Principal Engineer
Core
Set technical direction for security and compliance architecture to earn trust from law firms and government agencies using privileged data.
Role type
Principal Software Engineer (Security & Compliance)
Builds
Resilient, well-instrumented systems for SOC 2, ISO 27001/42001, HIPAA, and FedRAMP programs.
Domain
Legal technology, AI/ML security, and regulatory compliance
Deliverable
production ML models | infrastructure
Required skills
SOC 2 Type II, ISO 27001/42001, HIPAA, FedRAMP (Moderate/High), backend engineering (Python/Java/Go), cloud infrastructure (AWS), identity and access management, encryption and key management, audit logging, security control frameworks (NIST 800-53, CIS Benchmarks)
Preferred skills
FedRAMP ATO with JAB/agency sponsorship, GRC automation tooling (Vanta, Drata), regulated industry experience, AI/LLM security controls, CISSP/CISM/CCSP certifications
Technologies
AWS, Python, Java, Go, SSO, SAML, OIDC, OAuth 2.0, RBAC/ABAC
Responsibilities
Own compliance architecture and evolve technical controls; build compliance as code with automated evidence collection; engineer for production scale with encryption and tenant isolation; partner with cross-functional teams to translate requirements into roadmaps; establish SLOs and observability for compliance-critical systems
Seniority
Principal, hands-on IC with strategic influence
