Now hiring

Principal Architect Product Security (Long Island City, NY, US, 11101) @ JetBlue Airways Corporation

Long Island City, New York, USOnsiteFull-time
Apply with ResuMinder

Opens on the employer's site

About this role

<p> </p> <p><img src="https://rmkcdn.successfactors.com/5858ab09/aad2b740-339c-42fe-8d5e-e.png" style="width:324.0px;height:84.0px"></p> <p> </p> <p style="margin:0.0in;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><strong><span style="font-size:10.0pt;font-family:Arial, sans-serif">Position Summary:</span></strong></p> <p style="margin:0.0in 0.0in 0.0in 0.3in;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">The Principal Architect, Product Security is a senior product security architecture leader responsible for advancing secure-by-design practices across multiple product portfolios, platforms, and business capabilities.</span></p> <p style="margin:0.0in 0.0in 0.0in 0.3in;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"> </p> <p style="margin:0.0in 0.0in 0.0in 0.3in;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">This role partners with product, engineering, platform, cloud, cybersecurity, enterprise architecture, privacy, and risk teams to ensure product designs include appropriate security guardrails from concept through delivery and operation. The Principal Architect translates enterprise cybersecurity strategy into reusable product security patterns, practical engineering requirements, and consistent architecture guidance.</span></p> <p style="margin:0.0in;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><strong><span style="font-size:10.0pt;font-family:Arial, sans-serif">Essential Responsibilities:</span></strong></p> <ul style="margin-top:0.0in;margin-bottom:0.0in"> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Lead product security architecture across multiple product portfolios or major business capabilities. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Define and maintain reusable secure design patterns, reference architectures, and technical guardrails. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Review high-risk product, platform, API, cloud, and integration designs. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Partner with product and engineering leaders to embed security into planning, design, development, testing, deployment, and operations. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Translate cybersecurity policies, standards, and risk expectations into practical product security requirements. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Guide teams on secure implementation of modern application, API, cloud-native, and distributed architectures. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Establish and lead threat modeling for complex or high-risk products and platforms. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Identify architecture-level security gaps and recommend pragmatic remediation plans. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Escalate material risks and provide clear risk narratives to technology and cybersecurity leadership. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Define expectations for security controls in CI/CD pipelines and developer workflows. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Guide adoption of SAST, DAST, SCA, container scanning, IaC scanning, secrets detection, and related tooling. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Partner with engineering teams to improve security testing quality, reduce noise, and increase actionable remediation. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Contribute to metrics that measure product security maturity, control adoption, and vulnerability reduction. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Define product security guidance for authentication, authorization, federation, API security, encryption, secrets management, and secure data handling. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Advise on Zero Trust, least privilege, service-to-service security, and secure integration patterns. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Partner with cloud and platform teams to embed security into shared engineering services and platform capabilities. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Serve as a senior product security advisor to product, engineering, cybersecurity, architecture, privacy, compliance, and risk teams. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Mentor Product Security Architects, engineers, and technical leads. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Participate in architecture review boards, design forums, and governance processes. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Contribute to product security standards, maturity models, dashboards, and continuous improvement efforts. </span></li> </ul> <p style="margin:0.0in;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><strong><span style="font-size:10.0pt;font-family:Arial, sans-serif">Minimum Experience and Qualifications:</span></strong></p> <ul style="margin-top:0.0in;margin-bottom:0.0in"> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, Engineering, or related field; OR demonstrated capability to perform job responsibilities with a combination of a High School Diploma/GED and at least four (4) years of previous related work experience.</span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Five (5) years of experience in cybersecurity, application security, product security, security architecture, software engineering, cloud security, or related technology roles. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Five (5) years of experience designing or securing modern applications, APIs, cloud-native services, distributed systems, or digital platforms. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Experience leading security architecture decisions across multiple product teams or technology portfolios. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Strong knowledge of secure SDLC, DevSecOps, threat modeling, vulnerability management, application security testing, API security, identity, data protection, and cloud security. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Experience developing secure design standards, reusable architecture patterns, technical guardrails, or engineering guidance. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Ability to manage competing priorities in a fast-paced, multi-team environment. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Must pass a pre-employment drug test. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><a name="_Hlk217039858"></a><span style="font-size:10.0pt;font-family:Arial, sans-serif">Available for occasional overnight travel (10%)</span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Must be legally eligible to work in the country in which the position is located.</span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Authorization to work in the US is required. This position is not eligible for a visa sponsorship. </span></li> </ul> <p style="margin:0.0in;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><strong><span style="font-size:10.0pt;font-family:Arial, sans-serif">Preferred Experience and Qualifications:</span></strong></p> <ul style="margin-top:0.0in;margin-bottom:0.0in"> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Experience supporting large-scale customer-facing applications, digital platforms, mobile applications, ecommerce, loyalty, APIs, or cloud-native services. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Experience in aviation, transportation, financial services, healthcare, retail, or another regulated or operationally complex environment. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Experience building or scaling Product Security, Application Security, or DevSecOps practices. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Experience with AWS, Azure, GCP, Kubernetes, containers, serverless platforms, API gateways, WAF technologies, secrets management, CI/CD, and policy-as-code. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Knowledge of OWASP Top 10, OWASP API Security Top 10, OWASP ASVS, and Zero Trust principles. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Experience influencing enterprise architecture boards, technology governance forums, or risk committees. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">CISSP, CSSLP, CCSP, SABSA, AWS Security Specialty, Azure Security Engineer, or equivalent certification preferred. </span></li> </ul> <p style="margin:0.0in;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><strong><span style="font-size:10.0pt;font-family:Arial, sans-serif">Crewmember Expectations:</span></strong></p> <ul style="margin-top:0.0in;margin-bottom:0.0in"> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Regular attendance and punctuality. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Potential need to work flexible hours and be available to respond on short notice. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Able to maintain a professional appearance. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">When working or traveling on JetBlue flights, and if time permits, all capable crewmembers are asked to assist with light cleaning of the aircraft. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Must be an appropriate organizational fit for JetBlue’s culture and exhibit the JetBlue values of Safety, Caring, Integrity, Passion, and Fun. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Promote JetBlue’s number one value of Safety as a Safety Ambassador, supporting JetBlue’s Safety Management System components, Safety Policy, and behavioral standards. </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Identify safety and/or security concerns, issues, incidents, or hazards that should be reported and report them whenever possible by any means necessary including JetBlue’s confidential reporting systems (Aviation Safety Action Program (ASAP) or Safety Action Report (SAR)). </span></li> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">The use of ChatGPT or any other automated tool during the interview process will disqualify a candidate from being considered for the position.</span></li> </ul> <p style="margin:0.0in;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><strong><span style="font-size:10.0pt;font-family:Arial, sans-serif">Equipment:</span></strong></p> <ul style="margin-top:0.0in;margin-bottom:0.0in"> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Computer and other office equipment.</span></li> </ul> <p style="margin:0.0in;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><strong><span style="font-size:10.0pt;font-family:Arial, sans-serif">Work Environment:</span></strong></p> <ul style="margin-top:0.0in;margin-bottom:0.0in"> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Traditional office environment.</span></li> </ul> <p style="margin:0.0in;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><strong><span style="font-size:10.0pt;font-family:Arial, sans-serif">Physical Effort:</span></strong></p> <ul style="margin-top:0.0in;margin-bottom:0.0in"> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">Generally not required, or up to 10 pounds occasionally, 0 pounds frequently. (Sedentary)</span></li> </ul> <p style="margin:0.0in;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><strong><span style="font-size:10.0pt;font-family:Arial, sans-serif">Compensation:</span></strong></p> <ul style="margin-top:0.0in;margin-bottom:0.0in"> <li style="margin:0.0in 0.0in 0.0in 4.8px;line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:Arial, sans-serif">The base pay range for this position is between $118,800.00 and $177,100.00 per year. Base pay is one component of JetBlue’s total compensation package, which may also include performance bonuses, restricted stock units, as well as access to healthcare benefits, a 401(k) plan and company match, crewmember stock purchase plan, short-term and long-term disability coverage, basic life insurance, free space available travel on JetBlue, and more.</span></li> </ul> <p style="line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif;margin:0.0in 0.0in 0.0in 4.8px"><span style="font-size:10.0pt;font-family:Arial, sans-serif;background-color:white;color:white">#LI-AC1</span></p> <p style="line-height:normal;font-size:12.0pt;font-family:Aptos, sans-serif;margin:0.0in 0.0in 0.0in 4.8px"><span style="font-size:10.0pt;font-family:Arial, sans-serif;background-color:white;color:white">#LI-Hybrid</span></p>

Ready to apply?

Install the ResuMinder extension and we'll auto-fill the application in seconds — no rewriting.

See how your CV scores