Senior cybersecurity architect
Listed on 2026-06-11
-
IT/Tech
Cybersecurity
Now Brewing Senior Security Architect! #tobeapartner
From the beginning, Starbucks set out to be a different kind of company. One that not only celebrated coffee and the rich tradition, but that also brought a feeling of connection. We are known for developing extraordinary leaders who share this passion and are guided by their service to others.
This role contributes to Starbucks success by safeguarding information and systems assets against unauthorized use, disclosure, modification, damage, or loss. The groupprovidesservices to protect the value and use of information through collaboration, standardization, enforcement, and education across the Company.
Security Architecture uses risk frameworks and methodologies to assess technology risk, evaluate technology providers, review trends, threats, and solutions. We use these assessments to inform decision making, establish, and interpret cybersecurity policies and standards, and provide implementation guidance to manage risk.
This role will deliver security architecture expertise, and best practices oversight across complex multi-cloud, multi-partner environments. It entails deep-level architecture reviews, crafting advisory and design reference architectures and secure design patterns. The end goal drives Starbucks Technology into compliance with standards, policies, and applicable regulations globally.
This position reports to the director of Security Architecture within the Global Cybersecurity Services (GCS) organization. GCS is chartered with leading, inspiring, and supporting Starbucks to cultivate trust in our brand by ensuring confidentiality, integrity, and availability in every partner, customer & supplier experience.
As a Senior Security Architect, you will
- Ensure delivery of a world class cybersecurity program.
- Develop reference architectures that can be used to solve common requirements or mitigate trends in security findings in a repeatable way following (and identifying) recommended best practices.
- Lead threat modeling and partner with technical delivery teams to integrate security requirements and practices into solutions.
- Drive security architecture reviews of platforms & applications in complex multi-tenant, multi-provider,and vendor-cloud environments.
- Provide consultative services and guidance for tech builders during technical design of solutions.
- Inspire and influence others to achieve results Partner with engineering and delivery teams to help enable strategic platform initiatives.
- Proactively manage oversight and pace for the architecture reviews and promptly address any critical issues that may create risk.
- Be accountable for the quality and successful outcome of the work Ensure assessments are known, documented, and properly performed to produce consistent, timely, high-quality deliverables. Develop andmaintaintechnicalproficiencyand related certifications for core products and solution areas.
- Enjoy working on an energetic, fun team and have a clear ability to drive the business forward as part of a highly collaborative team, while acting in accordance with Starbucks guiding principles and values.
Wed love to hear from people with:
- Minimum of 7+years working in cybersecurity related field.
- We prefer 3 years demonstrated experience in cybersecurity and a total minimum of 7 years in information technology or related field.
- Demonstrated knowledge of:
- cybersecurity frameworks (e.g., NIST, ISO, CSA), policies, design principles, practices and enabling tools.
- Formal risk assessment documentation
- Threat modeling
- Public cloud services (AWS, Azure, GCP, etc.) and serverless and containerized environments.
- Encryption,authentication/authorization, API security, secrets best practices.
- IaC(Infrastructure as Code) and supporting technologies
- General security threats, attack vectors, and vulnerabilities - ability to act as SME on threat modeling.
- Architecture tools, patterns, serverless ecosystems, pipeline security.
- Able to use critical and logical thinking to prioritize work that drives the most impact to overall securitypostureand risk management.
- Exceptional written and verbal communication skills.
- Ability to establish cross-functional, collaborative relationships with business and technology partners.
Demonstrated ability to work in a challenging, dynamic, and fast-paced environment with limited supervision. Candidate should be able to
succeed in both independent and collaborative work scenarios.
- Certifications such as CISSP, CISM, CIPM or others focused on information security, data privacy or information risk management are desired.
As a Starbucks partner, you (and your family) will have access to medical, dental, vision, basic and supplemental life insurance, and other voluntary insurance benefits. Partners have access to short-term and long-term disability, paid parental leave, family expansion reimbursement, paid vacation from date of hire*, sick time (accrued at 1 hour for every 25 hours worked), eight paid holidays, and two personal days per year.
Starbucks also offers…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).