Principal InfoSec Engineer – IAM, Cloud & OT; Hybrid
Listed on 2026-06-02
-
IT/Tech
Cybersecurity, Systems Engineer -
Engineering
Cybersecurity, Systems Engineer
Principal Engineer - Information Security Engineering
Location:
Longmont, CO, US
Posting Date:
May 21, 2026
Job
About our groupCompany is seeking a highly technical and execution‑oriented Principal – Information Security Engineering to lead the design, implementation, and operationalization of core security capabilities across enterprise IT, cloud, and operational technology environments. This role operates as a senior individual contributor with broad scope and influence, driving practical and measurable security outcomes across identity, network, cloud, endpoint, data protection, and OT environments.
The Principal is expected to operate cross‑domain, driving security engineering decisions and execution at enterprise scale with a strong emphasis on measurable control effectiveness and operational scalability. The ideal candidate is a pragmatic engineering leader who thrives in complex, heterogeneous environments where legacy systems, manufacturing operations, and modern cloud platforms coexist.
Identity & Access Security Engineering
- Own and enhance identity security capabilities across IT, cloud, and OT environments.
- Optimize and harden enterprise identity controls (MFA, SSO, PAM, Service Account Management).
- Define and enforce least privilege, RBAC, and identity governance standards.
- Extend identity controls into manufacturing and OT environments using practical and scalable approaches.
Network & Infrastructure Security Engineering
- Define and evolve network security and containment strategies.
- Design and validate enterprise‑scale containment strategies and zero‑trust access patterns.
- Drive engineering decisions across firewall platforms, network access, PKI, and certificate management.
- Improve containment effectiveness and reduce lateral movement risk across environments.
Cloud Security Engineering
- Evolve and govern cloud security guardrails and control patterns.
- Act as the design authority, driving the technical maturity of security platforms to ensure high‑fidelity alerting and automated remediation.
- Partner with infrastructure and application teams to ensure secure deployment standards.
Data Protection & AI Security Engineering
- Lead implementation and expansion of data protection and DLP capabilities.
- Partner with business and engineering teams to identify:
- Crown jewel data
- Critical data flows and exposure pathways
- Support AI governance and security controls, including:
- AI traffic visibility
- Access control, monitoring, and guardrails
- Align controls to emerging industry practices for AI and GenAI security.
OT / Factory Security Engineering
- Provide security design oversight for manufacturing environments, partnering with factory IT engineers to adapt IT standards to factory‑floor realities.
- Define practical security controls for:
- Legacy systems
- Remote access
- Vendor connectivity
- Improve OT visibility, monitoring, and containment capabilities.
- Partner directly with factory engineering and operations leadership.
Security Monitoring & Exposure Management
- Evaluate and improve the effectiveness of detection and response.
- Drive the transition from vulnerability volume management to continuous exposure management.
Cross‑Functional Leadership & Execution
- Lead complex, cross‑functional security engineering initiatives.
- Translate security strategy into scalable, operational solutions.
- Drive measurable outcomes—not just technology deployment.
- Establish repeatable engineering patterns and processes.
- Influence technical decisions and prioritization across teams.
Technical Expertise
- Identity & access management (MFA, SSO, PAM, RBAC)
- Network security and segmentation
- Cloud security architecture and controls
- SIEM/SOAR and detection engineering
- Data protection, DLP, and data classification
- Endpoint and exposure management
- OT/ICS security concepts and constraints
- Zero Trust principles
Leadership & Operating Style
- Outcome‑oriented and execution‑focused.
- Comfortable operating in ambiguity and complex environments.
- Strong prioritization and problem‑solving skills.
- Able to balance security requirements with operational realities.
- Strong cross‑functional communication and stakeholder management.
Success will be…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).