Product Security Architect (Ottawa)

Product Security Architect (Ottawa)

30 Jul
|
BeyondTrust
|
Ottawa

30 Jul

BeyondTrust

Ottawa

- We’re hiring a Product Security Architect to join a team that operates AI-first
- We don’t mean we’re planning to adopt AI or “exploring” it; we mean Claude and LLM-driven workflows are how we do threat modeling, secure design reviews, vulnerability analysis, and developer enablement today
- You’ll work across BeyondTrust’s product suite, including endpoint agents, thick clients, SaaS platforms, APIs, identity systems, and cloud-native services, partnering directly with engineering, architecture, and product management to find and eliminate architectural risk before it ships
- Threat Modeling & Attack Surface Reduction Lead threat modeling, attack surface analysis, and secure design reviews across products, platform services, endpoint agents, and cloud-native systems. The goal isn’t producing threat model documents but recommending architectural decisions that eliminate unnecessary exposure and working with engineering to change them
- AI-Native Security Engineering Use LLM platforms (Claude, OpenAI) as core tools to scale threat analysis, abuse-case generation, architecture review, and remediation guidance. Build and refine prompts, plugins, skills, and agent workflows that make the team faster and more consistent. You’ll be extending an existing AI-first practice, not building one from scratch
- Engineering Partnership Work directly with engineering teams to embed secure-by-default patterns into product development. This means being present in design reviews, proposing concrete alternatives when you identify risk, and building self-service security capabilities (playbooks, reusable patterns,



automated workflows) that let engineers make secure decisions without waiting on us
- Standards & Knowledge Own and expand the Product Security handbook that inferences product context from multiple sources and leverage it for enforcing secure design standards, architecture guidance, and engineering best practices. The handbook is a living system that feeds our AI workflows, not a static wiki nobody reads
- Mentorship Mentor Product Security Engineers and Security Champions on secure design, attack surface reduction, and AI-first security workflows. Help engineers across the org develop a security-focused mindset, not just follow checklists
- Strategy Help evolve BeyondTrust’s AI-first Product Security Architecture strategy by identifying where AI workflows can replace manual processes, where they need human oversight, and where the next capability gaps are
- How We’ll Measure Success:
- Measurable reduction in product attack surface and recurring architecture risks and not findings produced, but risk eliminated
- Increased scale and consistency of secure design reviews through AI-first workflows
- Faster identification and remediation of design-level and architecture-level risks




- Engineering teams actively using self-service security capabilities you’ve built
- Expansion of AI-first Product Security Architecture capabilities across the SDLC

Solid understanding of cloud-native systems, APIs, endpoint agents, thick clients, and identity/security platforms

Hands-on experience using LLM platforms (Claude, OpenAI, or similar) in engineering or security workflows. We’ll ask you how you’ve used them and what you’ve learned about where they work and where they don’t

Builder mindset, you’ve created scalable security workflows, frameworks, or enablement programs, not just consumed them

Ability to influence engineering and product teams. You should not have a mindset to block releases but to be persuasive, credible, and practical

Background in securing endpoint technologies, identity systems, or enterprise security platforms

Cloud security experience across AWS, Azure, or Kubernetes environments

Deep, practical experience with threat modeling, attack surface analysis, secure design reviews, and architecture risk analysis at scale, not just in theory

Experience building AI-native security workflows, plugins, agents, or developer tooling

Offensive security experience or adversarial testing background, understanding how attackers think sharpens everything else

7+ years in Product Security, Application Security, Security Architecture, or Software Security Engineering

This role is for someone who can walk in and operate at that level from day one, then help us push further

#J-18808-Ljbffr

📌 Product Security Architect (Ottawa)
🏢 BeyondTrust
📍 Ottawa

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: product security architect (ottawa) / ottawa

Subscribe to this job alert:

Get the latest job offers by email for: product security architect (ottawa) / ottawa