Education: Bachelor's degree or related field
Experience: 12+ years
Define and own the end-to-end security architecture across product (silicon, firmware, systems) and enterprise (cloud, SaaS, IT) domains
Establish security reference architectures, design patterns, and standards that scale across teams and product lines
Partner with engineering and IT leaders to align architectural direction with business, product, and compliance priorities
Lead threat modeling, attack surface analysis, and security design reviews for new products, features, and platforms
Drive secure development lifecycle (SDL) practices, including requirements, design, implementation, and validation gates
Evaluate cryptography, key management, secure boot, attestation, and supply chain integrity approaches for hardware and firmware
Architect zero-trust, identity, network, and data protection controls across the Microsoft-centric enterprise (Azure, Entra, M365) and SaaS ecosystem
Guide secure design of build, CI/CD, developer, and EDA/tooling environments
Define standards for logging, telemetry, and detection engineering inputs in partnership with security operations
Serve as a trusted advisor to engineering, product, IT, and GRC leadership on complex security trade-offs
Translate architectural direction into pragmatic, prioritized roadmaps and measurable outcomes
Mentor engineers and architects across the organization, elevating security capability company-wide
Bachelor's degree in Computer Science, Computer Engineering, Electrical Engineering, or a related technical field
12+ years of progressive experience in security engineering and architecture across product and/or enterprise domains
Demonstrated expertise designing secure architectures spanning hardware/firmware, software, cloud, and enterprise IT
Deep knowledge of cryptography, identity and access management, network security, and modern threat models (e.g., MITRE ATT&CK)
Hands-on experience with cloud security architecture (Azure preferred) and Microsoft enterprise environments (Entra, M365, Active Directory)
Proven ability to influence engineering and executive stakeholders and drive complex, cross-functional security initiatives
Advanced degree (MS or PhD) in a security-related discipline
Industry certifications such as CISSP-ISSAP, SABSA, TOGAF, Azure Security Engineer/Architect, or equivalent demonstrated experience
Experience in the semiconductor, hardware, or hyperscale infrastructure industry, including familiarity with PCIe, CXL, or high-speed connectivity technologies
Experience with secure boot, hardware root of trust, attestation, confidential computing, and supply chain security
Familiarity with regulatory and industry frameworks such as SOC 2, ISO 27001, NIST, and data privacy regulations
Salary range is $190,000 to $240,000 depending on experience, level, and business need. This role may be eligible for discretionary bonus, incentives and benefits.
Search Senior Principal Engineer, Security Architect (2026- 346) jobs near San Jose, CA → Browse all live jobs
This posting was published by Astera Labs on their own careers system and is shown here with a direct link to apply there. Employers: for corrections or removal, contact jobs@veritahire.com.