TransUnion's Job Applicant Privacy Notice
Personal Information We Collect
Your Privacy Choices
Team Overview
Cyber Defense Engineering is responsible for modernizing TransUnion's detection, response, vulnerability, and endpoint capabilities through scalable architecture, automation, and integrated security platforms.This individual contributor role will act as the principal technical architect for TransUnion's Cyber Defense organization, owning the reference architecture that underpins modernization across Data Security Posture Management (DSPM), Zero Trust Network Access (ZTNA), Endpoint Strategy, and AI enablement.
Reporting the SVP, Cyber Defense Engineering, this role will partner closely with the AI SOC, VulnOps, Detection Engineering, and Technical Program Manager functions to ensure architectural coherence as Cyber Defense shifts from fragmented, tool-centric operations to a unified, automation-first, agentic security architecture.

This is a hybrid position and involves regular performance of job responsibilities virtually as well as in-person at an assigned TU office location for a minimum of two days a week.
Role Overview and Core Responsibilities
Own and evolve the Cyber Defense reference architecture, defining the target-state design for how detection, response, vulnerability management, and endpoint telemetry integrate across a unified data and automation layer.Â
Architect TransUnion's Data Security Posture Management (DSPM) capability, leading technical evaluation, integration design, and rollout planning for cloud-native data discovery, classification, and exposure detection, including Wiz DSPM, across AWS, GCP, and hybrid environments.Â
Define TransUnion's Zero Trust Network Access (ZTNA) architecture, establishing target-state design for identity-aware, least-privilege access to enterprise and cloud workloads in coordination with IAM, network security, and cloud infrastructure teams.Â
Own Endpoint Strategy architecture, defining the target design for endpoint detection and response, exposure management, and telemetry integration across the enterprise fleet while rationalizing overlapping endpoint tooling.Â
Architect the AI enablement layer for Cyber Defense, designing agentic and LLM-based capabilities for triage, investigation, and response, including MCP-based agent orchestration and AI SOC platforms that integrate with existing SIEM, SOAR, and case management systems.Â
Lead the technical architecture for SIEM and security data platform modernization, defining the target design for log ingestion, retention, and analytics as the organization evaluates consolidation of fragmented logging and detection platforms.Â
Define reference architecture for the VulnOps operating model, ensuring vulnerability discovery, prioritization, disruption, and remediation systems integrate cleanly with the broader Cyber Defense data and automation architecture.Â
Evaluate emerging security technologies and vendor platforms against TransUnion's architecture principles, producing build-versus-buy recommendations, integration designs, and proof-of-concept plans for new capabilities before they reach production.Â
Establish architecture governance and design standards for Cyber Defense Engineering, authoring reference diagrams, integration patterns, and technical design documents that guide engineering teams building against the architecture.Â
Required Knowledge and Experiences
15+ years of experience in cybersecurity architecture, security engineering, or related technical roles, with demonstrated ownership of enterprise-scale security reference architectures.Â
Deep technical expertise in cloud security posture and data security tooling, with hands-on experience in DSPM, CNAPP, or related platforms, including Wiz, across AWS, GCP, or Azure environments.Â
Strong understanding of Zero Trust Network Access (ZTNA) architecture and identity-aware access models, including experience designing or implementing ZTNA in an enterprise environment.Â
Hands-on experience with endpoint detection and response (EDR) architecture and tooling, including CrowdStrike Falcon and Microsoft Defender for Endpoint, with exposure management and fleet-wide telemetry design.Â
Experience architecting or building AI-enabled or agentic security capabilities, including familiarity with LLM-based triage and investigation agents, MCP-based tool orchestration, or AI SOC platforms.Â
Strong programming and scripting skills, including Python or Go, with the ability to build architecture prototypes, integration proofs-of-concept, and automation scripts independently.Â
Experience with modern security data platforms and SIEM/log analytics architecture, including Splunk and cloud-native log platforms, with experience evaluating or leading platform consolidation efforts.Â
Proven ability to produce clear architecture documentation, including reference diagrams, integration patterns, and technical design decks that engineering teams can build against.Â
Bachelor's degree in Computer Science, Computer Engineering, Information Security, or a related field required; advanced degree preferred.Â
Required Technical SkillsÂ
Expertise designing security reference architectures across DSPM, ZTNA, endpoint security, SIEM, SOAR, case management, vulnerability management, and security data platforms.Â
Hands-on cloud security architecture experience across AWS, GCP, or Azure, including CNAPP, DSPM, cloud-native data discovery, classification, and exposure detection capabilities.Â
Strong endpoint and telemetry architecture expertise, including EDR, exposure management, fleet telemetry, alert normalization, and tool rationalization.Â
Ability to design AI-enabled and agentic security workflows using LLM-based triage, MCP-based tool orchestration, AI SOC platforms, integration scripts, and automation prototypes.Â
Strong programming, scripting, and proof-of-concept development skills, including Python or Go, with the ability to validate architecture decisions through technical prototypes.Â
We're also looking for the preferred skills below. Whether you are proficient or could use some brushing up, we're happy to support your career development and growth in:Â
Experience architecting vulnerability management platforms or exposure-reduction systems.Â
Background in Security Operations Center (SOC) technology architecture, including SOAR, case management, and alert normalization platforms.Â
Experience working in a financial services, fintech, or similarly regulated enterprise environment.Â
Familiarity with infrastructure-as-code and cloud-native deployment tooling, including Terraform, Harness, and Kubernetes.Â
Track record of leading technology evaluations and proof-of-concept programs that informed enterprise security architecture decisions.Â
Benefits that support every part of your life:
At TransUnion, we design benefits to help you feel well, do well, and plan well—from day one.
For Your Health: Enjoy day-one eligibility for medical, dental, and vision coverage, plus supplemental plan options. Spousal, domestic partner, and other eligible dependent coverage is available on select plans. Choose tax‑advantaged HSA and FSA accounts to make everyday care more affordable.
For Your Protection: We’ve got your back with company‑paid basic life and AD&D, optional voluntary life and AD&D for you and your family, and short‑ and long‑term disability. You can also opt into a legal plan, pet insurance, and travel accident coverage.
For Your Family: From adoption assistance and fertility planning coverage to caregiver support, we’re here for every chapter. Access Dependent Care FSA for possibility of an employer match, a complimentary Care@Work membership, and up to 12 weeks of paid parental leave with eligibility for a thoughtful, gradual return.
For Your Future: Build toward what’s next with our 401(k) with employer match and Employee Stock Purchase Plan (ESPP). Tap financial wellness resources, career coaching, and optional long‑term care insurance to plan confidently.
For You: Grow and recharge with tuition reimbursement, flexible time off for exempt employees or paid time off for nonexempt employees, up to 12 paid holidays per year, commuter benefits, employee discounts, charitable gift matching, and paid volunteer time off, plus corporate volunteer events that make it easy to give back.
For Your Wellness: Access 24/7 support including professional therapy, coaching, and emotional well‑being programs alongside guided meditation and resources that support physical, mental, social, and financial wellness.
We are committed to being a place where diversity is not only present, it is embraced. As an equal opportunity employer, all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, disability status, veteran status, genetic information, marital status, citizenship status, sexual orientation, gender identity or any other characteristic protected by law. Additionally, in accordance with Section 503 of the Rehabilitation Act of 1973 and the Vietnam Era Veterans’ Readjustment Assistance Act of 1974, TransUnion takes affirmative action to employ and advance in employment qualified individuals with a disability and protected veterans in all levels of employment and develops annual affirmative action plans. Components of TransUnion’s Affirmative Action Program for individuals with disabilities and protected veterans are available for review to any associate or applicant for employment upon request by contacting ERCoE@transunion.com.
Qualified applicants with arrest or conviction records will be considered for employment in accordance with applicable law, including the Los Angeles County Fair Chance Ordinance for Employers, the San Francisco Fair Chance Ordinance, Fair Chance Initiative for Hiring Ordinance, and the California Fair Chance Act.
Adherence to Company policies, sound judgment and trustworthiness, working safely, communicating respectfully, and safeguarding business operations, confidential and proprietary information, and the Company’s reputation are also essential expectations of this position.
Pay Scale Information:
The U.S. base salary range for this position is $187,500.00 - $312,500 annually. *The salary range for this position reflects a reasonable estimate of the range of compensation for this job. At TransUnion, actual compensation is based on careful consideration of additional factors such as (but not limited to) an individual’s education, training, work experience, job-related skill set, location, and industry knowledge, as well as the scope and responsibilities of the position and market considerations. Regular, fulltime non-sales positions may be eligible to participate in TransUnion’s annual bonus plan. Certain positions may be also eligible for long-term incentives and other payments based on applicable company guidance and plan documents.
The application window for this job posting is estimated to close on 08/25/2026. Job postings may come down early or be extended due to business need or volume of applicants.TransUnion Overview:
At TransUnion, we encourage and are committed to creating a real, positive impact and shared sense of purpose within our Workforce for Good, which empowers our people to grow, innovate and contribute to a better future for our communities and customers. We strive to build an environment where our associates are in the driver’s seat of their professional development— while having access to help along the way. We recognize that success comes when our associates thrive both professionally and personally; that’s why we prioritize work/life flexibility and offer resources for our teams across the globe to collaborate and drive excellence.
Â
Be a part of our Workforce for Good – you’ll work with great people, pioneering products and cutting-edge technology.
TransUnion's Internal Job Title:
Sr Principal, CybersecurityCompany:
TransUnion LLCLearn more about this Employer on their Career Site
