Principal Security Engineer
Location: San Jose, CA
Work Arrangement: Fully On-Site – 5 Days a Week
Employment Type: Full-Time
About the Role
We are seeking an experienced Principal Security Engineer to join our security organization and provide technical leadership across enterprise security architecture, security engineering, cloud security, security operations, cyber resilience, and product security.
This is a senior technical leadership position reporting directly to the Chief Security Officer (CSO). The Principal Security Engineer will design and implement security solutions across enterprise infrastructure, cloud environments, networks, applications, products, data, endpoints, and connected devices.
The ideal candidate will combine deep hands-on security engineering expertise with strong architecture, risk management, incident response, communication, and technical leadership capabilities.
Key Responsibilities
Security Architecture & Engineering
- Design, implement, and continuously improve enterprise security architectures aligned with business objectives and security requirements.
- Define security controls and reference architectures across on-premises, cloud, network, endpoint, application, product, and IoT environments.
- Establish security standards, design principles, technical controls, and engineering best practices.
- Evaluate emerging security technologies and recommend solutions to strengthen the organization''s security posture.
Security Governance & Risk Management
- Develop and maintain security policies, standards, procedures, and technical controls.
- Align security programs with frameworks such as NIST and ISO 27001.
- Conduct security risk assessments, threat assessments, vulnerability reviews, and architecture assessments.
- Identify security gaps and develop practical remediation and mitigation strategies.
- Prioritize security risks based on business impact, threat exposure, and likelihood.
- Support security assessments for new technologies, applications, products, cloud services, and infrastructure.
Security Operations & Threat Detection
- Provide technical leadership across SIEM, SOAR, XDR, IDS/IPS, threat intelligence, vulnerability management, and security monitoring capabilities.
- Develop and improve security detections, monitoring strategies, correlation rules, and automated response capabilities.
- Support proactive threat hunting and investigation of sophisticated security threats.
- Partner with SOC and Security Operations teams to improve detection, response, and remediation capabilities.
Incident Response & Cyber Resilience
- Lead and coordinate technical response activities during security incidents and potential breaches.
- Develop, test, and continuously improve incident response and cyber-resiliency plans.
- Analyze threat intelligence and use findings to strengthen defensive controls.
- Support business continuity and recovery efforts following significant cyber incidents.
- Conduct post-incident reviews and drive corrective and preventive actions.
Cloud Security
- Design and implement security controls across AWS and Azure environments.
- Apply cloud-native security principles across infrastructure, workloads, identities, applications, and data.
- Establish secure cloud architecture and configuration standards.
- Monitor and improve cloud security posture through appropriate security technologies and controls.
Zero Trust Security
- Design and implement Zero Trust security architectures and strategies.
- Implement strong authentication, authorization, segmentation, and continuous verification.
- Apply least-privilege and risk-based access principles.
- Integrate identity, device, network, application, and data security into Zero Trust initiatives.
Network Security
- Design and maintain secure enterprise and hybrid network architectures.
- Provide expertise in network protocols, segmentation, encryption, firewalls, IDS/IPS, and secure connectivity.
- Review network security configurations and identify opportunities for improvement.
- Support security architecture across enterprise, cloud, hybrid, and connected environments.
Identity & Access Management
- Define and implement enterprise IAM strategies based on Zero Trust and least-privilege principles.
- Provide expertise in RBAC, SSO, MFA, identity governance, authentication, authorization, and PAM.
- Partner with IT and application teams to improve identity lifecycle management and access controls.
Data Security
- Develop and implement enterprise data security and protection strategies.
- Establish controls for encryption, secure storage, data integrity, and data access.
- Provide technical leadership for Data Loss Prevention (DLP) initiatives.
- Ensure appropriate security controls are incorporated into enterprise data platforms and cloud environments.
Endpoint & IoT Security
- Define endpoint protection, hardening, and device security strategies.
- Implement and improve EDR, anti-malware, host-based security, device hardening, and MDM capabilities.
- Develop security strategies for IoT and connected-device environments.
- Apply identity, authentication, encryption, network segmentation, and access-control principles to IoT ecosystems.
DevSecOps & Product Security
- Integrate security throughout the Software Development Lifecycle (SDLC).
- Implement DevSecOps, automated security testing, continuous security monitoring, and security gates within CI/CD pipelines.
- Partner with software engineering and product teams to identify and mitigate application and product security risks.
- Establish secure coding, vulnerability management, threat modeling, and security testing practices.
- Ensure products and services meet applicable security standards and industry best practices.
Security Technology & Automation
Evaluate, implement, optimize, and integrate security technologies including:
- SIEM
- SOAR
- XDR / EDR
- Firewalls
- IDS/IPS
- Email Security
- DLP
- CASB
- CNAPP
- Vulnerability Management
- Threat Intelligence
- IAM / PAM
- Automated Security Testing
- Identify opportunities to automate security processes and improve operational efficiency.
- Develop security automation and response workflows where appropriate.
Required Qualifications
- Bachelor''s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or a related technical field.
- 8–10+ years of professional cybersecurity/security engineering experience, including at least 3 years in a Senior, Staff, Principal, or Security Architecture role.
- Strong hands-on experience designing and implementing enterprise security architectures.
- Strong knowledge of modern security engineering and security operations technologies.
- Experience with security frameworks including NIST and ISO 27001.
- Strong knowledge of network security, firewalls, IDS/IPS, encryption, segmentation, and secure network architecture.
- Strong understanding of IAM, RBAC, SSO, MFA, identity governance, PAM, and least-privilege principles.
- Hands-on experience securing AWS and/or Azure environments.
- Strong understanding and practical experience with Zero Trust architecture.
- Experience with incident response, threat intelligence, vulnerability management, and cyber resilience.
- Experience implementing DevSecOps and security controls within CI/CD pipelines.
- Experience with product security and secure software development practices.
- Understanding of IoT and connected-device security principles.
- Strong analytical, troubleshooting, and problem-solving skills.
- Excellent written, verbal, communication, and technical leadership skills.
Preferred Qualifications
- Experience working within a SOC, Security Operations, or Threat Detection environment.
- Experience with enterprise-scale SIEM/SOAR/XDR platforms.
- Experience with CNAPP, CASB, DLP, EDR, vulnerability management, and automated security testing platforms.
- Experience developing security automation and response workflows.
- Experience with threat modeling and security architecture reviews.
- Experience working in highly regulated or security-sensitive enterprise environments.
- Experience leading security initiatives across multiple technology and business teams.
- Relevant certifications such as CISSP, CCSP, CISM, GIAC, OSCP, or cloud security certifications are a plus.
Core Technical Skills
Security Architecture: Enterprise Security Architecture, Security Engineering, Security Governance, Risk Management
Security Operations: SIEM, SOAR, XDR, EDR, Threat Detection, Threat Hunting, Incident Response
Cloud Security: AWS, Azure, Cloud Security Architecture, Cloud Security Posture Management
Zero Trust: Zero Trust Architecture, IAM, RBAC, SSO, MFA, PAM, Least Privilege
Network Security: Firewalls, IDS/IPS, Network Segmentation, Encryption, Secure Connectivity
Data Security: DLP, Encryption, Data Protection, Data Access Controls
Application Security: DevSecOps, Secure SDLC, Threat Modeling, CI/CD Security, Vulnerability Management
Endpoint & IoT: EDR, Endpoint Hardening, MDM, IoT Security, Device Security
Security Frameworks: NIST, ISO 27001
Key Competencies
- Enterprise Security Architecture
- Security Engineering
- Cloud Security
- Zero Trust
- Security Operations / SOC
- Threat Detection & Response
- Incident Response & Cyber Resilience
- Network Security
- IAM / PAM
- Data Security & DLP
- Endpoint & IoT Security
- DevSecOps & Product Security
- Vulnerability Management
- Threat Intelligence
- SIEM / SOAR / XDR
- Security Risk Management
- Security Governance
- Technical Leadership & Mentorship