Hiring.Camp

Senior Associate, Security Strategist

Employees Publicisgroupe

·

Sep 9, 2024

Location
Boston, MA, US
Type
Full-time
Department
Security
Seniority
Entry
Experience
5+ years
Closing date
Today
Source
iCIMS

Description

Company Description

Publicis Re:Sources is at the core of Publicis Groupe, the world's largest communications company. We are the only full-service, end-to-end shared service organization in the industry, enabling Groupe agencies to do what they do best: innovate and transform for their clients.

 

Formed in 1998 as a small team to service a few Publicis Groupe firms, Publicis Re:Sources has grown to 6,000+ employees in over 55 countries. We provide technology solutions and business services, including finance, accounting, legal, benefits, procurement, tax, real estate, treasury and risk management, information security, and global mobility — supporting 110,000+ employees across the Publicis Groupe network. Our people are at the center of everything we do, bringing curiosity, collaboration, and a commitment to excellence to their work every day. 

 

Learn more about Publicis Re:Sources and the Publicis Groupe agencies we support at publicisresources.com.  

Overview

Role Summary

The Senior Security Strategist reports to the Director of Security Strategy and Innovation and helps drive enterprise security architecture governance, capability strategy, risk assessment, and security innovation.

This role extends strategic capacity. It translates security priorities into target-state capability direction, gap and redundancy analysis, and roadmap recommendations that business and technical stakeholders can act on. It operates at the security ecosystem level, not at the level of individual application, solution, or cloud deployment review.

Core Purpose

This role shapes and helps execute security strategy in a global, fast-moving environment where security decisions must align with business goals, platform risk, and regulatory expectations.

The position suits a practitioner who can move between strategic analysis and capability-level architecture governance: defining where the security ecosystem needs to go, where it overlaps or has gaps, and how the capability portfolio should evolve over time.

Responsibilities

Security Strategy

  • Support the Director of Security Strategy and Innovation in executing strategic security priorities across programs, platforms, and business initiatives.
  • Prepare briefing materials, maturity assessments, and decision support content for leadership audiences.
  • Track strategic initiatives, capability gaps, and roadmap commitments to support program execution and follow-through.

Enterprise Security Architecture Governance

  • Operate at the security ecosystem or urbanism level: define target-state security capabilities and how they fit together across the enterprise.
  • Identify capability gaps, overlaps, and redundancies across the security portfolio, and recommend what to add, enhance, consolidate, or retire.
  • Shape and maintain the strategic roadmap for security capabilities, aligned to business needs, risk priorities, and technology trends.
  • Ensure the overall security architecture evolves coherently, rather than reviewing individual applications, solutions, or cloud deployments, which sit with the solution and operational architecture function.
  • Apply structured analysis using frameworks such as ISO 27001, NIST, and MITRE ATT&CK to support capability and roadmap decisions.

Operating Model and Capability Strategy

  • Help define the operating model for strategic initiatives, including how capabilities move from strategy into ongoing operations.
  • Develop RACIs and end-to-end process definitions that span the teams involved in running each capability.
  • Translate target-state capability decisions into clear ownership, sequencing, and dependencies for the teams that execute them.

Innovation Workstreams

  • Support the evaluation of new security technologies, AI-enabled tools, automation opportunities, and process improvements relevant to current risk priorities.
  • Contribute to pilot efforts that test security tooling, operating models, or analytical methods before broader rollout.
  • Assess whether proposed innovations reduce measurable risk, improve visibility, or strengthen program maturity at the capability level.

Threat and Stakeholder Support

  • Monitor threat trends and adversary behaviors that may affect enterprise, cloud, identity, API, and data security capabilities.
  • Work with security operations, incident response, compliance, privacy, legal, and business teams to align capability strategy with operational lessons and regulatory obligations.
  • Communicate capability gaps, risks, and roadmap recommendations clearly to both technical and non-technical stakeholders.

Qualifications

Required Qualifications

  • 5 to 8 years of experience in security strategy, enterprise security architecture, risk management, or related security roles.
  • Strong understanding of cloud security across Azure, AWS, and GCP at the capability and control-design level, including common failure modes.
  • Experience with capability assessment, target-state architecture, threat modeling, and risk analysis.
  • Working knowledge of ISO 27001, NIST CSF, and MITRE ATT&CK.
  • Strong written and verbal communication, with the ability to present concise recommendations to leadership and partner teams.

Preferred Qualifications

  • Experience in defining security capability roadmaps or operating models across multiple teams.
  • Experience with security automation, analytics, or AI-supported security workflows.
  • Background in incident response, forensics, threat intelligence, or compliance coordination.
  • Familiarity with zero trust principles, identity and access management, secure SDLC, and privacy-aligned control design.
  • Experience working across global teams with multiple stakeholders and competing priorities.

Working Relationships

  • Reports to: Director of Security Strategy and Innovation.
  • Partners with: Solution and Operational Architecture, Security Operations, Incident Response, Compliance, Privacy, Legal, Engineering, IT, and Business teams.

Scope boundary: this role owns enterprise security architecture governance and capability strategy. Solution, application, and cloud deployment reviews remain with the solution and operational architecture team. This role sets target state and roadmap; the architecture team reviews specific implementations against it.

