1

Principal Security Engineer Jobs (NOW HIRING)

OR

$142K/yr

As the Principal Security Engineer at Upstart, you will define and drive the technical strategy for securing Upstart's production infrastructure and developer platforms. You will lead cross ...

As a Security Engineer, you will design and implement advanced security solutions, mentor and collaborate with other team members, and drive security initiatives across the organization while ...

As a Security Engineer, you will design and implement advanced security solutions, mentor and collaborate with other team members, and drive security initiatives across the organization while ...

Experience: 8+ years of progressive security engineering experience, including at least 4 years in a senior or principal application security or product security role. * Application Security ...

next page

Showing results 1-20

Principal Security Engineer information

See salary details

$74K

$147.2K

$212.5K

How much do principal security engineer jobs pay per year?

As of Jun 21, 2026, the average yearly pay for principal security engineer in the United States is $147,220.00, according to ZipRecruiter salary data. Most workers in this role earn between $118,500.00 and $173,000.00 per year, depending on experience, location, and employer.

What are some common challenges faced by Principal Security Engineers in aligning security initiatives with business objectives?

Principal Security Engineers often encounter the challenge of balancing robust security measures with the need for business agility and growth. They must effectively communicate technical risks to non-technical stakeholders and advocate for security investments without hindering innovation or productivity. This role requires a proactive approach to integrating security early in the development lifecycle, collaborating closely with product, engineering, and executive teams to ensure that security strategies support overall business goals while mitigating threats.

What are Principal Security Engineers?

Principal Security Engineers are senior-level professionals responsible for overseeing the security architecture and strategy of an organization’s information systems. They lead the design, implementation, and maintenance of security protocols, ensuring compliance with industry standards and protecting against cyber threats. These engineers often mentor junior staff, conduct risk assessments, and collaborate with other departments to align security measures with business goals. Their expertise is critical for safeguarding sensitive data and ensuring the overall cybersecurity posture of the organization.

What is the difference between Principal Security Engineer vs Security Architect?

AspectPrincipal Security EngineerSecurity Architect
Required CredentialsCertifications like CISSP, CISM, CEH; Bachelor's or Master's in Cybersecurity or related fieldsSimilar certifications; often holds CISSP, SABSA, or TOGAF; background in security design
Work EnvironmentHands-on security implementation, incident response, vulnerability assessmentsDesigning security frameworks, creating security architecture, strategic planning
Employer & Industry UsageUsed across tech, finance, healthcare; focuses on security operationsCommon in large enterprises, consulting firms; focuses on security design
Search & Comparison IntentUnderstanding roles, responsibilities, career pathsDesigning security solutions, architecture planning

While both roles require strong cybersecurity credentials and involve security strategies, the Principal Security Engineer is more hands-on with security operations and incident response. In contrast, the Security Architect focuses on designing security frameworks and architecture to protect organizational assets.

Can you make $500,000 a year in cyber security?

Principal Security Engineers with extensive experience, advanced certifications, and leadership roles can potentially earn $500,000 or more annually, especially in high-cost-of-living areas or within large organizations. Achieving this level often requires expertise in areas like threat management, security architecture, and strong technical skills with tools such as SIEMs and cloud security platforms.

What engineers make $300,000 a year?

Principal Security Engineers and other senior cybersecurity professionals often earn $300,000 or more annually, especially with extensive experience, advanced certifications like CISSP or CISM, and expertise in areas such as cloud security, threat management, or security architecture. Compensation varies by industry, location, and company size, with senior roles in high-demand sectors typically reaching or exceeding this salary level.

What does a principal security engineer do?

A principal security engineer designs, implements, and oversees security systems and policies to protect an organization’s information assets. They analyze security risks, lead incident response efforts, and often hold certifications like CISSP or CISM. This role requires strong technical skills, leadership, and the ability to communicate security strategies to stakeholders.

What are the key skills and qualifications needed to thrive as a Principal Security Engineer, and why are they important?

To excel as a Principal Security Engineer, you need deep expertise in cybersecurity principles, risk management, and network/system architecture, often backed by a degree in computer science or a related field and extensive industry experience. Familiarity with tools such as SIEM platforms, vulnerability scanners, incident response systems, and certifications like CISSP or OSCP is typically required. Exceptional problem-solving, leadership, and communication skills set individuals apart in this role. These skills ensure robust security strategies, effective team guidance, and the ability to address complex threats in dynamic enterprise environments.

What engineers make $500,000?

Principal Security Engineers and other senior cybersecurity professionals with extensive experience, advanced certifications, and specialized skills can earn $500,000 or more annually, especially in high-demand industries or senior leadership roles. Compensation often includes base salary, bonuses, and stock options, reflecting their expertise in areas like threat management, security architecture, and compliance.
More about Principal Security Engineer jobs
What cities are hiring for Principal Security Engineer jobs? Cities with the most Principal Security Engineer job openings:
What states have the most Principal Security Engineer jobs? States with the most job openings for Principal Security Engineer jobs include:
Infographic showing various Principal Security Engineer job openings in the United States as of June 2026, with employment types broken down into 90% Full Time, 5% Part Time, and 5% Contract. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution, with an average salary of $147,220 per year, or $70.8 per hour.
Principal, Security Engineer

Principal, Security Engineer

Bloom Energy

San Jose, CA

Full-time

Medical, Dental, Vision, Retirement

Posted 21 days ago


Bloom Energy rating

9.2

Company rating: 9.2 out of 10

Based on 9 frontline employees who took The Breakroom Quiz

15th of 418 rated machine equipment manufacturers


Job description

At Bloom Energy, our vision for a world powered by clean, reliable, and affordable energy is more than just a dream-we're making it reality.

