> Markdown version of [/jobs/ext/1489574-principal-security-architect](https://www.wearedevelopers.com/jobs/ext/1489574-principal-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Security Architect - **Company:** iManage LLC - **Location:** Chicago, IL, United States - **Experience:** Experienced - **Salary:** $180,000.0 - $220,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Microsoft Azure, Software as a Service, Cloud Computing, Cloud Engineering, Cyber Security, Identity and Access Management, Information Systems Security Architecture Professional, OAuth, OpenID, Security Assertion Markup Language (SAML), Systems Integration, Pulumi, Large Language Models, Containerization, Data Lakes, Kubernetes, Information Technology, Machine Learning Operations, Terraform, Docker, Microservices - **Published:** July 29, 2026 - **Apply:** http://imanagecom.applytojob.com/apply/jobs/details/1l4EJzwTum ## About the Role * 10+ years of experience in cybersecurity, with at least 4+ years operating as Lead, or Enterprise Architect level. * Deep, hands-on experience designing and securing multi-tenant public cloud environments. * Proven track record with containerization (Docker, Kubernetes), microservices, service meshes, and infrastructure-as-code (Terraform, Pulumi). * Expertise in implementing zero trust approaches to security, modern identity (OIDC, OAuth 2.0, SAML), and advanced cryptography. * Experience building security guardrails around AI/ML pipelines, LLM integrations, and data lake architectures. * Experience securing hyper-growth, high-transaction SaaS or cloud-native product ecosystems. * Strong understanding of downstream security processes related to detection and response. * Demonstrated ability to drive engineering alignment, change developer behaviors, and champion security without relying on direct managerial authority. * Exceptional ability to translate highly technical vulnerabilities and complex risk profiles into clear business terms for C-suite executives., * Bachelor's degree in Computer Science, Cyber Security, Engineering, or equivalent practical experience. * Credentials such as CISSP, ISSAP, CCSP, or professional-level cloud architecture/security certifications from AWS, Google, or Microsoft. * Strong understanding of Microsoft Azure and AKS implementations. ## Description We offer a flexible working policy that supports a healthy balance between personal and professional well-being. This role requires in-office presence on Tuesdays & Thursdays to collaborate, connect, and learn from peers - while also maintaining the flexibility for meaningful work-life balance. Being a Principal Security Architect at iManage Means… You will drive enterprise security strategy, defining architectural vision and technical "North Star". You will influence engineering teams through deep knowledge of how technical systems function, hands-on design, and balancing aggressive business growth with robust, seamless risk mitigation. You are not merely managing risk; you will enable business growth by ensuring iManage platforms can scale to handle modern threats. iM Responsible For… * Establishing secure reference architectures by designing and maintaining repeatable architectures and patterns throughout many critical domains such as IAM, AI, cloud infrastructure, and secret management to be leveraged across the enterprise. * Creating engineer guardrails by leveraging secure reference architectures to create "paved paths" that allow engineers to deploy rapidly without bypassing security controls. * Spearheading advanced, continuous threat modeling sessions for critical product features and core infrastructure components. * Fostering a deep "Security by Design" mindset across product and engineering teams through systemic influence rather than rigid mandates. * Partnering early with Product Management to embed security requirements into the initial phases of the product development lifecycle. * Providing technical mentorship to senior security personnel to elevate the organization's overall technical execution. * Assess emerging tech stack by evaluating, benchmarking, and approving third-party technologies and vendor integrations for security. * Communicating highly technical security vulnerabilities and architectural risks into clear, actionable business impacts. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Unleashing Potential Across Teams: The Power of Infrastructure as Code](https://www.wearedevelopers.com/videos/930-unleashing-potential-across-teams-the-power-of-infrastructure-as-code) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Building Sovereign AI: Lessons from Deploying Secure RAG Systems using Confidential Computing](https://www.wearedevelopers.com/videos/100108-building-sovereign-ai-lessons-from-deploying-secure-rag-systems-using-confidential-computing) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Stephan Gillich - Bringing AI Everywhere](https://www.wearedevelopers.com/magazine/489-stephan-gillich-bringing-ai-everywhere) - [Dev Digest 210: AI Agents Are Go! Is MCP Dead? LLMs Crack Anonymity](https://www.wearedevelopers.com/magazine/709-dev-digest-210-ai-agents-are-go-is-mcp-dead-llms-crack-anonymity)