> Markdown version of [/jobs/ext/620685-principal-product-security-architect-engagement-lead](https://www.wearedevelopers.com/jobs/ext/620685-principal-product-security-architect-engagement-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Product Security Architect & Engagement Lead - **Company:** Lorven Technologies Inc - **Location:** Tewksbury, MA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cyber Security, Systems Development Life Cycle, Sherwood Applied Business Security Architecture, Software Vulnerability Management, Software Security, Togaf, Information Technology - **Published:** June 23, 2026 - **Apply:** https://www.careerjet.com/jobad/us14cbe26279d315452f14cbd0927128cf ## About the Role * Bachelor's degree in Computer science or equivalent, with minimum 15+ Years of relevant experience * 7-10 years in product application security * 5+ years in complex customer assessment and regulatory assessment engagements * Strong experience in product cybersecurity and secure-by-design principles * Expertise in threat modelling, architecture review, and trust boundary analysis * Strong understanding of product lifecycle security and operational resilience concepts * Familiarity with secure SDLC, SBOM governance, and vulnerability management practices * Experience across both offensive security and security architecture domains * CISSP, CSSLP, SABSA / TOGAF (preferred) * FedRAMP or regulated environment experience preferred * Demonstrate excellent communication skills including the ability to effectively communicate with internal and external customers. * Ability to use strong industry knowledge to relate to customer needs and dissolve customer concerns and high level of focus and attention to detail. ## Related Videos - [Software Security 101: Secure Coding Basics](https://www.wearedevelopers.com/videos/220-software-security-101-secure-coding-basics) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Unleashing the Power of Developers: Why Cybersecurity is the Missing Piece?!?](https://www.wearedevelopers.com/videos/712-unleashing-the-power-of-developers-why-cybersecurity-is-the-missing-piece) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Building Security Champions](https://www.wearedevelopers.com/magazine/87-building-security-champions) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)