Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Principal Engineer, Security

$244k - $366k

Klaviyo

Job Description

Job Description

At Klaviyo, we value the unique backgrounds, experiences and perspectives each Klaviyo (we call ourselves Klaviyos) brings to our workplace each and every day. We believe everyone deserves a fair shot at success and appreciate the experiences each person brings beyond the traditional job requirements. If you're a close but not exact match with the description, we hope you'll still consider applying. Want to learn more about life at Klaviyo? Visit klaviyo.com/careers to see how we empower creators to own their own destiny.

Klaviyo's platform sends billions of messages and processes petabytes of customer data for hundreds of thousands of businesses. As we scale up-market and embed AI/agentic systems throughout our product and platform, security must be built into the foundation, not bolted on. The Principal Engineer, Security is a hands-on IC who owns Klaviyo's infrastructure security architecture: IAM, secrets management, network defenses, vulnerability management, security tooling, and the compliance controls that underpin our enterprise and regulatory obligations.

This is an individual-contributor role, no direct reports. You lead through technical depth, code, and design quality, partnering closely with the Core Infrastructure PE, SRE, and AppSec teams to make "secure by default" a reality for every engineering team at Klaviyo.

What You'll Do

  • Define and own Klaviyo's infrastructure security architecture: IAM frameworks, service-to-service auth, secrets management, network segmentation, and production access controls, designed to scale with our multi-tenant, multi-region footprint.
  • Build and maintain security guardrails as IaC modules; codify controls into golden paths that teams inherit automatically so security improves with velocity, not against it.
  • Own the vulnerability management program: SLO-backed triage and remediation, trend tracking, and systemic fixes, turn recurring vulnerability classes into solved engineering problems.
  • Define the security SLO and compliance framework for production infrastructure; run readiness reviews, communicate posture clearly to engineering and exec stakeholders.
  • Author security ADRs and RFCs; partner with the Core Infrastructure PE to embed security controls in CI/CD pipelines, paved roads, and the observability stack.
  • Lead threat modeling and security design reviews for high-risk architectural changes, accelerate delivery by making reviews lightweight and high-signal.
  • Partner with SRE, AppSec, and FinOps on cross-cutting initiatives: zero-trust progress, GDPR/compliance guardrails, and audit readiness for SOC 2/ISO 27001.
  • Write high-impact code, automation, and tooling; mentor Staff and Senior security engineers across teams through design pairing, code review, and example.
  • Transform workflows by putting AI at the center, building smarter systems and ways of working from the ground up.

Who You Are

  • Experience: 10+ years in infrastructure or platform security engineering, with a track record of shipping security improvements that measurably reduced risk or improved compliance posture at scale.
  • Technical depth: Deep in cloud infrastructure security (AWS/GCP IAM, service mesh mTLS, secrets management, network defenses); you architect and ship production controls, not just audit them.
  • SLO and compliance rigor: You define security SLOs, track MTTR for vulnerabilities, and communicate risk posture clearly; you translate security work into business language that non-security stakeholders act on.
  • Developer-centric mindset: You build tools and guardrails that other engineers adopt because they make their work easier—not because they're required to.
  • Cross-org influence: You align teams through threat models, security reviews, and IaC guardrails; you earn credibility via code, design quality, and clear reasoning, not title.
  • Operational excellence: You've been on-call for security incidents. You write runbooks, lead readiness reviews, and treat recurring vulnerabilities as systemic engineering problems.
  • Communication: You write crisp ADRs and RFCs, run effective security design reviews, and translate risk exposure into decisions business stakeholders can act on.
  • AI tools and automation: You've brought AI into security engineering, automated threat detection, intelligent vulnerability triage, AI-assisted compliance checks, or security copilots—with explicit guardrails and audit trails.
  • You've already experimented with AI in work or personal projects, and you're excited to dive in and learn fast. You're hungry to responsibly explore new AI tools and workflows, finding ways to make your work smarter and more efficient.

Nice to Haves

  • Experience with zero-trust architecture and progressive access control in a large multi-tenant SaaS environment.
  • Deep familiarity with enterprise compliance frameworks (SOC 2, ISO 27001, GDPR) and the infrastructure controls that underpin them.
  • Track record of embedding security tooling into CI/CD and IaC pipelines adopted org-wide.
  • Experience securing AI/ML systems: model access controls, data privacy guardrails, and agentic system security boundaries.