For over two decades, we've been at the forefront of the global energy transition, pioneering solutions that empower critical industries to thrive in a rapidly digitizing, energy-intensive world. From revolutionizing power for AI-driven data centers to ensuring resilience for hospitals, electric grids, manufacturing facilities, and utilities, our solid oxide fuel cell (SOFC) and solid oxide electrolyzer (SOEC) technologies are redefining what's possible by delivering energy abundance for all. With more than 30,000 fuel cell modules deployed worldwide, we are the trusted partner for Fortune 100 companies and innovators alike. Our cutting-edge solutions enable unparalleled "time-to-power" capabilities, reliability, and sustainability, ensuring our customers remain ahead in a world where soaring energy demand and intensifying energy scarcity are rapidly becoming the new norm.

At Bloom, we thrive on collaboration, bold thinking, and relentless innovation. We believe that, together, we can create a brighter, more sustainable future while tackling the most pressing challenges of the 21st century.

We are looking for a Principal Security Engineer to join our team in one of today's most exciting technologies. This role will report to our Chief Security Officer and based in San Jose, CA. This is a fully on-site, in office role 5 days a week.

  • Security Architecture Design:Develop and implement robust security architectures for enterprise-level systems, ensuring alignment with business objectives and regulatory requirements.
  • Policy Development:Create, update, and enforce security policies, standards, and procedures to protect the organization's information assets.
  • Risk Management:Conduct comprehensive risk assessments and vulnerability analyses to identify potential security threats and develop mitigation strategies.
  • Collaboration:Work closely with IT, development, and business teams to integrate security measures into all aspects of the organization, including software development, network infrastructure, and cloud services.
  • Incident Response:Lead and coordinate incident response efforts, providing expertise during security breaches and ensuring effective resolution and documentation.
  • Continuous Improvement:Stay updated on the latest security technologies, trends, and threats, and recommend improvements to enhance the organization's security posture.
  • Mentorship:Mentor and guide junior security team members, fostering a culture of continuous learning and professional development.

Requirements:

  • Educational Background:Bachelor's degree in engineering, Computer Science, Information Technology, or a related field.
  • Experience:Minimum of 8-10 years of experience in security, with at least 3 years in a senior or architect role.
  • Technical Proficiency:Strong knowledge of security frameworks (e.g., NIST, ISO 27001) and proficiency in security technologies such as firewalls, intrusion detection systems, SIEM, SOAR, XDR, Email Security, DLP, CASB, CNAPP, Vulnerability Scanning, Threat Intelligence and automated Penetration Testing.
  • Cloud Security:Experience with cloud security (AWS, Azure) and understanding of cloud-native security practices.
  • Zero Trust Security:Proficiency in designing and implementing Zero Trust security models, including secure network strategies, strong authentication policies, and risk management frameworks.
  • Cyber Resiliency:Expertise in building cyber resiliency, including developing incident response plans, conducting threat intelligence analysis, and ensuring business continuity during and after cyber incidents.
  • Network Security:Strong understanding of network protocols, secure network architecture, and experience with configuring and managing firewalls, intrusion detection systems, and encryption solutions.
  • Identity and Access Management (IAM):Expertise in IAM principles and best practices, including user identity management, role-based access control (RBAC), single sign-on (SSO), multi-factor authentication (MFA), and identity governance.
  • Data Security:Proficiency in data security strategies, including data encryption, data loss prevention (DLP), secure data storage, and data integrity measures.
  • Endpoint Protection:Proficiency in endpoint protection strategies, including anti-malware solutions, host-based intrusion detection systems (IDS/IPS), endpoint hardening, and mobile device management.
  • IoT Security:Solid knowledge of IoT security principles, including cryptography, identity and access management, and secure network architecture for IoT devices.
  • Develops:Experience with DevSecOps practices, including integrating security into the software development lifecycle, automating security processes, and using tools for continuous security monitoring.
  • Product Security:Experience in product security, including identifying and mitigating security risks within products, collaborating with development teams, and ensuring products meet industry best practices for security.
  • Problem-Solving Skills:Excellent analytical and problem-solving skills, with the ability to work under pressure and handle complex security issues.
  • Communication Skills:Strong communication and leadership skills, with the ability to effectively convey security concepts to both technical and non-technical stakeholders.

Bloom Energy is an equal opportunity employer and makes employment decisions on the basis of merit. We are committed to compliance with all applicable laws providing equal employment opportunities. All qualified applicants, will receive consideration for employment without regard to race, sex, color, religion, national origin, protected veteran status, or on the basis of disability. Bloom Energy makes reasonable accommodations, consistent with applicable laws, for the known physical or mental

limitations of an otherwise qualified applicant or employee with a disability, who can perform the essential job functions, unless undue hardship would result.

At Bloom Energy, we are committed to supporting the well-being of our employees and their families. Our comprehensive benefits package for eligible employees includes competitive Medical, Dental, and Vision plans with a large employer contribution, a 401(k) Retirement Plan with company match, generous Mental Health Support services, Legal services, virtual Physical Therapy access, and Fertility & Family Forming benefits.

Bloom Energy is committed to fair and equitable compensation practices.

FULL TIME ROLE ONLY: The total compensation for this position includes standard company benefits and is based on various factors including, but not limited to, relevant skills and experience.

#LI-JM

Salary Ranges:$155,800.00 - $224,200.00