Principal Security Architect

Memphis, TN
Full-Time

Job Description

Location: Memphis, TN

Weekly Schedule: Monday- Friday: 9am-5pm

Primary Responsibilities
  • Manages solution design from conception, through ARB, to delivery
  • Primarily responsible for producing architecture documentation for security applications as assigned and as projects and programs of work dictate
  • Maintains First Horizon’s Security Architecture Pattern Inventory (across identity, data, application, network, and cloud) as a member of the Core Enterprise Architecture Team
  • Leads security design workshops and POC efforts for new (security) capabilities
  • Validates 3rd Party/Vendor Solutions for security concerns
  • Aligns Information Security Technology strategy and planning with First Horizon’s business goals and objectives
  • Promotes the use of a shared infrastructure and application roadmap to reduce costs and improve how assets are secured
  • Builds and maintains technical trusted advisor relationships with influential technical decision makers within Technology
  • Works with engineers to ensure that technical solutions as delivered align with Information Security Standards and Policies
  • Works with Portfolio technology leaders to include IT Risk and Security Exception initiatives in portfolio roadmap
  • Manage Encryption Standards: key management, tokenization for payments, DLP/classification/handling; architect PCI DSS segmentation boundaries and compensating controls.
  • Manage Network/Zero Trust Standards: microsegmentation across Azure and colocation; secure branch/office connectivity; define workload identity and continuous verification patterns; enforce least privilege.
  • Detection/telemetry: Publish Splunk logging schema, retention, and correlation strategies; onboard logs from Azure, Colo, API Gateways, IAM, CyberArk, MFaaS, and core platforms; drive ATT&CKaligned detections and forensic readiness.
  • Secure SDLC and supply chain: Operationalize threat modeling; collaboratively define CI/CD control overlays with DevOps; establish artifact signing/SBOM standards; ensure secrets handling and container/Kubernetes baselines where applicable.
  • Governance and risk: Maintain control overlays mapped to FFIEC/GLBA/PCI/NIST; lead design reviews; manage exceptions with remediation timelines; produce audit-ready decision records in partnership with the CISO team.
  • Payments and third-party/SaaS: Define intake and security requirements for MFaaS, Salesforce, ServiceNow, FIS/Fiserv/Bottomline integrations—identity, logging, data handling, and PCI scoping.
  • Physical security integration: Align building access, video, and visitor systems with identity and logging patterns; coordinate incident playbooks with Corporate/Physical Security.
  • Enablement and influence: Mentor senior architects and engineering associates; lead communities of practice; communicate strategy, benefits, and trade-offs to executives and delivery teams.
Requirements
  • Bachelor's degree in Computer Science, Management Information Systems, or related field
  • (12+) years of Information Security experience
  • (7+) years of Security Architecture
  • Experience in regulated financial services
  • Experience with Azure security architecture across multi-tenant/region and hybrid environments; strong Zero Trust and network segmentation expertise
  • Regulatory fluency: FFIEC, GLBA, PCI DSS; practical NIST CSF/800-53 mapping; MITRE ATT&CKaligned detection design.
  • Experience with technical documentation like interaction diagrams, process diagrams, network topologies and other architectural content
  • Experience with Agile/SAFe methodologies
  • Experience with Enterprise Architecture Governance: ARB/design councils, exception handling, and audit narratives; ability to set and harmonize enterprise standards.
Certifications/Licensures
  • Strongly preferred: CISSP or CompTIA Security+
  • Microsoft Azure Security Engineer or Azure Solutions Architect Expert
  • Preferred: CCSP; CISM or CRISC; SANS GCSA or GCLD; PCI Professional (PCIP) or equivalent GIAC enterprise defense/IR certifications
Skills And Competencies
  • Ability to adapt to new technologies and learn quickly
  • Enterprise architectural leadership across identity, cloud, application, data, and network security.
  • IAM for associates (Entra ID, Active Directory) and clients (Transmit Security, ForgeRock/Ping, or Okta); OAuth/OIDC; phishing-resistant MFA/passkeys; PAM integration and privileged pathway design.
  • Integration Security: FAPI, OAuth2.0, FDX, mTLS, rate limiting, schema validation, abuse/bot mitigation, CIAM integration, OWASP, and high-quality telemetry to Splunk.
  • Secure SDLC and supply chain: threat modeling, pipeline security, artifact signing/SBOM, dependency hygiene, and secrets management.
  • Communication, influence, and enablement: ability to translate risk to business impact, drive adoption, and coach peers and engineers.
  • Ownership and execution: measurable risk reduction, pattern adoption, and crossteam collaboration.