Success in 6 - 12 Months

  • Security guardrails codified as IaC modules and enforced in paved roads; IAM and secrets management posture measurably improved.
  • Security SLO framework established; MTTR for critical vulnerabilities trending down; recurring vulnerability classes addressed systemically.
  • Zero-trust progress measurable against defined milestones; demonstrable audit readiness for SOC 2 / ISO 27001.

Massachusetts Applicants:
It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Our salary range reflects the cost of labor across various U.S. geographic markets. The range displayed below reflects the minimum and maximum target salaries for the position across all our US locations. The base salary offered for this position is determined by several factors, including the applicant's job-related skills, relevant experience, education or training, and work location.

In addition to base salary, our total compensation package may include participation in the company's annual cash bonus plan, variable compensation (OTE) for sales and customer success roles, equity, sign-on payments, and a comprehensive range of health, welfare, and wellbeing benefits based on eligibility.

Your recruiter can provide more details about the specific salary/OTE range for your preferred location during the hiring process.

Base Pay Range For US Locations:

$244,000—$366,000 USD

This role may require up to 10% travel for purposes such as new hire onboarding, client or partner work if applicable, team meetings, and industry events. Travel is coordinated in advance.

Get to Know Klaviyo

We're Klaviyo (pronounced clay-vee-oh). We empower creators to own their destiny by making first-party data accessible and actionable like never before. We see limitless potential for the technology we're developing to nurture personalized experiences in ecommerce and beyond. To reach our goals, we need our own crew of remarkable creators—ambitious and collaborative teammates who stay focused on our north star: delighting our customers. If you're ready to do the best work of your career, where you'll be welcomed as your whole self from day one and supported with generous benefits, we hope you'll join us.

AI fluency at Klaviyo includes responsible use of AI (including privacy, security, bias awareness, and human-in-the-loop). We provide accommodations as needed.

By participating in Klaviyo's interview process, you acknowledge that you have read, understood, and will adhere to our Guidelines for using AI in the Klaviyo interview Process. For more information about how we process your personal data, see our Job Applicant Privacy Notice.

Klaviyo is committed to a policy of equal opportunity and non-discrimination. We do not discriminate on the basis of race, ethnicity, citizenship, national origin, color, religion or religious creed, age, sex (including pregnancy), gender identity, sexual orientation, physical or mental disability, veteran or active military status, marital status, criminal record, genetics, retaliation, sexual harassment or any other characteristic protected by applicable law.

IMPORTANT NOTICE: Our company takes the security and privacy of job applicants very seriously. We will never ask for payment, bank details, or personal financial information as part of the application process. All our legitimate job postings can be found on our official career site. Please be cautious of job offers that come from non-company email addresses (@klaviyo.com), instant messaging platforms, or unsolicited calls.

By clicking "Submit Application" you consent to Klaviyo processing your Personal Data in accordance with our Job Applicant Privacy Notice. If you do not wish for Klaviyo to process your Personal Data, please do not submit an application. You can find our Job Applicant Privacy Notice here and here (FR).

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Principal Engineer, Security in Boston, MA vacancy
  • $147k - $237.5k

     ...of a culture that values trust, accountability, and shared success where your work truly matters. Job Summary As a hands-on Security Engineer, you will play a crucial role within the infrastructure engineering team. Your responsibilities include defining and building... 
    Suggested
    Remote work
    Flexible hours

    Palo Alto Networks

    Boston, MA
    4 days ago
  • $107.5k - $204.5k

     ...research, integrate with defense and intelligence communities, and secure external funding. Responsibilities Build and advance a Cyber/...  ...expertise in cybersecurity R&D (binary analysis, reverse engineering, protocols, cyber capability development). Experience in technical... 
    Suggested
    Work experience placement
    Relocation package
    Flexible hours

    Prattwhitney

    Cambridge, MA
    3 days ago
  •  ...A government contractor is seeking an experienced Network Engineer in Boston. This role focuses on enhancing and maintaining a large-scale...  ...experience in network management, and knowledge of network security protocols. Benefits include health insurance, 401k, and paid time... 
    Suggested
    For contractors

    CGS Federal (Contact Government Services)

    Boston, MA
    3 days ago
  • $171k - $268k

     ...Region: Americas Country: USA State/Province: New Hampshire City: Remote Employee US Description This position is for a Principle Engineer / Networking System Architect. As system architect, one will define the architecture of network products and systems, lead new technology... 
    Suggested
    Local area
    Remote work

    Celestica

    Boston, MA
    3 days ago
  •  ...Job Description Job Description Pickle Robot is on the hunt for a Principal Mechanical Engineer to help shape the next generation of warehouse automation. Our robots do the toughest job on the dock: unloading trucks. We’re scaling fast, and at this level, you won’t... 
    Suggested
    Work at office

    Pickle Robot Company

    Charlestown, MA
    15 days ago
  • A leading IT solutions provider is seeking a skilled Network Engineer to manage and maintain their network infrastructure. This hybrid role involves overseeing network performance, troubleshooting complex issues, and ensuring the seamless operation of network services.... 

