Job Closed
This listing is no longer active.
The leading provider of enterprise open source solutions.
Principal Product Security Engineer
Location
District of Columbia + 1 moreAll locations: District of Columbia | North Carolina
Posted
124 days ago
Salary
$164.9K - $271.9K / year
Seniority
Lead
Job Description
Principal Product Security Engineer
Red Hat
• Serve as Red Hat's senior subject matter expert (SME) on cryptographic strategy, influencing and contributing to upstream communities (e.g., Go, python) and standards bodies (IETF) • Own and evolve the Portfolio’s formal cryptographic policy, defining the standards for algorithm use, key lengths, and protocol implementation across all products • Serve as the central authority for cryptographic compliance strategy, working with the Product teams and Business Unit leaders to align engineering efforts with government and regulatory requirements • Architect and govern the strategy for a common cryptographic API in conjunction with RHEL Security • Define the high-level requirements for our Cryptographic Bill of Materials (CBOM) and runtime auditing tools.
Job Requirements
- Deep and broad expertise in applied cryptography (PKI, TLS, digital signatures) and core libraries (OpenSSL, NSS, GnuTLS, go)
- Expert-level understanding of modern cryptographic challenges and protocols, including Post-Quantum Cryptography (PQC)
- Proven experience architecting and driving complex, cross-portfolio technical strategy in a large, matrixed organization
- Demonstrable experience in authoring, evangelizing, and governing technical security policy, especially related to compliance standards like FIPS
- Ability to translate complex cryptographic concepts into actionable plans for engineering, product management, and executive leadership
- Bonus Skills: Deep knowledge of HSMs/PKCS#11, hardware-based key protection, and standards body participation.
Benefits
- Comprehensive medical, dental, and vision coverage
- Flexible Spending Account - healthcare and dependent care
- Health Savings Account - high deductible medical plan
- Retirement 401(k) with employer match
- Paid time off and holidays
- Paid parental leave plans for all new parents
- Leave benefits including disability, paid family medical leave, and paid military leave
- Additional benefits including employee stock purchase plan, family planning reimbursement, tuition reimbursement, transportation expense account, employee assistance program, and more!
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Define and evolve CrowdStrike’s cloud security category strategy, disrupting legacy CSPM and fragmented CNAPP approaches • Shape an adversary-centric, platform-driven narrative that redefines how the market understands cloud security • Own global positioning and messaging for Falcon Cloud Security, ensuring clarity, differentiation, and consistency • Translate complex technical capabilities into outcome-driven stories for CISOs, cloud security leaders, and executives • Define core cloud security use cases, solution narratives, and buyer journeys • Drive awareness, adoption, and pipeline impact across enterprise and mid-market segments • Lead executive-level go-to-market strategy for major launches and platform expansions • Partner with field, demand, and digital teams to ensure messaging drives measurable revenue outcomes • Lead global go-to-market execution for new cloud security capabilities and major releases • Serve as the product marketing hub across Product, Engineering, Sales, Customer Success, and Marketing • Influence roadmap and investment priorities through market, customer, and competitive insight • Lead and scale a high-performing team of senior product marketing leaders • Set a high bar for strategic rigor, storytelling quality, and operational excellence • Build a culture of accountability, urgency, and pride of craft • Own cloud security analyst strategy across Gartner, Forrester, and IDC • Establish product marketing as the authoritative voice on cloud security competition and buyer dynamics • Ensure sales teams are equipped to win against CNAPP vendors, CSPM point tools, and native cloud providers • Represent CrowdStrike as a cloud security thought leader with customers, analysts, and industry forums
• Operates and maintains SIEM tools and components, such as log aggregators, forwarders, and data observability systems • Tests, implements, and tunes new on-premises and cloud-based technical environments that support infrastructure visibility, analysis, automation, and secure data retention • Develops content that enables cybersecurity personnel to take maximum advantage of existing tool capabilities, including workflows, integrations, and automated tasks • Collaborates across Information Technology Services teams to integrate SIEM components with cybersecurity enrichment and analysis platforms and system management tools • Creates and maintains architectural documentation and operational procedures that describe the scope, purpose, configuration, use, and maintenance of the SIEM tools and environments • Contributes to projects (as assigned or independently) that improve the effectiveness and efficiency of a cybersecurity program, including but not limited to workflow improvements, automation expansion, management tool enhancements, program or strategic initiatives, and user awareness training
• Monitor security alerts and events continuously in a 24x7 environment • Perform **triage, validation, and qualification of alerts**, reducing false positives and prioritizing real risks • Conduct **security investigations** and **threat hunting** activities, correlating events and developing attack hypotheses • Open, update, and maintain **tickets in ITSM/SOC** (e.g., Jira), following quality standards and required fields
Subject Matter Expert – Security & Networking Technologies
OmnissaWe make digital work, work – for businesses and their people.
• Act as the go-to expert for complex technical cases involving network security, identity integrations, and secure connectivity. • Troubleshoot advanced issues related to firewall policies, VPN configurations, SD-WAN, and secure application delivery. • Integrate and support Microsoft Entra ID, Okta, and other identity providers for SSO, federation, and conditional access scenarios. • Perform in-depth analysis of authentication flows (SAML, OAuth 2.0, OpenID Connect) and resolve associated token or access issues. • Partner with Engineering and Product teams to influence long-term security and networking improvements. • Create and maintain knowledge base articles, technical documentation, and best practice playbooks for internal and external audiences. • Mentor frontline solution engineers and contribute to internal training and enablement programs. • Participate in customer engagements, security workshops, and architecture reviews as a trusted technical advisor.




