This role involves providing strategic and tactical technical guidance on security across the organization, with input into leadership decisions. The engineer will research emerging threats and translate findings into actionable guidance. They will own escalations requiring deep expertise and design and evolve the secure software development lifecycle (SDLC), including threat modeling, security design reviews, developer enablement, and integrating security tooling (SAST, DAST, SCA, secrets detection) into CI/CD pipelines. Building and running security champions programs to foster collaboration with developers is key. The role requires tracking progress with metrics and communicating risk clearly to diverse audiences. A significant focus will be on AI/LLM security, including leading security reviews and threat modeling for AI-powered features, evaluating AI tools and APIs, and defining internal standards for responsible AI-integrated application development. The engineer will also use AI-powered security tooling and design innovative solutions to protect systems and data efficiently. Collaboration with engineering, GRC, legal, and privacy teams is essential to ensure controls are effective within a regulated environment. At the Principal level, this includes shaping multi-year technical strategy for the AppSec program, influencing the engineering organization, serving as an authority on AI/LLM security for senior leadership, and mentoring junior engineers.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Principal
Education Level
No Education Listed