    DeWinter Group

    Boston, MA
    2 days ago
  • $80k - $95k

    An educational institution in Boston is seeking a skilled Network Engineer to manage and maintain its wired and wireless network infrastructure. The ideal candidate will have at least 4 years of experience in network engineering, expertise in Extreme Networks, Aruba Networks... 

    Suffolk University

    Boston, MA
    5 days ago
  • 6AM City, LLC in New Hampshire is seeking a Network Engineer to manage network infrastructure, ensure high performance, and troubleshoot...  .... The role involves designing network solutions, implementing security measures, and staying updated with industry trends. Communication... 

    6AM City, LLC

    Boston, MA
    2 days ago
  • A technology solutions provider is seeking a Help Desk Lead in Boston. This role involves installing, supporting, and maintaining IT systems. Successful candidates must have significant experience in Information Technology, familiarity with VMWare vCloud, and specific technical...
    Local area
    Relocation
    Relocation package

    USM

    Boston, MA
    4 days ago
  • $62.4k - $78k

    DraftKings is seeking a Security Technology Engineer to drive the protection and scalability of our global operations. You will manage electronic security platforms and lead system upgrades while ensuring compliance and optimization. The ideal candidate has over 5 years... 

    National Geographic

    Boston, MA
    2 days ago
  • $144.2k - $288.4k

     ...family and one community at a time. Position Summary The Principal Network Engineer - AI Infrastructure plays a key role in building the high‑...  ...initiatives. Working closely with engineering, platform, and security partners, this role helps connect network, compute, and... 
    Hourly pay
    Full time
    Temporary work
    Local area
    Immediate start
    Remote work

    Koitecc Solutions

    Boston, MA
    5 days ago
  • $108.25k - $130k

    Senior Engineer, Information Security, Architecture and Engineering - Technology Solutions Group Job ID 105237 Work Areas Technology & Engineering Employment Type Permanent Full-Time Location(s) Boston, Chicago Description & Requirements WHAT YOU’LL DO SaaS security... 
    Permanent employment
    Full time
    Work experience placement
    Work at office
    Local area
    1 day per week

    Bain & Company

    Boston, MA
    1 day ago
  • $135k - $220k

     ...A digital engineering software company in Cambridge, MA is seeking a Federal Infrastructure Engineer. This role involves supporting platform installations and ensuring compliance with Department of Defense cybersecurity standards. Candidates should have strong skills in... 
    Remote work

    Tari Labs

    Cambridge, MA
    3 days ago
  • $53.28k - $218.48k

    Noblis is hiring Test / Implementation Engineers to support the FAA’s Air Traffic Systems. The role involves testing and implementing solutions for the National Airspace System, executing procedures, optimizing network architecture, and assisting in software systems development... 

    Noblis

    Boston, MA
    5 days ago
  •  ...investment and private equity firm is hiring a full-time Infrastructure Engineer to support and enhance enterprise infrastructure operations...  ...senior IT leadership, support cutting-edge infrastructure and security initiatives, and gain exposure to advanced networking,... 
    Full time

    Motion Recruitment Partners LLC

    Boston, MA
    3 days ago
  •  ...The RuneScape Company as a Cyber Tooling and Automations Specialist. This role allows you to leverage your expertise in coding and security operations to enhance our cyber resilience. You'll work with innovative teams to design and implement automation solutions that... 
    Remote job
    Flexible hours

    Jagex: The RuneScape Company

    Cambridge, MA
    2 days ago
  • $141k - $169.25k

     ...who friends and family still call for tech advice, this might be a great team for you. WHERE YOU’LL FIT WITHIN THE TEAM Staff Security Engineers are responsible for the security posture of the full PE platform estate, hosted on Microsoft Azure and running on Azure... 
    Full time
    Work at office
    Local area
    1 day per week

    Bain & Company

    Boston, MA
    1 day ago
  • $175.2k - $262.8k

    Lead Security Engineer, Enterprise Security IT & Security At Klaviyo, we value the unique backgrounds, experiences and perspectives each Klaviyo (we call ourselves Klaviyos) brings to our workplace each and every day. We believe everyone deserves a fair shot at success... 

