> Markdown version of [/jobs/ext/1220106-principal-software-engineer-platform-engineering](https://www.wearedevelopers.com/jobs/ext/1220106-principal-software-engineer-platform-engineering). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Software Engineer, Platform Engineering - **Company:** Moderna, Inc. - **Location:** Cambridge, MA, United States (Remote available) - **Experience:** Expert - **Salary:** $142,500.0 - $256,500.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, JavaScript (Programming Language), Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Cloud Computing, Cloud Computing Security, Encodings, Cyber Security, Continuous Integration, DevOps, Programming Tools, Github, Python (Programming Language), Secure Coding, Software Engineering, TypeScript, Software Vulnerability Management, Policy as Code, Pulumi, Delivery Pipeline, Software Security, Software Troubleshooting, Build Management, Containerization, AI Platforms, Kubernetes, Infrastructure Automation Frameworks, Terraform, Docker, Vulnerability Analysis - **Published:** July 9, 2026 - **Apply:** https://www.biospace.com/logon?PipelinedPage=%2Fjob%2F3060661%2Fprincipal-software-engineer-platform-engineering%3FAction%3DContinueJobApplication%23application-form ## About the Role * 10+ years of experience in software engineering, platform engineering, DevOps, infrastructure automation,secure software delivery,or a related role. * Deepsoftware engineering experiencedesigning,implementing,andoperatingdeveloper platforms, internal tools, infrastructure automation, CI/CD systems, or secure software delivery platforms. * Very strongprogramming skills in Python or TypeScript/JavaScript. * Significant experiencewith GitHub, GitHub Actions, CI/CD workflows, and modern software delivery practices. * Significant experiencewith AWS or another cloud provider for deploying and managing applications or platform services. * Experience with Docker and containerized applications. * Strong understanding of secure software development practices, software supply chain, dependency management, vulnerability scanning, artifact management,secretshandling,identity, authorization,and policy enforcement. * Proven ability toset technical direction anddesign systems that balance security, standardization, usability, reliability, and developer productivity. * Proven experience leading technical initiatives with cross-functional stakeholders. * Demonstrated ability to mentor engineers, raise technical standards, and guide teams through architecture,design, implementation, and operational tradeoffs. * Expert troubleshooting skills across application code, build pipelines, cloud infrastructure, networking, identity, developer tooling, and third-party platforms. * Demonstrated ability to adapt to changing team priorities,operateeffectively inambiguousproblem spaces,and contribute across a range of platform engineering responsibilities, including areas outside immediate prior experience. Here's What You'll Bring to the Table (Preferred Qualifications) * Experience with AI-assisted development tooling, AI gateway patterns, model or API access controls, policy-as-code, telemetry, or runtime safety controls. * Experience shaping platform strategy or technical roadmaps for capabilities adopted by multiple engineering teams. * Experience partnering with security, architecture, platform, and application teams to drive adoption of shared capabilitiesand standards. * Experience with infrastructure-as-code tools such asPulumi, CDK, Terraform, or similar. * Experience with application security, cloud security, software supply chain controls, vulnerability management workflows, or secure CI/CD guardrails. * Experience building internal developer platforms, paved-road workflows, reusable templates, CLIs, scaffolding systems, or shared engineering standards. * Experience with Kubernetes, container security, base image lifecycle management,secretsmanagement, network isolation, or secure runtime patterns. * Experience creating documentation,reference architecture, onboarding materials, and developerenablementcontent for shared platform capabilities. ## Description Joining Moderna offers the unique opportunity to be part of a pioneering team that's revolutionizing medicine through mRNA technology, with a diverse pipeline of development programs across various diseases. Moderna is looking for a hands-on, impact-drivenPrincipalSoftware Engineer, Platform Engineering tohelpdefine,buildand evolve reusable platform capabilities thatenableapplication teamstodevelop, deploy, andoperatesoftware safely and effectively. This is aseniorindividual contributor role that combines deep technical execution with cross-functional technical leadership acrossdevelopers ("Builders"), Cybersecurity, Architecture,AI platform teams,andbroaderteams to provide scalable, secure, and user-focused capabilities that make the right path the easiest path for Moderna's engineering teams. Theinitialfocus for this role will beadvancingAI runtime safety and AI gateway capabilities, including reusable integration patterns, policy enforcement, telemetry, secure development workflows, and operational tooling, and paved-road controls for governed AIassisteddevelopment. Over time, this role willinfluence and contributeacross the broader Builder Tools & Platforms portfolio, including developer tooling, secure software delivery, internal frameworks, platform automation, and paved-road engineering standards. This role is well suited for aprincipalengineer whothrives in ambiguous, high-impact problem spaces and can move fluidlyfromstrategy and architecture to hands-onimplementation,cloud infrastructure, CI/CD, production operations, developer enablement, and secure software delivery. You will help translateemergingenterpriseneeds into reliable, reusable, and well-governed platform capabilitiesfor Moderna's engineering teams. Here's What You'll Do * Design and build secureplatform capabilities using Python/TypeScript, GitHub Actions,Pulumi, Docker, AWS, and relevant internal or vendor APIs. * Lead the design and evolution ofAI runtime safetyand AIgatewaypatterns,includingpolicy enforcement,access controls,telemetry,auditabilityand operational controls. * Build and guideimplementationofgoverned AI-assisted development workflows by packaging approved tools, creating reusable integration patterns, improving developer experience, and embedding security and compliance expectations into paved-road delivery workflows. * Partner with Cybersecurity, Architecture, AI platform teams, andengineering leaders to align on platform standards, adoption strategy, risk posture, andimplementationtradeoffs. * Createand driveadoptionoftemplates,reference implementations,documentation, examples, and paved-road patterns that help application teams adopt secure development and AI-assisted workflows. * Improve developer experience byidentifyingsystemic friction,reducing setup time,eliminatingmanual toil, standardizing common workflows, and making secure patterns easy to adopt. * Establishand matureoperational practices for owned capabilities, including monitoring, alerting, dashboards, runbooks, support models, service ownership, and lifecycle management. * Identifyrecurring developer pain points andinfluence roadmap by proposingimprovements to shared frameworks, templates, platform tooling, and paved paths. * Leadintegration of secure software delivery controls into development workflows, including CI/CD guardrails, policy checks, artifact controls, and developer remediation patterns. * Contributehands-onacross Builder Tools & Platforms priorities as team needsevolve, including developer tooling, platform automation, secure delivery patterns, internal frameworks, and operational support. * Mentor and coach engineers, raise engineering standards, review design and implementations, and help teams make durable technical decisions across platform andapplicationsboundaries ## Related Videos - [Platform Engineering vs. DevOps Why not both?](https://www.wearedevelopers.com/videos/885-platform-engineering-vs-devops-why-not-both) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Why segmenting your infrastructure into tiers makes your infrastructure design better](https://www.wearedevelopers.com/videos/1960-why-segmenting-your-infrastructure-into-tiers-makes-your-infrastructure-design-better) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [7 Ways to Fail at Building a Platform](https://www.wearedevelopers.com/videos/100015-7-ways-to-fail-at-building-a-platform) - [DevOps Maturity Check – a way to balance autonomy and alignment](https://www.wearedevelopers.com/videos/58-devops-maturity-check-a-way-to-balance-autonomy-and-alignment) ## Related Articles - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Now is the time for industrialized software development](https://www.wearedevelopers.com/magazine/601-now-is-the-time-for-industrialized-software-development) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [7 Most Popular Web Developer Jobs in Europe](https://www.wearedevelopers.com/magazine/163-7-most-popular-web-developer-jobs-in-europe)