1

Principal Security Engineer Jobs in Georgia (NOW HIRING)

Network Security Specialist

Atlanta, GA · On-site

$100K - $137K/yr

The Lead Network Security Specialist will serve as Candescent's principal technical authority for ... Architecture, Engineering & Operations • Architect, implement, and maintain network security ...

Sr. Security Architect Manager

Duluth, GA · On-site

$60.25 - $80/hr

You will define architecture strategy, standards, and reference architectures; lead a team of security architecture resources; and serve as the principal architecture partner to IT, Engineering, ...

Position Overview The Principal Network Engineer will be responsible for the design, architecture, implementation, automation, and security of the organization's enterprise network infrastructure ...

Showing results 21-40

Principal Security Engineer information

See Georgia salary details

$62.5K

$124.3K

$179.4K

How much do principal security engineer jobs pay per year?

As of Sep 2, 2026, the average yearly pay for principal security engineer in Georgia is $124,310.00, according to ZipRecruiter salary data. Most workers in this role earn between $100,100.00 and $146,100.00 per year, depending on experience, location, and employer.

What is a principal security engineer?

Principal Security Engineers are senior-level professionals responsible for overseeing the security architecture and strategy of an organization’s information systems. They lead the design, implementation, and maintenance of security protocols, ensuring compliance with industry standards and protecting against cyber threats. These engineers often mentor junior staff, conduct risk assessments, and collaborate with other departments to align security measures with business goals. Their expertise is critical for safeguarding sensitive data and ensuring the overall cybersecurity posture of the organization.

What are the key skills and qualifications needed to thrive as a principal security engineer?

To excel as a Principal Security Engineer, you need deep expertise in cybersecurity principles, risk management, and network/system architecture, often backed by a degree in computer science or a related field and extensive industry experience. Familiarity with tools such as SIEM platforms, vulnerability scanners, incident response systems, and certifications like CISSP or OSCP is typically required. Exceptional problem-solving, leadership, and communication skills set individuals apart in this role. These skills ensure robust security strategies, effective team guidance, and the ability to address complex threats in dynamic enterprise environments.

What are some common challenges faced by principal security engineers in aligning security initiatives with business objectives?

Principal Security Engineers often encounter the challenge of balancing robust security measures with the need for business agility and growth. They must effectively communicate technical risks to non-technical stakeholders and advocate for security investments without hindering innovation or productivity. This role requires a proactive approach to integrating security early in the development lifecycle, collaborating closely with product, engineering, and executive teams to ensure that security strategies support overall business goals while mitigating threats.

What is the difference between Principal Security Engineer vs Security Architect?

AspectPrincipal Security EngineerSecurity Architect
Required CredentialsCertifications like CISSP, CISM, CEH; Bachelor's or Master's in Cybersecurity or related fieldsSimilar certifications; often holds CISSP, SABSA, or TOGAF; background in security design
Work EnvironmentHands-on security implementation, incident response, vulnerability assessmentsDesigning security frameworks, creating security architecture, strategic planning
Employer & Industry UsageUsed across tech, finance, healthcare; focuses on security operationsCommon in large enterprises, consulting firms; focuses on security design
Search & Comparison IntentUnderstanding roles, responsibilities, career pathsDesigning security solutions, architecture planning

While both roles require strong cybersecurity credentials and involve security strategies, the Principal Security Engineer is more hands-on with security operations and incident response. In contrast, the Security Architect focuses on designing security frameworks and architecture to protect organizational assets.

What job categories do people searching Principal Security Engineer jobs in Georgia look for?

The top searched job categories for Principal Security Engineer jobs in Georgia are:

What cities in Georgia are hiring for Principal Security Engineer jobs?

Cities in Georgia with the most Principal Security Engineer job openings:

Infographic showing various Principal Security Engineer job openings in Georgia as of August 2026, with employment types broken down into 88% Full Time, 10% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $124,310 per year, or $59.8 per hour.

Information Security Engineer - CyberArk

Digital Insight

Atlanta, GA

Full-time

Re-posted 20 days ago


Job description

About NCR VOYIX

NCR Voyix Corporation (NYSE: VYX) is a global platform-powered leader in unified commerce for shopping and dining. Combining a flexible, intelligent platform with end-to-end payments capabilities and services developed through its deep industry experience, NCR Voyix empowers retailers and restaurants to accelerate new possibilities for their operations, experiences and business outcomes. NCR Voyix is headquartered in Atlanta, Georgia, and serves customers in more than 35 countries worldwide.

Information Security Engineer

Location: Atlanta, GA

About NCRVoyix

NCR VOYIX Corporation (NYSE: VYX) is a leading global provider of digital commerce solutions for the retail,restaurantand banking industries. NCR VOYIX is headquartered in Atlanta, Georgia, with approximately16,000 employeesin 35 countries across the globe. Fornearly 140years, we have been the global leader in consumer transaction technologies, turning everyday consumer interactions into meaningful moments. Today, NCR VOYIX transforms the stores, restaurants and digital banking experiences with cloud-based, platform-led SaaS and services capabilities.

Not only are we theleaderin the market segments we serve and the technology we deliver, but we create exceptional consumer experiences in partnership with the world's leading retailers,restaurantsand financial institutions. Weleverageourexpertise, R&D capabilities and uniqueplatformto help navigate,simplifyand run our customers' technology systems.

Our customers are at the center of everything we do. Our mission is to enable stores,restaurantsand financial institutions to exceed their goals - from customer satisfaction to revenue growth, to operational excellence, to reduced costs and profit growth. Our solutions empower our customers to succeed in today's competitive landscape.

Our unique perspective brings innovative, industry-leading tech to all the moving parts of business across industries. NCR VOYIX has earned the trust of businesses large and small - from the best-known brands around the world to your local favorite around the corner.

