An industry-leading retailer with corporate headquarters in Minneapolis, Minnesota, Target operates over 1,800 stores in 47 states, as well as several distribut
Principal Engineer - Security Architecture
Location
Minnesota
Posted
16 days ago
Salary
$168K - $303K / year
Seniority
Senior
Job Description
Principal Engineer - Security Architecture
Target
Title: Principal Engineer - Security Architecture(Remote Or Hybrid) Location: MN-Brooklyn Park Job Description: $168,000 - $303,000 USD annually Full-time Pay is based on several factors which vary based on position. These include labor markets and in some instances may include education, work experience and certifications. In addition to your pay, Target cares about and invests in you as a team member, so that you can take care of yourself and your family. Target offers eligible team members and their dependents comprehensive health benefits and programs, which may include medical, vision, dental, life insurance and more, to help you and your family take care of your whole selves. Other benefits for eligible team members include 401(k), employee discount, short term disability, long term disability, paid sick leave, paid national holidays, and paid vacation. About Us: Working at Target means helping all families discover the joy of everyday life. We bring that vision to life through our values and culture. Learn more about Target here. Target is one of the world’s most recognized brands and one of America’s leading retailers. But behind the brand our guests love, is a culture of continual innovation and right now, we are up to big things! Target’s security team is a place where innovation happens daily. Interested in a culture that combines ongoing learning, engineering excellence, and stellar outcomes? We are too – that’s why we work here. Join our team to improve Target’s security and move the business forward. As a Principal Security Architect/Engineer, you’ll collaborate with technical and leadership teams across all of Target Tech to ensure that systems are designed and built securely. You will identify relevant security risks, develop appropriate mitigation strategies, integrate security functions and controls into the overall system architecture, evaluate and provide feedback on proposed architectures, and design secure architecture. This role is highly technical, and you bring a deep understanding of security risks, controls, mitigations, and standards to a collaborative and advisory role, helping the rest of the enterprise as new platforms and systems are built, and as existing ones are modified over time. Beyond the deep expertise, you have great interpersonal skills: our Security Architects are called upon to collaborate across the enterprise, and have exceptional communication skills that enable open and cooperative partnerships. Expect to: • Collaborate with system designers to integrate security requirements into the design phase of IT systems • Develop and maintain security architecture documentation, including security models, frameworks, and diagrams • Ensure that security architecture aligns with the organization’s business objectives and regulatory requirements • Understand security risks in order to identify potential vulnerabilities and threats • Develop risk mitigation strategies and recommend appropriate security controls • Design and implement security solutions, including firewalls, encryption protocols, and access control mechanisms • Collaborate with development and operations teams to ensure secure creation and deployment of IT systems • Provide guidance on secure coding practices • Prioritize driving highly impactful changes that improve the business • Conduct full-stack architecture reviews of products and platforms • Provide expertise on information security for complex systems and applications in cloud and on-prem environments • Design security reference architectures and create implementation/configuration guides • Provide expertise on creation and implementation of security controls with an emphasis on cloud technologies • Efficiently assess and communicate risk accurately while negotiating priorities with cross-domain stakeholders • Collaborate with engineering teams to perform advanced security analysis on complex cloud systems, identifying gaps while contributing to design solutions and security requirements Core responsibilities of this job are described within this job description. Job duties may change at any time due to business needs. About You: • 4-year degree OR equivalent experience • Polyglot programmer comfortable in many languages across different platforms • 10+ years of hands-on experience in technology, with extensive knowledge of cybersecurity domains including Information Protection, Cloud Security (GCP strongly preferred), Networking Security, IAM, Automation, and SIEM • Demonstrated curiosity and ability to learn • Expertise in containerization technologies and tools • Solid understanding of AI/ML • Seeks out cross-team collaboration opportunities • Stays current on relevant