Talent.com
Principal Security Engineer

Principal Security Engineer

Patelco Credit UnionDublin, CA, United States
10 hours ago
Job type
  • Full-time
  • Part-time
Job description

About Patelco Credit Union

Patelco Credit Union is a not-for-profit credit union with a purpose to build financial health and wellbeing for our members. Since 1936, Patelco has grown from $500 in assets to over $9 billion in assets and is the 7th largest credit union in California with branches throughout Northern California.

We are here for our members throughout all their stages of life. Meeting them with the products and services to help them plan purposefully for their futures and to secure our life-long partnership as their trusted financial advocate. As one team, we are all committed to delivering service, empowering financial literacy, creating products, and providing new technology for our members.

We believe that work should be rewarding, challenging, and enjoyable. We're dedicated to creating a positive and supportive culture where our team members can thrive. If you're looking to use your skills and knowledge to make a difference in our members' lives, Patelco could be the perfect fit for you.

Overview

The Principal Security Engineer serves as a senior technical authority within the Security Engineering and Operations team, operating at an equal level to the Manager role but focused on technical leadership rather than people management. This position requires deep expertise across multiple security domains including security architecture, cloud security, application security, vulnerability management, threat modeling, and security automation.

The Principal Security Engineer acts as the technical escalation point for complex security challenges, leads architectural decisions for security platforms and controls, and drives innovation in security engineering practices. This role bridges strategic security initiatives with hands-on technical implementation, partnering closely with the Manager, Security Engineering and Operations to advance the organization's security posture.

The successful candidate combines extensive technical expertise with the ability to influence cross-functional teams, translate business requirements into technical solutions, and mentor security engineers in advanced concepts and methodologies.

Responsibilities

  • Security Architecture & Strategic Planning

Design and evolve enterprise security architecture across endpoints, network, cloud, identity, and application layers

  • Lead architecture reviews and provide authoritative guidance on security design patterns, technology selection, and implementation approaches
  • Develop multi-year technical roadmaps for security platform evolution and capability maturity
  • Perform comprehensive threat modeling using STRIDE, DREAD, and PASTA methodologies to identify risks in systems, applications, and emerging technologies
  • Define security reference architectures and design patterns for cloud-native, hybrid, and on-premises environments
  • Evaluate emerging security technologies and provide strategic recommendations for platform consolidation or enhancement
  • Cloud Security & Infrastructure
  • Architect and implement cloud security controls across AWS, Azure, and / or GCP environments

  • Design and deploy Cloud Security Posture Management (CSPM) solutions with automated remediation capabilities
  • Implement Infrastructure as Code (IaC) security scanning and policy enforcement using tools such as Terraform, CloudFormation security analysis
  • Lead cloud security initiatives including Container Security, Kubernetes security hardening, and serverless security architectures
  • Design and implement Cloud Access Security Broker (CASB) solutions and data loss prevention controls
  • Establish cloud security baselines aligned with CIS Benchmarks and industry frameworks
  • Application Security & DevSecOps
  • Lead enterprise Application Security (AppSec) program strategy and technical implementation

  • Design and implement DevSecOps pipelines integrating SAST, DAST, SCA, and container scanning tools
  • Architect security gates and quality metrics within CI / CD pipelines across diverse development platforms
  • Conduct manual security code reviews and architecture assessments for high-risk applications
  • Develop secure coding standards, security design patterns, and security testing strategies
  • Partner with development teams to embed security champions programs and shift-left security practices
  • Lead remediation strategies for complex application vulnerabilities and secure software supply chain initiatives
  • Vulnerability Management & Risk Reduction
  • Design and optimize enterprise vulnerability management programs across IT and cloud infrastructure

