Principal Security Engineer
15 hours ago
While headquartered in Seattle, Highspot has expanded its footprint across America, Canada, the UK, Germany, Australia, and now India, solidifying its presence in the Asia Pacific markets.
About the Role We're building a world-class global Security team as part of our Trust Program. We're seeking an experienced, adaptive and solutions-oriented Principal Security Engineer to join our expanding global Security Team at Highspot Hyderabad. As our engineering presence scales globally, we're expanding our security footprint in our India Engineering hub to strengthen our 24/7 security coverage and deepen our ability to meet the evolving needs of our customers and product teams worldwide. You will help shape the operational direction of our security efforts in India. In this senior-level, cross-functional role, you'll contribute to both strategic direction and execution across multiple security domains- including application security, infrastructure scanning, security operations, and incident response. Your responsibilities include leading critical security initiatives, building partnerships with and mentor peers and leaders to foster a collaborative security-centered culture, drive proactive product security improvements and reviews, conducting advanced penetration tests, managing complex security incidents, and continuously enhancing our detection and response capabilities. Collaborate across regions and functions by partnering with security, IT, product engineering, and infrastructure teams globally including local and US-based colleagues to drive alignment, execution, and shared ownership of priorities. Your mentorship and technical expertise will directly influence the security posture of our product, our customers, and the broader organization. This role is integral to fostering an inclusive, collaborative, and globally-distributed security culture. Responsibilities
- Lead comprehensive application security assessments, advanced threat modeling sessions, and secure code reviews across critical product features, internal tooling, endpoints, and third-party integrations.
- Collaborate strategically with product engineering to establish and enhance secure-by-default and privacy-by-design practices within the software development lifecycle (SDLC).
- Lead and otherwise participate in incident detection, investigation, triage, containment, and root cause analysis for high impact security incidents, providing mentorship and guidance to junior engineers as required.
- Drive the development and continuous improvement of sophisticated detection rules, response automation, and optimized alert management across cloud environments, corporate infrastructure, and SaaS platforms.
- Lead and participate in complex vulnerability remediation processes, and effectively respond to security issues discovered by both internal teams and external sources.
- Document technical findings and strategic decisions in a clear and accessible manner, and procedural enhancements; significantly contribute to comprehensive security playbooks and knowledge repositories.
- Manage and oversee asksecurity@ request handling, and actively participate in sprint-based security activities, balancing strategic and tactical execution.
- Actively participate in the security on-call rotation, or provide senior-level guidance as required during an event and aid in rapid response capabilities to protect our 24x7 platform and global workforce.
- 10+ years of robust, progressive experience in security engineering, application security, DevSecOps, incident detection and response, or closely related fields.
- Advanced proficiency in at least one programming language (Python, Ruby, Go, Rust, JavaScript), with deep experience conducting detailed code reviews and security assessments across multiple languages you may not have deep proficiency in.(Experience with Clojure is a plus.)
- Hands-on experience with deploying, operating, and interpreting results from security tools such as static analyzers, web vulnerability scanners, supply chain analysis scanners, and host-based intrusion detection systems.
- Demonstrated experience mentoring, coaching and guiding junior and mid-level security engineers, contributing to a strong team culture, and supporting peer development as a senior individual contributor.
- Demonstrated proactive approach, strong continuous learning orientation, and curiosity about emerging threats, security trends, and innovative technologies.
- Extensive expertise securing cloud-native environments (AWS, Azure, GCP, containers, microservices), with in-depth knowledge of modern cloud security risks and defenses.
- Demonstrated ability to embrace being wrong, practice humility, continuously learn from experiences, and actively seek insights through thoughtful questioning and collaboration.
- Nice to have: exposure to participating in security incidents, guiding penetration testing efforts, or operation of SIEM/SOAR platforms.
Equal Opportunity Statement We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of age, ancestry, citizenship, color, ethnicity, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or invisible disability status, political affiliation, veteran status, race, religion, or sexual orientation.
Did you read the requirements as a checklist and not tick every box? Don't rule yourself out If this role resonates with you, hit the 'apply' button.
