Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Principal Engineer - Security Architecture

$250k - $315k

DDN Storage

Principal Engineer – Security Architecture

DDN is seeking a highly accomplished Principal Engineer – Security Architecture to define and drive the security strategy for next-generation distributed storage platforms spanning S3-compatible object storage, POSIX-compliant file systems, and KV cache–based data services. This role is responsible for architecting secure-by-design systems across the data path, control plane, and ecosystem/protocol layers that power high-performance, multi-tenant, AI-driven infrastructure at massive scale.

As a senior technical leader, you will partner closely with storage architects, protocol engineers, platform teams, and security stakeholders to embed advanced security principles into every layer of the platform lifecycle. You will influence long-term architectural direction, establish foundational security standards, and guide implementation across globally distributed engineering organizations.

The ideal candidate combines deep expertise in distributed systems security, cryptography, identity and access management, multi-tenant architectures, and infrastructure security with the ability to drive cross-functional technical strategy and execution.

Key Responsibilities

  • Define and lead the long-term security architecture strategy for distributed storage platforms, including S3-compatible object storage, POSIX/NFS file systems, and KV cache–based data services.
  • Establish security architecture standards and secure-by-design principles across data path, control plane, orchestration, and protocol layers.
  • Partner with Data Path engineering teams to secure high-performance data movement across storage tiers, including encryption, integrity verification, secure I/O handling, and low-latency protection mechanisms.
  • Drive security architecture reviews, threat modeling, and Secure Software Development Lifecycle (SSDLC) practices across platform engineering initiatives.
  • Architect enterprise-grade Identity and Access Management (IAM) frameworks integrating LDAP, Active Directory, OIDC, Keycloak, SSO, MFA, federation, and delegated authorization models.
  • Design and govern fine-grained authorization systems leveraging RBAC, ABAC, metadata-aware policy enforcement, and tenant-scoped access controls.
  • Define scalable multi-tenant isolation architectures across namespaces, encryption boundaries, policies, quotas, and workload segregation domains while enforcing least privilege principles.
  • Collaborate with Control Plane engineering teams to design secure APIs, authentication workflows, policy orchestration, tenant lifecycle management, and platform governance controls.
  • Partner with Protocol and Ecosystem teams to secure S3, POSIX/NFS, and related interfaces, including request signing, session security, endpoint hardening, and protocol-level protections.
  • Lead platform-wide encryption and key management strategies for data at rest and in transit, including BYOK, tenant-scoped keys, dataset-level encryption policies, KMIP integration, and external KMS interoperability.
  • Define observability, telemetry, logging, auditing, and anomaly detection strategies to identify abnormal behavior, insider threats, and potential data exfiltration risks.
  • Drive adoption of Zero Trust security principles across distributed systems and infrastructure components.
  • Provide technical leadership, mentorship, and architectural guidance across cross-functional engineering teams, influencing secure implementation practices and platform evolution.
  • Represent security architecture initiatives in executive, customer, compliance, and strategic partner discussions as needed.

Required Qualifications

  • Bachelor's or Master's degree in Computer Science, Engineering, Cybersecurity, or a related technical field.
  • 12+ years of experience in security architecture, distributed systems security, infrastructure security, or large-scale platform engineering.
  • Proven track record designing and securing large-scale distributed systems, storage platforms, or cloud-native infrastructure.
  • Deep understanding of distributed system architectures, including data path and control plane security models.
  • Extensive expertise in cryptography, encryption frameworks, secure key management systems, and PKI architectures.
  • Strong experience integrating external KMS platforms using KMIP or equivalent protocols.
  • Advanced knowledge of IAM frameworks, including RBAC, ABAC, SSO, MFA, federation, delegated authorization, and policy-driven access control systems.
  • Experience integrating enterprise identity providers such as LDAP, Active Directory, OIDC, and SAML-based systems.
  • Expertise in secure API design, TLS 1.3, mutual TLS, request signing mechanisms (e.g., SigV4), and service-to-service authentication models.
  • Experience designing secure multi-tenant platforms with strong isolation, governance, and policy enforcement mechanisms.
  • Strong understanding of security observability, logging, auditability, SIEM integration, and compliance-driven monitoring architectures.
  • Demonstrated ability to influence technical direction and drive cross-functional architectural initiatives across engineering organizations.

Preferred Qualifications

  • Experience securing S3-compatible object storage, POSIX/NFS file systems, or high-performance distributed storage environments.
  • Familiarity with AI/ML infrastructure security, KV cache architectures, memory tiering systems, and GPU-centric distributed environments.
  • Experience integrating and managing security solutions across large-scale infrastructure platforms, including cloud, network, and application security domains.
  • Hands-on experience with BYOK architectures, tenant-scoped key management, and cryptographic isolation models.
  • Experience implementing ABAC using metadata classification, tagging, and contextual policy evaluation.
  • Strong background in Zero Trust architecture and distributed systems security engineering.
  • Knowledge of secure deletion techniques, including cryptographic erasure and secure lifecycle management.
  • Familiarity with compliance frameworks such as SOC 2, ISO 27001, NIST, FedRAMP, and enterprise security governance standards.
  • Experience designing security controls for high-throughput, low-latency distributed systems.
  • Familiarity with anomaly detection, behavioral analytics, and advanced security telemetry platforms.
  • Experience with Linux systems, scripting, automation, DevSecOps workflows, and infrastructure security tooling.