  • Establish risk-based prioritization frameworks incorporating threat intelligence, asset criticality, and business impact
  • Lead technical remediation planning for critical and high-risk vulnerabilities
  • Perform technical risk assessments and develop compensating controls for accepted risks
  • Implement automated vulnerability scanning orchestration and continuous assessment capabilities
  • Collaborate with GRC team to translate technical vulnerabilities into business risk language
  • Security Automation & Engineering Excellence
  • Design and implement security automation workflows using SOAR platforms, scripting (Python, PowerShell), and orchestration tools

  • Build automated response playbooks for common security operations scenarios
  • Develop custom security tooling and integrations to address capability gaps
  • Architect security telemetry pipelines, log aggregation, and data normalization strategies
  • Lead infrastructure-as-code initiatives for security tool deployment and configuration management
  • Implement automated security testing frameworks and continuous validation mechanisms
  • Detection Engineering & Threat Intelligence
  • Collaborate with detection engineering teams to design advanced detection logic aligned with MITRE ATT&CK

  • Architect threat intelligence integration strategies to operationalize indicators, TTPs, and threat actor profiles
  • Design and implement purple team exercises to validate detection coverage and response capabilities
  • Contribute to behavioral analytics development and anomaly detection capabilities
  • Technical Leadership & Collaboration
  • Serve as technical escalation point for Security Engineering team and broader security organization

  • Lead complex, cross-functional security initiatives requiring coordination across IT, DevOps, Cloud, and Engineering teams
  • Provide technical mentorship to Senior Security Engineers and Security Analysts
  • Present technical architecture proposals and security strategies to senior leadership
  • Act as subject matter expert in incident response activities requiring deep technical analysis
  • Represent security engineering in architecture review boards and technical governance forums
  • Lead proof-of-concept evaluations for new security technologies and platforms
  • Standards, Compliance & Documentation
  • Develop and maintain security architecture documentation, design standards, and technical guidelines

  • Lead technical assessments for audit, regulatory, and compliance requirements (PCI DSS, GLBA, SOC 2)
  • Design and document security control implementations aligned with NIST CSF, CIS Controls, and ISO 27001
  • Create technical runbooks, architecture diagrams, and knowledge base articles
  • Ensure security architecture aligns with regulatory requirements for financial services
  • Understand and comply with all applicable federal and state laws and banking regulations (including those related to OFAC and Bank Secrecy Act / Anti-Money Laundering compliance) and Patelco Credit Union's policies and procedures.
  • Qualifications

  • Bachelor's degree in computer science, Cybersecurity, Information Security, or related technical discipline, or equivalent experience
  • 10+ years of experience in enterprise technology with 7+ years focused on information security engineering
  • 5+ years of hands-on experience designing and implementing security architectures for hybrid cloud environments
  • 3+ years of experience leading Application Security or DevSecOps programs with SAST / DAST / SCA implementations
  • Demonstrated expertise across multiple security domains : Cloud Security, Application Security, Network Security, Endpoint Security, Identity and Access Management
  • Proven experience with Infrastructure as Code security and DevSecOps pipeline integration
  • Strong proficiency in scripting and automation (Python, PowerShell, Bash, or similar)
  • Hands-on experience with threat modeling and security architecture design
  • Deep experience with vulnerability management platforms and risk assessment methodologies
  • Experience with security automation and SOAR platforms
  • Knowledge of detection engineering principles and MITRE ATT&CK framework
  • Experience in regulated industries such as financial services required
  • Professional security certifications required (one or more of the following) :
  • CISSP (Certified Information Systems Security Professional)
  • CCSP (Certified Cloud Security Professional)
  • CISM (Certified Information Security Manager)
  • GIAC certifications (GIAC Security Expert preferred)
  • Additional certifications preferred :
  • Cloud provider security certifications (AWS Certified Security Specialty, Azure Security Engineer, Google Cloud Security Engineer)
  • OSCP (Offensive Security Certified Professional)
  • CSSLP (Certified Secure Software Lifecycle Professional)
  • Strong understanding of security frameworks : NIST CSF, CIS Controls, ISO 27001, NIST 800-53
  • Understanding of FFIEC IT Examination Handbooks and financial services regulatory requirements
  • Demonstrated success leading complex security platform implementations or transformations
  • Proven ability to mentor engineers and drive technical excellence across teams
  • This is a hybrid located in Dublin HQ
  • May require occasional travel for conferences, training, or vendor meetings
  • Target Base Pay

