
Principal Security Architect
Posted Sep 17

Posted Sep 17
This is a fully remote position, open to applicants in United States.
• Take ownership of the security architecture and risk posture for a designated strategic program that encompasses cloud platforms, data flows, identity, and third-party integrations.
• Execute architecture and design evaluations, threat modeling, and risk assessments.
• Create and assess controls for workloads that manage trade secrets and highly sensitive intellectual property.
• Develop secure cloud architecture patterns across the relevant platforms.
• Implement threat modeling frameworks along with acknowledged industry security standards, frameworks, and best practices.
• Conduct threat analysis and modeling throughout the secure development and operations lifecycle.
• Lead risk acceptance processes when residual risks cannot be mitigated, ensure approvals are secured, and document the outcomes.
• Create reference architectures, design patterns, and security guidance based on recurring requirements.
• Collaborate across Security Architecture & Engineering while working alongside program leadership, engineering, privacy, legal, audit, and other stakeholders.
• Offer technical direction, leadership, and mentorship to architects and engineers.
• High School Diploma or equivalent with over 4 years of experience in Cyber Security, Information Technology, or a related discipline.
• More than 8 years of professional experience in security, software engineering, cloud engineering, or a combination thereof, including hands-on cloud security experience.
• Applicants must be authorized to work in the United States on a full-time basis.
• Extensive security knowledge across cloud, application security, identity, and integration patterns.
• Expertise in at least one major cloud platform (AWS, Azure, or GCP), including identity and access management, network architecture, workload protection, encryption and key management, and cloud security posture management.
• Experience applying cloud security knowledge across additional cloud providers.
• Proven track record in securing workloads that manage trade secrets or highly sensitive intellectual property, including segmentation, access boundaries, and egress controls.
• Strong grasp of secure application development and the secure software development lifecycle.
• Significant experience in threat analysis and modeling.
• Sound understanding of cybersecurity engineering and operations.
• Exceptional critical thinking and analytical reasoning abilities.
• Capability to define and influence security strategy while guiding tactical operations.
• Proficiency in translating technical risks into clear business language and documenting risk decisions for audit and executive review.
• Excellent communication and presentation skills suitable for both technical and non-technical audiences.
• Experience in developing and documenting architecture references, security guidelines, and standards.
• Background in mentoring junior architects and engineers.
• Company bonus, which is partially based on company and individual performance.
• Company-sponsored 401(k) plan.
• Pension plan.
• Vacation benefits.
• Medical, dental, vision, and prescription drug benefits.
• Flexible benefits, including healthcare and/or dependent day care flexible spending accounts.
• Life insurance and death benefits.
• Specific time off and leave of absence benefits.
• Well-being benefits such as an employee assistance program, fitness benefits, and employee clubs and activities.
• Employee resource groups that are open to all employees.
Sony Interactive Entertainment
Squads
Neo4j
PingWind Inc. (SDVOSB)
Get handpicked remote jobs straight to your inbox weekly.