Workday Security Lead & Architect at Stjude
- Company: Stjude
- Location: Remote - TN
- Salary: $95K – $170K
- Job type: full time
- Workplace: onsite
- Posted: 2026-09-09
Job description
The Workday Security Lead & Architect is a senior technical role responsible for the architecture, governance, and strategic direction of security across the Workday platform. This position serves as the primary Workday Security subject matter expert, owning the overall security model and ensuring security solutions are scalable, sustainable, compliant, and aligned with organizational policies and business needs. The role combines deep hands-on Workday security expertise with architectural and technical leadership, partnering across functional, technical, Information Security, and Internal Audit teams to manage risk and enable appropriate access. The position provides technical direction to Workday Security Administrators and Tier 1 Security Support and serves as the escalation point for complex security issues. This position may be eligible for remote work. However, St. Jude requires all remote employees to: Travel to our Memphis campus for the interview process and/or orientation, if selected Travel to Memphis to work on-site for one week per quarter, or as requested based on business needs, if hired. By applying, you acknowledge and agree to these travel requirements as a condition of employment. This position is remote within approved U.S. locations. Due to state-specific employment regulations, we are unable to consider applicants currently residing in California for remote work; however, candidates based in California who are willing to relocate to an approved location may be considered. Key Responsibilities: Security Architecture & Governance: Own the overall Workday security architecture and security configuration model, including domain security policies, business process security policies, security groups, role-based access, and constrained security. Establish and maintain Workday security architecture standards, design principles, policies, procedures, and technical documentation to support consistent administration, knowledge transfer, and audit readiness. Lead the design and implementation of new and complex security roles, security groups, and access models using least privilege and role-based access principles. Provide architectural review and consultation for security changes across Workday functional areas, integrations, reporting, and emerging capabilities, ensuring designs are scalable, maintainable, compliant, and aligned with the broader Workday architecture. Collaborate with Workday program leadership and senior governance forums as needed to communicate security risks, recommendations, and decisions. Risk, Audit & Compliance: Own the Workday security risk and control strategy, including Segregation of Duties (SoD), Privileged/Sensitive Access (SA), and User Activity monitoring, as well as the design and ongoing effectiveness of preventative and detective controls. Provide leadership and subject matter expertise for internal and external audits involving Workday security and access. Partner with Internal Audit, Information Security, functional teams, and other stakeholders to evaluate findings, determine appropriate remediation, and oversee resolution of security-related risks. Own the strategy, roadmap, and continued evolution of Kainos SmartAudit and other Workday security monitoring and compliance capabilities. Establish standards and oversight for periodic access reviews and security certifications, ensuring appropriate governance, documentation, and remediation. Maintain audit-ready security documentation and evidence supporting organizational control and compliance requirements. Ensure security architecture and practices appropriately protect sensitive and regulated data, including PII and PHI. Security Strategy & Delivery: Lead security impact assessments for Workday R1/R2 releases, new capabilities, projects, integrations, and functional changes; identify required security changes, risks, dependencies, and remediation. Provide security architecture and design leadership throughout the lifecycle of
Workday Security Lead & Architect on JobPost.