Principal Security Architect

Advance Auto Business Support (300)

Raleigh (NC)

Hybrid

USD 150,000 - 190,000

Full time

13 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Advance Auto Parts, Inc. seeks a Principal Security Architect to lead design, review, and evolution of secure technology across cloud, hybrid, and on‑prem environments from our Raleigh HQ.

This role blends architecture strategy with hands‑on input and cross‑functional collaboration to strengthen security posture and reduce risk. You will drive IAM, EDR, Vulnerability Management, and Zero Trust initiatives, mentor teams, and stay current with NIST/ISO frameworks while guiding practical

Qualifications

  • 8–12+ years in cybersecurity with architecture and engineering experience.
  • Deep experience across IAM, EDR, vulnerability management, and security architecture design.
  • Ability to solve complex problems and interface across security, IT, cloud, and business teams.
  • Knowledge of Zero Trust, NIST CSF/800-53, ISO 27001, MITRE ATT&CK, STRIDE.
  • Hands‑on familiarity with Okta/Entra ID and EDR tools; hybrid/multi-cloud and on‑prem architectures.
  • Excellent communication and stakeholder management skills.

Responsibilities

  • Develop and maintain cybersecurity architecture strategy, roadmaps, reference architectures, standards, patterns, and artifacts for cloud and on‑prem.
  • Lead architecture reviews for new solutions, migrations, apps, infrastructure, and third‑party integrations.
  • Architect IAM and Zero Trust controls, SSO/MFA, RBAC, identity lifecycle, federation.
  • Provide hands‑on input evaluating tools, support PoCs, guide implementation and integration.
  • Conduct threat modeling, risk assessments, and translate findings into actionable controls.
  • Communicate risks and solutions to technical and non‑technical audiences; influence decisions.
  • Stay current with threats and frameworks; recommend posture improvements.

Skills

IAM architecture
EDR/endpoint security
Vulnerability management
Zero Trust
Security architecture design
Threat modeling
Communication & stakeholder mgmt

Tools

Okta/Entra ID
EDR solutions

Job description

Job Description

We are seeking a Principal Security Architect to lead the design, review, and evolution of secure technology solutions across cloud, hybrid, and on-premises environments. This individual will serve as a trusted cybersecurity leader, driving architecture strategy, advancing IAM, EDR, Vulnerability Management, and Zero Trust initiatives, and partnering with cross‑functional teams to strengthen the organization's security posture and reduce risk.

This role is based out of our corporate headquarters in Raleigh, NC (4 days in office, 1 day remote).

Key Responsibilities
  • Develop and maintain cybersecurity architecture strategy, roadmaps, reference architectures, standards, patterns, and artifacts aligned with business drivers, technology strategy, and the evolving threat landscape (including multi-cloud and on‑premises).
  • Lead architecture design and formal security architecture reviews for new solutions, major changes, cloud migrations, applications, infrastructure, and third‑party integrations—identifying risks and recommending practical mitigations.
  • Architect and guide solutions across core verticals: Identity & Access Management (IAM) — Zero Trust principles, SSO/MFA, RBAC/least privilege, identity lifecycle, privileged access, and federation. Endpoint Detection & Response (EDR/XDR) and related endpoint protection controls. Vulnerability Management (VM) — scanning architecture, prioritization, remediation workflows, and integration with broader risk processes. Broader security controls including network segmentation, encryption, logging/detection, cloud security posture, and secure configurations.
  • Provide hands‑on engineering input: evaluate tools/platforms, support proofs‑of‑concept, guide implementation and integration, validate controls, and contribute to automation/scripting where appropriate.
  • Conduct threat modeling, risk assessments, and gap analyses; translate findings into actionable architecture recommendations and control improvements.
  • Serve as a trusted advisor and liaison—clearly communicating technical risks, trade‑offs, and solutions to both technical and non‑technical audiences; influence decision‑making and continuous improvement.
  • Stay current with emerging threats, technologies, and frameworks (NIST, ISO 27001, MITRE ATT&CK, Zero Trust, etc.); evaluate and recommend enhancements to security posture and processes.
Required Qualifications & Experience
  • 8–12+ years in cybersecurity with substantial architecture and engineering experience (strong hands‑on background preferred over pure strategy roles).
  • Demonstrated depth across multiple domains: IAM, EDR/endpoint security, vulnerability management, and security architecture design + formal review processes.
  • Proven ability to solve complex, ambiguous technical and organizational problems in large or complex environments and to interface effectively across security, IT/engineering, cloud, and business teams.
  • Solid experience with security architecture principles, frameworks, and practices (Zero Trust, NIST CSF/800-53, ISO 27001, MITRE ATT&CK, threat modeling methodologies such as STRIDE).
  • Hands‑on familiarity with relevant technologies and platforms (examples: identity platforms such as Okta/Entra ID, EDR solutions. Experience designing and reviewing architectures for hybrid/multi‑cloud and on‑premises environments.
  • Excellent communication, stakeholder management, and collaboration skills—ability to translate complex topics and drive alignment.
Preferred Qualifications
  • Experience in retail, large distributed enterprises, or highly regulated environments.
  • Leadership or principal‑level individual contributor experience guiding technical direction without direct people management (or light leadership of architecture efforts).