Additional Information

All your information will be kept confidential according to EEO guidelines. This job description in no way states or implies that these are the only duties to be performed by the employee(s) currently in this position. Employee(s) will be required to follow any other job related instructions and to perform any other job-related duties requested by any person authorized to give instructions or assignments. A review of this position has excluded the marginal functions of the position that are incidental to the performance of fundamental job duties. All duties and responsibilities are essential job functions and requirements and are subject to possible modification to reasonably accommodate individuals with disabilities. To perform this job successfully, the incumbent(s) will possess the skills, aptitudes, and abilities to perform each duty proficiently. Some requirements may exclude individuals who pose a direct threat or significant risk to the health or safety of themselves or others. The requirements listed in this document are the minimum levels of knowledge, skills, or abilities. This document does not create an employment contract, implied or otherwise, other than an ""at-will"" relations.  Success Profile

The strongest candidate writes clearly, analyzes capability and risk with discipline, and turns broad security goals into a coherent target-state roadmap. This person is comfortable handling ambiguity, working at the ecosystem level, and supporting security strategy with structured analysis, clear ownership, and steady execution.

Salary Range: 90 - 120K/yr

Publicis Groupe offers a comprehensive benefits package including medical, dental, vision, retirement(401(K)), wellness and other employee programs. For additional information regarding available benefits, please visit publicisconnections.com.  #LI-DS1 

Skills

AWSAzureGCPRisk ManagementComplianceProcurementISO 27001

Similar Jobs

30

Senior Associate Security Engineer

Truist·Charlotte NC - 2320 Cascade Pointe Boulevard, US +1

1d ago

Enterprise Application - Experienced Designer, Senior Associate (Reliability Security Clearance Required)

Pwc·Ottawa - 99 Bank Street, Canada +1

4d ago

Senior Associate - DevOps/Security

Davies·Pune

4d ago

Cyber Offensive Security Senior Associate

Grant Thornton·Philadelphia, PA

5d ago

Domestic Wires and Security - Senior Product Associate

JPMorgan Chase·Plano, TX

5d ago

Domestic Wires and Security - Senior Product Associate

JP Morgan Chase·Plano, TX

5d ago

Global Security - Technical Security Project Manager- Senior Associate

JPMorgan Chase·San Francisco, CA

5d ago

Global Security - Technical Security Project Manager- Senior Associate

JP Morgan Chase·San Francisco, CA

5d ago

Sr. Associate - Investment Operations, Private Debt Data & Security Setup

aresmgmt·Los Angeles, CA : 1800 AOS

1w ago

Associate Senior Information Security Analyst

Global Payments·Pune, India·Onsite

1w ago

Cyber Security Threat Management Senior Associate

Depository Trust Company·Tampa, FL

1w ago

IT Security IAM Senior Associate

Statestreet·Edinburgh, Scotland

1w ago

Cyber Security & Third Party Due Diligence Senior Associate

Depository Trust Company·Tampa, FL

1w ago

Quant Analytics Senior Associate - Trust & Security

JPMorgan Chase·New York, NY

1w ago

Quant Analytics Senior Associate - Trust & Security

JP Morgan Chase·New York, NY

1w ago

Senior Associate Security Platform Engineer

Nttlimited·Hyderabad, India +1·Onsite

1w ago

Sr. Associate Support Engineer, Security

Riministreet·Hyderabad, India

2w ago

Sr Associate Software Engineer, AI Security

NT Careers·Chicago, IL

2w ago

Senior Associate, Offensive Security

RSM·IND-HR-Gurugram-HQ27-The Headquarters, India

2w ago

Enterprise & Cloud Security - Cloud Security Senior Associate

Pwc·Chicago - One North Wacker Drive, US +16

2w ago

Senior Associate / Manager - Technical AI Security Expert

Pwc·Zürich - Birchstrasse 160, Switzerland

2w ago

Research Analyst / Senior Analyst / Associate Research Fellow (Centre of Excellence for National Security) [RSIS]

NTU Singapore·NTU Main Campus, Singapore

2w ago

SAP Security Senior Associate - Roma [OTS]

Pwc·Roma - Largo Fochetti 29, Italy

3w ago

Security & Resilience Senior Associate - GSOC - VRS

GOC ( Google Operational Centers )·PH-MNL-LIMA, Philippines·Onsite

3w ago

Business Banking Trust & Security - Card Rewards Fraud Strategy, Senior Associate

JPMorgan Chase·Wilmington, DE

3w ago

Business Banking Trust & Security - Card Rewards Fraud Strategy, Senior Associate

JP Morgan Chase·Wilmington, DE

3w ago

Cyber Security Threat Management Senior Associate (US Shift)

Depository Trust Company·Manila, Philippines

3w ago

Senior Associate - Security Data Management

Harris Associates·Chicago, Illinois

1mo ago

Risk Services - Data Security Senior Associate / Assistant Manager

Pwc·Singapore - Marina One

1mo ago

OT Security Senior Associate – Milano [OTS]

Pwc·Milano - Piazza Tre Torri 2, Italy

1mo ago