technologies with self-directed learning • Excellent written and verbal interpersonal skills with strong presentation abilities • Proven history of effectively utilizing a variety of security tools and technologies across diverse environments. The ideal candidate will not be limited to specific vendors or solutions but will possess the technical depth to comprehend and implement an end-to-end solution that aligns with our reference security architecture's requirements • Good understanding of security management workflows in large enterprise organizations and complex environments • Has a good understanding of the current threat landscape and the challenges that most organizations are facing • In-depth knowledge of security frameworks, standards, and best practices (e.g., NIST, ISO/IEC 27001) • Strong understanding of network security, cryptography, and secure software development • Experience with security technologies, such as firewalls, IDS/IPS, SIEM, and DLP • Excellent analytical, problem-solving, and communication skills Preferred: • GCP native security product experience (VPC Service Controls, Organization constraints, Cloud Armor, NextGen Firewall etc.) • Working knowledge of policy-as-code (either OPA/Rego or SEL) • Experience with Google SCC or Wiz is a plus • LLM Security expertise • Vertex AI experience • AWS or Azure experience This position may be considered for a Remote or Hybrid (known internally at Target as "Flex for Your Day") work arrangement based on Target's needs. A Remote work arrangement means the team member works full-time from home or an alternate location that's not a Target location, does not have a desk at a Target location and may travel to HQ up to 4 times a year. A Hybrid/Flex for Your Day work arrangement means the team member's core role may be performed either remote or onsite at a Target location depending upon what your role, team and tasks require for that day. Work duties cannot be performed outside of the country of the primary work location, unless otherwise prescribed by Target. Benefits Eligibility Americans with Disabilities Act (ADA) In compliance with state and federal laws, Target will make reasonable accommodations for applicants with disabilities. If a reasonable accommodation is needed to participate in the job application or interview process,
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Ethical Hacker, Portuguese
Autonomic MindWe drive innovation, enhance growth and highlight regional talent. Behind every technology project there is a great team
• Perform penetration tests on web, mobile (Android and iOS), and desktop applications. • Conduct vulnerability research in static code and in the source code of web applications. • Apply SAST and DAST techniques at different stages of development. • Perform penetration testing on on-premises infrastructure and cloud environments. • Automate analysis and vulnerability detection processes using scripts. • Document and communicate findings clearly to the technical team. • Actively collaborate within a remote, multicultural, and multilingual team.
• Ensure the Information Security organization speaks with one clear, consistent, and credible voice — in its writing, its visuals, and the artifacts that carry the program to the rest of the enterprise. • Design and produce Board-level and executive security materials — risk reports, posture dashboards, program updates, and decision briefs — translating technical findings into clear narratives and high-impact visuals for non-technical leadership. • Help design a unified security-metrics reporting layer in which a single, shared pool of metrics is surfaced at every altitude — operational dashboards for analysts, reporting for management, and narrative for executives and the Board. • Author and maintain security policies, standards, procedures, and control narratives, ensuring alignment with frameworks such as NIST CSF, PCI-DSS, and SOX. • Conceive, write, illustrate, and produce security awareness and training content — e-learning modules, microlearning, phishing-simulation creative, infographics, posters, and campaign materials. • Produce and maintain operational documentation for the security organization — runbooks, incident-response playbooks, the InfoSec operations manual, and executive incident summaries.
Information Security Engineer - ThousandEyes(Hybrid)
Cisco ThousandEyesCisco ThousandEyes is a Digital Experience Assurance platform that empowers organizations to deliver flawless digital experiences across every network – even the ones they don’t own. Powered by AI and an unmatched set of cloud, internet and enterprise network telemetry data, ThousandEyes enables IT teams to proactively detect, diagnose, and remediate issues – before they impact end- user experiences. ThousandEyes is deeply integrated across the entire Cisco technology portfolio and beyond, helping customers deploy at scale while also delivering AI-powered assurance insights within Cisco’s leading Networking, Security, Collaboration, and Observability portfolios.