About Us

First Horizon Corporation is a leading regional financial services company, dedicated to helping our clients, communities and associates unlock their full potential with capital and counsel. Headquartered in Memphis, TN, the banking subsidiary First Horizon Bank operates in 12 states across the southern U.S. The Company and its subsidiaries offer commercial, private banking, consumer, small business, wealth and trust management, retail brokerage, capital markets, fixed income, and mortgage banking services. First Horizon has been recognized as one of the nation's best employers by Fortune and Forbes magazines and a Top 10 Most Reputable U.S. Bank. More information is available at www.FirstHorizon.com

Benefit Highlights

• Medical with wellness incentives, dental, and vision

• HSA with company match

• Maternity and parental leave

• Tuition reimbursement

• Mentor program

• 401(k) with 6% match

• More -- FirstHorizon.com/First-Horizon-National-Corporation/Careers/Our-Benefits

Follow Us

Facebook

X formerly Twitter

LinkedIn

Instagram

YouTube

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.PDN-a09e8777-7b45-4e54-8f6e-f3bb391e122f

Location: Memphis, TN

Weekly Schedule: Monday- Friday: 9am-5pm

Primary Responsibilities
  • Manages solution design from conception, through ARB, to delivery
  • Primarily responsible for producing architecture documentation for security applications as assigned and as projects and programs of work dictate
  • Maintains First Horizon’s Security Architecture Pattern Inventory (across identity, data, application, network, and cloud) as a member of the Core Enterprise Architecture Team
  • Leads security design workshops and POC efforts for new (security) capabilities
  • Validates 3rd Party/Vendor Solutions for security concerns
  • Aligns Information Security Technology strategy and planning with First Horizon’s business goals and objectives
  • Promotes the use of a shared infrastructure and application roadmap to reduce costs and improve how assets are secured
  • Builds and maintains technical trusted advisor relationships with influential technical decision makers within Technology
  • Works with engineers to ensure that technical solutions as delivered align with Information Security Standards and Policies
  • Works with Portfolio technology leaders to include IT Risk and Security Exception initiatives in portfolio roadmap
  • Manage Encryption Standards: key management, tokenization for payments, DLP/classification/handling; architect PCI DSS segmentation boundaries and compensating controls.
  • Manage Network/Zero Trust Standards: microsegmentation across Azure and colocation; secure branch/office connectivity; define workload identity and continuous verification patterns; enforce least privilege.
  • Detection/telemetry: Publish Splunk logging schema, retention, and correlation strategies; onboard logs from Azure, Colo, API Gateways, IAM, CyberArk, MFaaS, and core platforms; drive ATT&CKaligned detections and forensic readiness.
  • Secure SDLC and supply chain: Operationalize threat modeling; collaboratively define CI/CD control overlays with DevOps; establish artifact signing/SBOM standards; ensure secrets handling and container/Kubernetes baselines where applicable.
  • Governance and risk: Maintain control overlays mapped to FFIEC/GLBA/PCI/NIST; lead design reviews; manage exceptions with remediation timelines; produce audit-ready decision records in partnership with the CISO team.
  • Payments and third-party/SaaS: Define intake and security requirements for MFaaS, Salesforce, ServiceNow, FIS/Fiserv/Bottomline integrations—identity, logging, data handling, and PCI scoping.
  • Physical security integration: Align building access, video, and visitor systems with identity and logging patterns; coordinate incident playbooks with Corporate/Physical Security.
  • Enablement and influence: Mentor senior architects and engineering associates; lead communities of practice; communicate strategy, benefits, and trade-offs to executives and delivery teams.
Requirements
  • Bachelor's degree in Computer Science, Management Information Systems, or related field
  • (12+) years of Information Security experience
  • (7+) years of Security Architecture
  • Experience in regulated financial services
  • Experience with Azure security architecture across multi-tenant/region and hybrid environments; strong Zero Trust and network segmentation expertise
  • Regulatory fluency: FFIEC, GLBA, PCI DSS; practical NIST CSF/800-53 mapping; MITRE ATT&CKaligned detection design.
  • Experience with technical documentation like interaction diagrams, process diagrams, network topologies and other architectural content
  • Experience with Agile/SAFe methodologies
  • Experience with Enterprise Architecture Governance: ARB/design councils, exception handling, and audit narratives; ability to set and harmonize enterprise standards.
Certifications/Licensures
  • Strongly preferred: CISSP or CompTIA Security+
  • Microsoft Azure Security Engineer or Azure Solutions Architect Expert
  • Preferred: CCSP; CISM or CRISC; SANS GCSA or GCLD; PCI Professional (PCIP) or equivalent GIAC enterprise defense/IR certifications
Skills And Competencies
  • Ability to adapt to new technologies and learn quickly
  • Enterprise architectural leadership across identity, cloud, application, data, and network security.
  • IAM for associates (Entra ID, Active Directory) and clients (Transmit Security, ForgeRock/Ping, or Okta); OAuth/OIDC; phishing-resistant MFA/passkeys; PAM integration and privileged pathway design.
  • Integration Security: FAPI, OAuth2.0, FDX, mTLS, rate limiting, schema validation, abuse/bot mitigation, CIAM integration, OWASP, and high-quality telemetry to Splunk.
  • Secure SDLC and supply chain: threat modeling, pipeline security, artifact signing/SBOM, dependency hygiene, and secrets management.
  • Communication, influence, and enablement: ability to translate risk to business impact, drive adoption, and coach peers and engineers.
  • Ownership and execution: measurable risk reduction, pattern adoption, and crossteam collaboration.

