Principal Security Engineer DevSecOps Lead
location_onBoca Raton, Florida, United States; New York, United Statesschedulehace 4 días
trending_upNivel de experiencia:Principal
historyExperiencia mínima:10+ años
Descripción del puesto
You will design security architecture for SaaS, cloud, and AI-enabled applications. You will build DevSecOps controls, lead vulnerability management and offensive testing, strengthen application and data protections, support security incidents, and mentor senior engineers.
Responsibilities
- Own security architecture for SaaS platforms, multi-cloud environments, and AI-enabled applications
- Build and operate DevSecOps controls, including security testing, IaC scanning, supply-chain security, secrets detection, and policy-as-code
- Design and run automated vulnerability management
- Lead application security across the software development lifecycle
- Direct red-team, adversarial-testing, and purple-team exercises
- Harden multi-tenant isolation, identity, and data protection
- Set security-by-design controls for AI-enabled applications
- Partner on identity, secrets, network segmentation, logging, and incident response
- Participate in on-call for security incidents
- Mentor senior engineers and contribute to executive and board risk reporting
Requirements
- 10+ years in information security
- DevSecOps
- Application security
- SaaS security
- AWS
- Azure
- Vulnerability management
- SAST
- DAST
- SCA
- IaC security
- CSPM
- Container security
- Kubernetes security
- SBOM
- Supply-chain security
- Red teaming
- Offensive security
- Threat modeling
- Secure code review
- Cryptography
- OAuth
- OIDC
- API security
- LLM security
- Prompt injection
- Python
- Go
- Terraform
- CI/CD
Habilidades mencionadas
Boca Raton, Florida, United States; New York, United States
Postúlate a este puesto
Use the application link supplied with this listing to apply to DigitalBridge Group, Inc.. Check the destination before entering personal information.
