Elastic logo
Elastic

Self-described as the leading platform for search-powered solutions, Elastic helps organizations, their customers, and their employees find what they need faste

Principal Software Engineer - Security - Elasticsearch

Location

United States

Posted

8 days ago

Salary

$191.9K - $303.5K / year

Seniority

Lead

Job Description

Principal Software Engineer - Security - Elasticsearch

Elastic

Role Description We are seeking a Principal Software Engineer to join the Elasticsearch Security team. In this role, you will lead the architecture and design of Elasticsearch's main features, including: - Authentication - Authorization - Tenant isolation Your goal is to provide high-performance security at all levels, ensuring that our distributed data store has top-quality security at scale. What You Will Be Doing - Owning core security initiatives from architecture to production, focusing on the delivery of new critical features. - Leading the technical design, plan, and execution for major security components inside the Elasticsearch core engine. - Developing the foundational security models for intricate features. - Optimizing security performance at scale in distributed systems environments. - Applying cryptographic solutions to address genuine customer use cases. - Ensuring robust data isolation within shared infrastructure supporting disparate customers. - Monitoring and applying the latest advancements and best practices in security, including: - Authentication - Identity management - Cryptography - Data access management - Collaborating with peers across the company to embed security into new customer features from the outset. - Driving vulnerability management efforts by collaborating closely with the InfoSec team to proactively identify, assess, and remediate security risks. - Leveraging AI-driven tools to automate vulnerability triage, prioritization, and preliminary investigation, streamlining security workflows and reducing manual intervention. - Mentoring and coaching other engineers, fostering a culture of technical excellence and security-first development. Qualifications - Deep knowledge of Java internals and JVM memory management. - Understanding of concurrency models. - Ability to write high-performance, thread-safe, and lock-free code. - Proven experience in designing and building scalable authorization systems. - Solid comprehension of distributed systems security. - Deep knowledge of edge identity protocols (OAuth 2.0, SAML). - Proven track record of using AI to accelerate development and optimize code. - Ability to collaborate across functions and teams. - Capability to work autonomously and drive decisions. Bonus Points - Knowledge of cipher suites, TLS handshakes, and PKI/certificate lifecycle management. - Cryptographic methods considering memory usage and delays. - Familiarity with the implications of Post-Quantum Cryptography (PQC). - Hands-on experience mapping engine-level technical controls to FedRAMP (Moderate/High), FIPS 140, and SOC 2 requirements. - Experience working on the internals of a data store or search engine. Compensation Compensation for this role is in the form of base salary. The typical starting salary range for new hires in this role is: - $159,800 — $252,800 USD In select locations (including Seattle WA, Los Angeles CA, the San Francisco Bay Area CA, and the New York City Metro Area), an alternate range may apply: - $191,900 — $303,500 USD Benefits - Competitive pay based on the work you do here and not your previous salary. - Health coverage for you and your family in many locations. - Flexible locations and schedules for many roles. - Generous number of vacation days each year. - Matching up to $2000 for financial donations and service. - Up to 40 hours each year to use toward volunteer projects. - A minimum of 16 weeks of parental leave.

Related Categories

Related Job Pages

More Security Engineer Jobs

Elastic logo

Principal Software Developer - Security - Elasticsearch

Elastic

Self-described as the leading platform for search-powered solutions, Elastic helps organizations, their customers, and their employees find what they need faste

Role Description We are seeking a Principal Software Developer to join the Elasticsearch Security team. In this role, you will lead the architecture and design of Elasticsearch's main features, including: - Authentication - Authorization - Tenant isolation Your goal is to provide high-performance security at all levels, ensuring that our distributed data store has top-quality security at scale. What You Will Be Doing - Owning core security initiatives from architecture to production, focusing on the delivery of new critical features. - Leading the technical design, plan, and execution for major security components inside the Elasticsearch core engine. - Developing the foundational security models for intricate features. - Optimizing security performance at scale in distributed systems environments. - Applying cryptographic solutions to address genuine customer use cases. - Ensuring robust data isolation within shared infrastructure supporting disparate customers. - Monitoring and applying the latest advancements and best practices in security, including: - Authentication - Identity management - Cryptography - Data access management - Collaborating with peers across the company to embed security into new customer features from the outset. - Driving vulnerability management efforts by collaborating closely with the InfoSec team to proactively identify, assess, and remediate security risks. - Leveraging AI-driven tools to automate vulnerability triage, prioritization, and preliminary investigation, streamlining security workflows and reducing manual intervention. - Mentoring and coaching other engineers, fostering a culture of technical excellence and security-first development. Qualifications - Deep knowledge of Java internals and JVM memory management. - Understanding of concurrency models and ability to write high-performance, thread-safe, and lock-free code. - Proven experience in designing and building scalable authorization systems, including RBAC/ABAC models and token validation pipelines. - Solid comprehension of distributed systems security, including node-to-node mutual trust and zero-trust transport. - Deep knowledge of edge identity protocols (OAuth 2.0, SAML). - Proven track record of using AI to accelerate development and optimize code. - Ability to collaborate across functions and teams, transitioning between different projects based on business priorities. - Ability to work autonomously, drive decisions, and lead a distributed team. Bonus Points - Knowledge of cipher suites, TLS handshakes, and PKI/certificate lifecycle management. - Cryptographic methods considering memory usage and delays. - Familiarity with Post-Quantum Cryptography (PQC) and readiness to support migration to quantum-resistant algorithms. - Hands-on experience mapping engine-level technical controls to FedRAMP, FIPS 140, and SOC 2 requirements. - Experience working on the internals of a data store or search engine. Compensation Compensation for this role is in the form of base salary. The typical starting salary range for new hires in this role is: - $154,000 — $243,600 CAD This role does not have a variable compensation component. An employee's position within the salary range will be based on several factors including education, qualifications, certifications, experience, skills, geographic location, performance, and business needs. Benefits - Competitive pay based on the work you do here and not your previous salary. - Health coverage for you and your family in many locations. - Flexible locations and schedules for many roles. - Generous number of vacation days each year. - We match up to $2000 (or local currency equivalent) for financial donations and service. - Up to 40 hours each year to use toward volunteer projects. - Minimum of 16 weeks of parental leave.

