Company Summary Statement : As one of the largest investor-owned utility companies in the United States, PPL Corporation (NYSE: PPL), is committed to creating long-term, sustainable value for our 3.5 million customers, our shareowners and the communities we serve. Our high-performing regulated utilities — PPL Electric Utilities, Louisville Gas and Electric, Kentucky Utilities and Rhode Island Energy — provide an outstanding experience for our customers, consistently ranking among the best utilities in the nation. PPL’s companies are also addressing challenges head-on by investing in new infrastructure and technology that is creating a smarter, more reliable and resilient energy grid. We are committed to doing our part to advance a cleaner energy future and drive innovation that enables us to achieve net-zero carbon emissions by 2050 while maintaining energy reliability and affordability for the customers and communities we serve. PPL is a positive force in the cities and towns where we do business, providing support for programs and organizations that empower the success of future generations by helping to build and maintain strong, diverse communities today. Overview:
PLEASE NOTE: THIS POSITION IS HYBRID - IN OFFICE 3 DAYS A WEEK - TO ONE OF OUR LOCAL OFFICES IN: LOUISVILLE, KY, PROVIDENCE, RI OR ALLENTOWN, PA.
PPL is seeking a thought leader and innovator in cloud security for a Cloud Security Senior Principal Architect. In this role, you lead our Cloud Security program to ensure the security and configuration of the PPL cloud infrastructure, including Azure, AWS, and other cloud service providers. The Cloud Security Senior Principal Architect is a hands-on leadership role that oversees the daily operations, implementation, and continuous improvement of security across cloud environments. This position is responsible for ensuring compliance, managing cloud security configurations, responding to incidents, and collaborating with teams to implement secure solutions aligned with organizational goals.
This position is a restricted level for an industry recognized expert both externally and internally.
LI-Hybrid
#INDPPL
Responsibilities:
•Oversee cloud security operations for AWS, Azure, and potentially GCP environments.
•Implement and manage cloud security controls and configurations following best practices and compliance requirements.
•Lead cloud security incident response, investigations, and post-mortems.
•Drive automation of cloud security monitoring and compliance using tools like Terraform, Python, and Ruby.
•Collaborate with DevOps and engineering teams to ensure security is embedded into CI/CD pipelines.
•Manage container security across Kubernetes (AKS, EKS) environments.
•Conduct periodic reviews and audits to ensure adherence to ISO 27001, NIST CSF, and regulatory frameworks.
•Plans, conducts and directs research and/or development work on complex projects necessitating origination and application of new/unique approaches.
•Plans and directs projects and supplies technical inspiration, leadership and consultation.
•Represents organization in outside discussions and technical forums.
•Performs other duties as assigned.
•Complies with all policies and standards.
Qualifications:
Required Education:
•Bachelor's Degree in Computer Science, Information Security, and/or related field or an equivalent level of work-related experience.
Required Experience:
•20+ years of experience in IT security, with at least 10 years of experience in cloud security and at least 2 years in a managerial or lead role.
•Hands-on experience with cloud platforms including AWS and Azure.
•Proficiency in automation tools and scripting languages like Terraform, Python, and Ruby.
•Understanding of container security and orchestration tools (Kubernetes, AKS, EKS).
•Experience with regulatory and compliance frameworks including ISO 27001 and NIST CSF.
•Strong communication skills and experience working cross-functionally with IT, engineering, and compliance teams.
•Relevant certifications such as CISSP, CCSP, or cloud provider-specific credentials (e.g., AWS Security Specialty).
Preferred Qualifications:
•Ability to work collaboratively with leaders, developers, DevOps, networking, and cloud engineers on advancing the transition from on-prem to Cloud Service Providers.
•Experience with setup and maintenance of CSPM tools (Wiz, Prisma Cloud, etc.) as well as container security technologies (Aqua, Twistlock, Wiz).
•Scripting and automation (Python, Shell scripting, Terraform) as well as security as code concepts.
•Strong knowledge of IAM best practice for cloud access, CLI, and cloud network design.
•Ability to appropriate risk rank and remediate cloud configuration and vulnerabilities.
•Excellent communication skills and the ability to collaborate effectively with technical and non-technical stakeholders.
•Ability to lead other architects and mentor team members.
•Experience developing cloud security architectures and patterns.
•Ability to think in terms of product management and align goals, strategies, and roadmaps.
•Experience with developing metrics for measuring the success of the cloud security program.
•Experience communicating complex security and cloud concepts to leadership.