
Principal Security Engineer
Company Overview
ID.me is the next-generation digital identity wallet that simplifies how individuals securely prove their identity online. Consumers can verify their identity with ID.me once and seamlessly login across websites without having to create a new login and verify their identity again. Over 140 million users experience streamlined login and identity verification with ID.me at 20 federal agencies, 44 state government agencies, and 66 healthcare organizations. More than 600 consumer brands use ID.me to verify communities and user segments to honor service and build more authentic relationships. ID.me’s technology meets the federal standards for consumer authentication set by the Commerce Department and is approved as a NIST 800-63-3 IAL2 / AAL2 credential service provider by the Kantara Initiative. ID.me is committed to “No Identity Left Behind” to enable all people to have a secure digital identity. To learn more, visit https://network.id.me/.
Role Overview
ID.me is looking for a Principal Security Engineer to add to our growing security team. If you love innovation, here's your chance to make a career of it by advancing the digital identity ecosystem.
We are seeking a talented Principal Security Engineer who enjoys the challenges of combining software and systems engineering to design, build, run, and automate distributed, fault-tolerant security solutions at scale. You will ensure that our security controls are effective and efficient and minimize friction for end users.
The Principal Security Engineer will also have the opportunity to provide thought leadership, research, and innovation on a broad scale.
This is a fully onsite position based out of our McLean, VA headquarters.
Responsibilities
- Identify opportunities for increased resilience in current and future Security solutions and services. This includes, process and technology solutions for Change Management and development of automated reviews and checks, health checks/measurement, measuring resiliency across our solutions, and improving audit-ability of our security control configurations.
- Set technology direction and roadmap for development and continuous improvement of security controls (e.g., own Security Architecture)
- Continuously improve Change Management processes, guidelines, and documentation across security tools/services to ensure reliability, efficiency (e.g., increased automation), and compliance
- Measure and report on reliability, efficiency, and compliance of security tool/service operations
- Lead system and solution design for security controls across the team and ensure design is well-understood and documented
- Identify and drive opportunities to improve control effectiveness and efficiency and reduce friction for end users
- Ensure security controls are optimized for ease of use by both security operators and end users
- Dig deep into complex problems either lacking a clear approach or with a high degree of execution risk and find an appropriate path forward
- Maintain many of the essential cross-team and cross-functional relationships necessary for the team's success
- Be a role model for the team and the security organization and shape the culture
- Help, teach, and mentor the less experienced engineers on the team
- Define standards and best practices for the team and the security organization
- Improve the quality of the output of the team - code, technical documentation, operational processes
Basic Qualifications
- 12+ years of experience in security engineering, systems engineering, software engineering, or SRE roles
- GCP Professional level certification, and current hands on GCP experience
- 5+ years of experience dedicated to Cloud Site Reliability Engineering and related roles
- 5+ years of current and hands on experience in scripting or software development (i.e. Python, Ruby, Go)
- 5+ years of current and hands-on experience with infrastructure-as-code (e.g. Terraform, Ansible, etc.)
- 5+ years of Security Architecture and best practices experience (e.g. Zero trust, network security, Okta/IDPs, OAuth, etc.)
Preferred Qualifications
The qualifications below are preferred. We encourage candidates to apply if they satisfy some, but not all of the qualifications.
- Strong understanding of cloud security and infrastructure security best practices
- Experience in Linux/Unix administration and solid networking knowledge
- The ability to take a systematic approach to analyzing, troubleshooting, and diagnosing system problems to identify, locate, resolve, and repair problems
- Possess a breadth of engineering skills with an interest in service reliability, automation, monitoring, and capacity planning
- Experience with CI/CD practices and platform tools (Jenkins, CircleCI, Github etc)
Ideal candidate will thrive in the following culture:
- Must have an obsession for building quality products
- Ability to thrive when there are changing priorities and shifting of gears
- Strong oral and written communication skills
- Must be a team player with a strong, self-managing work ethic
- Must be a self-starter with a passion for software engineering, learning and continuous improvement
#LI-JS1
The annual base salary listed does not include a company bonus, incentive for sales roles, equity and benefits which will be determined based on experience, skills, education, relevant training, geographic location and role.
ID.me offers comprehensive medical, dental, vision, health savings account, flexible spending accounts (medical, limited purpose, dependent care, commuter benefit accounts), basic and voluntary life and AD&D insurance, 401(k) with company match, parental leave, ability to participate in unlimited paid time off subject to the terms and conditions of the PTO policy, including 8 company wide holidays, short and long-term disability insurance, accident and critical illness insurance, referral bonus policy, employee assistance program, pet insurance, travel assistant program, wellbeing and childcare discounts, benefit advocates, and a learning and development benefit.
The above represents the anticipated total rewards package for this job requisition. Final offers may vary from the amount listed based on qualifications, professional experiences, skills, education, relevant training, geographic location, and other job related factors.
Pay Range
$203,183 - $255,000 USD
ID.me maintains a work environment free from discrimination, where employees are treated with dignity and respect. All ID.me employees share in the responsibility for fulfilling our commitment to equal employment opportunity. ID.me does not discriminate against any employee or applicant on the basis of age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances. ID.me adheres to these principles in all aspects of employment, including recruitment, hiring, training, compensation, promotion, benefits, social and recreational programs, and discipline. In addition, ID.me's policy is to provide reasonable accommodation to qualified employees who have protected disabilities to the extent required by applicable laws, regulations and ordinances where a particular employee works. Upon request we will provide you with more information about such accommodations.
Please review our Privacy Policy, including our CCPA policy, at id.me/privacy. If you provide ID.me with any personally identifiable information you confirm that you have read and agree to be bound by the terms and conditions set out in our Privacy Policy.
ID.me participates in E-Verify.
Apply for this job
*
indicates a required field