Source Job

Europe

  • Take ownership of securing high-availability, low-latency systems.
  • Implement and automate security controls across cloud and on-prem infrastructure.
  • Enhance resilience, reduce risk, and enable business operations to run safely and efficiently.

Cloud Security IAM CI/CD Python

20 jobs similar to Principal Security Engineer

Jobs ranked by similarity.

Europe

  • Implement and maintain security controls across multi-cloud environments (primarily AWS and Azure, with some GCP and AliCloud) and on-prem infrastructure
  • Own IAM strategy and implementation: design and enforce identity, access, and permissions models that are secure, scalable, and practical
  • Design and operate key management and custody security controls such as HSMs, secrets management, and secure key handling for trading operations

Auros is a global digital asset liquidity provider operating 24/7 across centralised and decentralised markets. They run high-availability, low-latency systems where resilience and risk discipline matter and treat security as a core engineering and risk function, with direct engagement from senior leadership.

Global Unlimited PTO

  • Lead cross-team infrastructure security initiatives from design through delivery, owning technical outcomes and stakeholder communication
  • Design and implement security solutions for cloud infrastructure, container platforms, and orchestration systems
  • Partner with SRE, Infrastructure, and Engineering teams to integrate security into platform services and deployment pipelines

GitLab is an open-core software company that develops the most comprehensive AI-powered DevSecOps Platform, used by more than 100,000 organizations. Their mission is to enable everyone to contribute to and co-create the software that powers our world.

US

  • Design and automate Azure security controls.
  • Build “secure‑by‑default” CI/CD and tooling.
  • Lead incident response and ensure compliance with HIPAA, SOC 2, and HITRUST.

IntusCare is dedicated to providing a HIPAA-compliant healthcare platform for vulnerable elderly populations. As a fast-growing startup, they are scaling to support hundreds of customers and prioritize security.

US

  • Work alongside DevOps and engineering teams to ensure our platforms, repositories and CI/CD pipelines are secure by default while remaining easy to build, test, and deploy against
  • Identify security risks through tools, audits, and monitoring, and drive them to resolution — whether that means changing a policy, updating infrastructure, or improving a pipeline
  • Take ownership of the security posture across multiple AWS accounts and continuously improve it over time

Versaterm is a global public safety solutions company helping agencies transform how they serve their communities. Since 1977, they’ve been building an ecosystem of intuitive tools designed for public safety agencies, forensic labs, court systems, schools and other institutions.

US Unlimited PTO

  • Architect and implement secure AWS configurations (IAM roles/policies, encryption keys, VPC segmentation)
  • Embed security into CI/CD pipelines and repos using policy-as-code tools (pre-commit hooks, SAST/SCA, IDE tool integrations)
  • Conduct threat modeling sessions and risk‑driven design reviews early in development

OnePay is a consumer fintech company trusted by millions of Americans to make money better by providing an all-in-one financial services platform. They are backed by Walmart and Ribbit Capital, allowing them rare scale and distribution to build something truly category-defining.

$140,000–$175,000/yr
US 3w PTO

  • Drive and enable proactive identification, analysis, and remediation of security vulnerabilities.
  • Respond to manage pen testing and bug bounty programs.
  • Work in partnership with Software Architecture, Risk/Compliance, the SRE team, and other partners, to integrate security capabilities into the SDLC.

Subsplash builds The Ultimate Engagement Platform™ for churches, Christian ministries, non-profits, and businesses around the world. They are a family-owned and operated company of 290+ mission-driven people.

$110,000–$140,000/yr
US Unlimited PTO

  • Serve as a security point of contact for external customers deploying into regulated cloud environments.
  • Implement and operate security controls required for FedRAMP Moderate/High, aligned to NIST SP 800-53.
  • Implement security and compliance gates in CI/CD pipelines to prevent non-compliant infrastructure or code from reaching production.

Knox runs the largest Federal managed cloud, building and operating secure cloud and AI environments that support the U.S. government’s most critical missions. Their work is high-impact and purpose-driven, expecting speed, rigor, and trust.

US

  • Design, build, and maintain secure, scalable cloud infrastructure.
  • Own CI/CD pipelines and deployment workflows across services and environments.
  • Improve reliability, availability, and performance through monitoring, alerting, and incident response practices.

Jobgether is a company that uses an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. They identify the top-fitting candidates and share this short list directly with the hiring company.

$94,000–$178,500/yr
US

  • Serve as a cloud security technical expert to develop and execute cloud security policies and procedures.
  • Collaborate with cloud technology teams across the enterprise to ensure the integrity and security of our digital assets in AWS/Azure IaaS environments.
  • Demonstrate high proficiency across a wide range of cloud security technologies to establish guardrails to prevent or automatically remediate common security misconfigurations.

AbbVie discovers and delivers innovative medicines and solutions that solve serious health issues today and addresses the medical challenges of tomorrow. It strives to have a remarkable impact on people's lives across several key therapeutic areas.

US

  • Optimize cloud infrastructure and manage governance, risk, and compliance.
  • Expand cloud architecture and implement scalable solutions.
  • Ensure high availability, security, and performance across AWS environments.

Rubris provides transformational legal technology and solutions for complex business and legal processes in the mass tort industry. Their data solutions streamline and automate processes to improve efficiency while delivering unprecedented insights and analytics.

