Astera Labs Inc.
Senior Principal Engineer, Security Architect
San Jose, California, United States · Principal
Stay score
odds of building a lasting career here
Sponsors, but it's cap-subject — you still face the weighted lottery (~61% per draw at Level IV). Good if you win; have a cap-exempt backup on your list.
Lottery odds assume a STEM candidate.
Personalize to your clock →Employer immigration record
from this employer's Department of Labor filings
Green-card filing pattern in this occupation
Files H-1B transfers
Sourced from Department of Labor LCA, PERM and prevailing-wage disclosure data. Employer matching is by name, so figures may be split across an employer's legal entities. Absence of a filing means none appears in our copy of the data, not that none exists.
Community outcomes
No reports yet — be the first to help the next applicant.
About the role
- This is a hands-on, deeply technical architect role for someone who wants to shape security at a hyper-growth semiconductor company enabling rack-scale AI infrastructure.
Responsibilities
- Define and own the end-to-end security architecture across product (silicon, firmware, systems) and enterprise (cloud, SaaS, IT) domains
- Establish security reference architectures, design patterns, and standards that scale across teams and product lines
- Partner with engineering and IT leaders to align architectural direction with business, product, and compliance priorities
- Lead threat modeling, attack surface analysis, and security design reviews for new products, features, and platforms
- Drive secure development lifecycle (SDL) practices, including requirements, design, implementation, and validation gates
- Guide secure design of build, CI/CD, developer, and EDA/tooling environments
Requirements
- Bachelor's degree in Computer Science, Computer Engineering, Electrical Engineering, or a related technical field
- 12+ years of progressive experience in security engineering and architecture across product and/or enterprise domains
- Demonstrated expertise designing secure architectures spanning hardware/firmware, software, cloud, and enterprise IT
- Deep knowledge of cryptography, identity and access management, network security, and modern threat models (e.g., MITRE ATT&CK)
Nice to have
- Advanced degree (MS or PhD) in a security-related discipline
- Industry certifications such as CISSP-ISSAP, SABSA, TOGAF, Azure Security Engineer/Architect, or equivalent demonstrated experience
- Experience in the semiconductor, hardware, or hyperscale infrastructure industry, including familiarity with PCIe, CXL, or high-speed connectivity technologies
- Experience with secure boot, hardware root of trust, attestation, confidential computing, and supply chain security
- Familiarity with regulatory and industry frameworks such as SOC 2, ISO 27001, NIST, and data privacy regulations
- Hands-on experience with cloud security architecture (Azure preferred) and Microsoft enterprise environments (Entra, M365, Active Directory)
Skills
- Security Architecture & Strategy
- Threat Modeling & Secure-by-Design
- Evaluate cryptography, key management, secure boot, attestation, and supply chain integrity approaches for hardware and firmware
- Enterprise & Cloud Architecture
- Define standards for logging, telemetry, and detection engineering inputs in partnership with security operations
- Partnership & Technical Leadership
- Serve as a trusted advisor to engineering, product, IT, and GRC leadership on complex security trade-offs
- Translate architectural direction into pragmatic, prioritized roadmaps and measurable outcomes
- Mentor engineers and architects across the organization, elevating security capability company-wide
Compensation
- Salary range is $190,000 to $240,000 depending on experience, level, and business need.
This listing is sourced directly from Astera Labs Inc.'s careers page and normalized into a canonical job model.