Principal Security Architect
About the role
We offer a flexible working policy that supports a healthy balance between personal and professional well-being. This role requires in-office presence on Tuesdays & Thursdays to collaborate, connect, and learn from peers - while also maintaining the flexibility for meaningful work-life balance.
Responsibilities
- Drive enterprise security strategy, defining architectural vision and technical “North Star”.
- Influence engineering teams through deep knowledge of how technical systems function, hands-on design, and balancing aggressive business growth with robust, seamless risk mitigation.
- Enable business growth by ensuring iManage platforms can scale to handle modern threats.
- Establish secure reference architectures by designing and maintaining repeatable architectures and patterns throughout many critical domains such as IAM, AI, cloud infrastructure, and secret management to be leveraged across the enterprise.
- Create engineer guardrails by leveraging secure reference architectures to create "paved paths" that allow engineers to deploy rapidly without bypassing security controls.
- Spearhead advanced, continuous threat modeling sessions for critical product features and core infrastructure components.
- Foster a deep "Security by Design" mindset across product and engineering teams through systemic influence rather than rigid mandates.
- Partner early with Product Management to embed security requirements into the initial phases of the product development lifecycle.
- Provide technical mentorship to senior security personnel to elevate the organization's overall technical execution.
- Assess emerging tech stack by evaluating, benchmarking, and approving third-party technologies and vendor integrations for security.
- Communicate highly technical security vulnerabilities and architectural risks into clear, actionable business impacts.
Qualifications
- 10+ years of experience in cybersecurity, with at least 4+ years operating as Lead, or Enterprise Architect level.
- Deep, hands-on experience designing and securing multi-tenant public cloud environments.
- Proven track record with containerization (Docker, Kubernetes), microservices, service meshes, and infrastructure-as-code (Terraform, Pulumi).
- Expertise in implementing zero trust approaches to security, modern identity (OIDC, OAuth 2.0, SAML), and advanced cryptography.
- Experience building security guardrails around AI/ML pipelines, LLM integrations, and data lake architectures.
- Experience securing hyper-growth, high-transaction SaaS or cloud-native product ecosystems.
- Strong understanding of downstream security processes related to detection and response.
- Demonstrated ability to drive engineering alignment, change developer behaviors, and champion security without relying on direct managerial authority.
- Exceptional ability to translate highly technical vulnerabilities and complex risk profiles into clear business terms for C-suite executives.
Skills
- Bachelor’s degree in Computer Science, Cyber Security, Engineering, or equivalent practical experience.
- Credentials such as CISSP, ISSAP, CCSP, or professional-level cloud architecture/security certifications from AWS, Google, or Microsoft.
- Strong understanding of Microsoft Azure and AKS implementations.
Benefits
The overall US annual base salary range for this position is $180,000 – 220,000 per year. Individual compensation for each candidate depends on factors such as qualifications, experience, and candidate location. This range does not include additional forms of compensation, such as bonuses, commission, or benefits.
Pay
Your recruiter will provide further details about the offer range, incentives, and overall compensation during the hiring process.
Schedule
This role requires in-office presence on Tuesdays & Thursdays to collaborate, connect, and learn from peers - while also maintaining the flexibility for meaningful work-life balance.