This role follows a hybrid work model, with in-office attendance expected once a week in the Poland office. KRAKOW - ENTERPRISE PARK BLDG C Aleja Powstancow Wielkopolskich 13C Enterprise Park KRAKOW, LESSER POLAND 30-707 Meet the Team Cisco ThousandEyes is a Digital Experience Assurance platform that empowers organizations to deliver flawless digital experiences across every network - even the ones they don't own. Powered by AI and an unmatched set of cloud, internet and enterprise network telemetry data, ThousandEyes enables IT teams to proactively detect, diagnose, and remediate issues - before they impact end- user experiences. ThousandEyes is deeply integrated across the entire Cisco technology portfolio and beyond, helping customers deploy at scale while also delivering AI-powered assurance insights within Cisco's leading Networking, Security, Collaboration, and Observability portfolios. Your Impact The impact of this role centers on providing deep technical leadership through multi-functional collaboration to identify requirements and deliver solutions that meet project and departmental objectives. You will embed robust security controls into architectural designs and work closely with security teams to enhance safeguards and support incident response efforts. A key responsibility is leading information security risk management activities, including conducting risk assessments, developing treatment plans, and performing internal audits to evaluate control effectiveness. You will also support major external security certification and compliance initiatives, ensuring adherence to industry standards and regulatory requirements. This position requires managing and coordinating security projects and processes, driving risk mitigation efforts, and holding stakeholders accountable for remediation plans. Success in this role depends on effective communication, project management skills, and a proactive approach to securing systems, services, and data across the organization. Minimum Qualifications - Experience with networking automation or API-focused scripting (e.g., Bash or Python). - Solid understanding of security principles in web technologies, networking, and Linux environments - Proficiency in at least one automation programming language such as Python, shell scripting, GoLang, or TypeScript. - Strong proficiency in English, including excellent written communication and interpersonal skills. Demonstrated ability to work both independently and multi-functionally, effectively managing responsibilities across diverse geographic locations and organizational boundaries. - Bachelor's degree with 3+ years of experience Preferred Qualifications: - Advanced expertise in Linux OS, network protocols, web security architectures (e.g., nginx, apache), and security technologies like Firewalls, IAM, IDS/IPS, SIEM, or Cryptography. - Experience leading information security risk assessments and performing code reviews or integration testing. - Experience deploying, securing, and maintaining Kubernetes environments. - Familiarity with security frameworks and compliance standards such as ISO 27001, SOC2, FedRAMP, NIST, and global data protection laws. - Relevant security certifications (e.g., CISSP, CISM, CCSP) or project management certifications (e.g., PMP). Why Cisco? At Cisco, we're revolutionizing how data and infrastructure connect and protect organizations in the AI era - and beyond. We've been innovating fearlessly for 40 years to create solutions that power how humans and technology work together across the physical and digital worlds. These solutions provide customers with unparalleled security, visibility, and insights across the entire digital footprint. Fueled by the depth and breadth of our technology, we experiment and create meaningful solutions. Add to that our worldwide network of doers and experts, and you'll see that the opportunities to grow and build are limitless. We work as a team, collaborating with empathy to make really big things happen on a global scale. Because our solutions are everywhere, our impact is everywhere. We are Cisco, and our power starts with you.
