> Markdown version of [/jobs/ext/536776-principal-security-architect-information-security](https://www.wearedevelopers.com/jobs/ext/536776-principal-security-architect-information-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Security Architect (Information Security) - **Company:** Palo Alto Networks - **Location:** Santa Clara, CA, United States - **Experience:** Experienced - **Salary:** $167,600.0 - $271,150.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Artificial Intelligence, Amazon Web Services, Microsoft Azure, Software as a Service, Cyber Security, Distributed Systems, Identity and Access Management, Python (Programming Language), Machine Learning, Zero Trust Network Access, SAP (Applications), Scripting, Google Cloud, Cloud Platform System, Large Language Models, Multi-Cloud, Oracle Cloud Infrastructure, Serverless Computing, Microservices - **Published:** June 10, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=c0149c7740e19d42 ## About the Role Do you have experience in Zero trust architecture design?, * 8+ years of experience in security engineering and/or security architecture, with at least 4+ years in a Principal or Lead capacity. * Deep, hands-on architectural expertise in at least one major public cloud provider (GCP, AWS, Azure, OCI, or SAP) with a strong working knowledge of the others. * Demonstrated sophisticated, deep knowledge and hands-on experience with modern Secure-by-Design, Privacy-by-Design, and Zero Trust principles and practices. * Proven track record of executing complex threat models (e.g., STRIDE, PASTA, DREAD) for microservices and serverless architectures. * Proficiency with a scripting language such as Python or Go and experience securing CI/CD pipelines., * Experience securing AI/ML ecosystems, with a deep understanding of adversarial machine learning attacks and defenses for Large Language Models (LLMs). * Deep understanding of the security vendor landscape, with experience designing or using CSPM, CWPP, or Container Security platforms. * Exceptional ability to communicate technical risk to executive audiences and negotiate architectural trade-offs with product owners. * Experience with well-architected frameworks (AWS, Azure, GCP) and their security pillars. ## Description As a Principal Security Architect, you will serve as the technical authority for our multi-cloud security strategy, defining the architectural 'North Star' for our cloud-native platforms to ensure they are secure by design. In this high-impact, 'player-coach' role, you will drive complex threat modeling, steer the architectural direction across GCP, AWS, Azure, and OCI, and partner with engineering leadership to embed security deep within our next-generation products., * Define and maintain the authoritative security architecture patterns for services across multi-cloud environments, including GCP, AWS, Azure, OCI, and SAP. * Lead the design of secure, scalable, and resilient systems by championing 'Security by Design' principles such as isolation, identity management (IAM), and data protection. * Drive the architectural strategy and implementation of Zero Trust principles across development environments and production SaaS platforms. * Own the organization's threat modeling methodology, facilitating deep-dive sessions for critical features to identify attack vectors in complex distributed systems. * Translate architectural risks into actionable items for the Cybersecurity Risk Register, effectively communicating the business impact to leadership. * Serve as a subject matter expert on security products (CWPP, CSPM, NGFW), advising product teams on architecting solutions to withstand modern adversary TTPs. * Provide high-level technical guidance and mentorship to Staff and Senior security engineers, fostering a culture of engineering excellence and proactive security. * Lead cross-functional 'Tiger Teams' through complex security implementations, acting as the bridge between Developer, Product Engineering, and InfoSec teams. ## Related Videos - [The Open-source Java SDK for Multi-Cloud Development - Sandeep Pal](https://www.wearedevelopers.com/videos/2113-the-open-source-java-sdk-for-multi-cloud-development-sandeep-pal) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [The Cloud is Calling: Answer with In-Demand Skills](https://www.wearedevelopers.com/videos/945-the-cloud-is-calling-answer-with-in-demand-skills) - [Leverage Cloud Computing Benefits with Serverless Multi-Cloud ML ](https://www.wearedevelopers.com/videos/78-leverage-cloud-computing-benefits-with-serverless-multi-cloud-ml) - [Trust Issues: Because Zero-Trust Isn’t Optional Anymore](https://www.wearedevelopers.com/videos/100089-trust-issues-because-zero-trust-isn-t-optional-anymore) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [Learning Kubernetes made easy with KubeCampus](https://www.wearedevelopers.com/magazine/348-learning-kubernetes-made-easy-with-kubecampus) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)