Principal Security Architect

Graphcore

California

Hybrid

USD 180,000 - 260,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Medical, dental, vision coverage
Retirement savings plans
Paid vacation and holidays
Parental/family leave
Flexible working hours
Professional development resources

Job summary

Graphcore seeks a Principal Security Architect to design, deploy, and secure scalable infrastructure for cryptographic key management. You will lead HSM deployment and governance, enforce access controls, and drive policy for key/certificate creation, rotation, and revocation across regions.

Collaborating with stakeholders, you will analyze requirements and enable robust security across teams while championing secure software practices and automation.

Qualifications

  • MS or PhD in Computer Science, Computer Engineering, Cryptography, Cybersecurity, or a related highly technical field.
  • 10+ years of deep technical experience in PKI, HSM deployment/management.
  • Strong knowledge of encryption technologies, security controls, and compliance frameworks.
  • Familiarity with authentication backends (OIDC, LDAP), secret engines, PKI, encryption, and token lifecycle.

Responsibilities

  • Design and deploy scalable, secure infrastructure solutions from scratch, aligned with business requirements and security standards.
  • Hardware Secure Module ownership and governance.
  • Develop organizational standards, policies, access models, and workflows for secure platform usage.
  • Conduct risk and compliance assessments to support security plans and DR strategies.
  • Collaborate on requirements analysis, user and key operations, and capacity planning.
  • Advocate for best practices in secret lifecycle management, authentication methods, and identity federation.
  • Create tooling, automation, onboarding guides, and libraries for teams to access the platform.

Skills

Public Key Infrastructure
Hardware Security Modules deployment
Authentication backends
Secret lifecycle management
Infrastructure-as-Code
CI/CD automation
Encryption & cryptography
Policy & governance

Education

MS or PhD in CS/CE/Cryptography

Tools

Terraform
Vault
CI/CD tooling
Cloud IAM

Job description

About Graphcore

Graphcore is a globally recognized leader in Artificial Intelligence computing systems. The company designs advanced semiconductors and data center hardware that provide the specialized processing power needed to drive AI innovation, while delivering the efficiency required to support its broader adoption.

As part of the SoftBank Group, Graphcore is a member of an elite family of companies responsible for some of the world’s most transformative technologies. We are opening a new AI Engineering Campus in Austin, which will play a central role in Graphcore's work building the future of AI computing.

About the Role

We are seeking a Principal Security Architect to design, maintain and secure scalable infrastructure solutions for cryptographic key management. In this strategic role, you will be responsible for evaluating, deploying and manage Hardware Secure Modules from the ground up, ensuring compliance with standards across different regions. You will also enable multiple teams by supporting them for control and automation. You will be expected to drive and implement policies for key and certificate creation, rotation, and revocation.

Collaboration with stakeholders to analyze requirements and implement robust access controls is essential while demonstrating operational excellence.

RESPONSIBILITIES
  • Design and deploy scalable, secure infrastructure solutions from scratch, aligned with business requirements and security standards.
  • Hardware Secure Module ownership and governance.
  • Develop organizational standards, policies, access models, and workflows to ensure consistent, secure usage of the platform.
  • Conduct risk and compliance assessments to support system security plans and disaster recovery strategies.
  • Collaborate on requirement analysis, user and key story operations, and capacity planning to ensure optimal resource utilization.
  • Advocate for best practices in secret lifecycle management, authentication methods, and identity federation.
  • Create tooling, automation, onboarding guides, and libraries to help teams access the platform easily and correctly.
REQUIREMENTS
  • Education: MS or Ph.D. in Computer Science, Computer Engineering, Cryptography, Cybersecurity, or a related highly technical field.
  • Experience: 10+ years of deep technical experience and proven experience in Public Key Infrastructure, Hardware Security Modules deployment and management.
  • Strong knowledge of encryption technologies, security controls, and compliance frameworks.
  • Strong understanding of authentication backends (OIDC, LDAP, cloud IAM), secret engines, PKI, encryption, and token/credential lifecycle.
  • Familiarity with infrastructure maintenance, disaster recovery planning, and capacity management.
  • Skilled in coding standards, secure software development lifecycle, and configuration management processes.
  • Familiarity with Infrastructure-as-Code (Terraform preferred) and CI/CD automation.
  • Leadership & Communication: Exceptional ability to distill complex, theoretical security concepts into strict engineering specifications, and the gravitas to influence engineering teams and executive leadership without direct authority.
DIFFERENTIATORS
  • Experience integrating Vault with cloud platforms (AWS, Azure, GCP) and CI/CD pipelines.
  • Standards Body Contributions: Active participation, authorship, or contribution to industry security standards (e.g., TCG, OCP Security Project, Linux Foundation, or Arm security working groups).
  • Knowledge of SPIFFE/SPIRE, workload identity, or zero-trust architectures.
  • Post-Quantum Readiness: Forward-looking understanding of Post-Quantum Cryptography (PQC) and its upcoming impact on hardware lifecycle and secure boot.
  • Understanding of Platform Root of Trust, Platform Identity, DICE and attestation.
United States Benefits Overview

Graphcore offers competitive compensation and benefits designed to support employees' health, financial well-being, work-life needs, and professional growth. Benefits and programs for eligible U.S. employees may include:

  • Medical, dental, and vision coverage, with options that may extend to eligible dependents.
  • Mental health, wellness, and employee assistance resources.
  • Retirement savings benefits and company contributions where applicable.
  • Paid vacation, sick time, company holidays, and parental or family leave in accordance with relevant plans and policies.
  • Life insurance and short-term or long-term disability coverage.
  • Flexible working hours and hybrid working arrangements where compatible with the role and team requirements.
  • Professional-development resources, learning programs, office amenities, and team-led activities.

Benefits vary by work location, employment status, scheduled hours, and plan eligibility and are subject to the terms of the applicable plans and company policies. This overview is not a contract or guarantee of benefits.

Equal Opportunity and Accommodations

Graphcore is an equal opportunity employer. We consider qualified applicants without regard to race, color, religion, creed, sex, pregnancy, sexual orientation, gender identity or expression, national origin, ancestry, age, disability, genetic information, veteran status, or any other status protected by applicable law.

Graphcore is committed to an inclusive and accessible hiring process. If you need a reasonable accommodation to participate in the application or interview process, please let the recruiting team know.

Candidate Privacy

Personal information submitted during the recruiting process will be handled in accordance with Graphcore's applicable candidate privacy notices.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Principal Security Architect
Principal Security Architect

Graphcore • Austin (TX)

Hybrid
USD 180,000 - 240,000
Medical, dental, and vision coverage
Mental health resources
Retirement savings plan contributions
+3
Principal Security Architect
Principal Security Architect

Graphcore • Milpitas (CA)

Hybrid
USD 180,000 - 260,000
Hybrid working arrangements
Medical/dental/vision coverage
Retirement savings plan
+1
Principal Datacenter Technologist
Principal Datacenter Technologist

Graphcore • Milpitas (CA)

Hybrid
USD 180,000 - 240,000
Hybrid working arrangements
Professional development resources
Office amenities
Technical Services Director, Global Data Center & Lab Infrastructure
Technical Services Director, Global Data Center & Lab Infrastructure

Graphcore • Austin (TX)

On-site
USD 180,000 - 240,000
401(k) matching
Flexible PTO
Professional development
Principal Engineer
Principal Engineer

Graphcore • Milpitas (CA), Austin (TX)

On-site
USD 180,000 - 260,000
Medical, dental, and vision
401(k) retirement plan
Commuter benefits
+2
Graduate Systems Engineer
Graduate Systems Engineer

Graphcore Early Careers • Austin (TX)

On-site
USD 85,000 - 120,000
Principal Engineer, System Management – Flexible Work
Principal Engineer, System Management – Flexible Work

Graphcore • United States

On-site
USD 180,000 - 240,000
Medical coverage
Dental coverage
Vision coverage
+4
Graduate Hardware Engineer
Graduate Hardware Engineer

EngineersOfAI • Austin (TX), Northern (KY)

On-site
USD 75,000 - 95,000
Medical, dental, and vision
401(k) with company matching
Flexible paid time off
+2
Principal Electrical Engineer
Principal Electrical Engineer

Graphcore • Austin (TX)

On-site
USD 170,000 - 230,000
Medical coverage
401(k) retirement plan
Commuter benefits
+2
Principal Engineer
Principal Engineer

Graphcore • United States

On-site
USD 180,000 - 240,000
Medical coverage
Dental coverage
Vision coverage
+4