    Klaviyo

    Boston, MA
    3 days ago
  • $100k - $172.5k

     ...more at Job Function: Technology Enterprise Strategy & Security Job Sub Function: Solution Architecture Job...  ...Description: We are searching for the best talent for a Principal Product Security Engineer to be located in Danvers, MA or Raritan, NJ. Remote... 
    Full time
    Temporary work
    Work at office
    Local area
    Immediate start
    Remote work
    3 days per week

    Johnson & Johnson

    Cambridge, MA
    2 days ago
  • $77.5k - $140.9k

    Ernst & Young Oman is seeking an Application Security Engineer responsible for managing development platforms and security tools, with a focus on application security throughout the software development lifecycle. The ideal candidate will have a Bachelor's degree in a relevant... 

    Ernst & Young Oman

    Boston, MA
    2 days ago
  • $222k - $278k

    A code security company is looking for a Senior Security Engineer to enhance product security. This role involves collaborating with engineering teams to ensure secure application development and infrastructure management. Ideal candidates will have 7+ years of experience... 
    Work at office

    Semgrep

    Boston, MA
    2 days ago
  • $105.6k - $145.2k

     ...partner with enterprise customers to achieve their cybersecurity objectives. The role requires 3+ years of experience in information security, knowledge of cyber operations, and excellent communication skills. The firm offers a competitive salary between $105,600 - $145,2... 
    Remote job
    Flexible hours

    Immersive Dynamics Inc.

    Boston, MA
    5 days ago
  • $95k - $245k

     ...solutions. From military defense and space exploration to biomedical engineering, lives often depend on the solutions we provide. Our...  ...position will be required to obtain and maintain a government security clearance. Secret clearance is desired. Location Cambridge, Massachusetts... 
    Full time

    The Charles Stark Draper Laboratory, Inc.

    Cambridge, MA
    2 days ago
  • $95k - $245k

     ...defense and space exploration to biomedical engineering, lives often depend on the solutions we...  ...Bioengineering Division is seeking a Principal scientist to support the research and...  ...to obtain and maintain a government security clearance.Connect With Draper for Future... 
    Full time
    Work at office
    Local area

    Draper

    Cambridge, MA
    4 days ago
  • A leading engineering firm is seeking a Principal Engineer specialized in Aseptic Processing & Fill/Finish. This critical role involves leading design programming for aseptic processes, ensuring compliance with FDA/EMA guidelines, and developing strong client relationships... 

    Barry-Wehmiller Companies Inc.

    Boston, MA
    1 day ago
  • $95k - $245k

    Principal Scientist - Bioengineering Division Job Summary Draper is seeking a Principal...  ...matter expert in microfluidics and tissue engineering. Responsibilities Independently drive...  .../or engineering principles. Location & Security Cambridge, Massachusetts (ZIP 02139-356... 
    Work at office

    The Charles Stark Draper Laboratory, Inc.

    Cambridge, MA
    4 days ago
  • $95k - $245k

    ## Principal Radiation Architecture EngineerApplyremote type: Onsite Requiredlocations:...  ...defense and space exploration to biomedical engineering, lives often depend on the solutions we...  ...to obtain and maintain a government security clearance.Connect With Draper for... 
    Full time
    Local area

    Inuplands

    Cambridge, MA
    2 days ago
  • $144k - $216k

    Principal, Collaboration & Productivity Platforms page is loaded## Principal, Collaboration & Productivity Platformslocations: Boston,...  ...for these services, ensuring they meet evolving business and security requirements.* Own the end-to-end platform lifecycle for Smartsheet... 
    Summer work
    Work at office
    Remote work
    Flexible hours
    Shift work
    2 days per week

    Vertex Pharmaceuticals

    Boston, MA
    5 days ago
  •  ...Planning team to define motion planning and control systems for secure, effective, and comfortable fleet operation in complex...  ...senior team members, cultivating a culture of product‑focused engineering, rigorous research, and advanced development. What we're looking... 

    Motional AD Inc.

    Boston, MA
    5 days ago
  • Description We are seeking a highly skilled and motivated Principal Front-Office Engineer to join our prestigious investment firm. As a Principal Front-Office Engineer, you will serve as the technical lead embedded within the Investment Innovation, Integration & Trading... 
    Work at office
    Local area
    3 days per week

    Liberty Mutual Insurance

    Boston, MA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Principal Engineer, Security. Be the first to apply!