1

Principal Security Engineer Jobs in Ohio (NOW HIRING)

Partner with the Platform Engineering team to deploy eBPF-based runtime security monitoring (Tetragon/Falco) to cover container escape and anomalous syscall detection. * Vulnerability Management:

As BWE's Security Engineer, your role is central to protecting our environment and advancing our ... Secure app registrations and service principals. Implement least privilege and Conditional Access ...

Senior Security Engineer

Columbus, OH · On-site

$110K - $151K/yr

As BWE's Senior Security Engineer, your role is central to protecting our environment and advancing ... principals. • Implement least privilege and Conditional Access policies. • Support lifecycle ...

As a Cybersecurity Engineer / Information Systems Security Engineer (ISSE) with MTSI you will support a customer operating out of Wright Patterson AFB) in Dayton, OH or Hanscom AFB, MA. Position ...

Application Security Principal

Dublin, OH · On-site +1

$56.75 - $75.75/hr

About the role The Application Security Principal is a senior, hands-on security leader who reports ... The role is deeply embedded within software engineering initiatives, working side-by-side with ...

next page

Showing results 1-20

Principal Security Engineer information

See Ohio salary details

$70.4K

$140K

$202K

How much do principal security engineer jobs pay per year?

As of Jul 30, 2026, the average yearly pay for principal security engineer in Ohio is $139,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $112,700.00 and $164,500.00 per year, depending on experience, location, and employer.

What are some common challenges faced by Principal Security Engineers in aligning security initiatives with business objectives?

Principal Security Engineers often encounter the challenge of balancing robust security measures with the need for business agility and growth. They must effectively communicate technical risks to non-technical stakeholders and advocate for security investments without hindering innovation or productivity. This role requires a proactive approach to integrating security early in the development lifecycle, collaborating closely with product, engineering, and executive teams to ensure that security strategies support overall business goals while mitigating threats.

What are Principal Security Engineers?

Principal Security Engineers are senior-level professionals responsible for overseeing the security architecture and strategy of an organization’s information systems. They lead the design, implementation, and maintenance of security protocols, ensuring compliance with industry standards and protecting against cyber threats. These engineers often mentor junior staff, conduct risk assessments, and collaborate with other departments to align security measures with business goals. Their expertise is critical for safeguarding sensitive data and ensuring the overall cybersecurity posture of the organization.

What is the difference between Principal Security Engineer vs Security Architect?

AspectPrincipal Security EngineerSecurity Architect
Required CredentialsCertifications like CISSP, CISM, CEH; Bachelor's or Master's in Cybersecurity or related fieldsSimilar certifications; often holds CISSP, SABSA, or TOGAF; background in security design
Work EnvironmentHands-on security implementation, incident response, vulnerability assessmentsDesigning security frameworks, creating security architecture, strategic planning
Employer & Industry UsageUsed across tech, finance, healthcare; focuses on security operationsCommon in large enterprises, consulting firms; focuses on security design
Search & Comparison IntentUnderstanding roles, responsibilities, career pathsDesigning security solutions, architecture planning

While both roles require strong cybersecurity credentials and involve security strategies, the Principal Security Engineer is more hands-on with security operations and incident response. In contrast, the Security Architect focuses on designing security frameworks and architecture to protect organizational assets.

Can you make $500,000 a year in cyber security?

Principal Security Engineers with extensive experience, advanced certifications, and expertise in areas like cloud security or threat management can potentially earn $500,000 or more annually, especially in high-cost-of-living regions or senior leadership roles. Achieving this level often requires a combination of technical skill, strategic responsibility, and industry reputation.

What engineers make $300,000 a year?

Principal Security Engineers and other senior cybersecurity professionals often earn $300,000 or more annually, especially with extensive experience, advanced certifications like CISSP or CISM, and expertise in areas such as cloud security, threat management, or security architecture. Compensation varies by industry, location, and company size, with senior roles in high-demand sectors typically reaching or exceeding this level.

What does a principal security engineer do?

A principal security engineer designs, implements, and manages security systems to protect an organization’s information assets. They lead security initiatives, conduct risk assessments, and develop policies, often utilizing tools like intrusion detection systems and security frameworks. This role typically requires advanced knowledge of cybersecurity principles and relevant certifications such as CISSP or CISM.

What are the key skills and qualifications needed to thrive as a Principal Security Engineer, and why are they important?

To excel as a Principal Security Engineer, you need deep expertise in cybersecurity principles, risk management, and network/system architecture, often backed by a degree in computer science or a related field and extensive industry experience. Familiarity with tools such as SIEM platforms, vulnerability scanners, incident response systems, and certifications like CISSP or OSCP is typically required. Exceptional problem-solving, leadership, and communication skills set individuals apart in this role. These skills ensure robust security strategies, effective team guidance, and the ability to address complex threats in dynamic enterprise environments.

What engineer makes $500,000 a year?

A Principal Security Engineer can earn $500,000 or more annually, especially with extensive experience, advanced certifications, and leadership responsibilities in cybersecurity. High compensation often reflects expertise in areas like threat management, security architecture, and the use of specialized tools, typically in large organizations or high-demand sectors.
What are popular job titles related to Principal Security Engineer jobs in Ohio? For Principal Security Engineer jobs in Ohio, the most frequently searched job titles are:
What job categories do people searching Principal Security Engineer jobs in Ohio look for? The top searched job categories for Principal Security Engineer jobs in Ohio are:
What cities in Ohio are hiring for Principal Security Engineer jobs? Cities in Ohio with the most Principal Security Engineer job openings:
Infographic showing various Principal Security Engineer job openings in Ohio as of July 2026, with employment types broken down into 92% Full Time, 5% Part Time, and 3% Contract. Highlights an 89% Physical, 4% Hybrid, and 7% Remote job distribution, with an average salary of $139,962 per year, or $67.3 per hour.

Principal Security Engineer

BitDeer

Massillon, OH • On-site

Full-time

Re-posted 9 days ago


Job description

About Bitdeer Technologies Group
Bitdeer is a world-leading technology company for AI and Bitcoin mining infrastructure.
Bitdeer is committed to providing comprehensive Bitcoin mining solutions for its customers and building AI computational infrastructure to support the AI revolution. Bitdeer handles complex processes involved in computing such as equipment procurement, transport logistics, data center design and construction, equipment management, and daily operations. Bitdeer also offers advanced cloud capabilities to customers with high demand for artificial intelligence.
Headquartered in Singapore, Bitdeer has deployed data centers across multiple countries, including the United States, Norway, Bhutan, and Ethiopia.
To learn more, visit https://ir.bitdeer.com/
About the Role
As Bitdeer AI Cloud's first dedicated hands-on security leader for the Americas, you will own the full-stack security and 7x24 security operations of AI Data Centers (AIDCs) across California, Tennessee, Washington, and future locations.
This is a deeply hands-on technical operations role. You will personally lead detection engineering, incident response, host/network hardening, while also handling US customer incident response, law enforcement requests, and cross-time-zone coordination with our Singapore HQ.
Core Mission: Despite the 12-16 hour time difference with Singapore HQ, you will ensure the GPU compute business across three Americas AIDCs runs securely across physical, network, host, virtualization, and customer operations layers, while driving incident MTTR to industry-leading levels.
Key Responsibilities
1. AIDC Security Operations & 7x24 Incident Response
  • Regional Ownership: Serve as the primary on-call security lead for the Americas region. Own 7x24 alert triage, incident response, and root cause analysis for AIDCs in CA, TN, WA, and beyond. Act as the primary security decision-maker during Americas business hours (PST 09:00-18:00) when Singapore HQ is offline.
  • Hands-on IR: Personally drive the response to high-severity incidents (P0/P1) including GPU cluster cryptojacking, ransomware, data exfiltration, and tenant escape scenarios. Lead the full forensics, containment, and recovery cycle.
  • Playbook & Automation: Build and maintain Americas regional incident response playbooks and runbooks. Collaborate with the global SecOps team on SIEM detection rules, SOAR automation, and IR tabletop exercises.
  • Escalation & Communication: Lead customer security incident response-handle customer tickets, engage customer security teams, and coordinate with Sales and Customer Success on external communications. Serve as the Americas escalation interface, coordinating decisions with Singapore HQ, Legal, and business teams during major incidents.

2. Detection Engineering & Threat Hunting
  • Rule Development: Personally write SIEM detection rules (Wazuh, Splunk, Elastic SIEM, or equivalent) covering typical GPU cloud attack scenarios: anomalous GPU utilization/cryptojacking, anomalous SSH logins, container escape, Kubernetes API abuse, and InfiniBand network anomalies.
  • Framework Alignment: Design detection coverage assessments based on the MITRE ATT&CK Cloud Matrix and Container Matrix. Proactively identify and close visibility blind spots.
  • Threat Hunting: Lead hypothesis-driven threat hunting activities. Conduct at least two structured hunting campaigns per month, producing comprehensive hunting reports and new detection rules.
  • Cloud-Native Detection: Design runtime detection capabilities using eBPF tools (Tetragon, Falco, Cilium) to complement traditional HIDS detection blind spots.
  • Detection-as-Code: Operationalize detection-as-code practices in the Americas region, including version-controlled detection rules, CI/CD pipelines, unit testing, and coverage metrics.

