Principal Security Engineer (Remote - US) at Jobgether

We are redirecting you to the source. If you are not redirected in 3 seconds, please click here.

Principal Security Engineer (Remote - US) at Jobgether. This position is posted by Jobgether on behalf of SearchStax. We are currently looking for a Principal Security Engineer in the United States.. This role provides a unique opportunity to lead and shape the security posture of a fast-growing cloud-native platform, ensuring robust compliance and operational resilience. The Principal Security Engineer will architect, implement, and automate security controls aligned with FedRAMP standards, enabling scalable and secure infrastructure. You will work at the intersection of hands-on engineering and strategic oversight, collaborating with internal teams, external consultants, and auditors to maintain audit readiness. This position is ideal for a senior-level professional who thrives in a remote-first, high-impact environment and enjoys driving security automation, vulnerability management, and compliance initiatives while influencing engineering culture across the organization.. . Accountabilities. ·         Architect, implement, and maintain FedRAMP-based security controls, embedding automation into compliance strategies.. ·         Drive audit readiness through automated evidence collection, control validation, and remediation workflows.. ·         Manage vulnerability scanning, triage, prioritization, and remediation across infrastructure and product engineering teams.. ·         Develop scripts, APIs, and workflows (Python, JSON, databases, system-level coding) to automate compliance reporting and monitoring.. ·         Configure and secure AWS infrastructure using services like Config, SSM, IAM, CloudTrail, GuardDuty, and Security Hub.. ·         Collaborate with consultants, auditors, and vendors to achieve compliance objectives.. ·         Identify security gaps, recommend improvements, and continuously evolve security practices and controls.. ·         Maintain clear documentation of processes, train teams, and promote security awareness across the organization.. . ·         8+ years of experience in Security Engineering, Cloud Security, or Infrastructure Security.. ·         Hands-on experience architecting and implementing FedRAMP-based security controls, with familiarity in SOC2, ISO 27001, or HIPAA frameworks.. ·         Strong Python programming skills for system-level automation, including databases, APIs, and JSON.. ·         Deep expertise in AWS security and compliance, including Config, SSM, IAM, CloudTrail, GuardDuty, and related services.. ·         Experience leading vulnerability management programs at scale.. ·         Familiarity with Infrastructure as Code (Terraform, CloudFormation) and CI/CD pipelines with integrated security checks.. ·         Senior-level mindset: able to function as both strategic architect and hands-on executor.. ·         Excellent collaboration, communication, and leadership skills to influence cross-functional teams and engineering practices.. Company Location: United States.