Principal Systems Security Engineer

Viasat, Inc.
Carlsbad, CA, United States
1 day ago
Apply on jobs.localjobnetwork.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$200,000.0 - $315,500.0
Working hours
Regular working hours

Tech stack

Amazon Web Services User Authentication Microsoft Azure Bash Shell Cloud Computing Cyber Security Identity and Access Management Python (Programming Language) Network Security PCI Data Security Standards Windows PowerShell Zero Trust Network Access
+9 more
Security Information and Event Management Software Vulnerability Management Google Cloud Containerization Kubernetes Information Technology CIS Benchmarks Devsecops Security Orchestration, Automation & Response

Job description

We are seeking a highly motivated Principal Systems Security Engineer to join our Systems Security Engineering organization. Responsibilities for this role include architecting, implementing, and advancing security controls across enterprise, cloud, product, and infrastructure environments. The ideal candidate will have a background in Information Assurance (IA) and Cybersecurity frameworks, and combines deep technical expertise with strong systems thinking, enabling them to identify security risks, design scalable security solutions, and influence engineering teams across the organization. The day-to-day

This role is heavily focused on IA and security architecture, providing guidance across network, software, infrastructure, cloud, and physical security teams to ensure compliance with current and future NIST guidelines.

  • Collaborate with multi-functional teams to develop, build, and/or implement secure architectures for ground and space networks.
  • Lead security reviews for new systems, infrastructure, applications, and technology initiatives.
  • Conduct threat modeling, architecture assessments, and security risk evaluations
  • Create and lead an information security program specific to the constructed architecture.
  • Provide technical and policy guidance that will enable successful RMF security accreditation efforts.
  • Implement the DoD Zero Trust framework within target programs.
  • Develop and maintain security standards, reference architectures, and engineering standard processes.
  • Communicate security risks, recommendations, and architectural decisions to technical and business partners.

Requirements

  • Bachelor’s or Master’s degree in Computer Science, Engineering, Information Security, or related field, or equivalent practical experience.
  • 12+ years of experience leading complex security engineering and architecture initiatives.
  • Strong understanding of security architecture principles and defense-in-depth strategies.
  • Experience designing and implementing security controls in enterprise-scale environments.
  • Hands-on experience securing cloud platforms such as Microsoft Azure, AWS, or Google Cloud Platform.
  • Experience usign SPRS and eMASS platforms.
  • Experience with identity and access management, authentication, authorization, and privileged access controls.
  • Knowledge of network security, endpoint security, vulnerability management, and infrastructure security standard processes.
  • Experience conducting threat modeling, security assessments, and architecture reviews.
  • Proficiency with scripting and automation using PowerShell, Python, Bash, or similar languages.
  • Strong problem-solving, analytical, and troubleshooting skills.
  • Excellent interpersonal skills with the ability to influence technical and non-technical partners.
  • Ability to travel up to 20%. This role will require travel to our offices in Carlsbad, CA and Reston, VA.
  • U.S. Citizenship required.
  • Must have an active Top Secret Clearance.

What will help you on the job

  • CISSP, CCSP, GIAC, Azure Security Engineer, AWS Security Specialty, or similar industry certifications.
  • Experience implementing Zero Trust architectures and modern identity security strategies.
  • Knowledge of cloud-native technologies, containers, Kubernetes, and platform engineering practices.
  • Experience with SIEM, SOAR, XDR, and security monitoring platforms.
  • Experience working within regulated environments and security frameworks such as NIST, CIS Controls, ISO 27001, SOC 2, PCI DSS, or FedRAMP.
  • Extensive familiarity with security automation and DevSecOps methodologies.
  • Ability to influence technical direction across teams without direct authority.
  • Experience presenting security architecture recommendations to senior leaders and executive partners.
  • Experience with MBSE.
  • Proven ability to balance security risk reduction with business and operational objectives.
  • The ability to manage competing priorities and timelines.
  • Strong communication skills, both written and verbal.
  • Strong self-motivation and independent work ethic.

Benefits & conditions

$200,000.00 - $315,500.00 / annually. For specific work locations within San Jose, the San Francisco Bay area and New York City metropolitan area, the base pay range for this role is $248,500.00- $372,500.00/ annually

At Viasat, we consider many factors when it comes to compensation, including the scope of the position as well as your background and experience. Base pay may vary depending on job-related knowledge, skills, and experience. Additional cash or stock incentives may be provided as part of the compensation package, in addition to a range of medical, financial, and/or other benefits, dependent on the position offered. Learn more about Viasat’s comprehensive benefit offerings that are focused on your holistic health and wellness at https://careers.viasat.com/benefits. EEO Statement

About the company

One team. Global challenges. Infinite opportunities. At Viasat, we’re on a mission to deliver connections with the capacity to change the world. For more than 35 years, Viasat has helped shape how consumers, businesses, governments and militaries around the globe communicate. We’re looking for people who think big, act fearlessly, and create an inclusive environment that drives positive impact to join our team.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.localjobnetwork.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

3:52 min

Avoiding remote code execution from unsanitized inputs

Alexander Pirker · World Congress 2022

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · World Congress 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

4:04 min

Overview of Kubernetes operators and custom resource definitions

Philipp Krenn · World Congress 2022

Videos

See all

Related articles

See all