> Markdown version of [/jobs/ext/2034583-principal-corporate-information-security](https://www.wearedevelopers.com/jobs/ext/2034583-principal-corporate-information-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal, Corporate Information Security - **Company:** CoreLogic - **Location:** Dallas, TX, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cyber Security, Power BI, Sherwood Applied Business Security Architecture, Tableau (Software), Software Vulnerability Management, Google Data Studio, Veracode, Looker Analytics, Qualys - **Published:** August 12, 2026 - **Apply:** https://us.experteer.com/career/view-jobs/principal-corporate-information-security-dallas-tx-usa-58918115 ## About the Role risk * Foster secure, fast-moving business operations across verticals Tasks * Hands-on vulnerability management with Qualys and Veracode (required) * Experience with Black Duck (preferred) * Executive risk visualization using Looker Studio, Looker, Tableau, or Power BI (required) * GRC platform experience (e.g., Archer) and third-party risk ratings (BitSight, SecurityScorecard) * Strong enterprise risk management and security architecture knowledge * CISSP certification required; CISM or SABSA a plus * Bachelor's degree or 8+ years of relevant security experience Key requirements * Generous PTO and 11 holidays * Fully paid parental leave and baby stipend * Multiple medical plans with mental health support * 401(k) with company match * Tuition assistance up to $5,250 * Well-being stipend and recognition rewards ## Description Experteer Overview As Principal, Corporate Information Security, you act as the business information security advisor for internal lines, guiding risk-aware decisions and maturing security operations. You will bridge security teams and business units, starting with the Insurance vertical, to assess risk, review architecture, and ensure compliant, secure go-lives. You'll translate technical risk into business impact for executives and drive governance around identity, access, and changes. This role blends CISO responsibilities with practical risk management to enable fast yet secure business delivery. Compensation / Benefits * Advise business leaders on security posture and risk for new apps/policies * Review architecture, vulnerabilities, and risk maturity before go-live * Track security exceptions, remediations, and translate technical risk for executives * Conduct governance reviews of identity/access controls aligned with policies * Support incident response and change control oversight * Foster secure, fast-moving business operations across verticals Tasks * Hands-on vulnerability management with Qualys and Veracode (required) * Experience with Black Duck (preferred) * Executive risk visualization using Looker Studio, Looker, Tableau, or Power BI (required) * GRC platform experience (e.g., Archer) and third-party risk ratings (BitSight, SecurityScorecard) * Strong enterprise risk management and security architecture knowledge * CISSP certification required; CISM or SABSA a plus * Bachelor's degree or 8+ years of relevant security experience Key requirements * Generous PTO and 11 holidays * Fully paid parental leave and baby stipend * Multiple medical plans with mental health support * 401(k) with company match * Tuition assistance up to $5,250 * Well-being stipend and recognition rewards ## Related Videos - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [Beyond Dashboards: Fixing Text-to-SQL with Semantic RAG](https://www.wearedevelopers.com/videos/2036-beyond-dashboards-fixing-text-to-sql-with-semantic-rag) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Real-World Security for Busy Developers](https://www.wearedevelopers.com/videos/1545-real-world-security-for-busy-developers) - [REST, GraphQL, gRPC, and more: A comparison of modern API styles](https://www.wearedevelopers.com/videos/100247-rest-graphql-grpc-and-more-a-comparison-of-modern-api-styles) - [Data Analytics with Microsoft Fabric: End-to-End Use Case with Data Agents](https://www.wearedevelopers.com/videos/1547-data-analytics-with-microsoft-fabric-end-to-end-use-case-with-data-agents) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Best Companies to work for in London: Top 25 Companies in 2023](https://www.wearedevelopers.com/magazine/187-best-companies-to-work-for-in-london-top-25-companies-in-2023) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 119 - ❤️ === ❤️](https://www.wearedevelopers.com/magazine/454-dev-digest-119)