We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age national origin, religion, sexual orientation, gender identity, status as a veteran and basis of disability or any other federal, state or local protected class.

We comply with all applicable federal, state, and local laws.

Advance Auto Parts, Inc. is a leading automotive aftermarket parts provider that serves both professional installers and do‑it‑self customers. As of October 5, 2024, Advance operated 4,781 stores primarily within the United States, with additional locations in Canada, Puerto Rico and the U.S. Virgin Islands. The company also served 1,125 independently owned Carquest branded stores across these locations in addition to Mexico and various Caribbean islands. Additional information about Advance, including employment opportunities, customer services and online shopping for parts, accessories and other offerings can be found at www.AdvanceAutoParts.com.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Hybrid Principal Security Architect — IAM, EDR & Zero Trust
Hybrid Principal Security Architect — IAM, EDR & Zero Trust

Advance Auto Business Support (300) • Raleigh (NC)

Hybrid
USD 150,000 - 190,000
Director of Security Operations
Director of Security Operations

Advance Auto Business Support (300) • Raleigh (NC)

Hybrid
USD 170,000 - 230,000
Sr. Manager of Security Operations, Incident Response
Sr. Manager of Security Operations, Incident Response

Advance Auto Business Support (300) • Raleigh (NC)

Hybrid
USD 170,000 - 250,000
Hybrid work model
Director Governance Risk and Compliance
Director Governance Risk and Compliance

Advance Stores Company Inc (500) • Raleigh (NC)

Hybrid
USD 180,000 - 260,000
Principal Network Engineer
Principal Network Engineer

Advance Auto Parts • Raleigh (NC)

Hybrid
USD 150,000 - 210,000
Principal Network Engineer
Principal Network Engineer

Advance Auto Business Support (300) • Raleigh (NC)

Hybrid
USD 150,000 - 190,000
Health benefits
Principal Network Engineer
Principal Network Engineer

Advance-Auto-Parts • Raleigh (NC)

On-site
USD 170,000 - 210,000
Health & wellness benefits
Hybrid work model
Sr. Manager of Security Operations, Incident Response
Sr. Manager of Security Operations, Incident Response

Advance Auto Parts • Raleigh (NC)

On-site
USD 170,000 - 210,000
Director of Security Operations
Director of Security Operations

Advance-Auto-Parts • Raleigh (NC)

On-site
USD 170,000 - 210,000
Sr. Manager of Security Operations, Incident Response
Sr. Manager of Security Operations, Incident Response

Advance-Auto-Parts • Raleigh (NC)

On-site
USD 180,000 - 230,000