Principal Cybersecurity Architect - Network Security Posture Management
$248.56k - $325.43kIonQ Inc.
Principal Cybersecurity Architect – Network Security Posture Management
San Francisco, California, United States
IonQ, Inc. is the world's leading quantum platform and merchant supplier - delivering integrated quantum solutions across computing, networking, sensing, and security. IonQ's newest generation of quantum computers, the IonQ Tempo, is the latest in a line of cutting-edge systems that have been helping customers and partners including Amazon Web Services, and AstraZeneca achieve 20x performance results and accelerate innovation in drug discovery, materials science, financial modeling, logistics, cybersecurity, and defense. In 2025, the company achieved 99.99% two-qubit gate fidelity, setting a world record in quantum computing performance. Headquartered in College Park, Maryland, IonQ has operations in California, Colorado, Massachusetts, Tennessee, Washington, Italy, South Korea, Sweden, Switzerland, Canada, and the United Kingdom. Our quantum computing services are available through all major cloud providers, while we also meet the needs of networking and sensing customers across land, sea, air, and space. IonQ is making quantum platforms more accessible and impactful than ever before.
This role can work onsite or hybrid in San Francisco Bay Area, CA. Travel: Up to 10% Job ID: 1560
The Role
We are looking for a Principal Cybersecurity Architect to own the security posture strategy for our Network Security Posture Management (NSPM) platform. You'll work at the intersection of network security, compliance, and platform engineering — defining how the platform assesses, measures, and enforces security posture across large, heterogeneous network environments.
In this role, your primary focus is designing and codifying security posture assessment rules that map network device configurations and behaviors against established security standards — and building the framework that makes it easy to onboard new standards as they emerge. You bring deep NSPM expertise, a strong understanding of network security principles, and the ability to translate complex compliance requirements into actionable, automatable rules that operate at scale across thousands of devices.
Responsibilities
- Design and own the security posture assessment rule framework, defining how device configurations, network behaviors, and access controls are evaluated against security standards including NIST CSF, CIS Benchmarks, ISO 27001, FISMA, and FedRAMP.
- Build and maintain a scalable rule authoring and lifecycle management system that allows new security standards and custom organizational policies to be onboarded, versioned, and deployed without platform re-architecture.
- Continuously monitor the evolving threat and compliance landscape — translating emerging standards, regulatory changes, and new CVEs into updated posture assessment rules that keep the platform current and defensible.
- Define the risk scoring and prioritization model that aggregates individual posture findings into a coherent, actionable security posture score at the device, segment, and enterprise level.
- Collaborate with platform engineering teams to ensure posture assessment rules execute efficiently at scale across large network device fleets, with well-defined APIs for rule ingestion, evaluation, and results delivery.
- Engage with enterprise customers and internal stakeholders to understand their compliance requirements, translating them into platform capabilities and serving as the authoritative security subject matter expert for the product.
- Partner with Product and Engineering to shape the NSPM roadmap, ensuring security posture capabilities remain ahead of the regulatory curve and deliver measurable value to network security and compliance teams.
- Mentor engineers and security analysts on posture rule design, threat modeling, and compliance mapping, establishing rigorous review processes that ensure accuracy and defensibility of every assessment rule shipped.
Requirements
- 12+ years of experience in cybersecurity, network security, or security architecture, with at least 5 years in a senior or principal capacity focused on network security posture, compliance, or policy enforcement at scale.
- Deep, hands-on experience with Network Security Posture Management (NSPM) platforms and tools, with a demonstrable track record of designing and operationalizing posture assessment rules across large enterprise networks.
- Comprehensive knowledge of major security standards and frameworks including NIST CSF, CIS Benchmarks, ISO 27001, FISMA, and FedRAMP, with the ability to interpret control requirements and translate them into precise, automatable assessment rules.
- Strong understanding of network device security — including firewall policy analysis, routing protocol security, access control, and configuration hardening across multi- vendor environments (Cisco, Juniper, Palo Alto, Fortinet).
