Principal Security Engineer

Jobgether

Spain (TX)

On-site

USD 138,000 - 185,000

Full time

10 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Direct ownership of security across IT
Small, highly technical security team
Autonomy and responsibility
Collaboration with Infra & Eng teams
Exposure to low-latency trading infra
Hands-on technical security role
Measurable contributions to resilience

Job summary

Jobgether is seeking a Principal Security Engineer based in Spain to own security across a global digital asset trading environment. You will design, deploy and operate security controls across cloud, on-premises infrastructure, and critical production systems, focusing on practical execution and embedding security into development workflows.

You will work closely with Infrastructure and Engineering teams to implement IAM, key management, CI/CD security and automation, with autonomy to make an

Qualifications

  • 8+ years in security engineering or related field.
  • IAM design across cloud environments with practical implementation experience.
  • Strong IAM architecture and access model experience.
  • Cloud security controls across AWS and Azure.
  • CI/CD security with GitLab experience preferred.
  • Familiarity with Jamf, DLP, SSO and identity providers.
  • Strong Linux skills; scripting in Python or Bash.
  • IaC experience with Terraform or Pulumi is a plus.
  • Ability to investigate incidents, assess risks and remediate.
  • Experience in fast-paced, technically complex environments.

Responsibilities

  • Implement and improve security controls across multi-cloud and on‑prem infrastructure.
  • Own IAM strategies for identities, permissions, and privileged access.
  • Design and operate key management and custody controls (HSMs, secrets).
  • Harden GitLab CI/CD pipelines and integrate security controls.
  • Configure security technologies including Jamf, DLP and IAM platforms.
  • Respond to security incidents by triaging alerts and remediation.
  • Conduct security assessments to identify vulnerabilities and improvements.
  • Automate security operations for detection, alerting and response.
  • Collaborate with Infra to embed security in provisioning and workflows.
  • Own security problems end-to-end from design to operation.

Skills

IAM design
Cloud security
GitLab CI/CD
Python scripting
Linux
IaC (Terraform)
Pulumi
Automation
Incident response

Tools

Jamf
DLP
SSO
Terraform
Pulumi

Job description

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Principal Security Engineer based in Spain.

As a Principal Security Engineer, you will take hands-on ownership of security implementation across a global, always-on digital asset trading environment. You will design, deploy and operate security controls across cloud, on-premises infrastructure and critical production systems. The role combines cloud security, identity and access management, key protection, CI/CD security, incident response and security automation. You will work closely with Infrastructure and Engineering teams to embed effective security controls directly into systems and development workflows. With a strong focus on practical execution, you will write code, configure systems and solve complex security challenges rather than focus on policy or people management. The environment is technically demanding and fast-moving, with resilience, low latency and risk discipline at its core. You will have significant autonomy and the opportunity to make an immediate impact on the security of critical trading infrastructure.

