Principal Engineer - Security

Procore Technologies

Bengaluru Urban

On-site

INR 1,800,000 - 3,200,000

Full time

34 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Procore Technologies seeks a Principal Security Engineer to anchor the Security Engineering organization in Bengaluru. You will define the vision for autonomous security sovereignty and lead the development of self-healing security infrastructure with zero-human intervention for broad threat classes.

As Principal Engineer, you will bridge Security, AI, Data, and Engineering, building high-assurance, agentic security frameworks to protect the platform, data, and users.

Qualifications

  • 8+ years in a high-level technical security role with SaaS focus.
  • Expert in security engineering and software development (Python/Go).
  • Proven experience shipping autonomous agent systems and LLm orchestration.

Responsibilities

  • Define the Agentic Strategy and long-term technical roadmap for autonomous security.
  • Architect autonomous identity governance and guardrails for JML and service-to-service auth.
  • Build centralized agentic orchestration layer for asset inventory, SBOM, and attack surface management.
  • Engineer self-healing platforms using Kubernetes and Terraform with agentic control.
  • Lead autonomous threat modeling and purple-teaming across microservices.
  • Establish agentic trust boundaries for AI and cross-agent authentication.
  • Perform security assessments for M&A opportunities using agentic tools.
  • Mentor staff and senior engineers to scale autonomous systems.

Skills

Agentic security
LLM orchestration
Cloud security
Python
Go
Threat modeling
Encryption
Communication

Tools

LangGraph
Semantic Kernel
CrewAI
Kubernetes
Terraform

Job description

We’re looking for an Principal Security Engineer to serve as the technical anchor for Procore’s Security Engineering organization. In this role, you will define the vision for autonomous security sovereignty. You are the strategic lead responsible for building a self-reasoning, self-healing security infrastructure that operates with zero-human intervention for entire classes of threats

Asa Principal Engineer, you will sit at the intersection of Security, AI, Data, and Engineering. You will lead the development of high-assurance, agentic security frameworks that protect our platform, data, and users. This is a high-impact leadership opportunity to shape the global security direction of a rapidly growing platform, leveraging the next generation of LLM-native engineering to protect the data of millions of users. This position reports into the Senior Manager, Security Engineering and will be based in the Bengaluru, India office.

What you’ll do:

At Procore, AI isn’t a specialized tool, it's a core competency. We expect every team member to be AI-literate, leveraging generative tools and agentic workflows to move faster and work smarter. You won’t just use AI; you’ll be building the agentic future of construction.

  • Define the Agentic Strategy: Lead the long-term technical roadmap for moving Procore from traditional Security Engineering to an autonomous security fabric, where agents are the primary drivers of control enforcement and remediation.
  • Architect Autonomous Identity Governance: Design and implement next-gen IAM guardrails where agents autonomously manage JML (Joiner-Mover-Leaver) processes, service-to-service authentication, and dynamic, least-privilege PAM.
  • Build the Security Brain: Design and deploy the centralized agentic orchestration layer—utilizing LangGraph, Semantic Kernel, and CrewAI—to unify asset inventory, SBOM generation, and real-time attack surface management.
  • Engineer Self-Healing Platforms: Partner with product engineering to build paved path infrastructure (Kubernetes, Terraform) that is managed by agents capable of autonomously detecting and correcting drift, misconfigurations, and vulnerabilities.
  • Lead Autonomous Threat Modeling: Design agentic workflows that perform continuous, recursive threat modeling and automated "purple teaming" across our microservices architecture.
  • Establish Agentic Trust Boundaries: Design the security controls for internal and customer-facing AI, specifically focusing on agentic sandboxing, output verification, and cross-agent authentication.
  • M&A and Tech Stack Integration: Perform the technical security assessment of third-party platforms and M&A targets, using agentic tools to rapidly ingest, analyze, and secure diverse tech stacks.
  • Force Multiplier & Mentor: Act as a technical catalyst, scaling agentic thinking across all of engineering and mentoring Staff and Senior engineers in building production-grade autonomous systems.
  • Technical Advisor: Serve as the authoritative voice for the senior leadership on the security of our AI initiatives and the robustness of our autonomous defense posture.
What we’re looking for:
  • The Master Builder: 8+ years of experience in a high-level technical security role, with at least 4 years focused on large-scale SaaS. You must be an expert software engineer (Python, Go) who happens to specialize in security.
  • Agentic Authority: Deep, verifiable experience building and shipping autonomous agent systems in production environments. You are an expert in LLM orchestration, tool-calling protocols, and multi-agent state manag ement.
  • Architectural Mastery: Expert-level knowledge of cloud security (AWS preferred) and container orchestration, specifically in designing the trusted execution environments required for agents to act with high privilege.
  • Identity & Logic Expert: Mastery of identity protocols (OIDC, OAuth 2.0) and how they translate to agentic identity—ensuring that when an agent acts, its provenance and authority are cryptographically verifiable.
  • AI Security Pioneer: Deep understanding of the LLM Attack Surface, from training data poisoning and prompt injection to RAG-based data leakage, with a track record of building production-grade mitigations.
  • Strategic Visionary: Proven ability to align complex agentic initiatives with business growth and product velocity, ensuring security is a business enabler rather than a frictionpoint.
  • Data Protection Authority: Deep understanding of encryption-at-rest/in-transit and KMS, and how to apply these in an environment where agents must autonomously handle sensitive data.
  • Systems Thinker: Ability to treat Prompt Engineering as a formal logic discipline, ensuring that autonomous reasoning is deterministic, testable, and safe.
  • Exceptional Communicator: The ability to simplify the extreme complexity of Agentic Security for executive leadership while maintaining technical authority with the engineering frontline.
About Us