Principal Architect - Information Security
CencoraCencora, formerly known as AmerisourceBergen, is a publicly-traded pharmaceutical service company with locations spanning the globe. As an employer, the company
Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today! Job Details PRIMARY DUTIES AND RESPONSIBILITIES: - Leads and oversees the design and implementation of advanced and complex enterprise information security architectures and solutions - Provides technical leadership to the Information security team consisting of Architects, Analysts, and Engineers - Reviews security technologies, tools, and services and provides recommendations to IT, business, and project teams ensuring that solutions are in line with the architecture direction and business strategies - Develops and maintains a security architecture process that enables the enterprise to develop and implement security solutions and capabilities aligned with the business, technology, and threat drivers - Defines the future state of Information Security Strategy solution architecture - Executes security engagements during different phases of the lifecycle assessment, design, and implementation - Works with senior stakeholders to find effective security solutions that work towards improving the overall security posture of the organization by balancing business requirements with cybersecurity needs - Provides guidance, & coaching to Architects I/II and provides overall technical expertise to the Information security department and business stakeholders - Develops, matures, and maintains security architecture strategy, principles, models, standards, guidelines, and configurations - Defines key building blocks for future state architecture and creates a roadmap to realize the same - Researches, models, and tracks secure system standards, industry trends, market technology, potential threats, tactics, and procedures for ecosystem applicability and reference - Creates detailed and clear functional technical requirements for the organization's security operations engagement and interaction, ensuring stakeholders clearly understand how to engage with Information Security Strategy services - Analyzes root cause for technical issues, and design measures and methods to mitigate future re-occurrences - Identifies solutions and implements automation of vulnerability scanning and monitoring of the organization's infrastructure, applications, and network - Prioritizes architectural needs and solutions with other senior executives and ensures they are in line with, criticality, feasibility, and Information Security Strategy EDUCATIONAL QUALIFICATIONS: Education: - Bachelor's Degree in Computer Science, Information Technology or any other related discipline or equivalent related experience. Preferred Certifications: - Azure Security Engineer Certification - Certified Cloud Security Professional (CCSP) - Certification in Information Security Strategy Management (CISM) - Certified Information Systems Security Professional (CISSP) - CompTIA Security + Certification - Project Management Professional (PMP) Certification - Systems Security Certified Practitioner (SSCP) - TS-SCI Security Clearance Certification WORK EXPERIENCE: - 12+ years of directly-related or relevant experience, preferably in information security. SKILLS & KNOWLEDGE: Behavioral Skills: - Coaching and Mentoring - Decision Making - Impact and Influencing - Leadership Skills - Multitasking - Presentation Skills - Planning Technical Skills: - Application Architecture - Cybersecurity - Enterprise Architecture - Information Security Strategy Standards (SOX, ISO 27001/27002, COBIT, ITIL, NIST, PCI) - IT Risk Management - Network Solutions and Systems - Information Security Strategy - Threat Modelling - Security and Compliance Frameworks (i.e. CCM, NIST 800-53, CIS) Tools Knowledge: - Microsoft Office Suite - Programming and Development Languages - JavaScript, HTML/CSS, Python, SQL - Security Tools - SIEM, EDR, Email Security Gateway, SOAR, Firewall, Anti-virus, Firewalls, VPN IDS/IPS, AV, proxies, etc. What Cencora offers We provide compensation, benefits, and resources that enable a highly inclusive culture and support our team members' ability to live with purpose every day. In addition to traditional offerings like medical, dental, and vision care, we also provide a comprehensive suite of benefits that focus on the physical, emotional, financial, and social aspects of wellness. This encompasses support for working families, which may include backup dependent care, adoption assistance, infertility coverage, family building support, behavioral health solutions, paid parental leave, and paid caregiver leave. To encourage your personal growth, we also offer a variety of training programs, professional development resources, and opportunities to participate in mentorship programs, employee resource groups, volunteer activities, and much more. For details, visit https://www.virtualfairhub.com/cencora Full time Salary Range* $156,300 - 241,010 *This Salary Range reflects a National Average for this job. The actual range may vary based on your locale. Ranges in Colorado/California/Washington/New York/Hawaii/Vermont/Minnesota/Massachusetts/Illinois State-specific locations may be up to 10% lower than the minimum salary range, and 12% higher than the maximum salary range. Equal Employment Opportunity Cencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law. The company's continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non-discriminatory. Cencora is committed to providing reasonable accommodations to individuals with disabilities during the employment process which are consistent with legal requirements. If you wish to request an accommodation while seeking employment, please call 888.692.2272 or email hrsc@cencora.com. We will make accommodation determinations on a request-by-request basis. Messages and emails regarding anything other than accommodations requests will not be returned Affiliated Companies: Affiliated Companies: AmerisourceBergen Services Corporation




