×
Register Here to Apply for Jobs or Post Jobs. X

Principal Technologist - Product Security

Job in Walnut Creek, Contra Costa County, California, 94598, USA
Listing for: Aptiv
Full Time position
Listed on 2026-08-05
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer, Cloud Computing: Infrastructure & Operations
Salary/Wage Range or Industry Benchmark: 180000 - 280000 USD Yearly USD 180000.00 280000.00 YEAR
Job Description & How to Apply Below

Role Summary

As a Principal Technologist specializing in Product Security for the Wind River Private Cloud Platform , you will serve as the technical authority driving the secure design, architecture, and lifecycle hardening of Wind River’s mission‑critical cloud infrastructure solutions. You will guide security strategy across virtualization, orchestration, and distributed edge computing systems—ensuring the platform meets stringent requirements for telco, aerospace, defense, and industrial deployments.

This role bridges advanced cloud engineering, embedded systems knowledge, and modern cybersecurity practices.

Key Responsibilities Security Architecture & Strategy
  • Define and evolve the security architecture for Wind River Private Cloud Platform, including control plane components, hypervisors, networking stacks, and orchestration frameworks.
  • Lead threat modeling, security risk assessments, and mitigation strategies across distributed cloud/edge environments.
  • Establish platform security requirements, secure design patterns, and architecturalprinciples.
  • Detailed architecture and design definition of individual product security features
  • Providing direction and specific requirement input to development teams
  • Working with business team and customers to define/clarify requirements
  • Evaluating and proposing technology choices
Product & Platform Security
  • Drive secure-by-default configurations across compute, storage, networking, and platform services.
  • Own the security roadmap for the platform, ensuring alignment with industry standards (NIST, CIS, FIPS, etc.).
  • Oversee vulnerability management, secure boot, runtime integrity measures, API security, and cryptographic services.
  • Partner with product, engineering, and QA teams to embed security throughout SDLC (shift‑left security).
Technical Leadership
  • Serve as the top technical expert and advisor for product security across cloud, containerization, virtualization, and real‑time/edge systems.
  • Mentor senior engineers and influence engineering directors and executives on cybersecurity tradeoffs and priorities.
  • Represent the organization in security reviews, customer briefings, escalations, and cross‑functional technical committees.
Security Operations & Compliance
  • Guidesecuredeployment patterns and operational security practices for private cloud customers.
  • Support incident investigation, root‑cause analysis, and remediation for platform‑level vulnerabilities.
  • Define and enforce policies for SBOM, supply chain integrity, CI/CD security, and secure artifact distribution.
Collaboration & Influence
  • Collaborate with teams across

    WindRiver Studio ecosystem (edge platform, analytics,Dev Sec Ops tooling ).
  • Represent Wind River instandardsbodies and industry working groups (ETSI, CNCF, Linux Foundation, etc.).
  • Partner with customer engineering teams on secure deployment architectures for telecom and mission‑critical environments.
Required Qualifications
  • 15+ years in cloud/platform engineering, embedded systems, or cybersecurity with deep architectural ownership.
  • Expertise in product security , including threat modeling, secure architecture, and vulnerability management.
  • Strong knowledge of:
  • Kubernetes Security Hardening - RBAC, Secrets, Encryption, Security Policies
  • Certificate Management, PKI, EJBCA, cert‑manager
  • Authentication mechanisms: OIDC, LDAP, Active Directory
  • Linux internals, kernel security, containerhardeningand breakout protection
  • Practical cryptographyalgorithms and application
  • Hardware root of trust (TPM,UEFISecureBoot,Trusted Boot)
  • CIS Benchmarks for Linux and Kubernetes
  • Virtualization technologies (KVM, QEMU, etc.)
  • Cloud networking, SDN/NFV, microservices security
  • Hands‑on experience with CI/CD security, SAST, DAST, container scanning, SBOMgeneration.
  • Proven ability to lead complex cross‑organizational security initiatives.
Preferred Qualifications
  • Experience with private cloud infrastructure , Titanium Cloud, or telecom/industrial-grade cloud infrastructure.
  • Background in telco (5G), aerospace/defense, industrial IoT, or other safety/security‑critical domains.
  • Familiarity with Yocto, embedded Linux, RTOS environments.
  • Participation in open‑source security initiatives or upstream…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary