Senior Product Security Architect - Remote jobs in United States
cer-icon
Apply on Employer Site
company-logo

CyberArk · 3 days ago

Senior Product Security Architect - Remote

CyberArk is the global leader in Identity Security, providing comprehensive security offerings for any identity across various platforms. The Senior Product Security Architect will work closely with Development and SRE teams to embed security into every stage of the software development lifecycle, ensuring the cloud-native platform's resilience and secure architecture.

Cloud SecurityCyber SecuritySecurity
check
Growth Opportunities
badNo H1Bnote
Hiring Manager
Heather Arnold
linkedin

Responsibilities

Embed security throughout the SSDLC
Partner with engineering teams to integrate secure design into microservices, APIs, and distributed systems
Lead threat modeling, secure design reviews, and architecture conversations
Drive secure coding expectations and secure defaults across multiple teams
Guide teams through OWASP reasoning, protocol-level topics (TLS, mTLS, token flows), and secure design patterns
Improve SSDLC processes, tooling, and CI/CD security
Support architecture reviews and influence long-term technology strategy
Evaluate and help onboard container/K8s security tooling
Provide guidance on runtime risks, image vulnerabilities, supply chain exposure, and K8s posture
Define “what good looks like” for cloud-native workloads
Build trust quickly with Development, SRE, and Product
Communicate risk clearly and guide engineering tradeoffs
Lead cross-team security initiatives that raise maturity across the organization
Deliver training, mentorship, and awareness programs
Support incident response and drive post-incident improvements
Continuously research emerging threats and technologies
Update security policies, standards, and architecture principles as the product evolves

Qualification

Product Application SecuritySecure SDLCContainer SecurityArchitecture LeadershipThreat modelingVulnerability analysisOWASP understandingSecure coding patternsCI/CD securityIncident responseEmerging threats researchCommunication skillsMentorship

Required

Significant experience in Product Application Security
Secure design for microservices and APIs
Threat modeling and vulnerability analysis
Understanding how OWASP categories behave in distributed systems
Strong comfort with code-adjacent conversations (flows, architecture, data paths)
Embedded partnership with dev teams
Experience shaping secure coding patterns, code review workflows, and CI/CD expectations
Ability to balance security with engineering velocity
Familiarity with container/K8s security concepts and tooling
Understanding of workload identity, runtime protections, and image integrity
Ability to influence engineering decisions and drive secure architecture across teams
Strong communication skills with developers and engineering leaders

Preferred

FedRAMP understanding at the architecture level
Awareness of secure AI/ML development patterns and emerging LLM/ML risks

Benefits

Discretionary bonus
Equity
Medical
Dental
Vision
Financial
Other benefits

Company

CyberArk

company-logo
CyberArk is a security company that applies intelligent privilege controls to every identity across the identity lifecycle.

Funding

Current Stage
Public Company
Total Funding
$1.67B
2025-07-29Acquired
2025-06-05Post Ipo Debt· $1.1B
2019-11-17Post Ipo Debt· $500M

Leadership Team

leader-logo
Matthew Cohen
CEO
linkedin
leader-logo
Ariel Pisetzky
CIO
linkedin
Company data provided by crunchbase