Aptiv PLC

Principal Technologist - Product Security

Aptiv PLC$130K — $180K *
Enterprise Technology
11 - 15 years of experience
Job Overview by Ladders

Qualifications

  • 15+ years in cloud/platform engineering, embedded systems, or cybersecurity with architectural ownership.
  • Expertise in product security, including threat modeling and vulnerability management.
  • Strong knowledge of virtualization technologies (KVM, QEMU), Linux internals, containers (Docker), and Kubernetes.
  • Familiar with cloud networking, SDN/NFV, microservices security, and cryptography.
  • Hands-on experience with CI/CD security and secure coding practices.

Responsibilities

  • Define and evolve the security architecture for the cloud platform.
  • Lead threat modeling and security risk assessments for cloud environments.
  • Drive secure-by-default configurations across platform services.
  • Own the security roadmap and ensure compliance with industry standards.
  • Oversee vulnerability management and runtime integrity measures.
  • Serve as the top technical expert and mentor on product security efforts.
  • Guide operational security practices for private cloud customers.

Benefits

  • Opportunity to collaborate with cutting-edge technology and secure infrastructure.
  • Work in a high-impact role influencing cybersecurity strategy across the organization.
  • Access to professional development and mentorship opportunities.
  • Involvement in industry standards bodies and working groups.
  • Chance to work in high-demand sectors such as telco, aerospace, and defense.
Full Job Description
Role Summary

As a Principal Technologist specializing in Product Security for the Wind River Private Cloud Platform, you will serve as the technical authority driving the secure design, architecture, and lifecycle hardening of Wind River’s mission‑critical cloud infrastructure solutions. You will guide security strategy across virtualization, orchestration, and distributed edge computing systems—ensuring the platform meets stringent requirements for telco, aerospace, defense, and industrial deployments. This role bridges advanced cloud engineering, embedded systems knowledge, and modern cybersecurity practices.

Key ResponsibilitiesSecurity Architecture & Strategy
  • Define and evolve the security architecture for Wind River Private Cloud Platform, including control plane components, hypervisors, networking stacks, and orchestration frameworks.
  • Lead threat modeling, security risk assessments, and mitigation strategies across distributed cloud/edge environments.
  • Establish platform security requirements, secure design patterns, and architectural standards.
Product & Platform Security
  • Drive secure-by-default configurations across compute, storage, networking, and platform services.
  • Own the security roadmap for the platform, ensuring alignment with industry standards (NIST, CIS, FIPS, FedRAMP, ISO 27001, etc.).
  • Oversee vulnerability management, secure boot, runtime integrity measures, API security, and cryptographic services.
  • Partner with product, engineering, and QA teams to embed security throughout SDLC (shift‑left security).
Technical Leadership
  • Serve as the top technical expert and advisor for product security across cloud, containerization, virtualization, and real‑time/edge systems.
  • Mentor senior engineers and influence engineering directors and executives on cybersecurity tradeoffs and priorities.
  • Represent the organization in security reviews, customer briefings, escalations, and cross-functional technical committees.
Security Operations & Compliance
  • Guide secure deployment patterns and operational security practices for private cloud customers.
  • Support incident investigation, root‑cause analysis, and remediation for platform-level vulnerabilities.
  • Define and enforce policies for SBOM, supply chain integrity, CI/CD security, and secure artifact distribution.
Collaboration & Influence
  • Collaborate with teams across Wind River Studio ecosystem (edge platform, analytics, DevSecOps tooling).
  • Represent Wind River in standards bodies and industry working groups (ETSI, CNCF, Linux Foundation, etc.).
  • Partner with customer engineering teams on secure deployment architectures for telecom and mission‑critical environments.

Required Qualifications
  • 15+ years in cloud/platform engineering, embedded systems, or cybersecurity with deep architectural ownership.
  • Expertise in product security, including threat modeling, secure architecture, and vulnerability management.
  • Strong knowledge of:
    • Virtualization technologies (KVM, QEMU, etc.)
    • Linux internals, kernel security, containers (Docker), and Kubernetes
    • Cloud networking, SDN/NFV, microservices security
    • Cryptography and hardware root of trust (TPM, secure boot)
  • Hands-on experience with CI/CD security, SAST, DAST, container scanning, SBOM generation.
  • Proven ability to lead complex cross‑organizational security initiatives.

Preferred Qualifications
  • Experience with private cloud infrastructure, Titanium Cloud, or telecom/industrial -grade cloud infrastructure.
  • Background in telco (5G), aerospace/defense, industrial IoT, or other safety/security‑critical domains.
  • Familiarity with Yocto, embedded Linux, RTOS environments.
  • Participation in open-source security initiatives or upstream kernel/cloud projects.
  • Advanced degree in Computer Science, Electrical Engineering, Cybersecurity, or similar field.

Success Indicators
  • Demonstrated improvements in platform security posture, measurable vulnerability reduction, and secure SDLC maturity.
  • Adoption of security architecture patterns across engineering teams.
  • Strong technical influence with executives, partners, and global customers.
  • Delivery of innovative, scalable platform security capabilities for distributed cloud and edge environments.

About Aptiv PLC

Aptiv PLC is a global technology company that designs and manufactures vehicle components and provides electrical and electronic and active safety technology solutions to the global automotive and commercial vehicle markets. The company's products include advanced safety systems, electrical and electronic distribution systems, and software and controls. Aptiv's largest customers are automotive manufacturers, and the company has a significant presence in Europe, Asia, and North America. The company was formerly known as Delphi Automotive PLC and changed its name to Aptiv PLC in December 2017.
Learn more about Aptiv PLC
Size
155,000 employees
Market Cap
$24.7 billion
Industry
Net Income
$1.8 billion
5 Year Trend
+4.9%
Revenue
$13 billion
NASDAQ

Similar Jobs

More Jobs at Aptiv PLC

More Enterprise Technology Jobs

Find similar Principal Technologist - Product Security jobs: