Principal Cybersecurity Engineer

ViziRecruiter,LLC.

Chicago (IL)

Hybrid

USD 125,200 - 187,800

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A leading food retailer is seeking a Principal Security Engineer to define security architecture and standards. The candidate will have over 10 years of cybersecurity experience, focusing on cloud platforms. Responsibilities include designing security protocols, leading incident responses, and mentoring staff. This role offers a hybrid work model with competitive salary ranges. Ideal for a leader experienced in integrating security into development pipelines and managing risk across complex systems.

Qualifications

  • 10+ years of experience in cybersecurity with a focus on security engineering.
  • Leadership role in enterprise security architecture on cloud platforms.
  • Strong proficiency in identity and access management.

Responsibilities

  • Set enterprise security architecture and reference patterns.
  • Design scalable controls for secure solutions.
  • Lead risk assessments and incident response.

Skills

Cybersecurity expertise
Cloud security architecture
Security information and event management (SIEM)
Infrastructure as code
Scripting/automation (Python or PowerShell)
Communication skills

Education

Bachelor's degree or equivalent experience

Tools

Terraform
Bicep

Job description

Introduction

Ahold Delhaize USA, a division of global food retailer Ahold Delhaize, is part of the U.S. family of brands, which also includes five leading omnichannel grocery brands – Food Lion, Giant Food, The GIANT Company, Hannaford and Stop & Shop. Ahold Delhaize USA associates support the brands with a wide range of services, including Finance, Legal, Sustainability, Commercial, Digital and E-commerce, Technology and more.

Overview

The Principal Security Engineer is a senior technical leader who sets the vision, architecture, and standards for enterprise security across infrastructure, applications, data, and cloud platforms. This role defines security patterns, embeds security as code in delivery pipelines, and guides teams to design, build, test, deploy, and support secure solutions that are resilient, performant, user centric, and compliant. This includes securing hybrid environments that span on‑premises data centers, Azure cloud services, and distributed operational environments such as retail stores and regional facilities.

Our flexible/ hybrid work schedule includes 3 in-person days at one of our core locations and 2 remote days. Our core office locations include Salisbury, NC, Chicago, IL, and Quincy, MA.

Applicants must be currently authorized to work in the United States on a full-time basis.

Responsibilities
  • Set enterprise security architecture, reference patterns, and guardrails for cloud, network, platform, and application domains, including hybrid and on‑premises infrastructure.
  • Design scalable controls and "secure by default" blueprints that teams reuse to accelerate delivery and reduce technical debt.
  • Drive security as code practices, integrating automated controls into CI/CD pipelines and cloud native workflows.
  • Lead threat modeling, risk assessments, and security design reviews for complex initiatives and critical systems. Orchestrate incident response for high severity events, ensuring rapid triage, root cause analysis, and durable remediation.
  • Standardize vulnerability management across infrastructure and software layers, prioritizing remediation based on risk and business impact.
  • Integrate identity, access, and secrets management into platform and application architectures, aligning to least privilege and zero trust principles.
  • Guide performance monitoring, logging, and detection engineering to improve signal quality and reduce mean time to detect/respond.
  • Partner with Technology, Compliance, and business leaders to embed security into evaluation, selection, installation, and configuration of products.
  • Collaborate with teams supporting enterprise networks, on‑prem data centers, and distributed operational environments to ensure secure connectivity, segmentation, and baseline enforcement.
  • Support governance of Azure services, subscriptions, connectivity, and administrative models.
  • Help define and maintain security baselines for servers, platforms, and cloud services, including hardening standards for hybrid infrastructure.
  • Mentor engineers at all levels; elevate secure coding, testing, automation, and operational excellence across teams.
  • Influence roadmap priorities using data, metrics, and risk quantification to support informed trade off decisions.
  • Evangelize modern engineering practices (Agile/Kanban/Lean), ensuring security enhances-not hinders-developer and customer experience.
  • May be called upon to support critical escalations and must be available during urgent IT incidents as needed.
Requirements
  • Bachelor's degree or equivalent years of work experience.
  • 10+ years in progressive experience in cybersecurity, with significant experience in security engineering and architecture roles.
  • Demonstrated leadership in enterprise security architecture for cloud platforms (e.g., Azure, AWS, or GCP), networks, and platforms, including hybrid and on‑premises environments.
  • Proven depth in identity and access management, key and secrets management, and zero trust concepts.
  • Strong proficiency with infrastructure as code (e.g., Terraform or Bicep), configuration management, and policy as code.
  • Expertise in security information and event management (SIEM), endpoint detection and response, and detection engineering.
  • Advanced skills in scripting/automation (e.g., Python or PowerShell) to codify controls, tests, and runbooks.
  • Excellent communication and executive influencing skills; able to translate risk and complexity into clear, actionable decisions.
  • Experience working in distributed or multi‑site operational environments is a plus.
Preferred Qualifications
  • Experience building platform security capabilities (e.g., cloud security posture management, workload protection, container security).
  • Hands on knowledge of application security (secure SDLC, dependency scanning, and runtime protections).
  • Familiarity with PCI DSS, SOX, HIPAA, or similar frameworks; practical experience operationalizing compliance.
  • Industry certifications (e.g., CISSP, CCSP, GIAC, OSCP) or equivalent portfolio of work.
  • Experience with segmentation design, network architecture, or securing retail or regulated operational environments.
Salary Ranges

ME/NC/PA/SC Salary Range: $108,880 - $163,320
IL/MA/MD/NY Salary Range: $125,200 - $187,800

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal Cybersecurity Engineer
Principal Cybersecurity Engineer

ViziRecruiter,LLC. • Quincy (MA)

Hybrid
USD 125,000 - 188,000
Principal Cybersecurity Engineer
Principal Cybersecurity Engineer

ViziRecruiter,LLC. • Salisbury (NC)

Hybrid
USD 108,000 - 164,000
Principal Cybersecurity Engineer
Principal Cybersecurity Engineer

Ahold Delhaize USA • Quincy (MA)

On-site
USD 125,000 - 188,000
Senior Manager Security Engineering - Governance
Senior Manager Security Engineering - Governance

ViziRecruiter,LLC. • Salisbury (NC)

Hybrid
USD 151,000 - 227,000
Security Engineering Manager - Governance
Security Engineering Manager - Governance

ViziRecruiter,LLC. • Chicago (IL)

Hybrid
USD 125,000 - 188,000
Senior Manager Security Engineering - Governance
Senior Manager Security Engineering - Governance

ViziRecruiter,LLC. • Chicago (IL)

Hybrid
USD 151,000 - 227,000
Security Engineering Manager - Governance
Security Engineering Manager - Governance

ViziRecruiter,LLC. • Quincy (MA)

Hybrid
USD 125,000 - 188,000
Senior Security Engineering Manager
Senior Security Engineering Manager

ViziRecruiter,LLC. • Quincy (MA)

Hybrid
USD 151,000 - 227,000
Security Engineering Manager
Security Engineering Manager

ViziRecruiter,LLC. • Chicago (IL)

Hybrid
USD 139,000 - 209,000
Security Engineering Manager
Security Engineering Manager

ViziRecruiter,LLC. • Quincy (MA)

Hybrid
USD 139,000 - 209,000