Principal Technologist - Product Security

Posted 14 Days Ago
Be an Early Applicant
Walnut Creek, CA, USA
In-Office
Expert/Leader
Automotive
The Role
Lead security architecture and strategy for a private cloud platform, driving threat modeling, secure design, vulnerability management, and secure-by-default platform hardening. Guide product security roadmaps, embed security in the SDLC, mentor engineering leaders, support incident investigations, and ensure compliance with industry standards for telco, aerospace, defense, and industrial deployments.
Summary Generated by Built In

Role Summary 

As a Principal Technologist specializing in Product Security for the Wind River Private Cloud Platform, you will serve as the technical authority driving the secure design, architecture, and lifecycle hardening of Wind River’s mission‑critical cloud infrastructure solutions. You will guide security strategy across virtualization, orchestration, and distributed edge computing systems—ensuring the platform meets stringent requirements for telco, aerospace, defense, and industrial deployments. This role bridges advanced cloud engineering, embedded systems knowledge, and modern cybersecurity practices. 

 

Key Responsibilities 

Security Architecture & Strategy 

  • Define and evolve the security architecture for Wind River Private Cloud Platform, including control plane components, hypervisors, networking stacks, and orchestration frameworks. 

  • Lead threat modeling, security risk assessments, and mitigation strategies across distributed cloud/edge environments. 

  • Establish platform security requirements, secure design patterns, and architectural principles. 

  • Detailed architecture and design definition of individual product security features 

  • Providing direction and specific requirement input to development teams 

  • Working with business team and customers to define/clarify requirements 

  • Evaluating and proposing technology choices 

Product & Platform Security 

  • Drive secure-by-default configurations across compute, storage, networking, and platform services. 

  • Own the security roadmap for the platform, ensuring alignment with industry standards (NIST, CIS, FIPS, etc.). 

  • Oversee vulnerability management, secure boot, runtime integrity measures, API security, and cryptographic services. 

  • Partner with product, engineering, and QA teams to embed security throughout SDLC (shift‑left security). 

Technical Leadership 

  • Serve as the top technical expert and advisor for product security across cloud, containerization, virtualization, and real‑time/edge systems. 

  • Mentor senior engineers and influence engineering directors and executives on cybersecurity tradeoffs and priorities. 

  • Represent the organization in security reviews, customer briefings, escalations, and cross-functional technical committees. 

Security Operations & Compliance 

  • Guide secure deployment patterns and operational security practices for private cloud customers. 

  • Support incident investigation, root‑cause analysis, and remediation for platform-level vulnerabilities. 

  • Define and enforce policies for SBOM, supply chain integrity, CI/CD security, and secure artifact distribution. 

Collaboration & Influence 

  • Collaborate with teams across Wind River Studio ecosystem (edge platform, analytics, DevSecOps tooling). 

  • Represent Wind River in standards bodies and industry working groups (ETSI, CNCF, Linux Foundation, etc.). 

  • Partner with customer engineering teams on secure deployment architectures for telecom and mission‑critical environments. 

 

Required Qualifications 

  • 15+ years in cloud/platform engineering, embedded systems, or cybersecurity with deep architectural ownership. 

  • Expertise in product security, including threat modeling, secure architecture, and vulnerability management. 

  • Strong knowledge of: 

  • Kubernetes Security Hardening - RBAC, Secrets, Encryption, Security Policies 

  • Certificate Management, PKI, EJBCA, cert-manager 

  • Authentication mechanisms: OIDC, LDAP, Active Directory 

  • Linux internals, kernel security, container hardening and breakout protection 

  • Practical cryptography algorithms and application 

  • Hardware root of trust (TPM, UEFI Secure Boot, Trusted Boot) 

  • CIS Benchmarks for Linux and Kubernetes 

  • Virtualization technologies (KVM, QEMU, etc.) 

  • Cloud networking, SDN/NFV, microservices security 

  • Hands-on experience with CI/CD security, SAST, DAST, container scanning, SBOM generation. 

  • Proven ability to lead complex cross‑organizational security initiatives. 

 

Preferred Qualifications 

  • Experience with private cloud infrastructure, Titanium Cloud, or telecom/industrial -grade cloud infrastructure. 

  • Background in telco (5G), aerospace/defense, industrial IoT, or other safety/security‑critical domains. 

  • Familiarity with Yocto, embedded Linux, RTOS environments. 

  • Participation in open-source security initiatives or upstream kernel/cloud projects. 

  • Advanced degree in Computer Science, Electrical Engineering, Cybersecurity, or similar field. 

 

Success Indicators 

  • Demonstrated improvements in platform security posture, measurable vulnerability reduction, and secure SDLC maturity. 

  • Adoption of security architecture patterns across engineering teams. 

  • Strong technical influence with executives, partners, and global customers. 

  • Delivery of innovative, scalable platform security capabilities for distributed cloud and edge environments. 

 

Privacy Notice - Active Candidates: https://www.aptiv.com/privacy-notice-active-candidates

Aptiv is an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, sex, gender identity, sexual orientation, disability status, protected veteran status or any other characteristic protected by law.

It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

#LI-JP1

Privacy Notice - Active Candidates: https://www.aptiv.com/privacy-notice-active-candidates

Aptiv is an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, sex, gender identity, sexual orientation, disability status, protected veteran status or any other characteristic protected by law.

Skills Required

  • 15+ years in cloud/platform engineering, embedded systems, or cybersecurity with deep architectural ownership.
  • Expertise in product security including threat modeling, secure architecture, and vulnerability management.
  • Kubernetes security hardening (RBAC, Secrets, Encryption, Security Policies).
  • Certificate management and PKI (EJBCA, cert-manager).
  • Authentication mechanisms: OIDC, LDAP, Active Directory.
  • Linux internals, kernel security, container hardening and breakout protection.
  • Practical cryptography algorithms and application.
  • Hardware root of trust (TPM, UEFI Secure Boot, Trusted Boot).
  • Familiarity with CIS Benchmarks for Linux and Kubernetes.
  • Virtualization technologies (KVM, QEMU).
  • Cloud networking, SDN/NFV, and microservices security.
  • Hands-on CI/CD security, SAST, DAST, container scanning, and SBOM generation.
  • Proven ability to lead complex cross-organizational security initiatives.
  • Experience with private cloud infrastructure (Titanium Cloud) or telecom/industrial-grade cloud infrastructure.
  • Background in telco (5G), aerospace/defense, or industrial IoT.
  • Familiarity with Yocto, embedded Linux, or RTOS environments.
  • Participation in open-source security initiatives or upstream kernel/cloud projects.
  • Advanced degree in Computer Science, Electrical Engineering, Cybersecurity, or similar.

APTIV Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about APTIV and has not been reviewed or approved by APTIV.

  • Retirement Support A 401(k) plan with company contribution and competitive matching is described as a notable component of the total rewards package. Equity participation and performance bonuses are also positioned as part of long-term and variable compensation.
  • Healthcare Strength Core coverage is portrayed as broad, spanning medical, dental, vision, life, and disability insurance. Mental health resources and an Employee Assistance Program are also included as part of wellness support.
  • Leave & Time Off Breadth Paid holidays, paid sick days, and flexible time-off policies are included in the benefits mix. Flexible scheduling and remote-work programs further support time management and personal needs.

APTIV Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Schaffhausen
17,787 Employees

What We Do

Aptiv is a global technology company that develops safer, greener and more connected solutions enabling the future of mobility. #ItsOurMove

Similar Jobs

CrowdStrike Logo CrowdStrike

Infrastructure Engineer

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
11000 Employees
100K-155K Annually

CrowdStrike Logo CrowdStrike

Senior Platform Engineer

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
11000 Employees
140K-215K Annually

Enverus Logo Enverus

Project Manager

Big Data • Information Technology • Software • Analytics • Energy
In-Office or Remote
2 Locations
1800 Employees

Enverus Logo Enverus

Director Of Sales

Big Data • Information Technology • Software • Analytics • Energy
In-Office or Remote
5 Locations
1800 Employees
140K-180K Annually

Similar Companies Hiring

Cox Enterprises Thumbnail
Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Atlanta, Georgia
30000 Employees
UL Solutions Thumbnail
Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
Chicago, IL
15000 Employees
HERE Technologies Thumbnail
Artificial Intelligence • Automotive • Computer Vision • Information Technology • Internet of Things • Logistics • Software
Amsterdam, NL
6000 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account