- Proven ability to operate across both strategic and technical dimensions — engaging executive stakeholders on compliance risk while working closely with engineering teams on rule design, data modeling, and platform integration.
Preferred Qualifications
- Industry certifications such as CISSP, CISM, CCNP Security, or equivalent credentials that demonstrate deep, validated expertise in network security and information security management.
- Prior experience at a network security vendor, MSSP, or large enterprise security team, with direct exposure to how security posture policies are enforced across complex, multi- vendor network infrastructures.
- Familiarity with Zero Trust architecture principles and their practical application to network segmentation, device trust, and least-privilege access enforcement in enterprise environments.
- Experience contributing to or authoring security standards, CIS Benchmark profiles, or DISA STIGs, or participation in industry working groups focused on network security policy and compliance.
- Understanding of CVE lifecycle management, SBOM analysis, and vulnerability correlation as they apply to network device firmware and software supply chain risk assessment.
The approximate base salary range for this position is $248,557 - $325,425. The total compensation package includes base, bonus, equity, and a range of benefit options found on our career site.
Compensation will vary based on individual factors such as education, qualifications, and experience of the final candidate(s), specific office location, and calibration against relevant market data and internal team equity. Posted base salary figures are subject to change as new market data becomes available. Our benefits include comprehensive medical, dental, and vision plans, matching 401K, unlimited PTO and paid holidays, parental/adoption leave, legal insurance, and a home technology stipend. Details of participation in these benefit plans will be provided when a candidate receives an offer of employment.
At IonQ, we believe in fair treatment, access, opportunity, and advancement for all while striving to identify and eliminate barriers. We empower employees to thrive by fostering a culture of autonomy, productivity, and respect. We are dedicated to creating an environment where individuals can feel welcomed, respected, supported, and valued. We are committed to equity and justice. We welcome different voices and viewpoints and do not discriminate on the basis of race, religion, ancestry, physical and/or mental disability, medical condition, genetic information, marital status, sex, gender, gender identity, gender expression, transgender status, age, sexual orientation, military or veteran status, or any other basis protected by law. We are proud to be an Equal Employment Opportunity employer.
US Technical Jobs. The position you are applying for will require access to technology that is subject to U.S. export control and government contract restrictions. Employment with IonQ is contingent on either verifying "U.S. Person" (e.g., U.S. citizen, U.S. national, U.S. permanent resident, or lawfully admitted into the U.S. as a refugee or granted asylum) status for export controls and government contracts work, obtaining any necessary license, and/or confirming the availability of a license exception under U.S. export controls. Please note that in the absence of confirming you are a U.S. Person for export control and government contracts work purposes, IonQ may choose not to apply for a license or decline to use a license exception (if available) for you to access export-controlled technology that may require authorization, and similarly, you may not qualify for government contracts work that requires U.S. Persons, and IonQ may decline to proceed with your application on those bases alone. Accordingly, we will have some additional questions regarding your immigration status that will be used for export control and compliance purposes, and the answers will be reviewed by compliance personnel to ensure compliance with federal law.
US Non-Technical Jobs. Due to applicable export control laws and regulations, candidates must be a U.S. citizen or national, U.S. permanent resident (i.e., current Green Card holder), or lawfully admitted into the U.S. as a refugee or granted asylum. Accordingly, we will have some additional questions regarding your immigration status that will be used for export control and compliance purposes, and the answers will be reviewed by compliance personnel to ensure compliance with federal law.
If you are interested in being a part of our team and mission, we encourage you to apply!
- ...A leading consulting firm is seeking a Cybersecurity Program Manager to drive their cybersecurity strategy from anywhere in the USA. You will ensure alignment with security standards and manage threats across IT and data environments. Ideal candidates boast 8+ years of...SuggestedRemote work
- ...leading renewable energy firm is seeking a Lead Energy Storage Cyber Security Engineer to oversee their cybersecurity strategy and compliance. This role involves extensive interaction across departments, managing risks, and implementing protections for projects. Ideal...SuggestedRemote work
- Andiamo is looking for a Principal Staff Backend Engineer to lead the design and development of scalable, secure, and resilient enterprise systems. This hands-on role includes... ...direction and mentoring engineers while architecting platforms that power mission-critical...Principal
- A leading semiconductor company in San Francisco is seeking a Principal Power IC Chip Lead to advance power management solutions for AI processors. You will drive the design and verification of high-frequency power delivery systems while leading a collaborative team. A...Principal
$155k - $190k
...team is looking for a Senior Manager to join our Cybersecurity practice. The Senior... ...fractional Chief Information Security Officer (or vCISO) consulting... ...’s Information Security posture, cybersecurity assessments... ...and risk assessments, network and security reviews, compliance...SuggestedWork at officeLocal areaRemote workVisa sponsorshipWork visaFlexible hoursDay shift$170.6k - $390k
...working world. Join EY’s Cybersecurity consulting practice – the best... ...grow your career in information security! The opportunity The Senior Network Security Architect is a strategic and hands‑on... ...our dynamic team as a Senior Manager in Cybersecurity Engineering,...Summer holidayRemote workFlexible hours$170k - $277k
Palo Alto Networks, Inc. is seeking a Senior Principal Backend Engineer to lead backend development for cybersecurity solutions in San Francisco. The ideal candidate will have 14+ years of software engineering experience, expert skills in Python and Go, and a strong background...Principal$139.9k - $274.8k
...copilots - creating a new security frontier. Microsoft'... ...is looking for a Principal Product Manager - AI Security to... ...intersection ofAI systems, cybersecurity, and enterprise... ...for AI security posture and product success,... ...withCISOs, security architects, and security engineering...PrincipalOngoing contractLocal area- A prominent planning and design firm in California is seeking a seasoned Landscape Architect with extensive project management experience and a diverse portfolio. This full-time role involves leading complex landscape architecture projects, managing teams, and engaging...PrincipalFull time
- Description Principal Architect, Platform Identity The Mission We are seeking... ...architectural patterns that secure billions of global... ...authorization, and secure session management for accelerated delivery cycles... ...a consistent security posture and user experience across all...PrincipalImmediate startShift workDay shift
- A cybersecurity training company is seeking a Senior Cybersecurity Course Creator. This remote-first role involves designing and delivering... ...for various cybersecurity areas including Application Security and DevSecOps. The ideal candidate has 5+ years' experience in...Remote job
$168.3k - $296.7k
..., such as your social security number. What to know... ...features. You will manage the product from initial... ...complex "resilience" and "posture" capabilities into... ...least 5 years in the Cybersecurity or Data Protection space... ...as a cloud security architect or data engineer, giving...PrincipalRemote workShift work- Ernst & Young Oman is seeking a skilled ServiceNow FSO Architect (CTA) Manager to provide technical leadership in designing and delivering ServiceNow... ...'s degree, 4-6 years of extensive experience in IT/cybersecurity with a focus on ServiceNow, and relevant certifications....
$193k - $265k
...Secure Every Identity, from AI to Human... ...detail-oriented Principal Data Security Engineer... ...secure key management best practices, uplifting... ..., and Palo Alto Networks. This role will... ...as data security posture management (DSPM)... ...or higher in cybersecurity or a related technical...PrincipalWork experience placementLocal areaRemote workWorldwideFlexible hours$152k - $175k
...seeking a full‑time, remote Security Engineer to join our... ...our overall security posture, ensuring the... ...teams. Implement and manage security tools and systems... ...in Computer Science, Cybersecurity, or a related field.... ...understanding of workload/network isolation techniques...PrincipalFull timeRemote workHome officeFlexible hours$197.3k - $313.7k
Salesforce.com, inc. is looking for a Principal Insider Threat Analyst in San Francisco, CA. This role is central to maturing the Insider Threat Program, requiring 12+ years in cybersecurity and proven leadership in insider threat investigations. The candidate must possess...$170.6k - $316.8k
...campus into reality. We are seeking a dynamic Senior Principal Automation Project Manager to spearhead the integration and delivery of advanced... ...Acting as a key liaison between MEP engineers, IT and Cybersecurity teams, scientists, automation engineers, and external...PrincipalLocal areaRelocation package- A cybersecurity firm is seeking a specialist to work on cryptographic foundations to secure identity and sensitive data. You will engage in designing identity and access systems, building credentialing and key management infrastructure, and evaluating systems for vulnerabilities...
