Workiva is a company focused on enhancing cloud security. The Principal Security Engineer will direct the design and development of security architectures to protect data in cloud systems and lead the security vision across platforms.
Responsibilities:
- Leads business and technical partners with expert knowledge of relevant security technologies
- Applies innovative techniques to address emerging technologies, specifically focusing on AI integration and modern cloud security paradigms
- Prepares and analyzes overall security architecture and detailed systems specifications for complex security systems
- Serves as InfoSec Ambassador and lead technical representative to Infrastructure and Reliability and R&D as a whole
- Leads discussion with stakeholder teams regarding best practices in design and implementation of secure cloud systems
- Leads initiatives designed to share knowledge across InfoSec, R&D, and Technology teams
- Identifies, recommends, coordinates, and delivers timely knowledge to support teams regarding technologies, processes or tools
- Develops and executes strategies to increase Cloud Security knowledge throughout the enterprise
- Represents Security Platform in development and implementation of the overall global enterprise cloud architecture
- Designs, develops, and implements cloud-native architectures that will allow requirements to be met with appropriate security controls present
Requirements:
- Bachelor's degree in Computer Science, Information Security, or a related field; or 8 years and a Master's degree; or a PhD with 6 years of experience; or equivalent practical experience
- Min 10 years experience with Security Architecture and/or Engineering
- Min 5 years minimum experience with Cloud platforms
- In-depth knowledge of Cloud services relevant to Workiva's infrastructure, their configuration, and common security problems
- Experience using, implementing, or securing Artificial Intelligence technologies. Candidates must demonstrate an 'AI-first' mindset in solving modern security challenges
- Experience with assessment, development, implementation, optimization, and documentation of a comprehensive and broad set of security technologies and processes
- Working knowledge of common and industry standard cloud-native/cloud-friendly authentication mechanisms
- Experience with deployment orchestration, automation, and security configuration management
- Experience performing threat modeling and design reviews to assess security implications and requirements for introduction of new technologies
- Strong interpersonal and communication skills, with the ability to be successful in a team environment
- Ability to work independently with minimal direction
- Technical writing experience