWASP, NIST, and ISO 27001 frameworks
- Manage third-party and open‑source software risk, including supply chain security controls
- Support governance and security oversight for AI platforms and tools, including Microsoft Copilot and Azure OpenAI
- Establish controls for AI usage, access management, and data…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).