Principal Security Architect - Austin, Texas, United States
Originally posted 7 October 2026 by the employer.
About the role
This role involves designing, maintaining, and securing scalable infrastructure solutions for cryptographic key management.
What you'll do
- Design and deploy scalable, secure infrastructure solutions aligned with business requirements and security standards.
- Own and govern Hardware Secure Modules.
- Develop organizational standards, policies, access models, and workflows for consistent, secure platform usage.
- Conduct risk and compliance assessments for system security plans and disaster recovery strategies.
- Advocate for best practices in secret lifecycle management, authentication methods, and identity federation.
- Create tooling, automation, onboarding guides, and libraries to facilitate platform access.
What you'll need
- MS or Ph.D. in Computer Science, Computer Engineering, Cryptography, Cybersecurity, or a related technical field.
- 10+ years of technical experience in Public Key Infrastructure, Hardware Security Modules deployment and management.
- Strong knowledge of encryption technologies, security controls, and compliance frameworks.
- Strong understanding of authentication backends (OIDC, LDAP, cloud IAM), secret engines, PKI, encryption, and token/credential lifecycle.
- Familiarity with infrastructure maintenance, disaster recovery planning, and capacity management.
- Skilled in coding standards, secure software development lifecycle, and configuration management processes.
- Familiarity with Infrastructure-as-Code (Terraform preferred) and CI/CD automation.
Nice to have
- Experience integrating Vault with cloud platforms (AWS, Azure, GCP) and CI/CD pipelines.
- Active participation, authorship, or contribution to industry security standards (e.g., TCG, OCP Security Project, Linux Foundation, or Arm security working groups).
- Knowledge of SPIFFE/SPIRE, workload identity, or zero-trust architectures.
- Forward-looking understanding of Post-Quantum Cryptography (PQC) and its impact on hardware lifecycle and secure boot.
- Understanding of Platform Root of Trust, Platform Identity, DICE and attestation.
Skills: hardware security architecture, Arm-based AI server platforms, secure boot, cryptographic key management, threat modeling
This role has been open 1 day — well below the 58-day median for Hardware Security Engineering roles.
Hardware Security Engineering · Hardware Security
|
Open roles in category
179
|
Median days open
58 d
|
Median salary
$223k
|
See the full market breakdown ▾Category comparison, skills in demand, and who else is hiring
| Metric | Graphcore | All employers we track in this specialty (179 roles · 48 employers) |
|---|---|---|
| Open roles in this specialty | 2 | 179 |
| Median days open | 58 d | 58 d (same as this employer) |
| Median salary (USD postings) | — | $223k |
Skills observed across this category: hardware security architecture, Arm-based AI server platforms, secure boot, cryptographic key management, threat modeling
Who's hiring in this category
- NVIDIA · 25 open roles · median 28 d
- NXP Semiconductors · 24 open roles · median 89 d
- Qualcomm · 20 open roles · median 106 d
- Arm Holdings · 13 open roles · median 93 d
- STMicroelectronics · 11 open roles · median 11 d
- AMD · 9 open roles · median 35 d
How we counted: 179 open Hardware Security Engineering (Hardware Security) roles from 48 employers tracked in the SemiconductorJobs index, counted 9 Oct 2026. Specialty figures count only roles carrying this exact specialty label, so an employer's related work in neighbouring specialties is not included there. Figures refresh nightly.