Workday Security Lead & Architect
Memphis, Shelby County, Tennessee, 37544, USA
Listed on 2026-09-12
-
IT/Tech
Information Security & Data Protection, Cybersecurity, Security Management & Operations, IT Consultant
The Workday Security Lead & Architect is a senior technical role responsible for the architecture, governance, and strategic direction of security across the Workday platform. This position serves as the primary Workday Security subject matter expert, owning the overall security model and ensuring security solutions are scalable, sustainable, compliant, and aligned with organizational policies and business needs. The role combines deep hands-on Workday security expertise with architectural and technical leadership, partnering across functional, technical, Information Security, and Internal Audit teams to manage risk and enable appropriate access.
The position provides technical direction to Workday Security Administrators and Tier 1 Security Support and serves as the escalation point for complex security issues.
This position may be eligible for remote work. However, St. Jude requires all remote employees to:
Travel to our Memphis campus for the interview process and/or orientation, if selected. Travel to Memphis to work on-site for one week per quarter, or as requested based on business needs, if hired. By applying, you acknowledge and agree to these travel requirements as a condition of employment. This position is remote within approved U.S. locations. Due to state-specific employment regulations, we are unable to consider applicants currently residing in California for remote work;
however, candidates based in California who are willing to relocate to an approved location may be considered.
- Security Architecture & Governance
Own the overall Workday security architecture and security configuration model, including domain security policies, business process security policies, security groups, role-based access, and constrained security. Establish and maintain Workday security architecture standards, design principles, policies, procedures, and technical documentation to support consistent administration, knowledge transfer, and audit readiness. Lead the design and implementation of new and complex security roles, security groups, and access models using least privilege and role-based access principles.
Provide architectural review and consultation for security changes across Workday functional areas, integrations, reporting, and emerging capabilities, ensuring designs are scalable, maintainable, compliant, and aligned with the broader Workday architecture. Collaborate with Workday program leadership and senior governance forums as needed to communicate security risks, recommendations, and decisions. - Risk, Audit & Compliance
Own the Workday security risk and control strategy, including Segregation of Duties (SoD), Privileged/Sensitive Access (SA), and User Activity monitoring, as well as the design and ongoing effectiveness of preventative and detective controls. Provide leadership and subject matter expertise for internal and external audits involving Workday security and access. Partner with Internal Audit, Information Security, functional teams, and other stakeholders to evaluate findings, determine appropriate remediation, and oversee resolution of security-related risks.
Own the strategy, roadmap, and continued evolution of Kainos Smart Audit and other Workday security monitoring and compliance capabilities. Establish standards and oversight for periodic access reviews and security certifications, ensuring appropriate governance, documentation, and remediation. Maintain audit-ready security documentation and evidence supporting organizational control and compliance requirements. Ensure security architecture and practices appropriately protect sensitive and regulated data, including PII and PHI. - Security Strategy & Delivery
Lead security impact assessments for Workday R1/R2 releases, new capabilities, projects, integrations, and functional changes; identify required security changes, risks, dependencies, and remediation. Provide security architecture and design leadership throughout the lifecycle of Workday initiatives, from requirements and solution design through testing and deployment. Design, configure, test, and implement complex Workday security solutions across domain and business process security, security groups, intersection security, integration security, and other advanced configurations.
Lead security-related projects and initiatives, coordinating activities across functional, technical, audit, and Information Security stakeholders. - Technical Leadership & Security Operations
Serve as…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).