$142.6k - $261.5k
...ServiceNow - ServiceNow FSO Architect (CTA) Manager – Open Location In... ...workflows, integrations, data, security, and performance. The CTA... ...with: Card networks and external processors... ...relevant experience in IT or cybersecurity including extensive experience...Summer holidayWorldwideFlexible hours- A leading design platform is seeking a Principal Frontend Engineer to architect the technical direction for their frontend systems. The role requires significant expertise in React, TypeScript, and MobX, along with a proven track record of scalable architectures. This...PrincipalWorldwideRelocationFlexible hours
- ...Overview: Principal AI Architect Location: Silicon Valley (Onsite) | Experience: 5+ years | Visa Sponsorship: No What you'll do • Define and own the architectural vision for next-generation AI systems: novel agent architectures, reasoning systems...PrincipalVisa sponsorship
- Our Mission At Palo Alto Networks®, we’re united by a shared mission—to protect our digital... ...place. Who We Are In order to be the cybersecurity partner of choice, we must trailblaze... ...‑functional teams—including product management, design, and engineering—to ensure alignment...PrincipalRemote workFlexible hours
- Fidelis Companies is seeking a Principal Signal and Power Integrity Engineer in San Jose, CA. The role focuses on high-impact individual contributions in semiconductor packaging technology. Responsibilities include leading signal integrity design efforts, executing full...Principal
- An innovative tech startup is seeking a Senior Product Marketing Manager in San Francisco. This hybrid role involves defining positioning for a unique cybersecurity platform, translating complex capabilities into compelling messaging, and supporting sales with impactful...
$170k - $277k
...Our Mission At Palo Alto Networks®, we're united by a shared mission... ...Are In order to be the cybersecurity partner of choice, we must... ...that are only enabled by a secure digital environment. Job... ...functional teams including product management, quality assurance, and...PrincipalFull timeWork at office$180k - $300k
...track record in designing or evaluating AI accelerators, neural network inference engines, or signal processing hardware, with a... ...Familiarity with low-power design, mixed-signal integration, hardware security, chip bring-up, verification, and validation. ~ Prior...Principal$86.5k - $166k
...Information Technology (IT) Management Level Senior... ...people in Offensive Security focus on improving the... ...strengthen PwCs security posture. Embracing ambiguity,... ..., a member of the PwC network of firms. PwC IT... ...Communication, Creativity, Cybersecurity, Embracing Change, Emotional...H1bVisa sponsorshipWork visaFlexible hours$75k - $150k
A leading cybersecurity company based in San Francisco is looking for an experienced Account Executive with 2-4 years in B2B SaaS sales. The role involves managing the sales pipeline, conducting demos, and negotiating contracts. Ideal candidates will have a strong track...$125k - $200k
MG2, an affiliate of Colliers Engineering & Design, is seeking a Principal Architect - Data Centers in San Francisco, CA. This role entails overseeing project teams, leading business operations, and ensuring successful project execution and client relationships. Candidates...Principal$110k - $160k
A fast-growing cybersecurity firm is seeking a Founding Head of Growth to establish their inbound growth engine. This role requires designing and executing a demand generation strategy that drives pipeline and revenue while collaborating closely with the founders and sales...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Cybersecurity Architect - Network Security Posture Management. Be the first to apply!
- principal San Francisco, CA
- senior principal cloud computing engineer San Francisco, CA
- principal scientist San Francisco, CA
- principal designer San Francisco, CA
- principal architect San Francisco, CA
- associate principal San Francisco, CA
- principal solution architect San Francisco, CA
- principal data scientist San Francisco, CA
- principal consultant San Francisco, CA
- principal cloud computing engineer San Francisco, CA