About Us

First Horizon Corporation is a leading regional financial services company, dedicated to helping our clients, communities and associates unlock their full potential with capital and counsel. Headquartered in Memphis, TN, the banking subsidiary First Horizon Bank operates in 12 states across the southern U.S. The Company and its subsidiaries offer commercial, private banking, consumer, small business, wealth and trust management, retail brokerage, capital markets, fixed income, and mortgage banking services. First Horizon has been recognized as one of the nation's best employers by Fortune and Forbes magazines and a Top 10 Most Reputable U.S. Bank. More information is available at www.FirstHorizon.com

Benefit Highlights

• Medical with wellness incentives, dental, and vision

• HSA with company match

• Maternity and parental leave

• Tuition reimbursement

• Mentor program

• 401(k) with 6% match

• More -- FirstHorizon.com/First-Horizon-National-Corporation/Careers/Our-Benefits

Follow Us

Facebook

X formerly Twitter

LinkedIn

Instagram

YouTube

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.PDN-a09e8777-7b45-4e54-8f6e-f3bb391e122f

About First Horizon National Corporation

First Horizon is a leading regional financial services company, dedicated to helping our clients, communities and associates unlock their full potential with capital and counsel. With $81.7 billion in assets as of December 31, 2023, we serve clients through a team of approximately ~7,300 associates and ~418 banking centers throughout the southeastern United States. Headquartered in Memphis, TN, the banking subsidiary First Horizon Bank operates in 12 states across the southern U.S. First Horizon has been recognized as one of the nation’s best employers by Fortune and Forbes magazines and a Top 10 Most Reputable U.S. Bank.

Related Jobs

Apply For This Job
Principal Security Architect
First Horizon National Corporation
Memphis, TN
Dec 18, 2025
Full-time
Your Information
First Name *
Last Name *
Email Address *
This email belongs to another account. Please use a diferent email address or Sign In.
Zip Code *
Password *
Confirm Password *
Create your Profile from your Resume
By clicking the Apply button, you agree to the terms of use and privacy policy and consent to receive emails from us about job opportunities, career resources, and other relevant updates. You can unsubscribe at any time.
Supercharge Your Resume with AI

Boost your resume with AI-driven enhancements. The tool analyzes and refines your content, highlighting your strengths and tailoring it for maximum impact. Get personalized suggestions and apply improvements instantly to stand out in the job market.

©2025 International Association of Women.
Powered by TalentAlly.