Principal Security Engineer
CoreWeave is a specialized cloud provider focused on GPU accelerated use cases including VFX, AI/ML, Batch Processing and Real Time Experiences. We support countless AI/ML services in the text to image, NLP and broader AI/ML space, reducing client’s infrastructure management requirements with our Kubernetes based serverless GPU cloud offerings.
Job Description
About the Role:
We are seeking a highly experienced and strategic Principal Security Engineer to join our team. In this role, you will be responsible for shaping and driving the security architecture vision across the organization. You will work closely with cross-functional teams, including IT, engineering, and executive leadership, to design, implement, and optimize security solutions that protect our company’s critical assets and align with business objectives. Your primary focus will be identifying the most pressing security initiatives, ensuring compliance with industry standards, and mitigating risks in a rapidly evolving threat landscape.
Core Responsibilities:
- Lead the development of the organization's security architecture strategy, ensuring it aligns with business goals and regulatory requirements
- Identify and prioritize critical security initiatives based on risk assessments, emerging threats, and business needs
- Design and implement security frameworks and architectures that protect the organization’s data, applications, and infrastructure
- Provide subject matter expertise on secure coding practices, network architecture, and cloud security to ensure robust security by design
- Conduct comprehensive security risk assessments across various domains, including network, application, and data security
- Develop risk mitigation strategies and guide the implementation of security controls to reduce identified risks
- Evaluate and recommend security technologies, tools, and solutions to address current and future security challenges
- Lead the implementation and integration of security technologies across the organization, ensuring minimal disruption to business operations
- Act as a trusted advisor to senior leadership, providing expert guidance on security matters and advocating for necessary investments in security initiatives
- Collaborate with IT, engineering, and other relevant teams to ensure security considerations are embedded in all technology projects and initiatives
- Mentor and guide junior security engineers and other technical staff, fostering a culture of security awareness and best practices
- Ensure that the organization’s security practices comply with relevant laws, regulations, and industry standards (e.g., GDPR, HIPAA, ISO/IEC 27001)
- Develop and enforce security policies, standards, and procedures across the organizationLead the design and implementation of incident response plans, ensuring the organization is prepared to respond effectively to security breaches
- Oversee post-incident analysis and recovery efforts, providing recommendations for improving security posture
Minimum Qualifications & Experience:
- Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field
- 10+ years of experience in information security, with a focus on security architecture and design
- Proven experience in leading security initiatives and influencing senior leadership on security matters
- Proficiency in one or more modern programming languages (Python/Golang)
- In-depth knowledge of security frameworks, standards, and best practices (e.g., NIST, SOC2, ISO 27001, CIS)
- Strong understanding of network security, cloud security, application security, and data protection technologies
- Experience with security tools and technologies, such as SIEM, IDS/IPS, encryption, and IAM solutions
- Excellent analytical, problem-solving, and decision-making skills
- Strong communication and interpersonal skills, with the ability to convey complex security concepts to both technical and non-technical audiences
- Relevant certifications such as CISSP, CISM, or SABSA are highly desirable
Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $275,000-$330,000. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience.
About the Role:
We are seeking a highly experienced and strategic Principal Security Engineer to join our team. In this role, you will be responsible for shaping and driving the security architecture vision across the organization. You will work closely with cross-functional teams, including IT, engineering, and executive leadership, to design, implement, and optimize security solutions that protect our company’s critical assets and align with business objectives. Your primary focus will be identifying the most pressing security initiatives, ensuring compliance with industry standards, and mitigating risks in a rapidly evolving threat landscape.
Core Responsibilities:
- Lead the development of the organization's security architecture strategy, ensuring it aligns with business goals and regulatory requirements
- Identify and prioritize critical security initiatives based on risk assessments, emerging threats, and business needs
- Design and implement security frameworks and architectures that protect the organization’s data, applications, and infrastructure
- Provide subject matter expertise on secure coding practices, network architecture, and cloud security to ensure robust security by design
- Conduct comprehensive security risk assessments across various domains, including network, application, and data security
- Develop risk mitigation strategies and guide the implementation of security controls to reduce identified risks
- Evaluate and recommend security technologies, tools, and solutions to address current and future security challenges
- Lead the implementation and integration of security technologies across the organization, ensuring minimal disruption to business operations
- Act as a trusted advisor to senior leadership, providing expert guidance on security matters and advocating for necessary investments in security initiatives
- Collaborate with IT, engineering, and other relevant teams to ensure security considerations are embedded in all technology projects and initiatives
- Mentor and guide junior security engineers and other technical staff, fostering a culture of security awareness and best practices
- Ensure that the organization’s security practices comply with relevant laws, regulations, and industry standards (e.g., GDPR, HIPAA, ISO/IEC 27001)
- Develop and enforce security policies, standards, and procedures across the organizationLead the design and implementation of incident response plans, ensuring the organization is prepared to respond effectively to security breaches
- Oversee post-incident analysis and recovery efforts, providing recommendations for improving security posture
Minimum Qualifications & Experience:
- Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field
- 10+ years of experience in information security, with a focus on security architecture and design
- Proven experience in leading security initiatives and influencing senior leadership on security matters
- Proficiency in one or more modern programming languages (Python/Golang)
- In-depth knowledge of security frameworks, standards, and best practices (e.g., NIST, SOC2, ISO 27001, CIS)
- Strong understanding of network security, cloud security, application security, and data protection technologies
- Experience with security tools and technologies, such as SIEM, IDS/IPS, encryption, and IAM solutions
- Excellent analytical, problem-solving, and decision-making skills
- Strong communication and interpersonal skills, with the ability to convey complex security concepts to both technical and non-technical audiences
- Relevant certifications such as CISSP, CISM, or SABSA are highly desirable
Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $275,000-$330,000. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience.