Search Our Jobs

Principal Architect - Information Security (Cloud Security)

Date: Aug 16, 2019

Location: Oklahoma City, OK, US, 73118

Our core values — integrity and trust, respect, transparency and open communication, commercial focus and change leadership — are the lens through which we evaluate every business decision. As a dynamic, growing company that offers extremely competitive compensation and benefits, our employees are our most valued assets and the foundation of Chesapeake’s performance among our E&P competitors.

Job Summary

This senior-level position is a member of the Security Architecture team.  Direct and performs all procedures required to ensure the safety of information systems assets, with a focus on Cloud Security Architecture and to protect systems from intentional or inadvertent access or destruction.  The successful candidate will play a leadership role in cloud security architecture.

Job Duties & Responsibilities

  • Oversees and conducts digital-related investigations at the request of corporate and field level business units.
  • Oversees and conducts digital risk assessments and testing of data processing systems with a focus on securely designing cloud infrastructures and applications to ensure systems are properly designed with security embedded.
  • Interfaces with the both the Digital Operations and Information Technology teams to understand their security needs, implement approved procedures to accommodate their identified needs.  Ensures understanding and adherence to the necessary procedures to maintain security.
  • Provides on the job leadership and training to more junior engineers.
  • Coordinates implementation of security designs, standards, and requirements with the Digital Enterprise Architecture team.  Provides leadership with the IT functional Security Champions in the form of security designs, requirements, and threat modeling.
  • Develops plans and implements solutions to safeguard applications, infrastructure, and hardware assets against accidental or unauthorized modification, destruction, or disclosure.
  • Establishes digital security and emergency measures for policies, standards, and procedures.  Reports status, issues, and timelines to management and project teams as required.
  • Ensures that digital and information technology issues and administration is compliant with corporate polices and regulatory requirements.
  • Leads project teams composed of multi-disciplined personnel.
  • Directs modification of data and design of access to safeguard information and assets.
  • Performs other duties as assigned.

Job Specific Skills

  • Demonstrate advanced computer skills through expertise in various technology and software disciplines.
  • Able to effectively manage time and prioritize projects in order to meet established deadlines.
  • Excellent verbal, written, and interpersonal communication skills.
  • Able to work effectively with all levels of co-workers, clients, and other external contacts.
  • Able to effectively abide by company policies, procedures, and technologies.
  • Able to function independently in a multi-task environment, as well as part of a team.
  • Able to handle sensitive and confidential information appropriately.
  • Ability to preserve confidentiality and work with sensitive and/or restricted data.
  • Expert knowledge of and understanding of Digital and Information Technology industry trends and emerging technologies in Information Security with a focus on enterprise cloud environments and relate them to the company and its objectives.
  • Expect high degree of competency in these CHK competencies: Integrity & Trust, Customer Focus, Driver for Results, and Peer Relationships.
  • Functional & Technical – Demonstrate expert understanding of security standards and architecture around cloud based products and services, and emerging technology solutions.
  • Responsible for researching, designing and implementing secure business focused solutions for cloud environments that meets or exceeds corporate policies and government mandates.
  • Identify the need, document the design, and produce standards for a secure CI/CD pipeline.
  • Evaluate and stand up cloud governance software.
  • Problem Solving – Expert troubleshooting and ability to use logic to find hidden problems and look beyond the obvious.
  • Listening/Informing – Expert ability using English to communicate written and verbally with all levels of co-workers, customers and external contacts.  Expert verbal and professional presence.
  • Priority Setting – Expert ability to manage time and prioritize projects to meet established deadlines.
  • Organizational Agility – Expert ability to get things done across organizational boundaries and culture.
  • Dealing with Ambiguity – Expert ability to make good decisions and take action with incomplete information.
  • Oil and Gas security architecture experience.


  • Minimum:  Bachelor’s degree - from accredited university.
    • Preferred:  IT, MIS, Computer Science or related field.


  • Minimum: 8 - 12 years related work experience

Additional Qualifications

  • Experience with Threat Modeling
  • Deep experience in multi cloud platforms and implementations (i.e. AWS, Azure, Hybrid on prem)
  • Experience with micro segmentation in AWS and Vmware
  • Experience Palo Alto cloud tools
  • Experience with DevSecOps and securing CI/CD pipelines
  • Familiarity with Secure Development Lifecycle 
  • Strong Security Architecture skills
  • Experience with AWS Security tools
  • Experience with Vmware NSX and Workspace One
  • NIST Cybersecurity framework experience
  • Specification / Design / Review of embedded security architectures
  • Risk and threats analysis of security systems
  • Root cause analysis of security defects and creation of counter measures
  • CISSP certification

Chesapeake Energy takes necessary action to ensure that all applicants are treated without regard to their race, color, religion, sex, sexual orientation, age, gender identity, national origin, genetic information, disability, pregnancy, military or veteran status or any other protected characteristic as established by law.

Nearest Major Market: Oklahoma City
Nearest Secondary Market: Oklahoma

Job Segment: Architecture, Information Security, Cloud, Law, Information Systems, Engineering, Technology, Legal