Principal Security Architect

E-Advance, LLC
Raleigh, NC, United States
26 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours
Job source

Tech stack

Cloud Computing Cloud Computing Security Cyber Security Identity and Access Management Network Segmentation Role-Based Access Control Zero Trust Network Access Software Vulnerability Management EndPointSecurity Data Logging Okta Mitre Att&ck
+2 more
Multi-Cloud Cloud Migration

Job description

We are seeking a Principal Security Architect to lead the design, review, and evolution of secure technology solutions across cloud, hybrid, and on-premises environments. This individual will serve as a trusted cybersecurity leader, driving architecture strategy, advancing IAM, EDR, Vulnerability Management, and Zero Trust initiatives, and partnering with cross-functional teams to strengthen the organization’s security posture and reduce risk., * Develop and maintain cybersecurity architecture strategy, roadmaps, reference architectures, standards, patterns, and artifacts aligned with business drivers, technology strategy, and the evolving threat landscape (including multi-cloud and on-premises).

  • Lead architecture design and formal security architecture reviews for new solutions, major changes, cloud migrations, applications, infrastructure, and third-party integrations-identifying risks and recommending practical mitigations.
  • Architect and guide solutions across core verticals:
  • Identity & Access Management (IAM) - Zero Trust principles, SSO/MFA, RBAC/least privilege, identity lifecycle, privileged access, and federation.
  • Endpoint Detection & Response (EDR/XDR) and related endpoint protection controls.
  • Vulnerability Management (VM) - scanning architecture, prioritization, remediation workflows, and integration with broader risk processes.
  • Broader security controls including network segmentation, encryption, logging/detection, cloud security posture, and secure configurations.
  • Provide hands-on engineering input: evaluate tools/platforms, support proofs-of-concept, guide implementation and integration, validate controls, and contribute to automation/scripting where appropriate.
  • Conduct threat modeling, risk assessments, and gap analyses; translate findings into actionable architecture recommendations and control improvements.
  • Serve as a trusted advisor and liaison-clearly communicating technical risks, trade-offs, and solutions to both technical and non-technical audiences; influence decision-making and continuous improvement.
  • Stay current with emerging threats, technologies, and frameworks (NIST, ISO 27001, MITRE ATT&CK, Zero Trust, etc.); evaluate and recommend enhancements to security posture and processes.

Requirements

  • 8-12+ years in cybersecurity with substantial architecture and engineering experience (strong hands-on background preferred over pure strategy roles).
  • Demonstrated depth across multiple domains: IAM, EDR/endpoint security, vulnerability management, and security architecture design + formal review processes.
  • Proven ability to solve complex, ambiguous technical and organizational problems in large or complex environments and to interface effectively across security, IT/engineering, cloud, and business teams.
  • Solid experience with security architecture principles, frameworks, and practices (Zero Trust, NIST CSF/800-53, ISO 27001, MITRE ATT&CK, threat modeling methodologies such as STRIDE).
  • Hands-on familiarity with relevant technologies and platforms (examples: identity platforms such as Okta/Entra ID, EDR solutions.
  • Experience designing and reviewing architectures for hybrid/multi-cloud and on-premises environments.
  • Excellent communication, stakeholder management, and collaboration skills-ability to translate complex topics and drive alignment.

Preferred Qualifications

  • Experience in retail, large distributed enterprises, or highly regulated environments.
  • Leadership or principal-level individual contributor experience guiding technical direction without direct people management (or light leadership of architecture efforts).

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · World Congress 2026 Europe

1:22 min

Overcoming developer challenges in multi-cloud environments

Sandeep Pal Sandeep Pal · Coffee With Developers

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

1:56 min

Discovering incidents using logs, metrics, and traces

Nele Uhlemann · World Congress 2023

1:20 min

Introduction to multi-cloud development infrastructure

Sandeep Pal Sandeep Pal · Coffee With Developers

Videos

See all

Related articles

See all