Talent.com
Principal Security Engineer
Principal Security EngineerSpire • Boulder, Colorado, United States
Principal Security Engineer

Principal Security Engineer

Spire • Boulder, Colorado, United States
[job_card.variable_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

About the Role

You'll focus on hands-on design and implementation of security related software, to shift security left in our development processes. This includes embedding automated controls such as SBOMs and vulnerability scanning into CI / CD pipelines; maintaining and updating our internal shared libraries and infrastructure for authentication, authorization, and logging; and assisting with monitoring tools for operational services. Where needed, you'll help align systems with NIST 800-171 / CMMC requirements, collaborating closely with the Principal Security Engineer, AWS infra team, dev tooling team, chief software engineer, and cybersecurity / GRC group.

You'll work in a lean, impact-focused environment—prioritizing deliverables like secure code and architecture with bureaucracy handled by the TPM / GRC org as much as possible. Occasional engagement in security discussions with government entities may be involved, under the principal security engineer's guidance.

~80-90% hands-on work, with the remainder on collaboration and learning.

Key Responsibilities :

  • I mplement Security Controls in SDLC : Assist in integrating security automation into pipelines (e.g., GitHub Actions / ArgoCD for SAST / DAST / SCA, SBOM generation, and vulnerability scanning).
  • Support Shared Libraries and Infra : Contribute to evolving standard libraries / infra for authn / authz, logging, and other runtime security features, including testing and updates.
  • Contribute to CMMC Compliance : Hands-on support for implementing controls (e.g., encryption, secure configurations, monitoring) to meet / exceed CMMC Level 2 requirements in AC, IA, SC, and SI families, building on our ISO 27001 foundation.
  • Assist with Reviews and Models : Participate in security architecture reviews, code audits, and threat modeling; help identify and remediate issues like API vulnerabilities or supply chain risks.
  • Team Collaboration : Engage in code reviews, pair programming sessions, and tooling development to advance secure practices; provide peer support within the security engineering team.

Required Qualifications :

  • Experience : 5+ years in software or security engineering, with at least 3+ years in security-focused roles. Experience with secure cloud systems (AWS), CI / CD security, and compliance efforts (e.g., NIST, CMMC, or FedRAMP).
  • Technical Expertise : Proficiency in container security (Docker / Kubernetes), security tools (e.g., Trivy, Snyk, Falco, OPA), and programming languages for tooling (Python, Rust). Understanding of modern attacks and defenses.
  • Security Acumen : Knowledge of common threats (e.g., injection, lateral movement), controls (NIST 800-53 mappings), DevSecOps practices, SBOMs, zero-trust principles, and SIEM-integrated logging.
  • Interpersonal Skills : Ability to collaborate constructively with internal teams and contribute to external security discussions as needed.
  • Preferred Skills :

  • Familiarity with AWS security services (e.g., GuardDuty, Security Hub, Config) and IaC tools (Terraform).
  • Experience with embedded or satellite security (e.g., secure boot, over-the-air updates).
  • Contributions to open-source security projects.
  • Relevant certifications (e.g., CSSLP, OSCP, GIAC) demonstrating practical expertise.
  • Proven ability to work in small, agile teams and learn from senior mentors.
  • Bonus

  • Other : Experience in regulated industries (defense / aerospace); clearance for sensitive data handling.
  • Spire operates a hybrid work model, and this position will require you to work a minimum of three days per week in the office.

    Access to US export-controlled software and / or technology may be for this role. If needed, Spire will arrange the necessary licenses—this is not something candidates need to have before applying. #LI-DC1

    [job_alerts.create_a_job]

    Principal Security Engineer • Boulder, Colorado, United States

    [internal_linking.similar_jobs]
    Key Holder

    Key Holder

    AllStar Elite • Golden, Colorado, US
    [job_card.full_time]
    Job Description Job Description A Key Holder, or Retail Key Holder, opens and closes a store and performs other administrative duties in a retail setting. Their main duties include assisting custo...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Security Engineer

    Security Engineer

    VirtualVocations • Boulder, Colorado, United States
    [job_card.full_time]
    A company is looking for a Security Engineer to help build and maintain its security posture.Key Responsibilities Implement and maintain security controls across infrastructure and applications ...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Director of Security

    Director of Security

    Monarch Casino Resort Spa - Black Hawk • Black Hawk, CO, US
    [job_card.full_time]
    Job Title : Director of Security.This position is responsible for the planning, implementation, and day-to-day operations of Security / Risk Management for Monarch Casino Resort Spa.The Director's pri...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Cybersecurity SIEM Engineer

    Cybersecurity SIEM Engineer

    ITR • Golden, Colorado, US
    [job_card.full_time]
    Job Description Job Description Position : Cybersecurity SIEM Engineer Location : The position will be hybrid or remote to Golden, CO Job Description Summary : The Cybersecurity SIEM (Security Info...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Senior / Principal Platform Engineer

    Senior / Principal Platform Engineer

    SciTec • Boulder, CO, US
    [job_card.full_time]
    SciTec supports customers throughout the Department of Defense and U.Government in building innovative new tools to deliver unique world-class data exploitation capabilities.SciTec cannot sponsor o...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Border Patrol Agent - Experienced - (GL9 / GS11)

    Border Patrol Agent - Experienced - (GL9 / GS11)

    U.S. Customs and Border Protection • Lyons, CO, US
    [job_card.full_time]
    Border Patrol Agent (BPA) in the Federal Security and Public Safety Sector Experienced (GL-9 GS-11).You love protecting your community and doing your part to keep our nation safe.But maybe youre l...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Security & Compliance Team Lead

    Security & Compliance Team Lead

    Loft Orbital Solutions • Golden, Colorado, US
    [job_card.full_time]
    Job Description Job Description Wanna Join the Adventure? With the company expanding into defense for both the US and EU, Loft Orbital is seeking an experienced Security & Compliance Team Lead t...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Cybersecurity SIEM Engineer

    Cybersecurity SIEM Engineer

    Edgewater Federal Solutions, Inc. • Golden, Colorado, US
    [job_card.full_time]
    Job Description Job Description Edgewater Federal Solutions is seeking a Cybersecurity SIEM Engineer to support our team in Golden, CO. The Cybersecurity SIEM (Security Information Event Managemen...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Principal Engineer Systems

    Principal Engineer Systems

    Microchip • Boulder, Colorado, USA
    [job_card.full_time]
    Please follow the link to apply (Select Microchip Recruiter as your source) : Description : .Microchip Technologies Inc (NASDAQ : MCHP) Frequency and Timing Systems is a world leader in precise t...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Flight Software Engineer

    Flight Software Engineer

    Galaxy Technology Hires LLC • Boulder, Colorado, US
    [job_card.full_time] +1
    Job Description Job Description Flight Software Engineer - Boulder, CO About the Company : Have you ever wanted to be part of a start-up culture, but perhaps within a company that has established ...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Cybersecurity SIEM (Security Information Event Management) Engineer

    Cybersecurity SIEM (Security Information Event Management) Engineer

    JGMS Family of Companies • Golden, Colorado, USA
    [job_card.full_time]
    The Cybersecurity SIEM (Security Information Event Management) Engineer administers and tunes the technology required to detect and analyze cybersecurity threats for maximum value and effectiveness...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Security Engineer II

    Security Engineer II

    VirtualVocations • Boulder, Colorado, United States
    [job_card.full_time]
    A company is looking for a Security Engineer II.Key Responsibilities Deploy and maintain secure environments and manage user accounts for compliance Design network architecture and configure fir...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Lead Endpoint Security Engineering

    Lead Endpoint Security Engineering

    KPMG • Boulder, Colorado, United States
    [job_card.full_time]
    Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services for organizations in today's most important industries. Our growth is driven by delivering re...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]
    Principal / Sr Principal Software Engineer - FORGE

    Principal / Sr Principal Software Engineer - FORGE

    Northrop Grumman Corp. (AU) • Boulder, CO, United States
    [job_card.full_time]
    RELOCATION ASSISTANCE : No relocation assistance available.At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the wor...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Engineering Manager - Observability Platforms (Remote / Hybrid)

    Engineering Manager - Observability Platforms (Remote / Hybrid)

    Cisco Systems, Inc. • Boulder, CO, United States
    [filters.remote]
    [job_card.full_time]
    The application window is expected to close on : .Job posting may be removed earlier if the position is filled or if a sufficient number of applications are received. Leading enterprises use our unifi...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    ArcGIS Developer

    ArcGIS Developer

    Spectraforce Technologies • Golden, CO, United States
    [job_card.full_time]
    Potential for contract-to-hire).Golden, Colorado 80401 (Hybrid).A Bachelor's degree in GIS, Geography, or a related field, combined with 5-8 years of experience in spatial analysis, database manage...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Electrical Specialist 4 - Ends

    Electrical Specialist 4 - Ends

    Molson Coors • Golden, CO, US
    [job_card.full_time]
    Cheers to creating an incredible tomorrow!.At Molson Coors, we tackle big challenges and defy the status quo.With a proud legacy of excellence, an incredible portfolio of beer, seltzers, spirits, a...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Embedded Software Engineer

    Embedded Software Engineer

    Tomorrow.io • Golden, CO, United States
    [job_card.permanent]
    In this role, you'll design, develop, and maintain.You'll collaborate closely with.FPGA, systems, and application software engineers. BSPs), and production-ready platforms.This role offers strong op...[show_more]
    [last_updated.last_updated_30] • [promoted]