Salary Range for this role: $250,000 - $315,000

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Principal Engineer - Security Architecture in United States vacancy
  • $187k - $318k

     ...learn, communicate and advance faster than ever. As a Principal Security Firmware Engineer on Micron's enterprise SSD team, you will design and...  ...Security Development Lifecycle, from threat modeling and architecture through implementation, testing, and certification. You... 
    Suggested
    Full time
    Local area
    Immediate start

    Micron Technology

    San Jose, CA
    2 days ago
  • $165k - $242k

     ...Security Engineering Manager, Network Security Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA CoreWeave is The Essential...  ...to influence how next generation network fabrics, overlay architectures, and infrastructure offload technologies are built and operated... 
    Suggested
    Temporary work
    Flexible hours

    CoreWeave

    Bellevue, WA
    4 days ago
  •  ...work to identify vulnerabilities, develop secure systems, and provide proactive...  ...safeguard sensitive data. Those in security architecture at PwC will focus on designing and implementing...  ...in network security, cybersecurity engineering, or security consulting, including... 
    Suggested

    PwC (US)

    Boston, MA
    4 days ago
  •  ...OpenAI is looking for a Principal Software Engineer to join the Infrastructure Security team. This role involves designing and implementing high-scale security systems critical to safeguarding OpenAI's technology and user data. Candidates should possess strong software... 
    Suggested

    OpenAI

    New York, NY
    5 days ago
  •  ...Principal Engineer of Security Operations At Digital Turbine, we make mobile advertising experiences more meaningful and rewarding for users, app publishers, and advertisers — intelligently connecting people in more ways, across more devices. We provide app publishers... 
    Suggested
    Full time

    Digital Turbine

    Austin, TX
    3 days ago
  • $280k - $385k

    A leading data and AI infrastructure company is seeking a senior leader in Data Security to craft a vision for Authentication. The candidate will mentor engineering talent and drive data-driven security decisions. Requires 10+ years in Data Security and a Master's or Ph... 
    Remote work

    Databricks

    Mountain View, CA
    5 days ago
  • $206k - $303k

     ...company (Nasdaq: CRWV) in March 2025. Learn more at The Security Products organization at CoreWeave builds the identity, encryption...  ...! About the role CoreWeave is seeking a Staff or Principal Engineer for our Security Products team to lead the technical... 
    Permanent employment
    Temporary work
    Casual work
    Work at office
    Remote work
    Flexible hours

    CoreWeave

    New York, NY
    5 days ago
  •  ...future. Are you ready to drive engineering activities that will take Spectrum's telecommunications and security operations to new heights? As a Principal Engineer I, you will collaborate...  ...in network design, network architecture, protocols and network topology... 
    Work experience placement
    Work at office
    Local area
    Visa sponsorship

    Charter Communications

    Charlotte, NC
    4 days ago
  •  ...About this role: Application Security enhances the ability of the development organization...  .... Wells Fargo is seeking a Principal Engineer who will lead a team of Application Security...  ...expertise in: Secure application architecture and design Secure coding practices... 
    Work experience placement
    Work at office
    Remote work
    2 days per week
    3 days per week

    Wells Fargo

    Chandler, AZ
    4 days ago
  •  ...Security Engineer – Architecture & Engineering This role will be on-site at least 4 days per week for teamwork and collaboration! The Security Engineer – Architecture & Engineering will: Design and drive secure architecture solutions that protect Disney's... 
    Work experience placement

    The Walt Disney Studios

    Orlando, FL
    1 day ago
  •  ...Amazon Artificial General Intelligence (AGI) Security Engineer The Amazon Artificial General Intelligence (AGI) organization is focused...  ...developing highly autonomous systems through novel model architectures, learning, and inference strategies. The team works on creating... 

    Amazon

    Austin, TX
    10 hours ago
  •  ...ManTech is looking for a visionary Senior Principal Cyber Security Engineer to join their Enterprise Cyber Security Team. You will be instrumental in engineering automated and secure environments that protect critical assets. The role requires extensive experience in Cyber... 

    ManTech

    New York, NY
    5 days ago
  • $347k

     ...About the Team Security is at the foundation of OpenAI's mission to ensure that artificial general intelligence benefits...  ...security culture. About the Role OpenAI is seeking a Principal Security Engineer to join our Infrastructure Security (InfraSec) team.... 

    OpenAI

    San Francisco, CA
    5 days ago
  • $240k - $379.5k

     ...of how work gets done across engineering and enterprise workflows! As...  ..., the identity and security controls built primarily for...  ...reliably. We are seeking a Principal Engineer to help define and...  ...relevant platform teams to align architecture with real workflow needs and... 