-
Lead Info Security Engineer
1 week ago
Hyderabad, Telangana, India Principal Global Services Full time ₹ 20,00,000 - ₹ 25,00,000 per yearResponsibilitiesExperience in conducting manual Vulnerability Assessments & Penetration Testing of the following: Web Applications and APIs hosted in on-premises infrastructure. Web Applications and APIs hosted in cloud environment and using AWS services such as S3 bucket, EC2 instances, Lambda functions, API Gateway, SNS etc. Thick Client/ Desktop...
-
Hyderabad, Telangana, India Prudent Globaltech Solutions Full time ₹ 12,00,000 - ₹ 24,00,000 per yearPrudent Technologies and Consulting is seeking an experienced Principal Application Security Engineer to lead our rapidly expanding web application penetration testing services. This senior-level position will play a critical role in advancing our offensive security capabilities, mentoring junior security consultants, and delivering high-value security...
-
Principal AI Application Security Engineer
2 weeks ago
Hyderabad, Telangana, India Backbase Full time ₹ 12,00,000 - ₹ 36,00,000 per yearkeep millions of users and their banking data safe and secure.No day at Backbase is the same, and even more so for our security engineers. We all know that security and banking need to go hand in hand and with hackers and tech evolving by the day, you'll need to stay on your toes and ahead of the game.Your core responsibility is to ensure the delivery of...
-
Principal Security Operations Engineer
1 week ago
Hyderabad, Telangana, India Cubic Corporation Full time ₹ 12,00,000 - ₹ 36,00,000 per yearBusiness Unit:Cubic Transportation SystemsCompany Details:When you join Cubic, you become part of a company that creates and delivers technology solutions in transportation to make people's lives easier by simplifying their daily journeys, and defense capabilities to help promote mission success and safety for those who serve their nation. Led by our...
-
Software Engineer
1 week ago
Hyderabad, Telangana, India Principal Global Services Full time ₹ 5,00,000 - ₹ 15,00,000 per yearResponsibilities Job Purpose Software Engineer is responsible for developing, testing and maintaining the application/s with established processes. With guidance, conduct analysis, elicit requirements, write correct and clean code leveraging best practices, DevOps, testing/debugging, documentation, quality assurance review, implementation and...
-
Principal Software Engineer
21 hours ago
Hyderabad, Telangana, India Microsoft Full time ₹ 12,00,000 - ₹ 36,00,000 per yearSecurity represents the most critical priorities for our customers in a world awash in digital threats, regulatory scrutiny, and estate complexity. Microsoft Security aspires to make the world a safer place for all. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified...
-
Senior Software Engineer
1 week ago
Hyderabad, Telangana, India Principal Global Services Full time ₹ 12,00,000 - ₹ 36,00,000 per yearResponsibilities Job Purpose Senior Software Engineer is responsible for developing, testing and maintaining the application/s with established processes by conducting analysis, eliciting requirements, assisting in design, writing correct and clean code leveraging best practices, contributing to DevOps practices, testing/debugging, working on documentation,...
-
Principal Site Reliability Engineer
4 days ago
Hyderabad, Telangana, India Oracle Full time ₹ 12,00,000 - ₹ 36,00,000 per yearOracle is seeking motivated Principal Site Reliability Engineer who thrives in a fast-paced rapidly evolving technology environment. This position requires wide and overall knowledge in Linux administration, AI technologies, software development, cloud computing, networking, cloud security, performance analysis and monitoring to provide the stability,...
-
Principal Full Stack Engineer
2 weeks ago
Hyderabad, Telangana, India AspiringIT Full time ₹ 6,00,000 - ₹ 18,00,000 per yearIMMEDIATE HIRINGJob Title: Principal Full Stack EngineerLocation: Hyderabad (Hybrid)Job Type: Full-TimeJob Overview:We are looking for a highly experienced Principal Engineer to lead architectural decisions, drive technical strategy, and guide engineering teams across multiple applications. This role is ideal for someone who thrives in a fast-paced...
-
Principal Software Engineer
5 days ago
Hyderabad, Telangana, India Cloud Angles Digital Transformation Full time ₹ 12,00,000 - ₹ 36,00,000 per yearThe OpportunityJoin us as a Principal Software Engineer within our Field Mobile Platform team. Youll be part of a cross-functional group responsible for building, testing, and running platforms that empower field engineers to deliver efficient, compliant, and customer-centric service.Our field workforce depends on a suite of mobile applications to manage...