
Principal Security Platform Engineer
Skills
Location
Languages
Job Description
We're looking for a Principal Security Platform Engineer to design, build, and operate security controls across cloud, network, identity, endpoint, data, and software supply chain environments. You will combine deep technical security expertise with a DevOps-driven approach, using automation, Infrastructure as Code (IaC), Policy as Code (PaC), CI/CD security, and AI-assisted engineering tools to improve protection, efficiency, and resilience at scale.
🎯 Responsibilities
- Architect, implement, and operate highly available security platforms and controls with measurable outcomes
- Enhance and integrate security solutions across AWS, Azure, and GCP environments
- Continuously improve security controls through automation, IaC, PaC, and self-service capabilities
- Implement and manage CSPM/CNAPP solutions, such as Wiz, to monitor and reduce cloud risk
- Support secure software delivery pipelines, including dependency scanning, artifact validation, and secrets management
- Develop Infrastructure as Code using Terraform, Pulumi, or Ansible for automated provisioning
- Apply Policy as Code frameworks, such as OPA and Sentinel, for enforcement and compliance automation
- Build and manage observability components for threat detection, alerting, and incident response
- Collaborate with Security Operations, DevOps, and engineering teams to maintain a robust security posture
- Use AI-assisted tools to accelerate automation, security analysis, and operational documentation
🛠️ Requirements
- Bachelor’s or Master’s degree in Computer Science, Engineering, or a related field, or equivalent experience
- 5+ years of experience in security engineering, platform engineering, or related cloud-focused roles
- Hands-on experience with cloud security across AWS, Azure, and GCP, as well as CSPM/CNAPP platforms
- Strong understanding of networking, secure systems design, and infrastructure security principles
- Proficiency in scripting or programming with Python and/or PowerShell
- Familiarity with Windows and Linux environments for operational security management
- Knowledge of CI/CD security, IaC, and PaC practices using Terraform or similar tools
- Strong operational mindset, including experience with monitoring, alerting, and incident response
- Comfort working with AI-driven development and security analysis tools
- Excellent communication skills, with the ability to document and present technical solutions effectively
➕ Nice to have
- Deep expertise in Terraform, Pulumi, Ansible, or OPA (Open Policy Agent) frameworks
- Experience implementing software supply chain security measures, including SBOMs, artifact signing, and dependency risk checks
- Familiarity with containerization and Kubernetes security controls
- Knowledge of cloud-native security services and platform tools, such as Wiz and Checkov
- Exposure to network security technologies, including IDS, IPS, DLP, EDR, firewalls, and file integrity monitoring
- Strong Python development background focused on automation and orchestration
- Experience creating self-service security solutions for engineering enablement
- Demonstrated use of AI-assisted engineering tools to streamline workflows and security testing
🤗 Benefits
- Private health insurance
- Employee stock purchase plan
- 100% paid sick leave
- Referral program
- Professional certification opportunities
- Language courses
About the team
52.650
employees
Benefits and perks
- Flexible schedule
- Work from home
- Health insurance
- Training budget
- Seguro médico, dental y de visión
- Planes 401(k) y de jubilación
- Programa de asistencia al empleado
- Reembolso de matrícula y programas de desarrollo profesional
- Programas de bienestar y herramientas de mentoring