    $165,255 / year

    Compensation at Patelco

    Please note that the salary information is a general guideline only. Patelco Credit Union considers factors such as (but not limited to) scope and responsibilities of the position, candidate's work experience, education / training, key skills, internal peer equity, as well as market and business considerations when extending an offer. We offer a competitive total rewards package including a wide range of medical, dental, vision, financial, and other benefits

    We Offer

    Physical Health :

  • Exceptional Medical, Dental, Vision, and Life Insurance benefits
  • Onsite fitness center at HQ and rewards for completing wellness related activities
  • Financial Health :

  • Competitive compensation packages with bonus opportunity
  • 401(k) with 3% Safe Harbor and 5% employer match
  • Discounts on loan products
  • Tuition reimbursement
  • Emotional Health :

  • Employee Assistance Program (EAP)
  • PTO for part-time and full-time positions
  • Paid holidays
  • Personal Development :

  • On-the-job training and skills development
  • Internal transfer opportunities for career growth
  • Volunteer work
  • Flexible work arrangements available for specific positions

    Patelco Credit Union is an Equal Opportunity Employer including individuals with disabilities and protected veterans

    IND123

    Create a job alert for this search

    Principal Security Engineer • Dublin, CA, United States

    Related jobs
    • Promoted
    • New!
    Principal Security Engineer

    Principal Security Engineer

    HighNoteSan Francisco, CA, United States
    Full-time
    Founded in 2020 by a team of leaders from Braintree, PayPal, and Lending Club, Highnote is an all in one card issuer processor and program management platform. We give digital-first organizations th...Show moreLast updated: 10 hours ago
    • Promoted
    • New!
    Offensive Security Engineer, Hardware

    Offensive Security Engineer, Hardware

    OpenAISan Francisco, CA, United States
    Full-time
    Security is at the foundation of OpenAI's mission to ensure that artificial general intelligence benefits all of humanity. The Security team protects OpenAI's technology, people, and products.We are...Show moreLast updated: 10 hours ago
    • Promoted
    Security Engineer

    Security Engineer

    Glow NetworksMountain View, CA, United States
    Full-time
    We are seeking a Security Engineer to design and implement Data Loss Protection capabilities for complex security use cases, identifying bad actor threat behaviors and preventing / reducing malicious...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Advanced Security Infrastructure Engineer (KPR3E)

    Advanced Security Infrastructure Engineer (KPR3E)

    Kasikorn Asset Management Co.,Ltd.Palo Alto, CA, United States
    Full-time
    Title : Advanced Security Infrastructure Engineer (KPR3E).Join KBTG where innovation drives impact! With a purposeful mission, collaborative spirit, and a positive attitude, we create fintech soluti...Show moreLast updated: 10 hours ago
    • Promoted
    Security Engineer

    Security Engineer

    Air AppsSan Francisco, CA, United States
    Full-time
    At Air Apps, we believe in thinking bigger-and moving faster.We're a family-founded company on a mission to create the world's first AI-powered Personal & Entrepreneurial Resource Planner (PRP), an...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Principal Security Engineer

    Principal Security Engineer

    Ethos LifeSan Francisco, CA, United States
    Full-time
    Ethos was built to make it faster and easier to get life insurance for the next million families.Our approach blends industry expertise, technology, and the human touch to find you the right policy...Show moreLast updated: 10 hours ago
    • Promoted
    Principal Cyber Security Engineer