3. AIDC Infrastructure Security Hardening
  • Pre-Production Assessment: Lead pre-production security readiness assessments for all Americas AIDCs. This covers perimeter networks, OOB management networks, BMC/IPMI hardening, KVM/QEMU virtualization baselines, GPU isolation validation (MIG/vGPU/Time-Slicing), and InfiniBand SM-key/M-key/P-key configuration reviews.
  • Host Hardening: Personally drive host hardening initiatives, including Linux baselines (CIS Benchmarks), auditd configuration, SSH hardening, privileged account management, and firmware/microcode CVE tracking.
  • Platform Collaboration: Partner with the Platform Engineering team to deploy eBPF-based runtime security monitoring (Tetragon/Falco) to cover container escape and anomalous syscall detection.
  • Vulnerability Management: Track CVEs for NVIDIA GPU drivers, CUDA, NCCL, UFM, BMC firmware, and other critical components. Lead the Americas regional vulnerability response and patch window negotiations.
  • Access Control: Lead Americas regional IAM and privileged access management by deploying jump host solutions (Teleport / Boundary), JIT access, and privileged session recording/auditing.

4. Network Security & Perimeter Defense
  • Perimeter Security: Lead the configuration and operations of perimeter firewalls, IPS, and WAF for all three Americas AIDCs.
  • DDoS Mitigation: Engage DDoS scrubbing services (Cloudflare Magic Transit, Arbor, or equivalent) and build robust Americas regional DDoS response plans.
  • Traffic Analysis: Establish east-west traffic baselines based on NetFlow / IPFIX to identify anomalous traffic patterns (data exfiltration, C2 communication, lateral movement).
  • Network Controls: Configure BGP RPKI, source address validation (uRPF), and other network-layer security controls.
  • Traceability: Plan and deploy traffic analysis solutions (e.g., Panabit NTM) at Americas AIDCs to enable full traffic traceability at physical boundaries.

5. Customer Incident Response & Law Enforcement Requests
  • Abuse & Tickets: Serve as the security incident response interface for Americas customers. Respond to customer-submitted security tickets, abuse complaints (cryptomining, unauthorized scanning, illegal content), and incident notifications.
  • Legal Liaison: Handle US law enforcement requests (FBI, DEA, Secret Service, local police) including subpoenas, search warrants, and preservation orders. Collaborate closely with Legal to respond within statutory windows.
  • SLA Tracking: Establish Americas regional customer security incident SLA tracking and post-incident review mechanisms.

6. Cross-Time-Zone Coordination & Regional Security Construction
  • HQ Sync: Establish seamless security collaboration mechanisms between the Americas and Singapore HQ via daily handoffs, weekly syncs, incident bridges, and on-call escalation paths.
  • Compliance Support: Serve as the Americas regional compliance support interface. Partner with the Singapore GRC Manager to provide the evidence collection and control implementation needed for SOC 2 US scope expansion.
  • Community Engagement: Represent Bitdeer AI Cloud Security within local US security communities and industry events (BSides, DEF CON, Cloud Security Alliance US).

Job Requirements
  • Education: Bachelor's degree or higher in Computer Science, Cybersecurity, Computer Engineering, or a related technical field.
  • Experience: 10+ years of hands-on information security experience, with at least 5 years strictly focused on cloud infrastructure / IaaS / data center security technical operations roles (not pure management or documentation roles).
  • Incident Command: Deep incident response experience as an Incident Commander, having successfully led at least 5 P0/P1 security incidents end-to-end. Thoroughly familiar with the NIST SP 800-61 IR process.
  • Technical Depth: Deep expertise in Linux system security, network protocols, TCP/IP, virtualization (KVM/QEMU), and container/Kubernetes security.
  • SIEM & Rules: Hands-on experience with at least one mainstream SIEM platform (Wazuh / Splunk / Elastic SIEM / Sentinel) and the ability to independently write detection rules. Familiarity with the SIGMA rule format is required.
  • Frameworks: Familiar with the MITRE ATT&CK Framework (Cloud Matrix and Container Matrix) with a proven ability to design detection coverage assessments.
  • Automation & Code: Strong scripting and programming skills: Python (Required) + Shell (Required); Go or Rust are highly preferred. Ability to independently develop security tools and automation scripts.
  • Cloud-Native Tech: Familiarity with the eBPF technology stack (Tetragon / Falco / Cilium) and a strong understanding of its application in cloud-native runtime security.
  • Infrastructure as Code: Familiarity with at least one IaC tool (Terraform / Ansible) and standard Git workflows to codify security configurations.
  • Certifications: At least one of the following industry certifications is required: GCIH, GCIA, GCFA, OSCP, CISSP, CCSP.
  • Language Fluency: Professional fluency in both English and Mandarin Chinese is required. Must be able to communicate effectively in English with US customers, MSSPs, law enforcement, and auditors, and in Mandarin with the Singapore HQ team and management for complex technical discussions and strategic reporting.
  • Scheduling: Willingness to accept irregular working hours. Must participate in a 7x24 on-call rotation during major incidents and conduct daily cross-time-zone coordination with Singapore HQ (SGT).

Bitdeer is committed to providing equal employment opportunities in accordance with country, state, and local laws. Bitdeer does not discriminate against employees or applicants based on conditions such as race, color, gender identity and/or expression, sexual orientation, marital and/or parental status, religion, political opinion, nationality, ethnic background or social origin, social status, disability, age, indigenous status, and union.