Share this Job

Security Architect


King Of Prussia, PA, US

Company:  UGI Corporation

Security Architect

Power up your career in the dynamic energy industry! UGI Corporation is an international energy distribution and services company that provides superior service in delivering a range of energy products. By operating as a best-in-class service provider, offering a great place to work, serving our communities and delivering value to investors, we aim to positively impact the lives of our shareholders, employees, customers and communities.

UGI Corporation (NYSE: UGI) is a holding company that distributes and markets energy products and services through our subsidiaries and the company’s common stock is a balanced growth and income investment. UGI Corporation has paid common dividends for more than 134 consecutive years.

In addition to a challenging career and competitive compensation, our employees enjoy:

Generous and Family-friendly Health & Welfare Benefits Including:


•    Medical
•    Dental
•    Vision
•    Optional Health Savings Account
•    Optional Dependent Care Savings Account
•    Paid Maternity/Paternity Leave
•    Prescription Coverage
•    Health Advocate
•    Life Insurance
•    Disability Insurance 
•    Work from home policy
•    Employee Assistance Program


Additional Benefits Include:


•    401K with a generous company match
•    Tuition Reimbursement
•    Assistance with Professional Credentialing
•    Adoption Assistance
•    Pet Insurance 
•    Referral Bonuses
•    Onsite Deli 
•    Employee Discount Programs



The role of the Global Security Architect defines and manages the strategy and standards for security technology with a focus on mapping security technology solutions to business value and adherence to applicable laws and regulations.  This position is responsible for planning, designing, building, implementing, and maintaining security capabilities through a security architecture framework and best practices by implementing security standards, processes, policies, and procedures to protect the confidentiality, integrity and availability of UGI information systems.

Job Responsibilities:


•    Develop a complete understanding of the company’s technology,  information systems and cybersecurity regulatory requirements
•    Identify security architecture design gaps and propose a security architecture using an industry framework and best practices that supports the defense and depth strategy Design, build, implement a security architecture 
•    Define cloud security controls and policies based on zero-trust model, least privilege, key management process, certificate management, and secure data treatment.
•    Identify and communicate current and emerging security threats
•    Create standards, policies and procedures to support security architecture framework and processes, i.e. architectural diagrams
•    Build security practices in the System Development Life Cycle process (i.e. waterfall, agile frameworks)
•    Be a champion of the security architecture design requirements through promoting the security architecture framework, best practices, standards and policies 
•    Hold periodic training and awareness sessions to educate Information Technology staff and key stakeholders 
•    Participate in enterprise projects to ensure technologies align with the security architecture framework and best practices as part of the  while architectural governance review process
•    Collaborate with various IT teams and project teams by providing key technical consulting and advisory services to ensure that systems solutions are in line with the architecture direction and business strategies
•    Research information security emerging threats and applying standards to eliminate or mitigate risks; 
•    Provide technical expertise on vendor assessments when vendor presents a critical cyber risk to the organization and/or during merger and acquisition assessments  
•    Implement a continuous improvement program to enhance and resolve issues associated with the security architecture.
•    Provide technical expertise and troubleshooting for security design issues that disrupt technology and/or business process and provide analysis on required remediation that addresses root cause.
•    Work in tandem with other  architects to review  IT designs that may have impact to the security architecture 


Job Requirements:


•    A Bachelor's degree in Information Technology, Computer Science, or related field. Advanced IT security certifications may be advantageous. or equivalent job experience
•    At least 10 years' experience in information security or IT risk management with large enterprise environment supporting mission-  critical solutions in multiple information technology disciplines such as client/server technology, databases, applications, middleware, web technologies, mobile technology, data security, operating systems, etc. 
•    At least 5 years of security architecture experience with 3 years in a lead architect role
•    Requires a strong knowledge across all areas of Security.
•    Broad security-related domain knowledge with cryptography, PKI framework, authentication and authorization, identity and access management, data protection, vulnerability management tools, OAuth/Open ID connect, Web security. Broad understanding of cybersecurity frameworks - National Institute Standards and Technology (NIST), Center for Internet Security (CIS), International Standard Organization (ISO), OWASP, etc.
•    Proven ability to lead security architecture
•    Broad understanding of GDPR, SOX and PCI security requirements
•    Strong knowledge of network and application penetration testing capabilities
•    Strong knowledge and experience with networking, firewalls, VPN’s, and IPS
•    Ability to drive major changes via formal and informal influence
•    Excellent, demonstrated creative and practical problem-solving and issue resolution skills
•    Ability to anticipate and design around potential problems that could impact user experience, scalability, security and reliability
•    Excellent written and verbal communication skills


Other Requirements:


•    May requires after hours and weekend work to respond to emergency events and perform maintenance
•    This position will have a matrix relations with the Global Information Security Group



All offers of employment are contingent upon the successful completion of a background check and drug screen, subject to applicable laws and regulations.


UGI Corporation is an Equal Opportunity Employer.  The company maintains and observes employment policies that do not discriminate against any person because of race, color, sex, sexual orientation, gender identity, national origin, religion, disability, age, ancestry and any other basis prohibited by federal, state or local law. This applies to recruiting, hiring, training, compensation, overtime, job classifications, work assignments, promotions, demotions, layoffs, terminations, transfers, and all other conditions of employment.

Nearest Major Market: Philadelphia

Job Segment: Architecture, Medical, Law, Consulting, Security, Engineering, Healthcare, Legal, Technology