Position Overview:

We are looking for anInformation Security Engineerwith strong experience inPrivileged Access Management (PAM)to strengthen identity and access security controls across the enterprise. In this role, you will own key PAM capabilities end-to-end (design, implementation, and operational excellence), partner closely with IAM, infrastructure, and application teams, and drive improvements toCyberArkonboarding, credential rotation, and privileged session controls for both human and non-human identities. You will also help the organization adoptAI-enabledoperational practices safely by applying secure-by-design principles to automation and AI-assisted workflows (e.g., protecting secrets/API keys used by automation, and ensuringappropriate accesscontrols and auditability).

Key Responsibilities

  • PAM Platform Ownership

  • Own day-to-day reliability, security, and lifecycle management ofCyberArkcomponents and integrations (configuration, upgrades, health monitoring, and break-fix).

  • Define andmaintainoperational standards (onboarding patterns, safe design, naming/metadata, rotation policies, and access workflows) to ensure consistency and auditability.

  • Privileged Identity & Credential Lifecycle

  • Lead onboarding and lifecycle management for privileged accounts (human and non-human), including service accounts, application secrets, and automation identities.

  • Design and implement password/secret rotation strategies and work with application owners to ensure credential consumers are compatible with rotation and failover.

  • Privileged Session Controls

  • Configure andmaintainprivileged session access controls, including approvals, just-in-time access patterns (where applicable), session monitoring/recording, and least-privilege enforcement.

  • PerformPAMdiscovery activities and prioritize remediation of unmanaged privileged access.

  • Integration & Automation

  • Implement and troubleshoot integrations between CyberArk and enterprise platforms (e.g., directory services, endpoints/servers, CI/CD, and key application stacks).

  • Develop andmaintainautomation (PowerShell/Python) for onboarding, rotation validation, reporting, and operational tasks; contribute to reusable templates and standards.

  • Risk Reduction, Audit & Compliance

  • Produce andmaintainaudit-ready evidence for privileged access controls (e.g., onboarding approvals, rotation success, access reviews, session logs) and support internal/external audits.

  • Identifygaps in privileged access controls, drive remediation plans, and track improvements through measurable operational metrics.

  • AI & Automation Security Enablement

  • Partner with engineering teams to apply least-privilege and credential management patterns forAI/automation identities(e.g., API keys, service principals, tokens) used by scripts, bots, and AI-assisted workflows.

  • Define and implement controls to reduce AI-related identity risk (secret sprawl, over-privileged tokens, unmanaged credentials), including logging, rotation, and break-glass procedures.

  • Incident Response & Engineering Support

  • Provide Tier-3 support and technical leadership during PAM-related incidents; perform root cause analysis and implement corrective/preventive actions.

  • Mentor junior engineers and contribute to knowledge transfer through runbooks, training, and peer reviews.

Qualifications

  • Education:Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent practical experience).

  • Experience:

  • 1-3+ years of experience in Information Security, IAM, or security engineering with a strong focus onPAM.

  • Hands-on experience implementing and operatingCyberArkin enterprise environments (onboarding at scale, rotation, integrations, monitoring, and troubleshooting).

  • Demonstrated experience supporting audits andoperatingwith strong change control and documentation discipline.

  • Technical Skills:

  • Strong knowledge of privileged access concepts (least privilege, break-glass access, service accounts, just-in-time patterns, session monitoring/recording).

  • Windows and Linux administration fundamentals (credential usage, services/daemons, scheduling, permissions) and authentication protocols basics (e.g., LDAP/Kerberos/SSO concepts).

  • Scripting/automation skills inPowerShelland/orPython, with the ability to develop maintainable scripts and perform peer reviews.

  • Ability to troubleshoot complex issues across applications, infrastructure, and integrations (logs, networking basics, and dependency mapping).

  • Working knowledge ofGenAIand common enterprise AI adoption risks (data leakage, prompt injection, insecure plugins/tools, model/API access control), and the ability to translate these risks into practical identity andsecrets-managementcontrols.

  • Familiarity with using AI-assisted tools responsibly for operational efficiency (triage, documentation, reporting) while ensuring sensitive data handling, logging, and policy compliance.

  • Certifications (Preferred):

  • CyberArk certifications (e.g., Defender/Trustee) or equivalent hands-on mastery.

  • AI security training/certification (e.g., vendor AI security fundamentals) ordemonstratedexperience supporting secure enterprise AI adoption.

  • Security+ and/or higher-levelcertificationsuch as SSCP, CISSP, or CISM (based on experience level).

Soft Skills

  • Strong analytical and problem-solving skills.

  • Excellent communication and collaboration abilities.

  • Ability to work under pressure during critical incidents.

Offers of employment are conditional upon passage of screening criteria applicable to the job

EEO Statement

Integrated into our shared values is NCR Voyix's commitment to equal employment opportunity. All qualified applicants will receive consideration for employment without regard to sex, age, race, color, creed, religion, national origin, disability, sexual orientation, gender identity, veteran status, military service, genetic information, or any other characteristic or conduct protected by law. NCR Voyix is committed to being a globally inclusive company where all people are treated fairly, recognized for their individuality, promoted based on performance and encouraged to strive to reach their full potential. We believe in understanding and respecting differences among all people. Every individual at NCR Voyix has an ongoing responsibility to respect and support a globally diverse environment.

Statement to Third Party Agencies
To ALL recruitment agencies: NCR Voyix only accepts resumes from agencies on the preferred supplier list. Please do not forward resumes to our applicant tracking system, NCR Voyix employees, or any NCR Voyix facility. NCR Voyix is not responsible for any fees or charges associated with unsolicited resumes

"When applying for a job, please make sure to only open emails that you will receive during your application process that come from a @ncrvoyix.comemail domain."