CyberArk · 3 days ago
Senior Product Security Architect - Remote
CyberArk is the global leader in Identity Security, providing comprehensive security offerings for any identity across various platforms. The Senior Product Security Architect will work closely with Development and SRE teams to embed security into every stage of the software development lifecycle, ensuring the cloud-native platform's resilience and secure architecture.
Responsibilities
Embed security throughout the SSDLC
Partner with engineering teams to integrate secure design into microservices, APIs, and distributed systems
Lead threat modeling, secure design reviews, and architecture conversations
Drive secure coding expectations and secure defaults across multiple teams
Guide teams through OWASP reasoning, protocol-level topics (TLS, mTLS, token flows), and secure design patterns
Improve SSDLC processes, tooling, and CI/CD security
Support architecture reviews and influence long-term technology strategy
Evaluate and help onboard container/K8s security tooling
Provide guidance on runtime risks, image vulnerabilities, supply chain exposure, and K8s posture
Define “what good looks like” for cloud-native workloads
Build trust quickly with Development, SRE, and Product
Communicate risk clearly and guide engineering tradeoffs
Lead cross-team security initiatives that raise maturity across the organization
Deliver training, mentorship, and awareness programs
Support incident response and drive post-incident improvements
Continuously research emerging threats and technologies
Update security policies, standards, and architecture principles as the product evolves
Qualification
Required
Significant experience in Product Application Security
Secure design for microservices and APIs
Threat modeling and vulnerability analysis
Understanding how OWASP categories behave in distributed systems
Strong comfort with code-adjacent conversations (flows, architecture, data paths)
Embedded partnership with dev teams
Experience shaping secure coding patterns, code review workflows, and CI/CD expectations
Ability to balance security with engineering velocity
Familiarity with container/K8s security concepts and tooling
Understanding of workload identity, runtime protections, and image integrity
Ability to influence engineering decisions and drive secure architecture across teams
Strong communication skills with developers and engineering leaders
Preferred
FedRAMP understanding at the architecture level
Awareness of secure AI/ML development patterns and emerging LLM/ML risks
Benefits
Discretionary bonus
Equity
Medical
Dental
Vision
Financial
Other benefits
Company
CyberArk
CyberArk is a security company that applies intelligent privilege controls to every identity across the identity lifecycle.
Funding
Current Stage
Public CompanyTotal Funding
$1.67B2025-07-29Acquired
2025-06-05Post Ipo Debt· $1.1B
2019-11-17Post Ipo Debt· $500M
Recent News
2026-01-09
Tech Startups - Tech News, Tech Trends & Startup Funding
2026-01-09
Company data provided by crunchbase