Principal Platform Architect
10+ Years
Distributed Systems, Cloud (AWS/Azure/GCP), Kubernetes, IaC (Terraform, Helm), Security (SSO, RBAC, Encryption), Client Communication
Full Time
Remote
Job Description
The Principal Platform Architect will lead the design and implementation of a secure, multi-tenant SaaS platform with strong tenant isolation, scalability, and enterprise-grade security. This role requires deep expertise in distributed systems, cloud infrastructure, and platform security, along with the ability to guide engineering teams and collaborate with product, security, and SRE stakeholders.
Responsibilities
- Define reference architecture for a multi-tenant, zero-trust platform with clear SLOs. Own platform architecture across data, control, and execution planes.
- Design control planes to enable safe self-service and strong tenant isolation.
- Establish tenancy, identity, and policy models for SSO, RBAC, secrets, and encryption.
- Design APIs, contracts, and extension points for platform capabilities.
- Partner with product, security, and SRE to codify SLOs and error budgets.
- Drive build vs buy decisions, reference implementations, and blueprints.
- Review critical designs and support teams with hands-on prototyping in Go, Node.js, or Python.
- Develop runbooks, ADRs, and threat models to meet enterprise audit standards.
Requirements
- Bachelor’s/Master’s degree in Computer Science, Engineering, or related field.
- 10+ years of experience in distributed systems and multi-tenant SaaS.
- Expertise in AWS/Azure/GCP, Kubernetes, and Infrastructure-as-Code (Terraform, Helm).
- Strong security knowledge across SSO, RBAC, secrets, and encryption.
- Hands-on coding experience with Go, Node.js, or Python.
- Experience designing control planes and platform services.
- Strong communication, leadership, and problem-solving skills.
Nice to Haves
- Experience with vector DBs, embeddings, and re-ranking (RAG and search).
- Knowledge of LLM cost control, caching, and routing.
- Integrating workflow engines or low-code builders.
Exposure to Slack, Teams, or Webex integrations