Principal Security Engineer
Listed on 2026-08-29
-
IT/Tech
Cybersecurity, Systems Engineer -
Engineering
Cybersecurity, Systems Engineer
Job Description
PRINCIPAL SECURITY ENGINEER | UK | LANGLEY HYBRID
Travel obsessed? Big tech fan? Hey, you're in good company. If you want to be part of the industry that makes the world go round, then look no further.
Travelport is the brains behind lots of your travel bookings- plane, car or hotel. Our technology is used to book that magical holiday, infamous bachelorette party or long overdue school reunion. While we can't solve mosquito bites or lost luggage, we can simplify a lot of the technical parts of travel, and we're looking for the best thinkers to help us do it.
We're hiring right now for a Senior Cloud Engineer!
How you'll make an impact:The Principal Security Engineer is a senior individual contributor responsible for providing deep technical security expertise across the organization's applications, infrastructure, networks, cloud environments, and security platforms.
Working closely with the Engineering and Architecture teams
, this role helps translate security strategy, architectural principles, and regulatory requirements into practical, scalable technical solutions. The Principal Security Engineer will serve as a trusted technical advisor to engineering, infrastructure, cloud, network, architecture, and product teams, helping ensure security is incorporated throughout the design and implementation lifecycle.
- Serve as a senior technical security expert across application, network, cloud, and infrastructure security.
- Partner closely with the engineering and architecture teams to develop, evaluate, and implement secure technology environments.
- Translate security approach principles, standards, and reference patterns into practical technical implementations.
- Participate in architecture and design reviews for new applications, platforms, infrastructure, and significant technology changes.
- Identify security risks within proposed architectures and work collaboratively with engineering and architecture teams to develop pragmatic solutions.
- Apply security best practices to common application architectures, including web applications, APIs, microservices, distributed systems, and cloud-native applications.
- Perform technical threat modeling and security design assessments for critical applications and infrastructure.
- Act as an escalation point for complex security engineering and architecture issues.
- Provide deep technical expertise in Identity and Access Management (IAM) technologies and platforms.
- Review cloud environments and application architectures for adherence to security standards and best practices
- Provide technical security expertise in support of PCI-DSS and other security compliance programs.
- Interpret PCI-DSS requirements and translate them into practical technical controls and implementation guidance.
- Design and validate network segmentation and scope-reduction strategies for PCI environments.
- Work with Engineering, Architecture, Governance, Risk and Compliance teams to ensure security controls satisfy technical and regulatory requirements.
- Support security assessments, technical evidence gathering, remediation activities, segmentation validation, and discussions with internal and external assessors.
- Help evaluate compensating controls and alternative technical approaches when standard implementation patterns are not practical.
- Serve as a recognized technical authority and trusted advisor on cybersecurity engineering matters.
- Mentor security engineers and other technical professionals and help develop security expertise across engineering teams.
- Lead complex cross-functional security initiatives involving engineering, architecture, applications, infrastructure, networking, cloud, and security teams.
Communicate complex security issues clearly to engineers, architects, technology leaders, risk teams, and other stakeholders
Could this be you?- 10+ years of progressive experience in cybersecurity, security engineering, network security, infrastructure security, application security, or related technical disciplines.
- Demonstrated experience operating as a senior or principal-level individual contributor responsible for solving complex, cross-domain security problems.
- Deep knowledge of networking and network security, including segmentation, routing, firewalls, proxies, DNS, load balancing, TLS, and secure network architecture.
- Demonstrated experience designing network segmentation strategies for security and regulatory scope reduction
, particularly within PCI DSS environments. - Strong experience with Identity and Access Management
, including OAuth 2.0, OIDC, SAML, federation, SSO, authentication, and authorization. - Hands-on experience with Okta and/or Auth0
, including application integrations, authentication flows, federation, authorization, and troubleshooting complex identity implementations. - Experience designing secure identity solutions for workforce IAM, customer identity (CIAM), APIs, and service-to-service authentication
. - Hands-on experience with…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: