Senior Associate, Security Strategist

Publicis GroupeBoston, MA
$90,000 - $120,000

About The Position

The Senior Security Strategist reports to the Director of Security Strategy and Innovation and helps drive enterprise security architecture governance, capability strategy, risk assessment, and security innovation. This role extends strategic capacity. It translates security priorities into target-state capability direction, gap and redundancy analysis, and roadmap recommendations that business and technical stakeholders can act on. It operates at the security ecosystem level, not at the level of individual application, solution, or cloud deployment review. This role shapes and helps execute security strategy in a global, fast-moving environment where security decisions must align with business goals, platform risk, and regulatory expectations. The position suits a practitioner who can move between strategic analysis and capability-level architecture governance: defining where the security ecosystem needs to go, where it overlaps or has gaps, and how the capability portfolio should evolve over time.

Requirements

  • 5 to 8 years of experience in security strategy, enterprise security architecture, risk management, or related security roles.
  • Strong understanding of cloud security across Azure, AWS, and GCP at the capability and control-design level, including common failure modes.
  • Experience with capability assessment, target-state architecture, threat modeling, and risk analysis.
  • Working knowledge of ISO 27001, NIST CSF, and MITRE ATT&CK.
  • Strong written and verbal communication, with the ability to present concise recommendations to leadership and partner teams.

Nice To Haves

  • Experience in defining security capability roadmaps or operating models across multiple teams.
  • Experience with security automation, analytics, or AI-supported security workflows.
  • Background in incident response, forensics, threat intelligence, or compliance coordination.
  • Familiarity with zero trust principles, identity and access management, secure SDLC, and privacy-aligned control design.
  • Experience working across global teams with multiple stakeholders and competing priorities.

Responsibilities

  • Support the Director of Security Strategy and Innovation in executing strategic security priorities across programs, platforms, and business initiatives.
  • Prepare briefing materials, maturity assessments, and decision support content for leadership audiences.
  • Track strategic initiatives, capability gaps, and roadmap commitments to support program execution and follow-through.
  • Operate at the security ecosystem or urbanism level: define target-state security capabilities and how they fit together across the enterprise.
  • Identify capability gaps, overlaps, and redundancies across the security portfolio, and recommend what to add, enhance, consolidate, or retire.
  • Shape and maintain the strategic roadmap for security capabilities, aligned to business needs, risk priorities, and technology trends.
  • Ensure the overall security architecture evolves coherently, rather than reviewing individual applications, solutions, or cloud deployments, which sit with the solution and operational architecture function.
  • Apply structured analysis using frameworks such as ISO 27001, NIST, and MITRE ATT&CK to support capability and roadmap decisions.
  • Help define the operating model for strategic initiatives, including how capabilities move from strategy into ongoing operations.
  • Develop RACIs and end-to-end process definitions that span the teams involved in running each capability.
  • Translate target-state capability decisions into clear ownership, sequencing, and dependencies for the teams that execute them.
  • Support the evaluation of new security technologies, AI-enabled tools, automation opportunities, and process improvements relevant to current risk priorities.
  • Contribute to pilot efforts that test security tooling, operating models, or analytical methods before broader rollout.
  • Assess whether proposed innovations reduce measurable risk, improve visibility, or strengthen program maturity at the capability level.
  • Monitor threat trends and adversary behaviors that may affect enterprise, cloud, identity, API, and data security capabilities.
  • Work with security operations, incident response, compliance, privacy, legal, and business teams to align capability strategy with operational lessons and regulatory obligations.
  • Communicate capability gaps, risks, and roadmap recommendations clearly to both technical and non-technical stakeholders.

Benefits

  • medical
  • dental
  • vision
  • retirement(401(K))
  • wellness
  • other employee programs
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service