Principal Security Engineer; Remote
Stamford, Fairfield County, Connecticut, 06925, USA
Listed on 2026-05-16
-
IT/Tech
Systems Engineer, Cybersecurity, Cloud Computing
About The Role
Crane Company is seeking a hands‑on Principal Security Engineer to help architect the next generation of our enterprise security capabilities and help transform the security of our technology environments. This is a rare opportunity to influence security at scale by building secure‑by‑design patterns, modernizing the global security technology stack, and partnering deeply with IT and cybersecurity teams across cloud, network, infrastructure, and application domains.
CoreFunction
As a Principal Security Engineer, you will serve as a technical authority for secure architecture, platform security, and enterprise security engineering. You will drive the design, integration, and evolution of core security capabilities, ensuring scalable, consistent, and effective controls across Crane Company’s global operating environment, and focused on streamlining M&A processes for secured integrations of technology stacks. This role focuses on building, integrating, and optimizing the underlying technologies that secure our cloud platforms, networks, endpoints, and infrastructure.
You will evaluate existing controls, rationalize overlapping solutions, and lead the implementation of modern, centralized security capabilities. Your work will directly influence strategic security investments and architectural decisions, and you will have a strong line to the CISO to drive secure design patterns and enterprise security maturity.
- Design, implement, and evolve secure‑by‑design architectures for cloud, network, identity, endpoint, and infrastructure platforms.
- Partner closely with IT and engineering teams to embed security controls, guardrails, and patterns early in solution design.
- Lead consolidation and rationalization of the security technology stack, identifying redundancies and driving integration and modernization.
- Define and maintain security reference architectures, secure configuration baselines, and architectural patterns across platforms in current state, through M&A and supporting business growth.
- Evaluate emerging technologies to strengthen enterprise security capabilities while simplifying and centralizing the environment.
- Drive enterprise‑wide adoption of zero trust principles, identity‑centric controls, and strong segmentation practices.
- Build scalable automation for security services, control enforcement, and platform provisioning.
- Integrate disparate tools and telemetry sources into centralized, unified platforms.
- Streamline data flows across cloud, on‑prem, and hybrid environments to support advanced monitoring and analytics.
- Engineer interoperability between core security capabilities
- Develop API‑driven automation and orchestration to reduce manual effort and ensure consistent enforcement of controls.
- Lead technical roadmaps for critical security platforms, ensuring alignment across IT and security stakeholders.
- Act as a trusted advisor to IT, cloud, network, and infrastructure teams for secure design and control implementation.
- Provide senior engineering guidance during major digital transformation initiatives, cloud migrations, and infrastructure modernization projects.
- Partner with security leadership to shape enterprise security strategy and long‑term program development.
- Communicate complex technical concepts to both technical and executive audiences, influencing architectural decisions.
- Provide expert engineering support to improve detection, prevention, and resilience capabilities.
- Assist in defining technical requirements for detection content, logging, and security telemetry (architecture‑level input, not SOC operations).
- Inform security operations teams of architectural gaps and recommended improvements.
- 10+ years in security engineering, secure architecture, or platform security roles.
- Deep expertise designing, integrating, and securing enterprise‑scale systems across cloud, network, identity, and endpoint domains.
- Proven experience building or modernizing large‑scale security capabilities…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).