More jobs:
Principal Engineer, Security Operations
Job in
Austin, Travis County, Texas, 78716, USA
Listed on 2026-06-04
Listing for:
Digital Turbine, Inc.
Full Time
position Listed on 2026-06-04
Job specializations:
-
IT/Tech
Cybersecurity, Systems Engineer
Job Description & How to Apply Below
United States - Austin time type:
Full time posted on:
Posted Yesterday job requisition :
JR100959
At Digital Turbine, we make mobile advertising experiences more meaningful and rewarding for users, app publishers, and advertisers — intelligently connecting people in more ways, across more devices. We provide app publishers and advertisers with powerful ads and experiences that captivate consumers, fuel performance, and help telecoms and OEMs supercharge awareness, acquisition, and monetization. In a rapidly evolving industry, we are constantly innovating and creating better paths of discovery to connect consumers, publishers, and advertisers across the mobile ecosystem.
*** Please note that Digital Turbine is a hybrid work environment-only candidates local to the posting location will be considered.
*** Digital Turbine is seeking a Principal Engineer of Security Operations professional to drive the evolution of our global Security Operations Center (SOC).As the Principal Engineer of Security Operations, you will serve as the company’s foremost expert on detection engineering, incident response, and cloud security operations across our multi‐cloud (GCP and AWS) environment. The role focuses on technical leadership, operational excellence, and partnership with internal and external teams to ensure resilient 24x7 monitoring and response capabilities.
This fulltime role comes with a bonus plan, equity plan, 401K and unlimited PTO.
** About you as the Principal Engineer of Security Operations:
*** 12+ years of cybersecurity experience with deep expertise in security operations, threat detection, or incident response within global enterprise or SaaS environments.
* Significant hands‐on experience developing and managing SOC functions for GCP and AWS, including cloud logging, monitoring, and automation.
* Strong familiarity with MSSP models, understanding how to measure and improve service quality through engineering insight and data.
* Proficiency with SOC tooling such as Crowd Strike, Orca, SIEM/SOAR platforms, and related telemetry and automation tools.
* Deep understanding of modern adversary tradecraft, cloud attack paths, and detection engineering frameworks.
* Experience supporting or interfacing with compliance programs such as SOC 2, ISO 27001, or SOX.
* Excellent analytical and communication skills, with the ability to present technical findings and risks to both engineers and executives.
* Advanced security certifications such as CISSP, GCIH, GCFA, CISM, or CCFR are highly desirable.
* Google Cloud certifications (e.g., Professional Cloud Security Engineer, Professional Cloud Architect) preferred.
** About the role of the Principal Engineer of Security Operations:
*** Serve as the primary technical authority for Digital Turbine’s SOC ecosystem and cloud threat detection strategy.
* Optimize and mature our relationship with a Managed Security Services Provider (MSSP), ensuring detection quality, response speed, and continuous tuning meet DT’s requirements.
* Lead and execute complex incident investigations, encompassing triage, analysis, containment, and remediation across GCP, AWS, and containerized workloads (Kubernetes, serverless, etc.).
* Design and maintain advanced detection and automation use cases using SIEM, SOAR, and log management platforms, tailored to DT’s cloud environments.
* Operationalize and fine‐tune tools such as Crowd Strike, Orca Security, and related platforms to maximize visibility and protection coverage.
* Develop, test, and enhance incident response playbooks and threat‐hunting methodologies aligned with MITRE ATT&CK and industry best practices.
* Plan, coordinate, and execute tabletop exercises, as well as business continuity (BC) and disaster recovery (DR) drills, to validate response readiness and cross‐team coordination
* Define and track SOC performance metrics (e.g., MTTD, MTTR), producing clear and actionable insights for leadership and technical stakeholders.
* Collaborate with Dev Ops, application engineering, GRC, and legal teams to embed operational security practices that support compliance and business goals.
* Contribute to vendor selection, tooling evaluation, and threat intelligence initiatives that strengthen DT’s overall security posture.
* Act as a mentor and thought leader for peers and cross‐functional partners on detection engineering, incident response, and cloud security best practices.
#J-18808-Ljbffr
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×