Principal Security Engineer

2 weeks ago


Mumbai, India Cornerstone OnDemand Full time
We're looking for a

Principal Security Engineer

This role is Office Based

Principal Security Engineer – India – Cybersecurity Engineering:

The Principal Security Engineer is a hands-on role that blends cloud security engineering with security operations and threat intelligence. This position plays an integral role in protecting Cornerstone OnDemand from internal and external threats, partnering closely with technology, product, and operations teams to define and enforce security best practices, automate controls, assess risks, and proactively detect, investigate, and respond to threats across the enterprise.

In this role you will..

Lead security operations functions including detection engineering, monitoring, incident response, and threat hunting across cloud and enterprise environments. Analyze and improve Cornerstone’s security architecture.
Evaluate, select and implement new security tools and practices. Develop and deploy automated security controls leveraging the security toolchain to detect, prevent, and remediate threats. Contribute to open-source threat intelligence initiatives. Conduct threat modeling, vulnerability assessments, penetration testing, and red/purple team exercises to uncover and remediate risks. Drive threat intelligence initiatives by ingesting and correlating intel feeds, monitoring dark web sources, and leveraging external attack surface monitoring and security rating services (, Security Scorecard, BitSight). Proactively hunt for malicious or anomalous activity in EDR, SIEM, and cloud telemetry to identify evolving attacker tactics, techniques, and procedures (TTPs). Coordinate and lead investigations into security incidents, collaborating with SOC, IT, DevOps, and product teams to ensure timely response and recovery. Perform security architecture and design reviews with engineering teams to integrate security standards into development and deployment lifecycles. Provide security recommendations for cloud infrastructure, enterprise IT, and SaaS services, defining and enforcing policies and standards. Stay current on adversary trends, industry threat reports, and emerging attack vectors to continually improve detection and prevention capabilities. Provide hands-on support across a wide range of security technologies, including EDR, SIEM, IDS/IPS, vulnerability management tools, container/Kubernetes security, and automation frameworks.

You’ve got what it takes if you have…

A degree in Cybersecurity, Information Security, Computer Science, or a related technical field, or equivalent work experience. Industry recognized certifications are a plus. Certifications may include CISSP, CISM, CEH, CompTIA Security+, certifications issued by the SANS Institute, public cloud providers (AWS, GCP) etc. 7+ years of experience in security engineering, operations, and/or threat intelligence. Strong understanding of incident response, SOC operations, detection engineering, and cyber kill chain/ATT&CK framework. Proven experience with EDR platforms (, CrowdStrike, SentinelOne, Carbon Black), SIEM solutions (Splunk, ELK, Chronicle), and cloud-native monitoring tools. Experience with dark web monitoring, external attack surface management (ASM), and third-party risk/security rating platforms. Deep knowledge of vulnerability management platforms (, Qualys, Tenable, Rapid7) and risk-based prioritization approaches. Strong background in networking concepts and protocols (TCP/IP, HTTP, DNS, TLS) and security technologies (firewalls, IDS/IPS, cryptography, IAM). Hands-on experience with AWS and GCP security services; Azure familiarity a plus. Demonstrated ability to automate detection, response, and remediation workflows. Excellent problem-solving, analytical, and communication skills with the ability to influence technical and executive stakeholders.

#LI-Onsite



  • Mumbai, India Cornerstone OnDemand Full time

    We're looking for a Principal Security Engineer This role is Office Based Principal Security Engineer – India – Cybersecurity Engineering: The Principal Security Engineer is a hands-on role that blends cloud security engineering with security operations and threat intelligence. This position plays an integral role in protecting Cornerstone OnDemand...


  • Mumbai, India LogiNext Full time

    LogiNext is looking for a Principal Engineer - Security to join our team! As a Principal Engineer - Security, you'll lead the effort to design, implement, operate, support, and maintain the security infrastructure and supporting tools that are necessary to protect internal and external assets on networks that support our corporate infrastructure and...

  • Principal Engineer

    21 hours ago


    Mumbai, Maharashtra, India LogiNext Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    LogiNext is looking for a Principal Engineer - Security to join our team As a Principal Engineer - Security, you'll lead the effort to design, implement, operate, support, and maintain the security infrastructure and supporting tools that are necessary to protect internal and external assets on networks that support our corporate infrastructure and...


  • Mumbai, Maharashtra, India Security Lit Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    Job Description: Application Security Engineer (L1)Role OverviewWe are looking for an Application Security Engineer (L1) to join our security team. This is an entry-level position requiring at least 1 year of hands-on experience in application security testing. You will work on identifying and reporting vulnerabilities across web, mobile, API, and thick...


  • Mumbai, Maharashtra, India Security Lit Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Job Description: Application Security Engineer (L2)Role OverviewWe are seeking an experienced Application Security Engineer (L2) to take a lead role in our security testing team. This role requires of 3 year experience (first priority will be given to more than 4 year experience resources for selection) and mandates professional security certifications. You...


  • Mumbai, India TAC Security Full time

    Job description As a Security Engineer - VAPT, you will be responsible for conducting comprehensive security assessments, identifying vulnerabilities, and implementing effective remediation strategies. Leveraging your expertise in penetration testing and ethical hacking, you will play a key role in enhancing the security posture of our clients' systems and...


  • Mumbai, India TAC Security Full time

    Job descriptionAs a Security Engineer - VAPT, you will be responsible for conducting comprehensive security assessments, identifying vulnerabilities, and implementing effective remediation strategies. Leveraging your expertise in penetration testing and ethical hacking, you will play a key role in enhancing the security posture of our clients' systems and...


  • Mumbai, India TAC Security Full time

    Job descriptionAs a Security Engineer - VAPT, you will be responsible for conducting comprehensive security assessments, identifying vulnerabilities, and implementing effective remediation strategies. Leveraging your expertise in penetration testing and ethical hacking, you will play a key role in enhancing the security posture of our clients' systems and...


  • Mumbai, India TAC Security Full time

    Job description As a Security Engineer - VAPT, you will be responsible for conducting comprehensive security assessments, identifying vulnerabilities, and implementing effective remediation strategies. Leveraging your expertise in penetration testing and ethical hacking, you will play a key role in enhancing the security posture of our clients' systems and...


  • Mumbai, India TAC Security Full time

    Job descriptionAs a Security Engineer - VAPT, you will be responsible for conducting comprehensive security assessments, identifying vulnerabilities, and implementing effective remediation strategies. Leveraging your expertise in penetration testing and ethical hacking, you will play a key role in enhancing the security posture of our clients' systems and...