Accountabilities
  • Implement, operate and continuously improve security controls across multi-cloud environments, primarily AWS and Azure, with exposure to GCP and AliCloud, as well as on-premises infrastructure.
  • Own the implementation of identity and access management strategies, designing secure, scalable and practical models for identities, permissions and privileged access.
  • Design and operate key management and custody security controls, including HSMs, secrets management and secure handling of sensitive cryptographic keys used in trading operations.
  • Harden GitLab CI/CD pipelines and integrate security controls throughout the software development and delivery lifecycle.
  • Configure and maintain corporate security technologies, including endpoint protection, mobile device management, Jamf, DLP and identity management platforms.
  • Respond to security incidents by triaging alerts, investigating threats, containing incidents and driving remediation through to completion.
  • Conduct security assessments across infrastructure and applications to identify vulnerabilities, weaknesses and opportunities for improvement.
  • Automate security operations, including detection, alerting, monitoring and response processes.
  • Partner closely with Infrastructure teams to embed security into cloud provisioning, infrastructure configuration and operational workflows.
  • Identify opportunities to improve security resilience while minimizing unnecessary friction for engineers and other technical stakeholders.
  • Own security problems end-to-end, from identifying risks and designing solutions through implementation, testing and ongoing operation.
Requirements
  • 8+ years of hands-on experience in security engineering, security operations or a closely related technical security discipline.
  • Deep expertise in identity and access management, including practical experience designing and implementing IAM across cloud environments.
  • Strong, well-developed opinions on IAM architecture, access models, permissions and identity security, backed by hands-on implementation experience.
  • Strong working knowledge of cloud security controls across multiple providers, particularly AWS and Azure.
  • Experience securing CI/CD platforms and software delivery pipelines, with GitLab experience preferred.
  • Familiarity with corporate IT security technologies such as Jamf, endpoint protection, DLP, SSO and identity providers.
  • Strong Linux skills and confidence with scripting and automation using Python, Bash or similar languages.
  • Experience with infrastructure-as-code technologies such as Terraform or Pulumi is an advantage.
  • Ability to investigate security incidents, assess infrastructure and application risks, and implement practical remediation.
  • Experience operating effectively in fast-paced, technically complex environments where security, resilience and availability are critical.
  • Strong problem-solving and ownership mindset, with the ability to independently drive technical initiatives from identification through implementation.
  • Clear communication skills and the ability to collaborate effectively with Infrastructure and Engineering teams.
  • Experience in financial services, digital assets, cryptocurrency or other regulated environments is beneficial but not required.
  • Demonstrated technical capability and practical experience are valued more highly than security certifications.
Benefits
  • Direct ownership of security implementation across critical infrastructure.
  • High-impact role within a small, highly technical security team.
  • Significant autonomy and responsibility over security engineering initiatives.
  • Opportunity to work closely with Infrastructure and Engineering teams and influence security architecture in practice.
  • Exposure to low-latency trading infrastructure and complex digital asset technology.
  • Opportunity to work on challenging security problems across multi-cloud and on-premises environments.
  • Hands-on technical role focused on building, automating and operating security controls rather than policy administration or people management.
  • Opportunity to make immediate, measurable contributions to security resilience and risk management.
  • Fast-paced technical environment with direct exposure to senior leadership and business-critical security decisions.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal Security Engineer
Principal Security Engineer

Jobgether • Germany (OH)

On-site
USD 138,000 - 196,000
Direct ownership of security controls
Autonomy in a technical security team
Exposure to low-latency trading infra
Principal Security Engineer
Principal Security Engineer

Libertas Funding • Greenwich (CT)

On-site
USD 160,000 - 210,000
Senior Security Engineer
Senior Security Engineer

Novacoast • Salt Lake City (UT)

On-site
USD 100,000 - 130,000
Principal Security Engineer
Principal Security Engineer

Franklin Fitch • New York (NY)

On-site
USD 140,000 - 180,000
Security Engineer
Security Engineer

Iceberg • Chicago (IL)

On-site
USD 120,000 - 170,000
Hands-on Principal Security Engineer for Trading Infra
Hands-on Principal Security Engineer for Trading Infra

Jobgether • Spain (TX)

On-site
USD 138,000 - 185,000
Direct ownership of security across IT
Small, highly technical security team
Autonomy and responsibility
+4
Lead Security Engineer - Managed Services
Lead Security Engineer - Managed Services

Triwill Group • United States

On-site
USD 133,000 - 193,000
Remote work options
Bonus opportunity: quarterly 10%
Competitive benefits package
+1
Senior Security Engineer, Platforms & AI
Senior Security Engineer, Platforms & AI

Triwill Group • United States

On-site
USD 140,000 - 200,000
Remote-first
Competitive salary
Unlimited PTO
+2
Staff Security Engineer (Product Security and Architecture)
Staff Security Engineer (Product Security and Architecture)

Compass • Ventura (CA)

On-site
USD 150,000 - 230,000
Security Engineer
Security Engineer

MLabs • Austin (TX)

On-site
USD 150,000 - 175,000
Direct mentorship from a CISO
Significant organizational investment
Autonomy in tool selection