Staff Principal Software Engineer Infrastructure Security
You set technical direction for cloud, identity, and build-runtime security. You design and ship workload identity, least-privilege IAM, network segmentation, secrets management, and production-access guardrails, harden the software supply chain, and mentor engineers on security practices.
Responsibilities
- Set technical direction for cloud, identity, and build-runtime security
- Design and ship workload identity guardrails
- Implement least-privilege IAM
- Implement network segmentation
- Manage secrets and production access
- Harden the software supply chain from developer laptop to production deployment
- Partner with Platform, SRE, and applications platform stakeholders
- Mentor engineers across the organization
- Raise the security standard by default
Requirements
- 8+ years of experience in infrastructure or cloud security
- At least 3 years at staff or principal level
- GCP security primitives
- AWS security primitives
- Cloudflare security primitives
- IAM
- Network security
- KMS
- Workload identity
- Edge security
- Kubernetes
- Terraform
- Wiz
- GitHub Actions
- CI/CD
- Supply-chain security
- SLSA
- Sigstore
- SBOMs
- Go
- Python
- Rust