Back to jobs
New

Principal Software Architect - Data Platform

Hybrid (NYC)

About SecurityScorecard:

SecurityScorecard is the global leader in cybersecurity ratings, with over 12 million companies continuously rated, operating in 64 countries. Founded in 2013 by security and risk experts Dr. Alex Yampolskiy and Sam Kassoumeh and funded by world-class investors, SecurityScorecard’s patented rating technology is used by over 25,000 organizations for self-monitoring, third-party risk management, board reporting, and cyber insurance underwriting; making all organizations more resilient by allowing them to easily find and fix cybersecurity risks across their digital footprint. 

Headquartered in New York City, our culture has been recognized by Inc Magazine as a "Best Workplace,” by Crain’s NY as a "Best Places to Work in NYC," and as one of the 10 hottest SaaS startups in New York for two years in a row. Most recently, SecurityScorecard was named to Fast Company’s annual list of the World’s Most Innovative Companies for 2023 and to the Achievers 50 Most Engaged Workplaces in 2023 award recognizing “forward-thinking employers for their unwavering commitment to employee engagement.”  SecurityScorecard is proud to be funded by world-class investors including Silver Lake Waterman, Moody’s, Sequoia Capital, GV and Riverwood Capital. 

About the Role:

SecurityScorecard is hiring a Principal Software Architect to lead the system design of our data platform. Rating 12 million companies continuously means ingesting internet-scale measurement data, processing it across streaming, microbatch, and batch paths, storing it so it stays queryable and affordable as it grows, and serving analytics fast enough that customers can explore their own risk in real time. The data is not a byproduct of our product. It is the product.

That also raises the stakes on correctness. We publish a number about other companies, they dispute it, and underwriters price against it. A quiet data quality regression here doesn't produce a stale dashboard, it moves someone's score. Quality, contracts, and lineage are therefore architecture problems on this platform, not administrative ones.

This is an individual contributor role reporting to the Chief Architect, alongside a Principal Architect focused on AI and agentic systems and a Principal Front-end Architect, and partnering closely with engineering leadership, Product, and Data Science.

We're looking for someone who is opinionated about data architecture and persuasive about it: an architect whose designs get adopted because the reasoning is visible, not because they carry a title.

Like the rest of our architecture function, you'll prototype to prove out decisions rather than implement full solutions, and you'll set direction through Technical Design Reviews (TDRs), and standards.  You will lead the data domain, and you'll bring enough general distributed systems judgment to review designs across the wider platform.

What You'll Do

  • Own the system design for our data platform end to end, from ingestion through to the serving layer
  • Define the service boundaries and data contracts between producers and consumers, including schema ownership, compatibility rules, and what happens when a producer needs to make a breaking change
  • Design the lakehouse: table format, partitioning strategy, schema evolution, compaction, and metadata growth at scale
  • Architect the analytical serving layer for three workload classes with conflicting demands, isolated so that one never degrades another: low-latency, high-concurrency queries from customers in the product, ad-hoc exploration from internal analytics and Data Science, and bulk delivery to external feeds and partners
  • Set direction on languages and frameworks in the data stack
  • Engineer data quality and observability into the platform rather than bolting them on: validation and quarantine paths, freshness and completeness SLOs, drift detection, and lineage and metadata generated by the pipeline itself instead of maintained by hand
  • Design for correctness and reproducibility in the ratings pipeline, including backfills and historical restatement when scoring logic changes
  • Write the TDRs, design docs, and standards that set data architecture direction across teams, and push that intent into the repos themselves so engineers and coding agents both have it in local context
  • Review TDRs from across engineering, giving teams substantive feedback on architecture and risk, not only on data work
  • Partner with the AI & Front End Architects on the data access patterns, mentor senior and staff engineers on data system design

Required Qualifications:

  • 10+ years of software or data engineering experience, including significant time architecting large-scale data platforms
  • Deep expertise in stream and batch processing at scale with Kafka, Flink, and Spark or close equivalents, and clear judgment about which path a given workload belongs in
  • Strong Python and PySpark, solid Java for Flink stream processing, and enough Scala to read and reason about an existing Spark codebase
  • Hands-on experience designing lakehouse storage in production: columnar formats such as Parquet, open table formats such as Iceberg, and the partitioning, compaction, and schema evolution decisions that come with them
  • Experience architecting OLAP and analytical serving layers (ClickHouse, Druid, Pinot, BigQuery, Snowflake or similar)
  • Strong distributed systems fundamentals as they apply to data: exactly-once versus at-least-once semantics, ordering, backpressure, late and out-of-order data, and pipeline failure modes
  • A track record of building data quality, contracts, and observability as engineered system properties, meaning assertions, schema enforcement, and lineage that live in code 
  • Experience owning a large-scale data migration, including preserving history and correctness through a cutover
  • A track record of influence without authority: presenting a technical direction to skeptical engineers and earning genuine buy-in, and giving rigorous design review feedback on systems you didn't build yourself
  • Strong technical writing and mentorship: TDRs, design docs, and decision records that teams can act on without hand-holding, plus a history of raising the technical bar around you
  • Comfort operating as a senior individual contributor, driving outcomes through prototyping and technical credibility

