Remotery

Principal Security Engineer

Posted Jul 27

This is a fully remote position, open to applicants in Texas.

📋 Description

• Take charge of strategy and hands-on engineering for Detection and Response platforms; identify, onboard, and normalize all log sources, including cloud, containers, endpoints, and SaaS.

• Develop and maintain Security Orchestration, Automation, and Response (SOAR) tools to minimize response time and reduce analyst workload.

• Lead incident response efforts for complex threats, which includes creating runbooks, driving post-incident enhancements, and orchestrating BCP/DR tabletop exercises.

• Integrate security into the software development lifecycle (SDLC): conduct threat modeling, secure design reviews, utilize SAST/DAST tools, and implement automated security gates in CI/CD pipelines.

• Manage the vulnerability management program at host and application levels; monitor and propel remediation actions.

• Advocate for "security as code" practices among engineering teams.

• Develop AI-driven security tools: enhance threat detection and anomaly recognition at suitable confidence levels, automate triage and remediation workflows, and facilitate AI-assisted post-mortem analyses.

• Define and execute the security framework for LLM-based systems and internal AI tools.

• Architect harness patterns to limit LLM behavior and strengthen defenses against prompt injections, indirect injections through RAG pipelines, and data exfiltration via model outputs.

• Assess and govern the adoption of AI tools from a security and data-risk perspective.

• Oversee AWS security posture and enforce standards across Linux/Windows systems, network devices, and enterprise SaaS (M365, Google Workspace, Azure).

• Engineer, configure, and manage EDR, DLP, and endpoint security programs.

• Provide expertise in IAM architecture across identity and access management systems.

• Mentor and actively nurture junior and mid-level security engineers through design reviews, collaborative work, and direct feedback. Enhancing team capabilities is a fundamental expectation of this role.

• Establish and promote security engineering standards throughout the organization.

• Work closely with IT operations, platform, and software teams to translate threat intelligence into detection strategies and fortification priorities.


⛳️ Requirements

• A minimum of 8 years in security engineering with a proven trajectory towards technical leadership.

• Practical experience with SIEM tools (DataDog, ELK, or similar).

• Extensive knowledge of AWS security and IAM.

• Understanding of application security fundamentals: threat modeling, SAST/DAST, and secure SDLC.

• Experience with AI/LLM APIs and a solid grasp of LLM security risks.

• Background in EDR, DLP, and vulnerability management.

• Familiarity with containerized workloads and Kubernetes security.

• A demonstrated history of mentoring engineers and enhancing team capabilities.

• Nice to Have - CISSP, GIAC, or OSCP certification.

• Knowledge of MITRE ATT&CK applied to detection engineering.

• Experience with "security as code" practices (OPA, Checkov, tfsec, or similar).

• Data science or anomaly detection skills relevant to security telemetry.

• Experience in the healthcare sector (HIPAA, HITRUST).

• Proficiency with the following tools/technologies: Kubernetes/EKS, Terraform/Terragrunt, Atlantis, Cloudflare, Buildkite, Wiz, Semgrep, EscapeTech, GitHub Advanced Security, Datadog, HashiCorp Vault, N8N, Snowflake, Linear.


🏝️ Benefits

• Curative Health Plan (100% employer-covered medical premiums for you and 50% coverage for dependents on the base plan).

• $0 copays and $0 deductibles (upon completion of our Baseline Visit).

• Inclusive preventive and primary care.

• Mental health support (Rula, Televero, Two Chairs, Recovery Unplugged).

• Personalized care navigation.

• Chronic condition management programs (diabetes, weight, hypertension).

• Support for maternity and family planning.

• 24/7/365 access to Curative Telehealth.

• Pharmacy benefits.

• Comprehensive dental and vision insurance.

• Employer-funded life and disability coverage with additional supplemental options available.

• Flexible spending accounts.

• Generous PTO policy plus 11 paid company holidays annually.

• 401K plan for full-time employees.

• Generous paid parental leave of up to 8–12 weeks, depending on role eligibility.

People also viewed

ASG Technologies6 hours ago

IT Security Director

US flagCalifornia OnlyFull-timeCybersecurity / Security Engineer$165k – $190k/year
ApplyView job
CrowdStrike6 hours ago

Associate Security Engineer

US flagTexas OnlyFull-timeCybersecurity / Security Engineer$70k – $95k/year
ApplyView job
Culmen International7 hours ago

Border Security Trainer

US flagUnited States OnlyFreelanceCybersecurity / Security Engineer
ApplyView job
Threatscape7 hours ago

Security Consultant – Purview

GB flagUnited Kingdom, +1 more countryFull-timeCybersecurity / Security Engineer£35k – £47k/year
ApplyView job
Unity8 hours ago

Staff Security Architect

US flagTexas OnlyFull-timeCybersecurity / Security Engineer$160.3k – $305.4k/year
ApplyView job
Truist10 hours ago

Cybersecurity Group Manager

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers