BeyondTrust logo

BeyondTrust

Principal Software Security Architect

Region Restricted

Remote work allowed only within certain countries or regions.

Employer listed it 6 weeks ago · Added 5 days ago

Been open since 6 weeks ago, still being checked, but it has been live a while.

Salary

Not stated

Location

Timezone

US East

Contract

Full-time

Experience

Lead

Category

Software

This employer didn't state pay. Jobs like this usually pay around $200k–$275k a year, a typical range taken from 597 lead-level software roles on Nomaders that do state pay. It's a guide, not an offer.

Remote flexibility

Region Restricted

Remote work is allowed, but only for candidates based in United States, Canada.

What the employer says

  • Source listing states candidate location: "Remote United States, Remote Canada"

What Nomaders makes of it

  • Applications outside the listed area are usually rejected
  • Timezone overlap with the listed area is often expected

The quotes above are the employer's own words; the reading is ours. Always check the original listing and employment terms before working from another country.

About the role

BeyondTrust is a place where you can bring your purpose to life through the work that you do, creating a safer world through our cyber security SaaS portfolio.

Our culture of flexibility, trust, and continual learning means you will be recognized for your growth, and for the impact you make on our success. You will be surrounded by people who challenge, support, and inspire you to be the best version of yourself.

The Role

The Principal Software Security Architect owns security architecture for BeyondTrust's product suite end to end, including endpoint agents, thick clients, SaaS platforms, APIs, identity systems, and cloud-native services. This is an engineering leadership role embedded within Engineering and Architecture teams in the Office of the CTO, accountable for designing security into products from first principles through to what ships and runs in production, rather than reviewing other teams' work from the outside.

We operate AI-first: Claude and LLM-driven workflows are how the team performs threat modeling, secure design reviews, vulnerability analysis, and developer enablement today, and this role is expected to operate at that level from day one and help extend that practice further. The ideal candidate brings 10+ years of hands-on software engineering and security architecture experience, deep expertise in threat modeling and attack surface reduction at scale, and practical experience applying LLM platforms to security engineering work.

What You’ll Do

Own end-to-end security architecture for assigned product lines, from concept through production, defining the target-state architecture and secure-by-default patterns each product builds on.

Lead threat modeling, attack surface analysis, and secure design reviews across products, platform services, endpoint agents, and cloud-native systems, driving the architectural decisions that eliminate unnecessary exposure rather than just documenting risk.

Use LLM platforms (Claude, OpenAI) as core tools to scale threat analysis, abuse-case generation, architecture review, and remediation guidance, building the prompts, plugins, skills, and agent workflows that make the engineering org faster and more consistent.

Embed secure-by-default patterns directly into product development, contributing reference architectures, reusable components, and automated guardrails, and building self-service security capabilities that let engineers make secure decisions without a bottleneck.

Own and expand the Product Security handbook, a living system that feeds the team's AI workflows to enforce secure design standards, architecture guidance, and engineering best practices.

Set technical direction for secure design across the org as a principal-level engineer, mentoring engineers, architects, and Security Champions on secure design, attack surface reduction, and AI-first security workflows.

Help evolve BeyondTrust's AI-first Product Security Architecture strategy, identifying where AI workflows can replace manual processes, where they need human oversight, and where the next capability gaps are.

What You’ll Bring

10+ years in Software Engineering, Security Architecture, Product Security, or Application Security, with a track record of owning architecture for shipping products

Deep, practical experience with threat modeling, attack surface analysis, secure design reviews, and architecture risk analysis at scale, not just in theory

Strong hands-on engineering background, with the ability to read and contribute to the codebase, design systems, and earn credibility with senior engineers as a peer

Strong understanding of cloud-native systems, APIs, endpoint agents, thick clients, and identity/security platforms

Hands-on experience using LLM platforms (Claude, OpenAI, or similar) in engineering or security workflows

Ability to influence engineering and product teams from within, acting as a persuasive, credible, and practical partner rather than a gatekeeper

Builder mindset, having created scalable security workflows, frameworks, or enablement programs, not just consumed them

Experience building AI-native security workflows, plugins, agents, or developer tooling

What Success Looks Like

Measurable reduction in product attack surface and recurring architecture risks, measured by risk eliminated, not findings produced

Requirements

  • ·10+ years in Software Engineering, Security Architecture, Product Security, or Application Security, with a track record of owning architecture for shipping products
  • ·Deep, practical experience with threat modeling, attack surface analysis, secure design reviews, and architecture risk analysis at scale, not just in theory
  • ·Strong hands-on engineering background, with the ability to read and contribute to the codebase, design systems, and earn credibility with senior engineers as a peer
  • ·Strong understanding of cloud-native systems, APIs, endpoint agents, thick clients, and identity/security platforms
  • ·Hands-on experience using LLM platforms (Claude, OpenAI, or similar) in engineering or security workflows

Benefits

No benefits package published with this listing. Ask about it at first interview.

How to apply

  1. 1Check the flexibility label above, region restricted, matches where you plan to live and work.
  2. 2Tailor your CV to the role at BeyondTrust, mentioning your remote working experience and working hours (US East).
  3. 3Apply directly on the employer's careers page using the button below. Nomaders never handles your application.

Found 5d ago. Last checked 23 Sept. Always confirm the details on the original posting, salary and location can change after publication.

Listing sourced from Company boards.

Similar roles

Other open software roles with comparable remote rules.

Browse all open roles

Free to apply, no account needed.

Typically $200k to $275k per year · You'll be taken to the employer's careers page.