Procore Technologies is building the software that builds the world. We provide cloud-based construction management software that helps clients more efficiently build skyscrapers, hospitals, retail centers, airports, housing complexes, and more. At Procore, we have worked hard to create and maintain a culture where you can own your work and are encouraged and given resources to try new ideas. Check us out on Glassdoor to see what others are saying about working at Procore.

We are an equal-opportunity employer and welcome builders of all backgrounds. We thrive in a dynamic and inclusive environment. We do not tolerate discrimination against candidates or employees on the basis of gender, sex, national origin, civil status, family status, sexual orientation, religion, age, disability, race, traveler community, status as a protected veteran or any other classification protected by law.

At Procore, we believe in supporting our employees to help them thrive both personally and professionally. We offer a comprehensive range of benefits and perks for full-time employees, including generous paid time off and leave options, healthcare coverage, and career development programs. Discover more about our offerings and how we empower our global team to succeed at https://careers.procore.com/#benefits

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal Security Engineer
Principal Security Engineer

Procore Technologies • Bengaluru

On-site
INR 4,000,000 - 7,500,000
Staff Security Engineer
Staff Security Engineer

Procore Technologies • Bengaluru

On-site
INR 500,000 - 800,000
Senior Security Engineer
Senior Security Engineer

Procore Technologies • Bengaluru

On-site
INR 4,500,000 - 7,500,000
Senior Principal Software Engineer
Senior Principal Software Engineer

Procore Technologies, Inc. • India

On-site
INR 5,500,000 - 9,500,000
Security Architect
Security Architect

Procore Technologies • Bengaluru

On-site
INR 1,500,000 - 2,500,000
Senior Software Engineer
Senior Software Engineer

Procore • Bengaluru

On-site
INR 1,200,000 - 2,000,000
Generous paid time off
Health care coverage
Career development programs
Senior Manager, Authorization
Senior Manager, Authorization

Procore Technologies, Inc. • India

On-site
INR 3,500,000 - 6,500,000
Director, Software Engineering - Security Asset Inventory Platform
Director, Software Engineering - Security Asset Inventory Platform

United States Digital Space LLC • Karnataka

On-site
INR 4,000,000 - 7,000,000
Lead Security Engineer New India - Pune
Lead Security Engineer New India - Pune

BlueConic • Pune District

On-site
INR 3,500,000 - 6,500,000
Competitive salary
Hospitalisation insurance
International team environment
+1
Staff Database Platform Engineer
Staff Database Platform Engineer

Procore Technologies • Bengaluru

On-site
INR 4,000,000 - 7,500,000