Principal Cyber Security Engineer, Technology and Digital
Application Security
Cloud Platforms
Cloud Security
Cloud Security Architecture
Cloud Security Assurance
Data Security
Engineer
Engineering
Identity and Access Management
Incident Response
Information Security
InfoSec
Security
Security Certifications
Security Operations
Security Standards
Security Testing
Technical Lead
Job Description
The Principal Cyber Security Engineer, Technology and Digital will plan, implement, manage, monitor, and upgrade security measures to safeguard data, systems, and networks across on-prem and cloud environments. This role also leads vulnerability testing and penetration testing and coordinates incident response activities for security breaches and network or security events.
Key Responsibilities
- Plan, implement, manage, monitor, and upgrade security measures for protection of data, systems, and networks on premise and in the cloud.
- Guide team members in troubleshooting security and network problems, including security-related incident activity.
- Respond to system and/or network security breaches and oversee others in responding to breaches affecting network and associated systems.
- Enable appropriate security controls to protect the organization’s data and infrastructure.
- Help lead testing and identifying network and system vulnerabilities, including guiding others on vulnerability discovery efforts.
- Report and communicate with relevant departments within the organization regarding security posture and incident or risk updates.
- Evaluate organizational security needs and establish best practices and standards aligned to those needs.
- Design, implement, maintain, oversee, and upgrade security measures supporting protection of data, systems, and networks.
- Troubleshoot network and security issues and incidents end to end, coordinating technical resolution as required.
- Lead others in routines for penetration testing and in conducting testing and scans to identify vulnerabilities in network and systems.
- Implement appropriate security measures to keep infrastructure and existing data safe.
Required Qualifications
- 8+ years of work experience producing clean, high-quality code in one or more object-oriented (OOP) languages or frameworks: Java, .NET, Python, or JavaScript frameworks.
- Familiarity with cloud security deployment and implementation issues, with AWS preferred.
- Experience manually auditing source code to identify security issues or demonstrate programming security knowledge.
- Proven ability to understand, replicate, and remediate OWASP TOP 10 vulnerabilities and assess impact using proxies such as Burp, ZAP, or Fiddler.
- Experience defining security architecture standards in an enterprise organization, including common API security risks, OAuth, and JSON Web Token (JWT).
- Familiarity with CI/CD pipelines, build systems, and containerized architecture.
- Plus one or more security certifications: OSCP, CSSLP, GWAPT, CISSP, eWPT, CEH, or similar security credentials.
- Experience across all facets of information security operations, including vulnerability management, risk management, computer and network security, authentication and authorization, security protocols, and applied cryptography.
- Experience guiding others to implement and support information security policies, procedures, and security practices for company-wide computing and networking systems.
- Ability to train others in security procedures and incident resolution.
- Mobile App Pen Testing experience is a plus.
Technology & Tools
- Java, .NET, Python, JavaScript frameworks
- AWS
- Burp, ZAP, Fiddler
- OWASP TOP 10
- OAuth, JSON Web Token (JWT)
- CI/CD pipelines, containerized architecture
- OSCP, CSSLP, GWAPT, CISSP, eWPT, CEH
Location & Compensation
- Location: Florida (onsite)
- Salary: USD 144,738 to 188,159 per year
- Education: Bachelor’s
Benefits
- Career growth and development opportunities, with clear pathways and ongoing support
- Comprehensive health and wellness resources beyond traditional benefits
- A wellness program designed to help employees eliminate their medical plan deductible, reducing out-of-pocket healthcare costs
- Tuition reimbursement to support continued learning and advancement