Principal Security Engineer, Product & Infrastructure
Core
Own the security roadmap for Pigment's product, infrastructure, and CI/CD environment, building automation and deepening security posture for an AI-powered business planning platform.
Role type
Principal Security Engineer (Product & Infrastructure)
Builds
AI platform features, secure CI/CD pipelines, detection rules, and sandboxed execution environments for LLM-generated code.
Domain
SaaS / AI / Financial Planning / Cloud Infrastructure
Deliverable
production ML models | product features | infrastructure
Required skills
Threat modeling, vulnerability management, detection engineering, secure SDLC design, incident response, code/architecture review, automation of security gaps
Preferred skills
AI security assessment, managed identity implementation, red teaming, bug bounty program management
Technologies
GCP, Kubernetes, Terraform, Postgres, SingleStore, Vault, Okta, OAuth, JWT, C#, .NET Core, TypeScript, React, Python, Go, Datadog, CloudFlare ZTNA, Falco, Wiz, Riot, HackerOne, TruffleHog, GitHub, CircleCI, ArgoCD
Responsibilities
Design security features into the product and strengthen defence-in-depth; review code, architecture, and configuration; run assurance programs including red team exercises and bug bounties; manage vulnerabilities from detection to verified fix; build detection capabilities and response playbooks; lead end-to-end security investigations; set technical direction for secure engineering practices.
Seniority
Principal, hands-on IC