> Markdown version of [/jobs/ext/1489694-senior-principal-platform-security-architect](https://www.wearedevelopers.com/jobs/ext/1489694-senior-principal-platform-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Principal, Platform Security Architect - **Company:** Schneider Llp - **Location:** Andover, MA, United States - **Experience:** Expert - **Salary:** $168,800.0 - $253,200.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Agile Methodology, Artificial Intelligence, Amazon Web Services, Software System Penetration Testing, Computing Platforms, Systems Engineering, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cyber Security, Data as a Services, Software Design Patterns, Identity and Access Management, Information Systems Security Architecture Professional, Modbus, Message Queuing Telemetry Transport (MQTT), OAuth, Public Key Infrastructure, Software Architecture, Cloud Services, Zero Trust Network Access, OPC Unified Architecture, Secure Coding, EndPointSecurity, Google Cloud, Cloud Platform System, Software Security, Information Technology, U-Boot, Industrial Software, Devsecops, Predix - **Published:** July 29, 2026 - **Apply:** https://www.jofdav.com/jobs/59025543-senior-principal-platform-security-architect ## About the Role The ideal candidate brings a proven track record as a security-focused software architect, with deep expertise in cloud and device security, hands-on experience with at least one major cloud platform such as AWS, Azure, or GCP, and the ability to navigate and influence across a large, matrixed engineering organization., * Graduate or postgraduate degree in Computer Science, Cybersecurity, Engineering, or a related field, * 12+ years of experience in software architecture, systems engineering, or cybersecurity * 6+ years designing and architecting security solutions for large-scale cloud and/or IoT platforms * 4+ years working with cloud platform security architecture, with experience in at least one of Azure, AWS, or Google Cloud * Prior experience designing platform security capabilities that are scalable, operationally efficient, and aligned with industry compliance frameworks * Experience designing multi-tenant security architectures, including tenancy isolation, authentication, and authorization models * Proven experience managing and working with teams based in multiple geographies * Hands-on knowledge of cloud security architecture, container/Kubernetes security, identity and access management, including OAuth2, PKI, and certificate lifecycle, threat modeling, and DevSecOps * Deep knowledge of applicable industry cybersecurity standards and regulatory frameworks relevant to cloud, IoT, and industrial systems * Experience operating as a security architect within Agile and SAFe delivery organizations Soft Skills * Excellent verbal and written communication skills, including the ability to explain security concepts to technical and non-technical audiences * Ability to build consensus and influence without direct authority across a matrixed organization * Strong problem-solving capabilities and detail orientation, * Experience with security concepts such as Root-of-Trust, secure boot, and device attestation * Knowledge of OT/IoT protocols and their security implications, including Modbus, OPC-UA, and MQTT * CISSP, CSSLP, CISM, AZ-500, or AWS Security Specialty certification * Experience with industrial cybersecurity certification processes, including IEC 62443 component/system certification * Supply chain security experience, including SBOM generation, dependency scanning, and software provenance ## Description The EcoStruxure Platform Architecture team, within Schneider Digital, is responsible for creating and evolving the Schneider Electric EcoStruxure Platform, a global Data and IoT platform that connects assets, unlocks the value of data and AI, and accelerates digital offers across Schneider Electric's Lines of Business, including Buildings, Industry, Infrastructure, and Energy. The platform powers the devices, applications, data services, and cloud capabilities that collectively enable the EcoStruxure ecosystem. The Platform Architecture team is responsible for the technical direction, overall platform architecture, and design patterns that platform engineering teams build against., As the Sr. Platform Security Architect, you will serve as the trusted advisor for security across the EcoStruxure Platform. You will be responsible for defining and driving the platform's security architecture and strategic direction, from embedded devices through cloud services. As part of the Platform Architecture team, you will work with engineering, product, cybersecurity, and business teams to design and architect the security capabilities of the EcoStruxure Platform. You will collaborate closely with Schneider Electric's cybersecurity community, including Cybersecurity Architects and Cybersecurity Advisors across Business Units and Lines of Business, to ensure consistent security practices across the platform., Security Architecture and Design 1. Translate business, customer, and regulatory requirements into platform security architecture requirements. 2. Design and architect platform security capabilities, including device-to-cloud trust chains, multi-tenant isolation, authentication and authorization models, data protection, and API security. 3. Define and evolve the security architecture and design patterns for the EcoStruxure Platform. Apply Zero Trust, defense-in-depth, and secure-by-design principles across the platform stack. Process and Governance 1. Define and evolve security processes, standards, and guardrails for the platform organization, including the Secure Development Lifecycle, architecture review processes, and formal cybersecurity review gates. Validate platform components through threat modeling, architecture reviews, and coordination with penetration testing resources. 2. Align platform security architecture with stakeholders, including cybersecurity certification strategies defined with Lines of Business for their offer roadmaps and compliance requirements. 3. Monitor approved technologies for threats, vulnerabilities, and updates. Oversee mitigation of security issues across platform components. Collaboration and Enablement 1. Collaborate with the Schneider Electric cybersecurity community, including Cybersecurity Architects, Cybersecurity Advisors, the Product Security Office, and the internal platform architect community, to ensure consistent security practices across the platform. Advise senior leadership on security posture and emerging threats. 2. Provide security architecture guidance to platform development teams and support DevSecOps adoption across the platform organization. Mentor and coach security champions and junior architects. Innovation and Technology 1. Stay current on emerging threats, technologies, and regulatory requirements. Build proofs of concept to evolve the platform security architecture. 2. Lead security vendor and technology assessments. Evaluate partner solutions for cloud security, identity management, and cryptographic infrastructure., Security Architecture and Design * Translate business, customer, and regulatory requirements into platform security architecture requirements. * Design and architect platform security capabilities, including device-to-cloud trust chains, multi-tenant isolation, authentication and authorization models, data protection, and API security. * Define and evolve the security architecture and design patterns for the EcoStruxure Platform. Apply Zero Trust, defense-in-depth, and secure-by-design principles across the platform stack. Process and Governance * Define and evolve security processes, standards, and guardrails for the platform organization, including the Secure Development Lifecycle, architecture review processes, and formal cybersecurity review gates. Validate platform components through threat modeling, architecture reviews, and coordination with penetration testing resources. * Align platform security architecture with stakeholders, including cybersecurity certification strategies defined with Lines of Business for their offer roadmaps and compliance requirements. * Monitor approved technologies for threats, vulnerabilities, and updates. Oversee mitigation of security issues across platform components. Collaboration and Enablement * Collaborate with the Schneider Electric cybersecurity community, including Cybersecurity Architects, Cybersecurity Advisors, the Product Security Office, and the internal platform architect community, to ensure consistent security practices across the platform. Advise senior leadership on security posture and emerging threats. * Provide security architecture guidance to platform development teams and support DevSecOps adoption across the platform organization. Mentor and coach security champions and junior architects. Innovation and Technology * Stay current on emerging threats, technologies, and regulatory requirements. Build proofs of concept to evolve the platform security architecture. * Lead security vendor and technology assessments. Evaluate partner solutions for cloud security, identity management, and cryptographic infrastructure. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Advanced Cypress: custom assertions and tasks](https://www.wearedevelopers.com/videos/790-advanced-cypress-custom-assertions-and-tasks) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Now is the time for industrialized software development](https://www.wearedevelopers.com/magazine/601-now-is-the-time-for-industrialized-software-development) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)