    Principal Cyber Security Engineer

    Cloud Software Group, Inc.San Ramon, CA, United States
    Full-time
    Architectural Leadership : Design, develop, and maintain the comprehensive security architecture for Cloud Software Group's products and corporate infrastructure. Cloud Security Expertise : Lead the s...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Principal Cyber Security Engineer

    Principal Cyber Security Engineer

    Citrix Systems IncSan Ramon, CA, United States
    Full-time
    Architectural Leadership : Design, develop, and maintain the comprehensive security architecture for Cloud Software Group's products and corporate infrastructure. Cloud Security Expertise : Lead the s...Show moreLast updated: 10 hours ago
    • Promoted
    Security Engineer, Enterprise Infrastructure Security, Level 5

    Security Engineer, Enterprise Infrastructure Security, Level 5

    SnapPalo Alto, CA, United States
    Full-time
    Snap Inc () is a technology company.We believe the camera presents the greatest opportunity to improve the way people live and communicate. Snap contributes to human progress by empowering people to...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Security Engineer - Hybrid

    Security Engineer - Hybrid

    Workers' Compensation Insurance Rating Bureau of CaliforniaSan Francisco, CA, United States
    Full-time
    For over a century, the Workers' Compensation Insurance Rating Bureau of California (WCIRB) has been California's trusted, objective provider of actuarially based information and research, advisory...Show moreLast updated: 8 hours ago
    • Promoted
    • New!
    Principal Enterprise Security Engineer

    Principal Enterprise Security Engineer

    RobloxSan Mateo, CA, United States
    Full-time
    Every day, tens of millions of people come to Roblox to explore, create, play, learn, and connect with friends in 3D immersive digital experiences– all created by our global community of developers...Show moreLast updated: 10 hours ago
    • Promoted
    • New!
    Security Engineer

    Security Engineer

    Modular ServicesLos Altos, CA, United States
    Full-time
    At Modular, we're on a mission to revolutionize AI infrastructure by systematically rebuilding the AI software stack from the ground up. Our team, made up of industry leaders and experts, is buildin...Show moreLast updated: 10 hours ago
    • Promoted
    Security Engineer

    Security Engineer

    Magic AI Corp.San Francisco, CA, United States
    Full-time
    Magic's mission is to build safe AGI that accelerates humanity's progress on the world's most important problems.We believe the most promising path to safe AGI lies in automating research and code ...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    Mercor IncSan Francisco, CA, United States
    Full-time
    Mercor is at the intersection of labor markets and AI research.We partner with leading AI labs and enterprises to provide the human intelligence essential to AI development.Our vast talent network ...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Principal Cyber Security Engineer

    Principal Cyber Security Engineer

    Cloud Software GroupSan Ramon, CA, United States
    Full-time
    Architectural Leadership : Design, develop, and maintain the comprehensive security architecture for Cloud Software Group's products and corporate infrastructure. Cloud Security Expertise : Lead the s...Show moreLast updated: 10 hours ago
    • Promoted
    • New!
    Principal Platform Security Engineer (IAM)

    Principal Platform Security Engineer (IAM)

    Gemini, Inc.San Francisco, CA, United States
    Full-time
    Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and in...Show moreLast updated: 10 hours ago
    • Promoted
    Senior Offensive Security Engineer - Infrastructure & Cloud (Senior Security Engineer)

    Senior Offensive Security Engineer - Infrastructure & Cloud (Senior Security Engineer)

    IvaluaFremont, CA, United States
    Full-time
    Senior Offensive Security Engineer – Infrastructure & Cloud (Senior Security Engineer).Founded in 2000, Ivalua is a leading global provider of cloud-based procurement solutions.At Ivalua we are a g...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    Cardinal Integrated Technologies, Inc.Santa Clara, CA, United States
    Full-time
    Bachelor's degree in Information Technology or related field.Prior experience in partnering with cross-functional teams to deliver impactful security initiatives. Prior experience working on applica...Show moreLast updated: 30+ days ago