Principal Enterprise Endpoint Security Portfolio Architect (remote)

RTX RTX · Aerospace · richardson, TX +1 · Digital Technology

RTX Enterprise Cybersecurity Services is seeking a Lead Enterprise Endpoint Security Portfolio Architect to define the strategy and architecture for securing endpoints across their global enterprise. This role involves managing endpoint security technologies, vendor strategy, and ensuring workforce devices are secure and compliant, integrating with Zero Trust and regulatory frameworks.

What you'd actually do

  1. Define and maintain enterprise endpoint security reference architectures and roadmaps across Windows, macOS, Linux, iOS/Android, and specialized devices (IoT/OT where applicable)
  2. Serve as portfolio owner for endpoint security solutions, including lifecycle management, investment planning, vendor strategy, and cost optimization
  3. Lead design and adoption of modern endpoint protection platforms (NGAV, EDR, XDR) and ensure integration with SOC/SIEM/SOAR for advanced detection and response
  4. Establish endpoint hardening, encryption, and privilege management standards (BitLocker, FileVault, AppLocker/WDAC, Just-in-Time access)
  5. Drive UEM/MDM strategies (Intune, JAMF, Workspace ONE, etc.) to secure corporate, BYOD, and hybrid device environments

Skills

Required

  • cybersecurity
  • information technology
  • endpoint protection technologies
  • SOC workflows
  • endpoint security architecture
  • global or regulated industries
  • Windows, macOS, Linux, iOS/Android, IoT/OT
  • NGAV, EDR, XDR
  • SIEM/SOAR
  • endpoint hardening
  • encryption
  • privilege management
  • UEM/MDM
  • Zero Trust
  • conditional access
  • regulatory frameworks (NIST, ITAR/EAR, ISO 27001, CIS Benchmarks)

Nice to have

  • CISSP, CISM, or vendor-specific IAM certifications
  • Intune, JAMF, Workspace ONE
  • OS hardening
  • endpoint privilege management
  • encryption
  • application control
  • Zero Trust frameworks (NIST SP 800-207, CISA ZTMM)
  • enterprise architecture methods (TOGAF, SABSA, DoDAF)
  • security frameworks (NIST CSF, CIS Controls, MITRE ATT&CK)
  • continuous learning and improvement

What the JD emphasized

  • The ability to obtain and maintain a U.S. government issued security clearance is required.
  • U.S. citizenship is required
  • 10+ years experience in cybersecurity
  • 10+ years experience with endpoint protection technologies
  • Experience leading endpoint security architecture at enterprise scale, preferably in global or regulated industries.
  • regulatory frameworks (NIST, ITAR/EAR, ISO 27001, CIS Benchmarks)