Senior Product Security Architect

Expedia, Inc.

Austin (TX)

On-site

USD 184,500 - 258,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Generous time-off
Flexible work model
Career development resources

Job summary

A global technology company is seeking a Senior Product Security Architect in Austin, Texas, to lead architecture security efforts across diverse product teams. The role requires deep understanding of secure design, product architecture, and threat modeling. Ideal candidates have over ten years of experience and familiarity with generative AI, cloud platforms like AWS, and CI/CD practices. The position offers a competitive salary range and a comprehensive benefits package focused on career development and work-life balance.

Qualifications

  • Bachelor's degree in Computer Science or related field; equivalent experience also acceptable.
  • 10+ years in product security and development.
  • Extensive experience in threat modeling and architecture reviews.

Responsibilities

  • Serve as a trusted product security architecture advisor for teams.
  • Lead threat modeling and security assessments for products.
  • Embed security requirements into product roadmaps.

Skills

Product security architecture
Threat modeling
Application security assessment
Generative AI
CI/CD practices
Cloud platforms (AWS)

Education

Bachelor's degree in Computer Science or related

Tools

Kubernetes
Docker

Job description

Senior Product Security Architect

Our Technology Team partners with teams across Expedia Group to create innovative products, services, and tools to deliver high‑quality experiences for travelers, partners, and our employees. A singular technology platform powered by data and machine learning provides secure, differentiated, and personalized experiences that drive loyalty and traveler satisfaction.

The Product Security Architecture team partners with product, engineering, and platform teams to ensure security and privacy are built into Expedia Group products by design, from ideation through operations. We enable our business partners to build resilient, future‑ready solutions that advance Expedia Group’s security posture and operational velocity.

We focus on secure‑by‑design product architecture, security assessments, threat modeling, and continuous verification of security requirements across our business products and platforms.

You will join a small, senior team of hands‑on product security architects who work across domains and technologies, helping teams make pragmatic security decisions that enable innovation at scale.

Responsibilities
  • Serve as a trusted product security architecture advisor to product, engineering, and platform teams, helping them design secure, highly available, and privacy‑aware products and services.

  • Lead and facilitate threat modeling and security assessments for new and evolving products, services, and platforms, translating findings into clear, actionable recommendations.

  • Partner closely with product and engineering leaders to embed security requirements into product roadmaps, design reviews, and delivery processes without slowing down innovation.

  • Provide thought leadership around enabling and applying AI across the Product Security org.

  • Be a change agent influencing and scaling the adoption of AI‑enabled security tooling and best practices across the product security organization.

  • Drive continuous verification of product security controls and requirements through AI‑enabled automation and integration with existing product security tooling.

  • Communicate complex product security and architecture trade‑offs in a clear, outcome‑focused way to both technical and non‑technical stakeholders, from senior ICs to senior leadership.

  • Mentor and coach product managers, engineers, and architects to raise the bar on product security literacy and design thinking across the organization.

  • Contribute to the broader Expedia Group security strategy by identifying emerging product security risks and technology trends and proposing pragmatic, long‑term architecture approaches.

  • Contribute to creating a culture of continuous learning, data‑driven decisions, and improvements.

  • Collaborate across IT and Information Security teams to ensure end‑to‑end coverage across the product lifecycle – from concept and design through build, launch and operations.

Minimum Qualifications
  • Bachelor’s degree in Computer Science or a related technical field; or equivalent related professional experience.

  • 10+ years of product security and development experience.

  • Extensive experience performing application threat modeling.

  • Extensive experience conducting architecture reviews to find and evaluate application and infrastructure security risks.

  • Significant experience in the last several years applying Generative AI in software development and for end users, ideally in the context of a medium or large enterprise.

  • Deep understanding of modern product development practices and CI/CD and how AI can change and improve these practices to increase both quality and velocity.

  • Familiarity with ‘agentic’ architectures including SDKs, context engineering, MCPs, authorization.

Preferred Qualifications
  • Expertise in public cloud platforms (AWS is preferred), containerization and orchestration (Kubernetes, Docker), and related technologies.

