Network and Firewall Architecture Lead
Listed on 2026-07-26
-
IT/Tech
Cybersecurity, Systems Engineer, Network Security, Network Engineer
The Network & Firewall Architecture Lead is a senior role within the GETS team responsible for the global architecture standards, governance, and strategic direction of Yum’s network and firewall environment. This role ensures architectural consistency across regions, prevents technical drift, and provides authoritative guidance for major initiatives, transformations, and high-risk technical decisions.
The role partners with Cybersecurity, Infrastructure, Cloud, Network Operations, Security Architecture, Engineering, GRC, regional technology teams, vendors, and managed service providers to define scalable, secure, and resilient architecture patterns. It is accountable for reducing technical debt through modernization planning, roadmap execution, and governance that supports Yum’s business, security, and operational priorities.
The Network & Firewall Architecture Lead owns global network and firewall architecture standards and governance for Yum. This role establishes the architectural guardrails, reference designs, design review practices, and modernization roadmap needed to maintain a consistent, secure, and scalable global network environment.
As the final technical authority for high-risk changes and significant design decisions, this role provides deep technical leadership across architecture, security, operational readiness, and risk management. The role requires strong influence across functions and regions, the ability to translate strategy into practical architecture direction, and the judgment to balance security, resiliency, cost, performance, and operational complexity.
Global Network and Firewall Architecture Governance- Own global network and firewall architecture standards, governance processes, reference architectures, and design patterns.
- Define and maintain architectural guardrails for network connectivity, firewall policy design, segmentation, perimeter controls, cloud connectivity, remote access, and related network security capabilities.
- Establish architecture review practices that ensure designs are aligned to enterprise standards, cybersecurity expectations, operational requirements, and business objectives.
- Ensure architecture decisions are documented, traceable, risk-informed, and reusable across regions and major programs.
- Ensure architectural consistency across the global environment by identifying divergence from approved standards and driving corrective actions.
- Prevent technical drift by maintaining clear design principles, standard patterns, technology lifecycle expectations, and exception management processes.
- Partner with operations, engineering, regional teams, and vendors to ensure implemented solutions remain aligned to approved architecture.
- Create visibility into architecture exceptions, legacy patterns, unsupported technologies, configuration inconsistencies, and design risks.
- Provide architectural leadership and technical guidance for major network, firewall, infrastructure, security, cloud, and transformation initiatives.
- Shape solution designs for complex programs by evaluating options, tradeoffs, dependencies, risk, scalability, resiliency, and operational readiness.
- Influence program direction by translating enterprise strategy into architecture requirements, design principles, and implementation guardrails.
- Represent network and firewall architecture in strategic planning, design reviews, risk forums, vendor discussions, and executive-level technical decision-making.
- Reduce technical debt through architecture modernization, lifecycle planning, rationalization, and strategic roadmap execution.
- Develop and maintain a network and firewall architecture roadmap that improves resiliency, scalability, security posture, operational efficiency, and cost effectiveness.
- Identify legacy platforms, fragmented designs, unsupported capabilities, and high-risk patterns that require remediation or modernization.
- Prioritize modernization initiatives based on business impact, cybersecurity risk, operational complexity, dependency…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).