Preferred Qualifications:

  • Experience building the data layer underneath ML or LLM systems: feature stores, vector stores, or retrieval pipelines
  • Experience with internet-scale scan, telemetry, or observability data, or a cybersecurity industry background
  • Track record of bringing platform cost down at scale through storage tiering, query governance, or compute right-sizing

Our Tech Stack

Our platform runs on Node.js and TypeScript, with a React Microfrontend Architecture and PostgreSQL and ClickHouse for storage. We use Kafka for event streaming, and our infrastructure runs on AWS with Kubernetes, Terraform, Helm, and ArgoCD. We are actively expanding our AI/ML infrastructure.

On the data side, Kafka is the backbone for event flow. Stream processing runs on Flink in Java, while batch and microbatch run on Spark. Some high performance pipeline components are written in C++. ClickHouse serves our analytical workloads.

You do not need to have used every tool here, but you should be comfortable reasoning across a stack of this kind and making principled architectural trade-offs within it.

Benefits:

Specific to each country, we offer a competitive salary, stock options, Health benefits, and unlimited PTO, parental leave, tuition reimbursements, and much more!

The estimated total compensation range for this position is $270,000 - $330,000 (base plus bonus). Actual compensation for the position is based on a variety of factors, including, but not limited to affordability, skills, qualifications and experience, and may vary from the range. In addition to base salary, employees may also be eligible for annual performance-based incentive compensation awards and equity, among other company benefits. 

SecurityScorecard is committed to Equal Employment Opportunity and embraces diversity. We believe that our team is strengthened through hiring and retaining employees with diverse backgrounds, skill sets, ideas, and perspectives. We make hiring decisions based on merit and do not discriminate based on race, color, religion, national origin, sex or gender (including pregnancy) gender identity or expression (including transgender status), sexual orientation, age, marital, veteran, disability status or any other protected category in accordance with applicable law. 

We also consider qualified applicants regardless of criminal histories, in accordance with applicable law. We are committed to providing reasonable accommodations for qualified individuals with disabilities in our job application procedures. If you need assistance or accommodation due to a disability, please contact talentacquisitionoperations@securityscorecard.io.

Any information you submit to SecurityScorecard as part of your application will be processed in accordance with the Company’s privacy policy and applicable law. 

SecurityScorecard does not accept unsolicited resumes from employment agencies.  Please note that we do not provide immigration sponsorship for this position.   #LI-DNI

Create a Job Alert

Interested in building your career at SecurityScorecard? Get future opportunities sent straight to your email.

Apply for this job

*

indicates a required field

Phone
Resume/CV*

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf


Employment

Select...
Select...

Education

Select...
Select...
Select...

Select...
Select...
Select...
Select...
Select...
Select...
Select...
Select...

Voluntary Self-Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.

As set forth in SecurityScorecard’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Select...
Select...
Race & Ethnicity Definitions

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Select...

Voluntary Self-Identification of Disability

Form CC-305
Page 1 of 1
OMB Control Number 1250-0005
Expires 07/31/2029

Why are you being asked to complete this form?

We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.

Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp.

How do you know if you have a disability?

A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability. Disabilities include, but are not limited to:

  • Alcohol or other substance use disorder (not currently using drugs illegally)
  • Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDS
  • Blind or low vision
  • Cancer (past or present)
  • Cardiovascular or heart disease
  • Celiac disease
  • Cerebral palsy
  • Deaf or serious difficulty hearing
  • Diabetes
  • Disfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disorders
  • Epilepsy or other seizure disorder
  • Gastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndrome
  • Intellectual or developmental disability
  • Mental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSD
  • Missing limbs or partially missing limbs
  • Mobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supports
  • Nervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)
  • Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilities
  • Partial or complete paralysis (any cause)
  • Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysema
  • Short stature (dwarfism)
  • Traumatic brain injury
Select...

PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.