Global

  • Lead and manage the DevOps team, prioritizing performance and accountability across cloud functions.
  • Define and enforce DevSecOps standards integrating automation, security, and compliance.
  • Optimize cloud infrastructure across AWS, GovCloud, and Azure for uptime and cost-effectiveness.

Jobgether is a company using an AI-powered matching process to ensure applications are reviewed quickly, objectively, and fairly. This allows them to identify the top-fitting candidates for companies, and this shortlist is then shared directly with the hiring company.

$90,000–$140,000/yr
US

  • Identify and help mitigate security issues related to Applied’s cloud, datacenter, and Kubernetes infrastructure.
  • Implement new and update existing security measures for the protection of Applied’s infrastructure.
  • Contribute to the operationalization of Security platforms at Applied.

Applied Systems is transforming the insurance industry with innovative software and services. They have 40+ years of experience and are committed to creating a culture built on values that make them indispensable to each other.

South America

  • Collaborate with engineering teams to design and build cloud-native applications and infrastructure that are secure by default.
  • Use CSPM tools (like Wiz) to discover cloud security findings and provide clear, practical guidance to teams on how to remediate those risks.
  • Create new security alerts and dashboards within our infosec stack and perform threat hunting across log feeds to identify emerging risks.

KnowBe4 is a cybersecurity company that puts security first. Their AI-driven Human Risk Management platform empowers over 70,000 organizations worldwide to strengthen their security culture.

South America

  • Hands-on DevSecOps engineer securing ThriveCart's e-commerce platform infrastructure.
  • Implement security automation, maintain monitoring systems, and enable engineering teams with security tooling.
  • Ensure high availability, providing security tooling/dashboards and aiding developers with findings.

ThriveCart is the leading no-code sales platform for digital course creators, coaches, entrepreneurs, and online businesses looking to boost revenue, drive conversions, and scale audiences. ThriveCart powers over 65,000 businesses and 12 million enrolled students, generating over $2 billion in annual sales.

$149,500–$169,202/yr
US

  • Design, build, and maintain security tools, scripts, and automations.
  • Partner with Engineering teams to manage and drive remediation of security vulnerabilities.
  • Evaluate and prioritize security risks based on industry standards and business context.

Weedmaps is a global leader in the cannabis industry. They are dedicated to transparency, education, and community, serving cannabis to consumers and businesses in the U.S. and worldwide.

$130,000–$140,000/yr
US UK

  • Design, deploy, and manage security tools and infrastructure to detect and prevent threats across cloud (AWS and GCP), corporate, and product environments.
  • Work collaboratively with engineering and product teams to integrate security into the SDLC (Secure Software Development Life Cycle) via threat modeling, code reviews, and automated testing.
  • Conduct security assessments, penetration testing, and vulnerability management to identify and remediate risks in our applications and services.

Acorns is a financial wellness app helping people and families save and invest money for the long term. Since 2014, Acorns has grown into a global company with multiple life-stage products serving the needs of kids, teens, adults, and parents.

US Canada

  • Manage identity & access security, administer and secure Windows Active Directory, Azure Entra ID and SSO configurations.
  • Secure cloud infrastructure by protecting and monitoring infrastructure hosted in AWS and GCP.
  • Lead endpoint protection & threat detection; manage Microsoft Defender XDR for endpoint security; monitor alerts, investigate incidents, and lead incident response efforts.

Backcountry's mission is to connect people to their passions through their online stores. They aim to supply customers with premium outdoor products, shopping experience, personalized Gearhead expertise and inspirational content.

Global Unlimited PTO

  • Keep the platform reliable and secure by participating in on-call rotation and owning security incident response planning.
  • Prepare for and pass security audits, ensuring continuous compliance with ISO 27001 and other frameworks.
  • Implement the principle of least privilege and drive network segmentation and zero-trust initiatives.

Jobgether is a company that helps candidates find the right job using AI-powered matching. They ensure applications are reviewed quickly, objectively, and fairly against the role's core requirements.

Europe

  • Design, build, and maintain cloud and server infrastructure.
  • Develop, optimize, and operate CI/CD and GitOps pipelines (GitLab CI, Jenkins, Argo CD).
  • Implement and manage container platforms using Docker and Kubernetes.

Deutsche Telekom IT Solutions is a subsidiary of the Deutsche Telekom Group and was Hungary’s most attractive employer in 2025. They provide IT and telecommunications services with 5300+ employees, serving hundreds of large customers, corporations in Germany and other European countries. The company has four sites in Budapest, Debrecen, Pécs and Szeged.

Europe US 5w PTO 16w maternity 6w paternity

  • Design, operate, and continuously improve the cloud infrastructure that powers our systems using infrastructure-as-code, monitoring, and observability.
  • Own critical parts of the platform: identify bottlenecks, propose and implement improvements, and drive reliability and performance at scale.
  • Run Kubernetes in production and evolve how we operate it.

Dune is on a mission to make crypto data accessible. They’re a collaborative multi-chain analytics platform used by thousands of developers, analysts, & investors to understand the on-chain world and the frontiers of finance. They are a team of ~60 employees working together across Europe and eastern US timezones.