other
Posted Feb 10Security Architecture Lead
at Replit
Foster City, United StatesRemote
Responsibilities
- ARCHITECTURE STRATEGY & RISK MANAGEMENT - Maintain the Source of Truth: Define and maintain (document) the authoritative "Source of Truth" for Replit’s secure architecture, ensuring these patterns are consistently adopted across all engineering teams. - Secure Bootstrapping & Isolation: Drive the design for secure bootstrapping and multi-layered trust.
- Enforce isolation principles at every level—from technical containerization and network segmentation to business logic and multi-tenant resource separation. - Contribution to Risk Register: Actively identify, document, and quantify architectural security risks.
- SECURITY DESIGN & REVIEW - Deep-Dive Reviews: Oversee and conduct deep-dive security reviews for core product features and infrastructure, identifying potential threats and mitigating risks early in the development lifecycle. - Availability & Resilience: Own the architectural strategy for Availability, specifically defending against DoS threats to ensure a highly resilient platform.
- Evaluate required controls against architecture and assess readiness for future compliance certifications. - GTM & Sales Support: Act as the technical bridge for the Sales team, addressing complex security inquiries from enterprise customers regarding Replit's architectural integrity. REQUIRED SKILLS &
Requirements
- experience in security engineering or security architecture. - Proven
- experience as a Technical Lead, steering large-scale projects and guiding the work of other senior engineers. -
- Experience writing and maintaining Architecture documents. - Deep expertise in cloud-native security architecture (GCP
- Experience designing secure boot, hardware/Cloud-KMS-rooted trust, and multi-layered defense systems. - Strong understanding of isolation technologies and DDoS mitigation. - Exceptional ability to communicate technical risk to both engineering and executive audiences. - Strong track record of contributing to Cybersecurity Risk Register.
- WHAT WE VALUE - Systems Thinking: The ability to see the "big picture" and understand how security decisions impact the entire stack. - Technical Influence: The ability to drive technical alignment across the organization through expertise and collaboration rather than direct authority. - Autonomy: Comfortable leading major technical initiatives and driving outcomes with minimal oversight.
Experience
- EXPERIENCE - 8+ years of
Benefits
- WHAT YOU'LL DO TECHNICAL LEADERSHIP & MENTORSHIP - Architectural North Star: Act as the lead technical voice for security architecture, defining the long-term vision and ensuring consistency across complex infrastructure and product projects.
- Benefits Include: 💰 Competitive Salary & Equity 💹 401(k) Program with a 4% match (US Only) ⚕️ Health, Dental, Vision and Life Insurance 🩼 Short Term and Long Term Disability 🚼 Paid Parental, Medical, Caregiver Leave 🏝 Flexible Time Off (FTO) + Holidays 🚗 Commuter
- Benefits (In-Office Only) 📱 Monthly Wellness Stipend 🧑💻 Autonomous Work Environment 🖥 In Office Set-Up Reimbursement (In-Office Only) 🚀 Quarterly Team Gatherings ☕ In Office Amenities (In-Office Only) Want to learn more about what we are up to?
Contact
- - Meet the Replit Agent https://www.youtube.com/watch?v=IYiVPrxY8-Y - Replit: Make an app for that https://www.youtube.com/watch?v=4zd9hzngFwY - Replit Blog https://blog.replit.com/ - Amjad TED Talk https://youtu.be/kCudFI4tcpg?si=l4ViCejV_f2RZkDi Interviewing + Culture at Replit - Operating Principles https://blog.replit.com/operating-principles - Reasons not to work at Replit https://blog.replit.com/reasons-not-to-join-replit To achieve our mission of making programming more accessible around the world,
Additional details
- Replit is the agentic software creation platform that enables anyone to build applications using natural language.
- With millions of users worldwide, Replit is democratizing software development by removing traditional barriers to application creation.
- ABOUT THE ROLE We are looking for a Security Architecture Lead to serve as the primary technical authority for Replit’s security blueprint.
- In this Technical Lead capacity, you will steer the architectural direction for a team of security architects and engineers, ensuring our platform is resilient and secure by design.
- You will be a "player-coach"—leading high-impact technical initiatives while providing deep subject matter expertise to both the engineering organization and executive leadership.
- - Technical Mentorship: Provide high-level guidance and mentorship to security engineers, fostering a culture of technical excellence and rigorous security design without the overhead of administrative management.
- - Project Steering: Lead cross-functional squads through complex security implementations, from initial design to final production deployment.
- You will be responsible for ensuring these are accurately reflected in the Cybersecurity Risk Register, translating technical debt into actionable risk profiles for executive stakeholders.
- CROSS-FUNCTIONAL ENABLEMENT - Compliance & Documentation: Partner with GRC teams to translate complex architectural designs into clear, audit-ready documentation and control frameworks.
- experience is a significant plus) for multi-tenant SaaS products. -