The Mathworks

Principal Security Engineer

The Mathworks$130K — $160K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree and 10 years of professional experience required.
  • Proficient in programming languages like Python, Rust, or Go.
  • Experienced in security threat modeling, penetration testing, and security reviews.
  • Strong understanding of the software development lifecycle in complex enterprise settings.
  • Knowledgeable about modern attack vectors targeting software supply chains.
  • Familiar with trusted software supply chain concepts and tools such as Jenkins, GitHub, and Kubernetes.
  • Ability to collaborate across large, distributed engineering teams.

Responsibilities

  • Design and implement security controls for the CI/CD pipeline and developer platforms.
  • Collaborate with teams to integrate security best practices into workflows.
  • Lead threat modeling and risk assessments for build and release processes.
  • Develop and deploy custom security solutions as required.
  • Monitor and respond to security threats against development infrastructure.
  • Drive innovation in automation and security systems design.
  • Foster security knowledge sharing and mentorship among teams.
  • Stay updated on evolving threats and security trends.

Benefits

  • Hybrid work model allowing a mix of office and remote work.
  • Growth opportunities and emphasis on inclusivity.
  • Encouragement of initiative and teamwork.
  • Recognition and reward for excellence in performance.
Full Job Description
Job Summary

We're looking for a hands-on, highly collaborative Principal Security Engineer to secure our software delivery pipeline. You'll take ownership of protecting our CI/CD processes, Artifactory, and Internal Developer Platform against supply chain risks and malware attacks. This is a technical, impact-driven role where your expertise in threat modeling, security architecture, and systems design will shape our approach to secure software delivery at scale.

Responsibilities

  • Design, implement, and continuously improve security controls across our CI/CD pipeline, Artifactory, and developer platforms
  • Collaborate with various teams and key stakeholders within the organization to embed security best practices in software delivery workflows
  • Lead threat modeling and risk assessments for our build and release pipelines
  • Build and deploy custom security solutions and integrations as needed
  • Monitor, detect, and respond to threats targeting our development infrastructure
  • Drive innovation in automation, security architecture, and systems design
  • Foster a strong security culture through knowledge sharing and mentorship
  • Stay ahead of the latest threats, attacker methodologies, and evolving security trends to continuously refine our efforts


Minimum Qualifications

  • A bachelor's degree and 10 years of professional work experience (or equivalent experience) is required.


Additional Qualifications

  • Proficiency in programming languages such as Python, Rust, or Go
  • Experience with security threat modeling, penetration testing, and security reviews.
  • Deep understanding of the software development lifecycle (SDLC), particularly in large, complex enterprise environments, and a passion for improving the developer experience
  • Deep understanding of modern attack vectors targeting software supply-chain through malicious code, third-party libraries, and CI/CD systems
  • Advanced knowledge of developer tools, internal build and dependency systems
  • Experience with trusted software supply chain concepts, including security standards and best practices (e.g., SLSA), dependency/package management, vulnerability scanning, signing, provenance, and tools such as TeamCity, Jenkins, GitHub, GitLab, Artifactory, and Kubernetes
  • Experience with Cloud Native Computing Foundation (CNCF) projects related to CI/CD, security, and developer workflow
  • Ability to collaborate with large, distributed engineering teams to contextualize and prioritize supply chain threats

About The Mathworks

The MathWorks, Inc. is an American software company that specializes in mathematical computing software. The company was founded in 1984 and is headquartered in Natick, Massachusetts. The MathWorks offers a range of products, including MATLAB, Simulink, and Stateflow, which are used in engineering, science, and mathematics. The company serves customers in over 100 countries and has partnerships with major technology companies such as Microsoft and Intel. In 2019, The MathWorks was named one of the best places to work by Glassdoor.
Learn more about The Mathworks
Size
5,000 employees
Industry
Founded
1984

Similar Jobs

More Jobs at The Mathworks

More Information Technology Jobs

Find similar Principal Security Engineer jobs: