
Principal Security Engineer
Posted Jul 27

Posted Jul 27
This is a fully remote position, open to applicants in Texas.
• Take charge of strategy and hands-on engineering for Detection and Response platforms; identify, onboard, and normalize all log sources, including cloud, containers, endpoints, and SaaS.
• Develop and maintain Security Orchestration, Automation, and Response (SOAR) tools to minimize response time and reduce analyst workload.
• Lead incident response efforts for complex threats, which includes creating runbooks, driving post-incident enhancements, and orchestrating BCP/DR tabletop exercises.
• Integrate security into the software development lifecycle (SDLC): conduct threat modeling, secure design reviews, utilize SAST/DAST tools, and implement automated security gates in CI/CD pipelines.
• Manage the vulnerability management program at host and application levels; monitor and propel remediation actions.
• Advocate for "security as code" practices among engineering teams.
• Develop AI-driven security tools: enhance threat detection and anomaly recognition at suitable confidence levels, automate triage and remediation workflows, and facilitate AI-assisted post-mortem analyses.
• Define and execute the security framework for LLM-based systems and internal AI tools.
• Architect harness patterns to limit LLM behavior and strengthen defenses against prompt injections, indirect injections through RAG pipelines, and data exfiltration via model outputs.
• Assess and govern the adoption of AI tools from a security and data-risk perspective.
• Oversee AWS security posture and enforce standards across Linux/Windows systems, network devices, and enterprise SaaS (M365, Google Workspace, Azure).
• Engineer, configure, and manage EDR, DLP, and endpoint security programs.
• Provide expertise in IAM architecture across identity and access management systems.
• Mentor and actively nurture junior and mid-level security engineers through design reviews, collaborative work, and direct feedback. Enhancing team capabilities is a fundamental expectation of this role.
• Establish and promote security engineering standards throughout the organization.
• Work closely with IT operations, platform, and software teams to translate threat intelligence into detection strategies and fortification priorities.
• A minimum of 8 years in security engineering with a proven trajectory towards technical leadership.
• Practical experience with SIEM tools (DataDog, ELK, or similar).
• Extensive knowledge of AWS security and IAM.
• Understanding of application security fundamentals: threat modeling, SAST/DAST, and secure SDLC.
• Experience with AI/LLM APIs and a solid grasp of LLM security risks.
• Background in EDR, DLP, and vulnerability management.
• Familiarity with containerized workloads and Kubernetes security.
• A demonstrated history of mentoring engineers and enhancing team capabilities.
• Nice to Have - CISSP, GIAC, or OSCP certification.
• Knowledge of MITRE ATT&CK applied to detection engineering.
• Experience with "security as code" practices (OPA, Checkov, tfsec, or similar).
• Data science or anomaly detection skills relevant to security telemetry.
• Experience in the healthcare sector (HIPAA, HITRUST).
• Proficiency with the following tools/technologies: Kubernetes/EKS, Terraform/Terragrunt, Atlantis, Cloudflare, Buildkite, Wiz, Semgrep, EscapeTech, GitHub Advanced Security, Datadog, HashiCorp Vault, N8N, Snowflake, Linear.
• Curative Health Plan (100% employer-covered medical premiums for you and 50% coverage for dependents on the base plan).
• $0 copays and $0 deductibles (upon completion of our Baseline Visit).
• Inclusive preventive and primary care.
• Mental health support (Rula, Televero, Two Chairs, Recovery Unplugged).
• Personalized care navigation.
• Chronic condition management programs (diabetes, weight, hypertension).
• Support for maternity and family planning.
• 24/7/365 access to Curative Telehealth.
• Pharmacy benefits.
• Comprehensive dental and vision insurance.
• Employer-funded life and disability coverage with additional supplemental options available.
• Flexible spending accounts.
• Generous PTO policy plus 11 paid company holidays annually.
• 401K plan for full-time employees.
• Generous paid parental leave of up to 8–12 weeks, depending on role eligibility.
ASG Technologies
CrowdStrike
Culmen International
Threatscape
Get handpicked remote jobs straight to your inbox weekly.