Now hiring

Cloud Security Architect (LAKE FOREST, IL, US, 60045-5202) @ Grainger Businesses

Lake Forest, California, USOnsiteFull-time
Apply with ResuMinder

Opens on the employer's site

About this role

<p><span style="font-size:12.0px"><span style="font-family:Arial, Helvetica, sans-serif"><strong> </strong></span></span></p> <p><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="color:indianred"><strong>Work Location Type: </strong></span><span style="color:indianred"><strong><strong><strong><strong>Hybrid</strong></strong></strong></strong></span><span style="color:indianred"> </span></span></p> <p> </p> <p><span style="font-size:10.0pt;color:indianred;font-family:verdana, geneva, sans-serif"><strong>Req Number</strong> 328865</span></p> <p> </p> <p><span style="color:indianred;font-family:verdana, geneva, sans-serif;font-size:10.0pt"><strong>About Grainger</strong></span></p> <p><span style="font-size:10.0pt;font-family:verdana, geneva, sans-serif">W.W. Grainger, Inc., is a leading broad line distributor with operations primarily in North America, Japan and the United Kingdom. At Grainger, We Keep the World Working® by serving more than 4.5 million customers worldwide with products and solutions delivered through innovative technology and deep customer relationships. Known for its commitment to service and award-winning culture, the Company had 2024 revenue of $17.2 billion across its two business models. In the High-Touch Solutions segment, Grainger offers approximately 2 million maintenance, repair and operating (MRO) products and services, including technical support and inventory management. In the Endless Assortment segment,<a href="http://Zoro.com"> Zoro.com</a> offers customers access to more than 14 million products, and<a href="http://MonotaRO.com"> MonotaRO.com</a> offers more than 24 million products. For more information, visit<a href="http://www.grainger.com"> www.grainger.com. </a></span></p> <p> </p> <p><span style="color:#b22222;font-family:verdana, geneva, sans-serif;font-size:10.0pt"><strong><span style="color:indianred">Compensation</span></strong></span></p> <p style="margin:0.0in 0.0in 8.0pt;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;line-height:115%;font-family:verdana, geneva, sans-serif">The anticipated base pay compensation range for this position is $146,200.00<strong> – </strong>$243,600.00. This role is eligible for an incentive target of up to 20 % or $ , based on the achievement of individual and company performance objectives in accordance with the current terms of the incentive program which are subject to change.</span></p> <p style="margin:0.0in 0.0in 8.0pt;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"> </p> <p><span style="font-size:10.0pt"><strong>"This position is not eligible for any form of sponsorship now or in the future. Individuals requiring sponsorship (e.g. OPT or H1B visa status) should not apply. Only individuals authorized to work in the United States now and for the foreseeable future will be considered for this position." </strong> </span></p> <p style="margin-bottom:11.0px;text-align:justify"> </p> <p style="margin-bottom:11.0px;text-align:justify"><span style="font-size:10.0pt;color:indianred;font-family:verdana, geneva, sans-serif"><strong>Rewards and Benefits</strong></span></p> <p style="margin:0.0in 0.0in 8.0pt;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;line-height:115%;font-family:verdana, geneva, sans-serif">With benefits starting on day one, our programs provide choice and flexibility to meet team members&apos; individual needs, including:</span></p> <ul style="margin-top:0.0in;margin-bottom:0.0in" type="disc"> <li style="margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;line-height:115%;font-size:10.0pt;font-family:verdana, geneva, sans-serif"><span style="font-size:10.0pt;line-height:115%;font-family:verdana, geneva, sans-serif">Medical, dental, vision, and life insurance plans with coverage starting on day one of employment and 6 free sessions each year with a licensed therapist to support your emotional wellbeing.</span></li> <li style="margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;line-height:115%;font-size:10.0pt;font-family:verdana, geneva, sans-serif"><span style="font-size:10.0pt;line-height:115%;font-family:verdana, geneva, sans-serif">18 paid time off (PTO) days annually for full-time employees (accrual prorated based on employment start date) and 6 company holidays per year.</span></li> <li style="margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;line-height:115%;font-size:10.0pt;font-family:verdana, geneva, sans-serif"><span style="font-size:10.0pt;line-height:115%;font-family:verdana, geneva, sans-serif">6% company contribution to a 401(k) Retirement Savings Plan each pay period, no employee contribution required.</span></li> <li style="margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;line-height:115%;font-size:10.0pt;font-family:verdana, geneva, sans-serif"><span style="font-size:10.0pt;line-height:115%;font-family:verdana, geneva, sans-serif">Employee discounts, tuition reimbursement, student loan refinancing and free access to financial counseling, education, and tools.</span></li> <li style="margin-top:0.0in;margin-right:0.0in;margin-bottom:8.0pt;line-height:115%;font-size:10.0pt;font-family:verdana, geneva, sans-serif"><span style="font-size:10.0pt;line-height:115%;font-family:verdana, geneva, sans-serif">Maternity support programs, nursing benefits, and up to 14 weeks paid leave for birth parents and up to 4 weeks paid leave for non-birth parents.