Назад
Company hidden
1 день назад

Principal Software Engineer - Security (Elasticsearch)

159 800 - 252 800$
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Principal Software Engineer - Security (hirify.globalsearch): Lead the architecture and design of hirify.globalsearch Security features including authentication, authorization, and tenant isolation with an accent on high-performance security for distributed data at scale. Focus on building foundational security models, optimizing security performance in distributed systems, and applying cryptographic solutions while driving vulnerability management and mentoring engineers.

Location: United States

Salary: $159,800—$252,800 USD (typical starting range); $191,900—$303,500 USD in select locations

Company

hirify.global builds the hirify.globalsearch Search AI Platform for search, security, and observability at scale.

What you will do

  • Own core security initiatives end-to-end, from architecture through production, delivering major security components inside the hirify.globalsearch core engine.
  • Develop foundational security models for complex features, including robust data isolation for shared infrastructure across customers.
  • Optimize security performance at scale in distributed systems environments.
  • Apply cryptographic solutions to address real customer use cases, including authentication, identity management, and data access management.
  • Drive vulnerability management by partnering with the InfoSec team to identify, assess, and remediate security risks.
  • Use AI-driven tools to automate vulnerability triage, prioritization, and preliminary investigation; mentor and coach engineers.

Requirements

  • Deep knowledge of Java internals and JVM memory management; ability to write high-performance, thread-safe, lock-free code.
  • Proven experience designing and building scalable authorization systems, including RBAC/ABAC models and token validation pipelines (permission compilation and distributed cache invalidation).
  • Strong understanding of distributed systems security, including node-to-node mutual trust, zero-trust transport, partition tolerance, and cluster state propagation.
  • Deep knowledge of edge identity protocols such as OAuth 2.0 and SAML.
  • Proven track record using AI to accelerate development, debug complex systems, and optimize code while owning final outcomes.
  • Ability to collaborate across functions and lead autonomously in a distributed team using asynchronous, direct, and transparent communication.

Nice to have

  • Knowledge of cipher suites, TLS handshakes, and PKI/certificate lifecycle management.
  • Experience with Post-Quantum Cryptography (PQC) readiness and migration to quantum-resistant algorithms.
  • Hands-on mapping of engine-level technical controls to FedRAMP (Moderate/High), FIPS 140, and SOC 2 requirements.
  • Experience working on internals of a data store or search engine.

Culture & Benefits

  • Competitive pay with base salary; eligibility to participate in hirify.global’s stock program.
  • Health coverage for you and your family in many locations.
  • Flexible locations and schedules for many roles.
  • Generous vacation and parental leave (minimum 16 weeks).
  • 401k with dollar-for-dollar matching up to 6% of eligible earnings.
  • Up to 40 hours per year for volunteer projects and donation matching up to $2000 (or local equivalent).

Hiring process

  • Interviews focused on security architecture/design, distributed systems, and authorization/authentication depth.
  • Evaluation of experience with cryptography, vulnerability management, and performance/security trade-offs.
  • Discussion of collaboration style and ability to lead in a distributed engineering environment.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →