1

Principal Cybersecurity Architect Jobs (NOW HIRING)

The Cybersecurity Architect is responsible for designing and delivering a scalable, cost-effective ... Principal Duties & Responsibilities: * Define and implement enterprise security architecture ...

Cybersecurity Architect

Southfield, MI · On-site

$60 - $77.50/hr

As a Cybersecurity Architect, you will own and mature our identity security posture across a ... Govern service accounts, including managed identities, service principals, and app registrations ...

Cybersecurity Architect

Southfield, MI · On-site

$60 - $77.50/hr

As a Cybersecurity Architect, you will own and mature our identity security posture across a ... Govern service accounts, including managed identities, service principals, and app registrations ...

Cybersecurity Architect

Southfield, MI · Hybrid

$60 - $77.50/hr

As a Cybersecurity Architect, you will own and mature our identity security posture across a ... Govern service accounts, including managed identities, service principals, and app registrations ...

The Cybersecurity Architect is responsible for designing and delivering a scalable, cost-effective ... Principal Duties & Responsibilities: * Define and implement enterprise security architecture ...

Develop and maintain ERCOT's Cyber Security Architecture Strategy * Define SDLC, AI & cloud ... Lead the organization's information security practice as the principal subject matter expert ...

Showing results 41-60

Principal Cybersecurity Architect information

See salary details

$80.5K

$171.4K

$231K

How much do principal cybersecurity architect jobs pay per year?

As of Sep 2, 2026, the average yearly pay for principal cybersecurity architect in the United States is $171,382.00, according to ZipRecruiter salary data. Most workers in this role earn between $145,000.00 and $194,500.00 per year, depending on experience, location, and employer.

What is a principal cybersecurity architect?

A principal cybersecurity architect is a senior-level professional responsible for designing and overseeing an organization’s cybersecurity infrastructure and strategies. They analyze security risks, develop policies, and implement security solutions, often requiring expertise in security frameworks, tools, and certifications like CISSP or CISA. This role involves leadership, collaboration with IT teams, and staying current with evolving cyber threats.
More about Principal Cybersecurity Architect jobs

What cities are hiring for Principal Cybersecurity Architect jobs?

Cities with the most Principal Cybersecurity Architect job openings:

What states have the most Principal Cybersecurity Architect jobs?

States with the most job openings for Principal Cybersecurity Architect jobs include:

Cybersecurity IAM Senior Principal Engineer

PepsiCo

Plano, TX

$123K - $206K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 11 days ago


PepsiCo rating

7.5

Company rating: 7.5 out of 10

Based on 903 frontline employees who took The Breakroom Quiz

153rd of 443 rated food and drinks producers


Job description

Overview

IAM Principal Cybersecurity Architect will lead the strategy, solution design, and governance of Identity and Access Management (IAM) services including AI, Large Language Models (LLMs), and autonomous AI agents and security.

This is a senior technical leadership role responsible for defining enterprise standards for AI identity, securing AI platforms, and enabling the safe adoption of Agentic AI across the organization. The role will partner closely with AI Engineering, Cloud, Enterprise Architecture, and Security teams to design scalable, secure, and compliant AI solutions.

The ideal candidate has deep expertise in IAM, cloud security, Zero Trust architecture, and AI security, with experience building governance models for AI agents and non-human identities.


Responsibilities

IAM & Cloud Security

  • Lead solution architecture across IAM services for critical cross functional programs
  • Lead modernization of IAM capabilities supporting AI and cloud-native applications.
  • Design secure identity architectures leveraging AWS IAM, AWS Identity Center, Microsoft Entra ID, and cloud-native identity services.
  • Integrate AI platforms with enterprise IAM, Identity Governance (IGA), and Privileged Access Management (PAM) solutions.

AI Agent Security Strategy & Architecture

  • Define the enterprise architecture and security strategy for AI systems, LLMs, and Agentic AI platforms.
  • Develop architecture standards, reference designs, and best practices for securing AI workloads.
  • Partner with AI Engineering and platform teams to embed security-by-design into AI solutions.
  • Drive adoption of Zero Trust principles across AI and cloud environments.

AI Agent Identity & Governance

  • Design and govern the complete identity lifecycle for AI agents, including onboarding, authentication, authorization, certification, monitoring, and decommissioning.
  • Establish governance standards for AI identities, non-human identities (NHI), and machine identities.
  • Implement least privilege, Just-in-Time (JIT), and Just-Enough-Access (JEA) access models for AI workloads.
  • Ensure AI systems meet enterprise security, compliance, privacy, and regulatory requirements.

Leadership & Collaboration

  • Serve as the technical authority for AI identity security across the enterprise.
  • Partner with Cybersecurity, Enterprise Architecture, AI Engineering, Cloud, GRC, Privacy, and business teams to deliver secure AI capabilities.
  • Mentor architects and engineers on AI security, IAM, and cloud identity best practices.
  • Communicate architecture decisions and security risks effectively to executive leadership and technical stakeholders.

Compensation and Benefits:

  • The expected compensation range for this position is between $123,500 - $206,750.
  • Location, confirmed job-related skills, experience, and education will be considered in setting actual starting salary. Your recruiter can share more about the specific salary range during the hiring process.
  • Bonus based on performance and eligibility target payout is 15% of annual salary paid out annually.
  • Paid time off subject to eligibility, including paid parental leave, vacation, sick, and bereavement.
  • In addition to salary, PepsiCo offers a comprehensive benefits package to support our employees and their families, subject to elections and eligibility: Medical, Dental, Vision, Disability, Health, and Dependent Care Reimbursement Accounts, Employee Assistance Program (EAP), Insurance (Accident, Group Legal, Life), Defined Contribution Retirement Plan.

Qualifications

Required Qualifications

  • Bachelor’s degree in computer science, Cybersecurity, Information Technology, or a related field.
  • 15+ years of experience in Cybersecurity, with significant expertise in Identity and Access Management (IAM).
  • 7+ years in a Principal, Lead, or Senior Architecture role supporting enterprise or cloud-native environments.
  • Expert knowledge of IAM technologies, including AWS IAM, AWS Identity Center, Microsoft Entra ID, OAuth 2.0, OpenID Connect (OIDC), SAML, and Zero Trust Architecture.
  • Experience securing AI platforms, LLMs, Agentic AI applications, or autonomous AI agents.
  • Strong understanding of cloud security, workload identities, and non-human identity (NHI) management.
  • Excellent communication and stakeholder management skills.

Preferred Qualifications

  • Experience with AWS Bedrock, Amazon AgentCore, Azure AI, or similar enterprise AI platforms.
  • Experience with Identity Governance (IGA) platforms such as Saviynt, SailPoint, or equivalent.
  • Knowledge of OWASP Top 10 for LLM Applications, prompt injection defenses, and AI security best practices.
  • Experience with SPIFFE/SPIRE, workload identity frameworks, or service identity management.
  • Familiarity with AI governance, AI risk management, and responsible AI frameworks.
  • Professional certifications such as CISSP, CISM, CCSP, AWS Certified Security – Specialty, TOGAF, or cloud architecture certifications.

EEO Statement

Our Company will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of the Fair Credit Reporting Act, and all other applicable laws, including but not limited to, San Francisco Police Code Sections 4901-4919, commonly referred to as the San Francisco Fair Chance Ordinance; and Chapter XVII, Article 9 of the Los Angeles Municipal Code, commonly referred to as the Fair Chance Initiative for Hiring Ordinance.
All qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, or disability status.
PepsiCo is an Equal Opportunity Employer: Female / Minority / Disability / Protected Veteran / Sexual Orientation / Gender Identity / Age
If you'd like more information about your EEO rights as an applicant under the law, please download the available EEO is the Law & EEO is the Law Supplement documents. View PepsiCo EEO Policy.
Please view our Pay Transparency Statement

Qualifications:

Required Qualifications

  • Bachelor’s degree in computer science, Cybersecurity, Information Technology, or a related field.
  • 15+ years of experience in Cybersecurity, with significant expertise in Identity and Access Management (IAM).
  • 7+ years in a Principal, Lead, or Senior Architecture role supporting enterprise or cloud-native environments.
  • Expert knowledge of IAM technologies, including AWS IAM, AWS Identity Center, Microsoft Entra ID, OAuth 2.0, OpenID Connect (OIDC), SAML, and Zero Trust Architecture.
  • Experience securing AI platforms, LLMs, Agentic AI applications, or autonomous AI agents.
  • Strong understanding of cloud security, workload identities, and non-human identity (NHI) management.
  • Excellent communication and stakeholder management skills.

Preferred Qualifications

  • Experience with AWS Bedrock, Amazon AgentCore, Azure AI, or similar enterprise AI platforms.
  • Experience with Identity Governance (IGA) platforms such as Saviynt, SailPoint, or equivalent.
  • Knowledge of OWASP Top 10 for LLM Applications, prompt injection defenses, and AI security best practices.
  • Experience with SPIFFE/SPIRE, workload identity frameworks, or service identity management.
  • Familiarity with AI governance, AI risk management, and responsible AI frameworks.
  • Professional certifications such as CISSP, CISM, CCSP, AWS Certified Security – Specialty, TOGAF, or cloud architecture certifications.
Education:UNAVAILABLEEmployment Type: FULL_TIME

What PepsiCo employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


PepsiCo logo

About PepsiCo

Sourced by ZipRecruiter

PepsiCo products are enjoyed by consumers more than one billion times a day in more than 200 countries and territories around the world. PepsiCo generated $86 billion in net revenue in 2022, driven by a complementary beverage and convenient foods portfolio that includes Lay's, Doritos, Cheetos, Gatorade, Pepsi-Cola, Mountain Dew, Quaker, and SodaStream. PepsiCo's product portfolio includes a wide range of enjoyable foods and beverages, including many iconic brands that generate more than $1 billion each in estimated annual retail sales.

Industry

Food and drink manufacturing

Company size

10,000+ Employees

Headquarters location

Purchase, NY, US

Year founded

1965