Principal Engineer, Security Architect (R5056)
Shield AI
IT
San Diego, CA, USA
USD 180k-270k / year + Equity
Job Description:
Shield AI is hiring a Security Architect to own the technical security design across Enterprise Operations. You will be the senior individual contributor who translates our strategic roadmap into concrete reference architectures and engineering guardrails across zero trust, identity, integration, manufacturing and operational technology, cloud, the data and AI platform, and Enterprise Operations. Your designs will hold up under CMMC, ISO 27001, SOC 2, and DoD customer scrutiny.
What you'll do:
- Own the end-to-end security reference architecture across Enterprise Operations, cloud, and manufacturing environments, from whiteboard to deployed control.
- Design and enforce zero trust and secure-by-design patterns for users, workloads, and machine identities.
- Lead the identity and access re-architecture, including conditional access, privileged access, machine identity, and access controls for controlled technical data.
- Define the security architecture of the enterprise integration backbone so data flowing between engineering, manufacturing, and business systems is authenticated, authorized, and monitored by default.
- Build the security architecture for digital manufacturing and operational technology, including segmentation, secure remote access, secure build and firmware pipelines, and protection of regulated technical data.
- Industrialize cloud and infrastructure security through hardened landing zones, infrastructure-as-code guardrails, workload hardening, and continuous compliance evidence.
- Architect controls for the data and AI platform, including data classification, model protection, and guardrails for internal and customer-facing AI.
- Strengthen Enterprise Operations through tooling rationalization, telemetry coverage, runbooks, and an architecture review function that scales with the company.
Required Qualifications
- 10+ years in security engineering or architecture.
- Prior security architect experience at a defense, aerospace, robotics, or autonomy company shipping hardware and software to government customers.
- Defense compliance: CMMC, NIST 800-171, ISO 27001, SOC 2.
- U.S. citizenship.
- Active U.S. government security clearance, or ability to obtain and maintain one.
180000 - 270000 USD a year