  • Excellent communication and collaboration skills, with the ability to work effectively with both technical and non‑technical stakeholders.

  • Track record of setting and evolving security architecture standards, patterns, and guardrails for complex, multi‑tenant or multi‑domain platforms, and driving their adoption across diverse engineering teams.

  • Experience operating product security at scale in cloud‑native environments (such as large microservices architectures), including secure service‑to‑service communication, token‑based auth, and secret and certificate management.

  • Deep experience conducting and scaling threat modeling, security design reviews, and architecture risk assessments, and using insights to shape platform capabilities, reusable controls, and security automation.

  • Familiarity with AI‑driven systems, tools, or workflows and applying AI/ML concepts to real‑world products, including leveraging AI/ML‑enabled code analysis, anomaly detection, or security automation; safely integrates and operates AI/ML‑enabled solutions that improve security posture, detection, and response.

  • Demonstrated experience taking products from concept to scaled adoption by partnering with product and engineering leadership to embed security requirements into product vision, architecture, and roadmaps, and to measure and report on security outcomes.

Compensation

The total cash range for this position in Austin is $184,500.00 to $258,000.00. Employees in this role have the potential to increase their pay up to $295,000.00, which is the top of the range, based on ongoing, demonstrated, and sustained performance in the role.

Starting pay for this role will vary based on multiple factors, including location, available budget, and an individual’s knowledge, skills, and experience. Pay ranges may be modified in the future.

Benefits

We provide a full benefits package, including exciting travel perks, generous time‑off, parental leave, a flexible work model (with some pretty cool offices), and career development resources, all to fuel each employee’s passion for travel and ensure a rewarding career journey.

EEO Statement

Expedia is committed to creating an inclusive work environment with a diverse workforce. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status. This employer participates in E‑Verify. The employer will provide the Social Security Administration (SSA) and, if necessary, the Department of Homeland Security (DHS) with information from each new employee’s I‑9 to confirm work authorization.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Product Security Architect III
Product Security Architect III

Expedia, Inc. • San Jose (CA)

Hybrid
USD 146,000 - 204,500
Medical/Dental/Vision
Paid time off
Travel discounts
+2
Product Security Architect III
Product Security Architect III

PowerToFly • Seattle (WA)

On-site
USD 146,000 - 204,500
Medical, dental, and vision coverage
Paid time off
Employee Assistance Program
+2
Senior Product Security Architect
Senior Product Security Architect

Traveltechessentialist • San Jose (CA)

On-site
USD 199,000 - 279,000
Medical, dental, and vision coverage
Paid time off
Travel discounts
+1
Senior Product Security Architect
Senior Product Security Architect

Expedia, Inc. • San Jose (CA)

On-site
USD 199,000 - 279,000
Medical coverage
Dental coverage
Vision coverage
+6
Senior Product Security Architect
Senior Product Security Architect

Expedia Group • Seattle (WA)

On-site
USD 185,000 - 258,000
Medical coverage
Travel discounts
Senior Product Security Architect
Senior Product Security Architect

Expedia Group • San Jose (CA)

On-site
USD 199,000 - 279,000
Medical Insurance
Dental & Vision
Travel discounts
+1
Director CyberSecurity
Director CyberSecurity

Traveltechessentialist • San Jose (CA)

On-site
USD 249,000 - 348,500
Medical, dental, and vision
Paid time off
Employee Assistance Program
+3
Director CyberSecurity
Director CyberSecurity

Expedia Group • San Jose (CA)

On-site
USD 260,000 - 380,000
Medical, dental, vision insurance
Travel discounts
Wellness programs
Principal Software Development Engineer
Principal Software Development Engineer

Traveltechessentialist • Washington

On-site
USD 231,000 - 324,000
Medical, dental, vision insurance
Paid time off
Wellness & travel reimbursement
+1
Principal Analyst - Security Operations
Principal Analyst - Security Operations

Expedia, Inc. • Seattle (WA)

On-site
USD 231,000 - 324,000
Medical, dental, and vision coverage
Paid time off
Employee Assistance Program
+3