This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We’re building a world-class global Security team as part of our Trust Program. We're seeking an experienced, adaptive and solutions-oriented Principal Security Engineer to join our expanding global Security Team at Highspot Hyderabad. As our engineering presence scales globally, we’re expanding our security footprint in our India Engineering hub to strengthen our 24/7 security coverage and deepen our ability to meet the evolving needs of our customers and product teams worldwide. You will help shape the operational direction of our security efforts in India. In this senior-level, cross-functional role, you'll contribute to both strategic direction and execution across multiple security domains- including application security, infrastructure scanning, security operations, and incident response. Your responsibilities include leading critical security initiatives, building partnerships with and mentor peers and leaders to foster a collaborative security-centered culture, drive proactive product security improvements and reviews, conducting advanced penetration tests, managing complex security incidents, and continuously enhancing our detection and response capabilities. Collaborate across regions and functions by partnering with security, IT, product engineering, and infrastructure teams globally including local and US-based colleagues to drive alignment, execution, and shared ownership of priorities. Your mentorship and technical expertise will directly influence the security posture of our product, our customers, and the broader organization. This role is integral to fostering an inclusive, collaborative, and globally-distributed security culture.
Job Responsibility:
Lead comprehensive application security assessments, advanced threat modeling sessions, and secure code reviews across critical product features, internal tooling, endpoints, and third-party integrations
Collaborate strategically with product engineering to establish and enhance secure-by-default and privacy-by-design practices within the software development lifecycle (SDLC)
Lead and otherwise participate in incident detection, investigation, triage, containment, and root cause analysis for high impact security incidents, providing mentorship and guidance to junior engineers as required
Drive the development and continuous improvement of sophisticated detection rules, response automation, and optimized alert management across cloud environments, corporate infrastructure, and SaaS platforms
Lead and participate in complex vulnerability remediation processes, and effectively respond to security issues discovered by both internal teams and external sources
Document technical findings and strategic decisions in a clear and accessible manner, and procedural enhancements
significantly contribute to comprehensive security playbooks and knowledge repositories
Manage and oversee asksecurity@ request handling, and actively participate in sprint-based security activities, balancing strategic and tactical execution
Actively participate in the security on-call rotation, or provide senior-level guidance as required during an event and aid in rapid response capabilities to protect our 24x7 platform and global workforce
Requirements:
10+ years of robust, progressive experience in security engineering, application security, DevSecOps, incident detection and response, or closely related fields
Advanced proficiency in at least one programming language (Python, Ruby, Go, Rust, JavaScript), with deep experience conducting detailed code reviews and security assessments across multiple languages
Hands-on experience with deploying, operating, and interpreting results from security tools such as static analyzers, web vulnerability scanners, supply chain analysis scanners, and host-based intrusion detection systems
Demonstrated experience mentoring, coaching and guiding junior and mid-level security engineers, contributing to a strong team culture, and supporting peer development as a senior individual contributor
Demonstrated proactive approach, strong continuous learning orientation, and curiosity about emerging threats, security trends, and innovative technologies
Extensive expertise securing cloud-native environments (AWS, Azure, GCP, containers, microservices), with in-depth knowledge of modern cloud security risks and defenses
Demonstrated ability to embrace being wrong, practice humility, continuously learn from experiences, and actively seek insights through thoughtful questioning and collaboration
Nice to have:
Experience with Clojure is a plus
exposure to participating in security incidents, guiding penetration testing efforts, or operation of SIEM/SOAR platforms
Welcome to CrawlJobs.com – Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.
We use cookies to enhance your experience, analyze traffic, and serve personalized content. By clicking “Accept”, you agree to the use of cookies.