Security Architecture Lead

Replit Replit · Enterprise · Foster City, CA · Hybrid · IT

Security Architecture Lead for a SaaS platform, focusing on defining and maintaining the security blueprint, leading security architects and engineers, and ensuring platform resilience and security by design. This role involves technical leadership, strategy, risk management, and cross-functional enablement, including GRC and sales support.

What you'd actually do

  1. Act as the lead technical voice for security architecture, defining the long-term vision and ensuring consistency across complex infrastructure and product projects.
  2. Provide high-level guidance and mentorship to security engineers, fostering a culture of technical excellence and rigorous security design without the overhead of administrative management.
  3. Lead cross-functional squads through complex security implementations, from initial design to final production deployment.
  4. Define and maintain (document) the authoritative "Source of Truth" for Replit’s secure architecture, ensuring these patterns are consistently adopted across all engineering teams.
  5. Drive the design for secure bootstrapping and multi-layered trust. Enforce isolation principles at every level—from technical containerization and network segmentation to business logic and multi-tenant resource separation.

Skills

Required

  • 8+ years of experience in security engineering or security architecture
  • Proven experience as a Technical Lead
  • Experience writing and maintaining Architecture documents
  • Deep expertise in cloud-native security architecture
  • Experience designing secure boot, hardware/Cloud-KMS-rooted trust, and multi-layered defense systems
  • Strong understanding of isolation technologies and DDoS mitigation
  • Exceptional ability to communicate technical risk to both engineering and executive audiences
  • Strong track record of contributing to Cybersecurity Risk Register

Nice to have

  • GCP experience

What the JD emphasized

  • primary technical authority
  • player-coach
  • lead technical voice
  • Technical Lead
  • Cybersecurity Risk Register
  • deep-dive security reviews
  • audit-ready documentation
  • complex security inquiries