Skip to content

Principal Cybersecurity Engineer
Company | Array |
---|
Location | New York, NY, USA |
---|
Salary | $220000 – $220000 |
---|
Type | Full-Time |
---|
Degrees | Bachelor’s |
---|
Experience Level | Senior, Expert or higher |
---|
Requirements
- A degree in Computer Science, Computer Engineering, IT, Systems Engineering, or a related field.
- Minimum 8 years of combined experience in Cyber Security and Software Development
- Programming skills in one or more languages (Go, Python, or JS).
- Experience with security testing tools and techniques (e.g., Burp Suite, SonarCloud).
- Familiarity with security frameworks and standards (e.g., OWASP, NIST, PCI).
- Experience with secure software development practices (e.g., DevSecOps).
- Ability to champion and maintain a secure software development program.
- Ability to mentor, peer review, and assess code with a ‘security first’ lens
- Experience in securing micro service based architectures and delivery solutions.
- Expertise in securing cloud based architectures including GCP, AWS, and Azure as well as traditional infrastructure
- Strong awareness of cybersecurity trends, hacking/exploitation techniques, and the latest defensive measures.
- Interest in securing cloud environments from cyber exploitation.
- Exceptional attention to detail with an analytical mind and outstanding problem-solving skills.
Responsibilities
- Participate in the design, development, and testing of secure software and architecture
- Lead incident response and remediation efforts for system and network security events.
- Plan, prioritize, implement, manage, monitor, and upgrade security measures to protect Array’s data, systems, and networks.
- Analyze security event logs, application and network data, and correlation rules while developing analytics to enhance Array’s security posture.
- Conduct code reviews and mentor to identify and address security vulnerabilities.
- Identify emerging information security threats and implement proactive defense measures.
- Evaluate architectural changes for security implications, recommend enhancements, and contribute expertise during architecture reviews to harden Array’s evolving platform.
- Develop and maintain information security activity monitoring reports.
- Produce assessments and communicate findings and recommendations to relevant teams across the organization.
Preferred Qualifications
- Familiarity with security measures across multi-vendor platforms.
- Experience with ethical hacking and penetration testing.
- Reverse engineering expertise.
- Industry-recognized certifications such as Certified Ethical Hacker (CEH), Offensive Security Certified Professional (OSCP), GIAC Certified Incident Handler (GCIH), or Certified Information Systems Security Professional (CISSP).