Principal Security Architect

Advance-Auto-Parts

Raleigh (NC)

Hybrid

USD 170,000 - 230,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Advance Auto Parts seeks a Principal Security Architect to lead secure technology design across cloud, hybrid, and on‑prem environments from its Raleigh HQ. This role drives IAM, EDR, and vulnerability programs and guides architecture decisions with cross-functional teams to strengthen security posture.

The position emphasizes Zero Trust, threat modeling, and security governance, with 4 days in the office and 1 day remote. You will influence risk decisions and stay ahead of evolving threats.

Qualifications

  • 8–12+ years in cybersecurity with architecture/engineering focus.
  • Depth across IAM, EDR/endpoint security, vulnerability management, and security architecture design.
  • Ability to solve complex, ambiguous technical problems across large environments.
  • Familiarity with Zero Trust, NIST CSF/800-53, ISO 27001, MITRE ATT&CK, STRIDE.

Responsibilities

  • Develop and maintain cybersecurity architecture strategy, roadmaps, standards, patterns, and artifacts aligned with business drivers, technology strategy, and the threat landscape.
  • Lead architecture design and formal security architecture reviews for new solutions, cloud migrations, applications, infrastructure, and third‑party integrations—identifying risks and recommending mitigations.
  • Architect and guide solutions across IAM, EDR/XDR, VM, and broader security controls.
  • Provide hands-on engineering input: evaluate tools/platforms, support proofs-of-concept, guide implementation, and validate controls.
  • Conduct threat modeling, risk assessments, and gap analyses; translate findings into actionable architecture recommendations and control improvements.
  • Serve as a trusted advisor and liaison—communicating risks and solutions to technical and non-technical audiences; influence decision-making.
  • Stay current with emerging threats, technologies, and frameworks (NIST, ISO 27001, MITRE ATT&CK, Zero Trust).

Skills

IAM
EDR/endpoint security
Vulnerability management
Zero Trust
Threat modeling
Architecture design
Cross-functional collaboration

Tools

Okta/Entra ID

Job description

Job DescriptionWe are seeking a Principal Security Architect to lead the design, review, and evolution of secure technology solutions across cloud, hybrid, and on-premises environments. This individual will serve as a trusted cybersecurity leader, driving architecture strategy, advancing IAM, EDR, Vulnerability Management, and Zero Trust initiatives, and partnering with cross-functional teams to strengthen the organization's security posture and reduce risk.This role is based out of our corporate headquarters in Raleigh, NC (4 days in office, 1 day remote)Key ResponsibilitiesDevelop and maintain cybersecurity architecture strategy, roadmaps, reference architectures, standards, patterns, and artifacts aligned with business drivers, technology strategy, and the evolving threat landscape (including multi-cloud and on-premises).Lead architecture design and formal security architecture reviews for new solutions, major changes, cloud migrations, applications, infrastructure, and third-party integrations—identifying risks and recommending practical mitigations.Architect and guide solutions across core verticals:Identity & Access Management (IAM) — Zero Trust principles, SSO/MFA, RBAC/least privilege, identity lifecycle, privileged access, and federation.Endpoint Detection & Response (EDR/XDR) and related endpoint protection controls.Vulnerability Management (VM) — scanning architecture, prioritization, remediation workflows, and integration with broader risk processes.Broader security controls including network segmentation, encryption, logging/detection, cloud security posture, and secure configurations.Provide hands-on engineering input: evaluate tools/platforms, support proofs-of-concept, guide implementation and integration, validate controls, and contribute to automation/scripting where appropriate.Conduct threat modeling, risk assessments, and gap analyses; translate findings into actionable architecture recommendations and control improvements.Serve as a trusted advisor and liaison—clearly communicating technical risks, trade-offs, and solutions to both technical and non-technical audiences; influence decision-making and continuous improvement.Stay current with emerging threats, technologies, and frameworks (NIST, ISO 27001, MITRE ATT&CK, Zero Trust, etc.); evaluate and recommend enhancements to security posture and processes.Required Qualifications & Experience8–12+ years in cybersecurity with substantial architecture and engineering experience (strong hands-on background preferred over pure strategy roles).Demonstrated depth across multiple domains: IAM, EDR/endpoint security, vulnerability management, and security architecture design + formal review processes.Proven ability to solve complex, ambiguous technical and organizational problems in large or complex environments and to interface effectively across security, IT/engineering, cloud, and business teams.Solid experience with security architecture principles, frameworks, and practices (Zero Trust, NIST CSF/800-53, ISO 27001, MITRE ATT&CK, threat modeling methodologies such as STRIDE).Hands-on familiarity with relevant technologies and platforms (examples: identity platforms such as Okta/Entra ID, EDR solutions.Experience designing and reviewing architectures for hybrid/multi-cloud and on-premises environments.Excellent communication, stakeholder management, and collaboration skills—ability to translate complex topics and drive alignment.Preferred QualificationsExperience in retail, large distributed enterprises, or highly regulated environments.Leadership or principal-level individual contributor experience guiding technical direction without direct people management (or light leadership of architecture efforts).We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age national origin, religion, sexual orientation, gender identity, status as a veteran and basis of disability or any other federal, state or local protected class. We comply with all applicable federal, state, and local laws.California Residents click below for Privacy Notice:https://jobs.advanceautoparts.com/us/en/disclosures
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal Security Architect
Principal Security Architect

Advance Auto Parts • Raleigh (NC)

Hybrid
USD 160,000 - 230,000
Director of Security Operations
Director of Security Operations

Advance-Auto-Parts • Raleigh (NC)

Hybrid
USD 170,000 - 210,000
Senior Staff Security Architect (Information Security) - Bay Area
Senior Staff Security Architect (Information Security) - Bay Area

Jobs Paloaltonetworks • Santa Clara (CA)

On-site
USD 168,000 - 271,000
Principal Security Architect - Zero Trust & IAM Leader
Principal Security Architect - Zero Trust & IAM Leader

Advance-Auto-Parts • Raleigh (NC)

Hybrid
USD 170,000 - 230,000
Principal Security Engineer
Principal Security Engineer

Tixy • San Francisco (CA)

On-site
USD 180,000 - 240,000
Security Architect Lead — Zero Trust & Multi-Cloud
Security Architect Lead — Zero Trust & Multi-Cloud

Advance Auto Parts • Raleigh (NC)

Hybrid
USD 160,000 - 230,000
Senior Staff Security Architect (Information Security) - Bay Area
Senior Staff Security Architect (Information Security) - Bay Area

Palo Alto Networks, Inc. • Santa Clara (CA)

On-site
USD 152,000 - 246,000
Information Security Architect
Information Security Architect

BrainWorks • California (MO)

Hybrid
USD 155,000 - 220,000
Relocation assistance
Equity eligibility
Comprehensive benefits
Principal Security Architect | W2 Only.
Principal Security Architect | W2 Only.

Xlysi LLC. • Chicago (IL)

On-site
USD 170,000 - 210,000
Cyber Security Architect (Principal)
Cyber Security Architect (Principal)

PRI Technology • Seattle (WA)

On-site
USD 130,000 - 160,000
Generous base salary
Employee benefits package