Principal Security Architect

iManage LLC
Chicago, IL, United States
13 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Compensation
$180,000.0 - $220,000.0
Working hours
Regular working hours

Tech stack

Artificial Intelligence Amazon Web Services Microsoft Azure Software as a Service Cloud Computing Cloud Engineering Cyber Security Identity and Access Management Information Systems Security Architecture Professional OAuth OpenID Security Assertion Markup Language (SAML)
+11 more
Systems Integration Pulumi Large Language Models Containerization Data Lakes Kubernetes Information Technology Machine Learning Operations Terraform Docker Microservices

Job description

We offer a flexible working policy that supports a healthy balance between personal and professional well-being. This role requires in-office presence on Tuesdays & Thursdays to collaborate, connect, and learn from peers - while also maintaining the flexibility for meaningful work-life balance.

Being a Principal Security Architect at iManage Means…

You will drive enterprise security strategy, defining architectural vision and technical “North Star”. You will influence engineering teams through deep knowledge of how technical systems function, hands-on design, and balancing aggressive business growth with robust, seamless risk mitigation. You are not merely managing risk; you will enable business growth by ensuring iManage platforms can scale to handle modern threats.

iM Responsible For…

  • Establishing secure reference architectures by designing and maintaining repeatable architectures and patterns throughout many critical domains such as IAM, AI, cloud infrastructure, and secret management to be leveraged across the enterprise.
  • Creating engineer guardrails by leveraging secure reference architectures to create “paved paths” that allow engineers to deploy rapidly without bypassing security controls.
  • Spearheading advanced, continuous threat modeling sessions for critical product features and core infrastructure components.
  • Fostering a deep “Security by Design” mindset across product and engineering teams through systemic influence rather than rigid mandates.
  • Partnering early with Product Management to embed security requirements into the initial phases of the product development lifecycle.
  • Providing technical mentorship to senior security personnel to elevate the organization’s overall technical execution.
  • Assess emerging tech stack by evaluating, benchmarking, and approving third-party technologies and vendor integrations for security.
  • Communicating highly technical security vulnerabilities and architectural risks into clear, actionable business impacts.

Requirements

  • 10+ years of experience in cybersecurity, with at least 4+ years operating as Lead, or Enterprise Architect level.
  • Deep, hands-on experience designing and securing multi-tenant public cloud environments.
  • Proven track record with containerization (Docker, Kubernetes), microservices, service meshes, and infrastructure-as-code (Terraform, Pulumi).
  • Expertise in implementing zero trust approaches to security, modern identity (OIDC, OAuth 2.0, SAML), and advanced cryptography.
  • Experience building security guardrails around AI/ML pipelines, LLM integrations, and data lake architectures.
  • Experience securing hyper-growth, high-transaction SaaS or cloud-native product ecosystems.
  • Strong understanding of downstream security processes related to detection and response.
  • Demonstrated ability to drive engineering alignment, change developer behaviors, and champion security without relying on direct managerial authority.
  • Exceptional ability to translate highly technical vulnerabilities and complex risk profiles into clear business terms for C-suite executives., * Bachelor’s degree in Computer Science, Cyber Security, Engineering, or equivalent practical experience.
  • Credentials such as CISSP, ISSAP, CCSP, or professional-level cloud architecture/security certifications from AWS, Google, or Microsoft.
  • Strong understanding of Microsoft Azure and AKS implementations.

Benefits & conditions

iM Getting To…

  • Join a rapidly evolving, industry-leading SaaS company on an exciting journey of growth and scalability!
  • Take on meaningful, high-impact challenges by leveraging cutting-edge technologies and best-in-class protocols to drive innovation.
  • Own my career path with our internal development framework. Ask us more about this!
  • Expand my skill set and earn certifications with unlimited access to LinkedIn Learning courses and interactive Microsoft courses & training.
  • Be part of a supportive and experienced team within a dynamic, inclusive, and encouraging culture.
  • Enjoy flexible work hours that empower me to balance personal time with professional commitments.
  • Collaborate in a modern, open-plan workspace featuring a gaming area, free snacks and drinks, and regular social events.

iManage Is Supporting Me By…

  • Creating an inclusive environment where I can help shape the culture not just by fitting in, but by adding to it.
  • Providing a market competitive salary that is applied through a consistent process, equitable for all our employees, and regularly reviewed based on industry data.
  • Rewarding me with an annual performance-based bonus.
  • Offering comprehensive Health/Vision/Dental/Life Insurance, and a 401k Retirement Savings Plan with a company match up to 4%.
  • Granting enhanced leave for expecting parents; 20 weeks 100% paid for primary leave, and 10 weeks 100% paid for secondary leave.
  • Providing me with a flexible time off policy to take the time off that I need. Be it for vacation, volunteering, celebrating holidays, spending time with family, or simply taking time to recharge and reset.
  • Having multiple company wellness days each year to prioritize mental health and well-being.
  • Providing access to RethinkCare, a global behavioral health platform that enhances personal well-being, strengthens professional resilience, and empowers parental success through expert-led training and resources.

The overall US annual base salary range for this position is $180,000 - 220,000 per year. Individual compensation for each candidate depends on factors such as qualifications, experience, and candidate location. This range does not include additional forms of compensation, such as bonuses, commission, or benefits. Your recruiter will provide further details about the offer range, incentives, and overall compensation during the hiring process.

About the company

At iManage, we are dedicated to Making Knowledge Work . Our intelligent, cloud-enabled, and secure platform is trusted by 4,100+ customers and 430,000 users worldwide, managing over 11 billion documents and 11 petabytes of data. We empower professionals across 65+ countries to unlock the full potential of their business content and communications.

We are continuously innovating to solve the most complex professional challenges and enable better business outcomes; Our work is not always easy but it is ambitious and rewarding.

So we’re looking for people who embrace challenges. People who thrive on solving problems, pushing boundaries, and collaborating with the industry’s best and brightest. That’s the iManage way. It’s how we turn the impossible into reality, empower our employees to grow, unlock their potential, and create a meaningful impact on everything we do.

Whoever you are, whatever you do, however you work. Make it mean something at iManage.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on imanagecom.applytojob.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:33 min

Recapping vital capability shifts across security and enterprise infrastructure

Sergej Reznik Sergej Reznik · Europe 2026 Virtual

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

1:55 min

Contrasting Terraform with Pulumi and cloud-specific tools

Devlin Duldulao · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · WWC 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

Videos

See all

Related articles

See all