</span></li> </ul> <p style="margin-bottom:11.0px;text-align:justify"> </p> <p style="margin-bottom:11.0px;text-align:justify"><span style="font-size:10.0pt;font-family:verdana, geneva, sans-serif">For additional information and details regarding Grainger’s benefits, please click on the link below:</span></p> <p style="margin-bottom:11.0px;text-align:justify"> </p> <p style="margin-bottom:11.0px;text-align:justify"><span style="font-size:10.0pt;font-family:verdana, geneva, sans-serif"><a style="color:#467886;text-decoration:underline" href="https://experience100.ehr.com/grainger/Home/Tools-Resources/Key-Resources/New-Hire">https://experience100.ehr.com/grainger/Home/Tools-Resources/Key-Resources/New-Hire</a></span></p> <p style="margin-bottom:11.0px;text-align:justify"> </p> <p style="margin-bottom:11.0px;text-align:justify"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><strong><span style="color:indianred">Grainger Benefits</span></strong></span></p> <p style="margin-bottom:11.0px;text-align:justify"><span style="font-size:10.0pt;line-height:115%;font-family:verdana, geneva, sans-serif">The pay range provided above is not a guarantee of compensation. The range reflects the potential base pay for this role at the time of this posting based on the job grade for this position. Individual base pay compensation will depend, in part, on factors such as geographic work location and relevant experience and skills. </span></p> <p style="margin-bottom:11.0px;text-align:justify"> </p> <p style="margin:0.0in 0.0in 8.0pt;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;line-height:115%;font-family:verdana, geneva, sans-serif">The anticipated compensation range described above is subject to change and the compensation ultimately paid may be higher or lower than the range described above. </span></p> <p style="margin:0.0in 0.0in 8.0pt;line-height:115%;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;line-height:115%;font-family:verdana, geneva, sans-serif">Grainger reserves the right to amend, modify, or terminate its compensation and benefit programs in its sole discretion at any time, consistent with applicable law.</span></p> <p> </p> <p> </p><p><strong><span style="font-family:verdana, geneva, sans-serif"><span style="color:#b22222;font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="color:indianred">Position Details</span></span><br></span></strong></p> <p><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">The Information Security team protects all of Grainger, from our systems to our data across the global company. Our infrastructure is powered by cloud, on-premises, and SaaS platforms that keep Grainger, and our customers, working. We use modern tools and practices to stay ahead of evolving security challenges.</span></p> <p> </p> <p><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">The mission of the Security Architecture team is to be the strategic security design partner for Grainger’s technology. As the security architect responsible for Grainger’s cloud platforms, you will be responsible for architecting, advising on, and governing a secure cloud infrastructure supporting business needs.</span></p> <p> </p> <p><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">You will support the progressive needs of the business and provide timely, secure and cost-efficient solutions that elevate the company’s cloud security posture. An advanced role, the cloud architect will deliver resilient architectures at scale to support business initiatives. The role requires deep technical knowledge of cloud computing architecture, security principles, and cybersecurity best practices. A cloud security architect is highly technical and proficient in cybersecurity and systems administration across a wide variety of infrastructure types (SaaS, IaaS, PaaS), with a strong understanding of cloud-native patterns including containerization, serverless, and infrastructure as code. A deep level of demonstrated experience with AWS is a requirement, with functional knowledge of Microsoft Azure and Google Cloud required.</span></p> <p> </p> <p><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">In this individual contributor role, you will report to the Director of Cybersecurity Architecture and may be based remotely or at our offices in the Chicago area.</span></p> <p> </p> <p><span style="font-size:10.0pt"><strong>"This position is not eligible for any form of sponsorship now or in the future. Individuals requiring sponsorship (e.g. OPT or H1B visa status) should not apply. Only individuals authorized to work in the United States now and for the foreseeable future will be considered for this position." </strong> </span></p> <p> </p> <p><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="color:#b22222;font-family:verdana, geneva, sans-serif;font-size:10.0pt"><strong><span style="color:indianred">You will</span></strong></span><br></span></p> <ul> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><a name="you-have"></a>Plan, research, and develop security architecture for cloud solutions (SaaS, PaaS, and IaaS), which may include custom in-house solutions and third-party solutions</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Define strategies and roadmaps to support security and company technology goals</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Communicate the state of cloud security posture to cybersecurity leaders, IT leaders, and other stakeholders through a thoughtful metrics and KPI-driven message</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Develop, maintain, and enforce cloud security policies and procedures. Leverage best practices, standards, and baselines such as Cloud Security Alliance Cloud Controls Matrix (CCM), CIS Benchmarks, cloud provider Well-Architected Framework security pillars, and NIST SP 800-series</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Work with teams to define requirements, evaluate architecture, analyze trade-offs, and recommend solutions</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Create conceptual and logical architecture designs, including cloud security reference architectures and secure landing zone