    NVIDIA

    Santa Clara, CA
    2 days ago
  • $277.6k

     ...Principal Security Engineer, Infrastructure Security Security - Remote - US, New York City, Seattle, and San Francisco Security is at the foundation...  ...adversarial pressure. In this role, you will: Own the architecture and roadmap for one or more core security services (e.g.,... 
    Remote work

    OpenAI

    Los Angeles, CA
    2 days ago
  • A global law firm is seeking a Principal Security Engineer to manage their information security systems and processes. The ideal candidate has over 7 years of experience in information security engineering, extensive knowledge of SIEM systems, and the ability to analyze... 
    Remote work

    Insight Global

    New York, NY
    11 days ago
  • $120.5k - $231k

     ...you’ll be doing... The Verizon Network Security team is looking for a highly motivated and experienced Principal Engineer to join the Net-Sec Defense Organization under...  ...be required to understand complex network architectures utilizing various protocols, topologies,... 
    Full time
    Temporary work
    Part time
    Work experience placement
    Work at office
    Work from home
    Shift work
    3 days per week

    Verizon

    Southlake, TX
    5 days ago
  •  ...contracting firm is seeking a Senior Network Engineer III to design, implement, and maintain complex network architectures supporting mission operations primarily in the...  ...routing and switching technologies, network security, and troubleshooting. The candidate should possess... 

    Barbaricum

    Indianapolis, IN
    1 day ago
  • A leading technology firm in New Hampshire seeks a Principal Engineer & Technical Leader to drive innovative airport security screening solutions. The role involves leading a team to develop advanced threat detection algorithms using machine learning and deep learning... 
    Flexible hours

    Analogic

    Salem, NH
    2 days ago
  •  ...California The client is an AI-powered revenue architecture platform. It enables companies to...  ...in pipelines, IaC, post‑mortems, and security reviews alongside your team. You will...  ...Develop the Team Hire, onboard, and mentor engineers. Actively participate in recruiting;... 

    GuruLink

    San Francisco, CA
    2 days ago
  •  ...Job Description Job Summary The Principal Engineer is responsible for the technical supervision...  ...Own the technical solution design and architecture for assigned programs Provide...  ...with schedule and budget constraints Security Clearance U.S. citizenship required... 
    For subcontractor
    Work at office

    AVT Simulation

    Orlando, FL
    1 day ago
  •  ...Senior Cyber Security Engineer - AI Security Architecture Job Type: Full-Time Location Type: Hybrid Primary Location: Atlanta, Georgia, US Alternate Locations: Newell Brands is a leading consumer products company with a portfolio of iconic brands like Graco®, Coleman... 
    Full time

    Newell Brands

    Atlanta, GA
    4 days ago
  • A leading AI research firm in San Francisco seeks a Principal-level Offensive Security Engineer to enhance its security posture. This role involves hunting for vulnerabilities, conducting red team operations, and collaborating with defensive teams to secure AI-powered products... 

    OpenAI

    San Francisco, CA
    4 days ago
  •  ...Summary: Our client is seeking a Principal System Interoperability Engineer with an active Secret Security Clearance for a role based at Hanscom Air...  ...erial networks Over-the-air communications architectures RF communications and systems... 

    Macpower Digital Assets Edge

    Bedford, MA
    4 days ago
  • $220.8k - $276k

    A leading technology firm is seeking a candidate for a customer-facing pre-sales role focusing on enterprise solutions in New York. Responsibilities include driving customer opportunities, integrating products, and managing relationships with customers and technology partners...
    Remote work
    Flexible hours

    Cohesity

    New York, NY
    3 days ago
  • $307k - $427k

     ...Qualifications Bachelor's degree in Computer Science or Electrical Engineering, or equivalent practical experience. 15 years of...  ...systems. About the Job As the Cloud Networking AI Principal Engineer for Network Security, you will provide strategic direction to Google’s... 
    Full time

    Google Inc.

    Sunnyvale, CA
    3 days ago
  • $270k - $300k

     ...will lead strategic identity security initiatives across the...  ...highly collaborative technical engineer who can execute at both the...  ...~ Serve as the engineering principal on implementing secure identity practices in technology architectures, including the enterprise IdP... 
    Daily paid
    Local area
    Remote work

    JLL

    Houston, TX
    5 days ago
  • General Dynamics Information Technology is seeking a Senior Principal Network Engineer in Germantown, MD. This role involves designing,...  ...complex network systems that ensure optimal performance and security for government programs. Candidates should have over 10 years... 

    General Dynamics Information Technology

    Germantown, MD
    2 days ago
  • Sonar in Austin, Texas, is looking for a Principal Support Engineer to lead IT infrastructure management and support. With over 10 years of experience, you'll handle complex issues, mentor junior engineers, and implement best practices to enhance operational efficiency... 

    Sonar

    Austin, TX
    5 days ago
  • Flagstar Bank is looking for a Principal Technology Engineer to manage backend systems in Troy, MI. This expert role requires a strong focus on Microsoft 365 environments and data governance, ensuring compliance with regulatory guidelines while leading cross-functional... 

    Flagstar Bank

    Troy, MI
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Principal Engineer - Security Architecture. Be the first to apply!