BeyondTrust
Principal Software Security Architect
Remote United States · Toronto, Ontario, Canada
Get past the screening software and onto a recruiter's desk
hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.
- Keywords matched to this posting
- Fit score before you apply
- Cover letter included
Matched against 2.4M live jobs from 200,000+ employers in 200+ countries.
Tailor my resume for this job →Apply from your AI assistant
Connect hirly to Claude and ask it to apply to this job. hirly tailors your resume, fills the employer’s form and asks before sending. ChatGPT: manual setup today.
Some employer sites stop an application at a CAPTCHA or sign-in and hand it back with a link. Applying needs a paid plan. Works with any assistant that supports MCP.
hirly's read of this role
- Seniority
- Lead / management
- Countries
- US, CA
- Work mode
- Remote-friendly
- First seen by hirly
- 10 Sept 2026
Derived automatically from the posting. Upload your resume above to see how the role scores against it.
the posting
BeyondTrust is a place where you can bring your purpose to life through the work that you do, creating a safer world through our cyber security SaaS portfolio.
Our culture of flexibility, trust, and continual learning means you will be recognized for your growth, and for the impact you make on our success. You will be surrounded by people who challenge, support, and inspire you to be the best version of yourself.
The Role
The Principal Software Security Architect owns security architecture for BeyondTrust's product suite end to end, including endpoint agents, thick clients, SaaS platforms, APIs, identity systems, and cloud-native services. This is an engineering leadership role embedded within Engineering and Architecture teams in the Office of the CTO, accountable for designing security into products from first principles through to what ships and runs in production, rather than reviewing other teams' work from the outside.
We operate AI-first: Claude and LLM-driven workflows are how the team performs threat modeling, secure design reviews, vulnerability analysis, and developer enablement today, and this role is expected to operate at that level from day one and help extend that practice further. The ideal candidate brings 10+ years of hands-on software engineering and security architecture experience, deep expertise in threat modeling and attack surface reduction at scale, and practical experience applying LLM platforms to security engineering work.
What You’ll Do
Own end-to-end security architecture for assigned product lines, from concept through production, defining the target-state architecture and secure-by-default patterns each product builds on.
Lead threat modeling, attack surface analysis, and secure design reviews across products, platform services, endpoint agents, and cloud-native systems, driving the architectural decisions that eliminate unnecessary exposure rather than just documenting risk.
Use LLM platforms (Claude, OpenAI) as core tools to scale threat analysis, abuse-case generation, architecture review, and remediation guidance, building the prompts, plugins, skills, and agent workflows that make the engineering org faster and more consistent.
Embed secure-by-default patterns directly into product development, contributing reference architectures, reusable components, and automated guardrails, and building self-service security capabilities that let engineers make secure decisions without a bottleneck.
Own and expand the Product Security handbook, a living system that feeds the team's AI workflows to enforce secure design standards, architecture guidance, and engineering best practices.
Set technical direction for secure design across the org as a principal-level engineer, mentoring engineers, architects, and Security Champions on secure design, attack surface reduction, and AI-first security workflows.
Help evolve BeyondTrust's AI-first Product Security Architecture strategy, identifying where AI workflows can replace manual processes, where they need human oversight, and where the next capability gaps are.
What You’ll Bring
10+ years in Software Engineering, Security Architecture, Product Security, or Application Security, with a track record of owning architecture for shipping products
Deep, practical experience with threat modeling, attack surface analysis, secure design reviews, and architecture risk analysis at scale, not just in theory
Strong hands-on engineering background, with the ability to read and contribute to the codebase, design systems, and earn credibility with senior engineers as a peer
Strong understanding of cloud-native systems, APIs, endpoint agents, thick clients, and identity/security platforms
Hands-on experience using LLM platforms (Claude, OpenAI, or similar) in engineering or security workflows
Ability to influence engineering and product teams from within, acting as a persuasive, credible, and practical partner rather than a gatekeeper
Builder mindset, having created scalable security workflows, frameworks, or enablement programs, not just consumed them
Experience building AI-native security workflows, plugins, agents, or developer tooling
What Success Looks Like
Measurable reduction in product attack surface and recurring architecture risks, measured by risk eliminated, not findings produced
Security architecture for owned product lines is defined, documented, and demonstrably adopted in shipping products
Increased scale and consistency of secure design reviews through AI-first workflows
Faster identification and remediation of design-level and architecture-level risks
Engineering teams actively using self-service security capabilities that have been built
Expansion of AI-first Product Security Architecture capabilities across the SDLC
Nice To Have
Background in securing endpoint technologies, identity systems, or enterprise security platforms
Offensive security experience or adversarial testing background
Cloud security experience across AWS, Azure, or Kubernetes environments
Better Together
Diversity. Inclusion. They’re more than just words for us. They are the guiding values of how we build our teams, cultivate leaders, and create a culture where people feel connected.
We take care of our employees so they can take care of our customers. Customers who come from all walks of life just like us. We hire incredible people from diverse backgrounds because when we are different together, we are stronger together.
About Us
BeyondTrust is the global identity security leader protecting Paths to Privilege™. Our identity-centric approach goes beyond securing privileges and access, empowering organizations with the most effective solution to manage the entire identity attack surface and neutralize threats, whether from external attacks or insiders.
BeyondTrust is leading the charge in transforming identity security to prevent breaches and limit the blast radius of attacks, while creating a superior customer experience and operational efficiencies. We are trusted by 20,000 customers, including 75 of the Fortune 100, and our global ecosystem of partners.
Learn more at www.beyondtrust.com .
#LI-
Similar jobs
- Principal Cybersecurity ArchitectJPMorgan Chase · Jersey City, NJ, United States; Columbus, OH, United States; Wilmington, DE, United States; Plano, TX, United States; Seattle, WA, United StatesFirst seen today
- Principal Security ArchitectJobgether · CanadaFirst seen yesterdayremote
- Principal Cybersecurity Architect – Network Security Posture ManagementIonq · Santa Clara, California, United StatesFirst seen yesterday
- Sr Lead Cybersecurity ArchitectJPMorgan Chase · OH, United StatesFirst seen yesterday
- Senior Principal Security ArchitectInvesco · 2 LocationsFirst seen 2d ago
Browse similar roles
Want this one?
Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.
Tailor my resume for this job