designs</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Assess risks through threat modeling and white-boarding exercises with teams</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Evaluate products and tools through Proof of Value exercises</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Advise product teams on the security implications of their roadmaps</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Partner with engineering teams, cloud platform teams, and other peer architecture teams to ensure security is embedded in technical decisions from design through implementation</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Define and maintain cloud account/subscription governance, including organizational unit structure, service control policies, and permission boundaries</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Design and advise on security architectures for CI/CD pipelines, including secrets management, IaC scanning, container image scanning, and artifact integrity</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Architect cloud-native security monitoring and logging strategies, including integration with Grainger’s SIEM/SOAR platform</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Evaluate and mature cloud-native security tooling to support detection, prevention, and compliance objectives</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Mentor peers and junior architects through design reviews, knowledge sharing, and technical leadership across the security architecture team</span></li> </ul> <p> </p> <p><span style="color:#b22222;font-family:verdana, geneva, sans-serif;font-size:10.0pt"><strong><span style="color:indianred">You have</span></strong></span></p> <ul> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">5+ years of architecture experience, with at least 3 years focused on cloud environments</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">8+ years of information security experience</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Bachelor&apos;s degree preferred or equivalent work experience</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Deep expertise in designing cloud security architectures that support the business needs of large enterprises, with primary depth in AWS and functional proficiency in Microsoft Azure and Google Cloud</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Proven experience with zero trust architecture principles, encryption and key management, web application firewalls, data protection, vulnerability management, API security, and Infrastructure as Code security (Terraform, CloudFormation, or equivalent)</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Strong understanding of cloud IAM architecture, including AWS IAM policies, service control policies (SCPs), Azure Entra ID conditional access, and federated identity patterns</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Experience with cloud-native security tooling, including CNAPP, CSPM, CWPP, and CIEM solutions</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Working knowledge of container and Kubernetes security concepts, including image scanning, runtime protection, admission control, network policies, and RBAC</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Familiarity with CI/CD pipeline security practices, including shift-left security integration, secrets management, SAST/DAST, and software supply chain security concepts (SBOM, artifact signing)</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Familiarity with security frameworks and industry standards such as CIS Benchmarks, CSA CCM, NIST CSF, and cloud provider Well-Architected Frameworks</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Working knowledge of AI/ML workload security, including securing data pipelines, model hosting infrastructure, and awareness of frameworks such as OWASP Top 10 for LLMs and MITRE ATLAS</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Working technical knowledge within the network security space. Areas of familiarity should include SSE/SASE, SD-WAN, next-generation firewalls, enterprise routing and switching, microsegmentation, web application firewalls, and cloud-adjacent and edge compute</span></li> <li style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Design and communicate cloud security monitoring and logging architectures, including native cloud provider tools and SIEM/SOAR integration</span></li> <li><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt">Relevant certifications preferred: CISSP, CCSP, AWS Solutions Architect, or vendor-specific cloud security certifications (e.g., AWS Security Specialty/Network Specialty)</span></li> </ul><p> </p> <p><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><em>We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex (including pregnancy), national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or expression, protected veteran status or any other protected characteristic under federal, state, or local law. We are proud to be an equal opportunity workplace.</em></span></p> <p style="margin-bottom:12.0px;margin-top:12.0px"> </p> <p><span style="font-family:verdana, geneva, sans-serif;font-size:10.0pt"><em>We are committed to fostering an inclusive, accessible work environment that includes both providing reasonable accommodations to individuals with disabilities during the application and hiring process as well as throughout the course of one’s employment, should you need a reasonable accommodation during the application and selection process, including, but not limited to use of our website, any part of the application, interview or hiring process, please advise us so that we can provide appropriate assistance.</em></span></p>

Ready to apply?

Install the ResuMinder extension and we'll auto-fill the application in seconds — no rewriting.

See how your CV scores