Ukraine + 6 moreAll locations: Ukraine | Russia | Belarus | Cuba | Iran | North Korea | Syria
C$154K - C$243.6K / year
Abbott logo

Senior Cybersecurity Specialist

Abbott

As an employer, Abbott is interested in candidates who are passionate about creating healthy solutions and making a difference in the world. Abbott offers compe

• Assist Compliance and Information Security in providing internal control assessment, auditing and monitoring, risk management and mitigation • Work with a variety of cross-functional teams to ensure compliance with standards, laws, regulations, and policies • Support external and internal audit activities such as gap assessments, remediation, planning and coordination • Ensure compliance of business continuity management policies and procedures in accordance with applicable regulatory requirements • Develop and maintain information security standards, guidelines, and procedures • Conduct threat and risk analysis and analyze the business impact of new and existing systems and technologies to eliminate risk, performance, and capacity issues • Assist with incident response as events are escalated, including triage, remediation, and documentation.

California
$99.3K - $198.7K / year
Elastic logo

Senior Software Developer - Security - Elasticsearch

Elastic

Self-described as the leading platform for search-powered solutions, Elastic helps organizations, their customers, and their employees find what they need faste

Role Description We are seeking a Senior Software Developer to join the Elasticsearch Security team. In this role, you will contribute to the architecture and design of Elasticsearch's main features, including: - Authentication - Authorization - Tenant isolation Your goal is to participate in providing high-performance security at all levels, ensuring that our distributed data store has top-quality security at scale. What You Will Be Doing - Contributing to core security initiatives from architecture to production, focusing on the delivery of new critical features. - Participating in the technical design, planning, and execution for major security components inside the Elasticsearch core engine. - Developing the foundational security models for features. - Optimizing security performance at scale in distributed systems environments. - Applying cryptographic solutions to address genuine customer use cases. - Ensuring robust data isolation within shared infrastructure supporting disparate customers. - Monitoring and applying the latest advancements and best practices in security, including authentication, identity management, cryptography, and data access management. - Collaborating with peers across the company to embed security into new customer features from the outset. - Driving vulnerability management efforts by collaborating closely with the InfoSec team to proactively identify, assess, and remediate security risks. - Leveraging AI-driven tools to automate vulnerability triage, prioritization, and preliminary investigation, streamlining security workflows and reducing manual intervention. Qualifications - Deep knowledge of Java internals and JVM memory management. - Understanding of concurrency models. - Ability to write high-performance, thread-safe, and lock-free code. - Experience with large open-source and enterprise codebases. - Experience building scalable and performant authorization systems under high concurrency and large permission sets. - Solid comprehension of distributed systems security, including node-to-node mutual trust and zero-trust transport. - Deep knowledge of edge identity protocols (OAuth 2.0, SAML). - Proven track record of using AI to accelerate development and optimize code. - Ability to collaborate across functions and teams. - Capability to work autonomously in a distributed team. Bonus Points - Knowledge of cipher suites, TLS handshakes, and PKI/certificate lifecycle management. - Cryptographic methods considering memory usage and delays. - Familiarity with Post-Quantum Cryptography (PQC) and readiness to support migration to quantum-resistant algorithms. - Hands-on experience mapping engine-level technical controls to FedRAMP (Moderate/High), FIPS 140, and SOC 2 requirements. - Experience working on the internals of a data store or search engine. Compensation Compensation for this role is in the form of base salary. This role does not have a variable compensation component. The typical starting salary range for new hires in this role is: - $128,300 — $203,000 CAD Factors influencing salary include relevant education, qualifications, certifications, experience, skills, geographic location, performance, and business needs. Benefits - Competitive pay based on the work you do. - Health coverage for you and your family in many locations. - Flexible locations and schedules for many roles. - Generous vacation days each year. - Financial matching for donations and service up to $2000. - Up to 40 hours each year for volunteer projects. - A minimum of 16 weeks of parental leave. Additional Information Elastic is an equal opportunity employer and is committed to creating an inclusive culture that celebrates different perspectives, experiences, and backgrounds. Qualified applicants will receive consideration for employment without regard to race, ethnicity, color, religion, sex, pregnancy, sexual orientation, gender perception or identity, national origin, age, marital status, protected veteran status, disability status, or any other basis protected by law. We welcome individuals with disabilities and strive to create an accessible and inclusive experience for all individuals. To request an accommodation during the application or recruiting process, please email candidate_accessibility@elastic.co .

Canada
C$128.3K - C$203K / year
Elastic logo

Senior Software Engineer - Security - Elasticsearch

Elastic

Self-described as the leading platform for search-powered solutions, Elastic helps organizations, their customers, and their employees find what they need faste

Role Description We are seeking a Senior Software Engineer to join the Elasticsearch Security team. In this role, you will contribute to the architecture and design of Elasticsearch's main features, including: - Authentication - Authorization - Tenant isolation Your goal is to participate in providing high-performance security at all levels, ensuring that our distributed data store has top-quality security at scale. What You Will Be Doing - Contributing to core security initiatives from architecture to production, focusing on the delivery of new critical features. - Participating in the technical design, planning, and execution for major security components inside the Elasticsearch core engine. - Developing the foundational security models for features. - Optimizing security performance at scale in distributed systems environments. - Applying cryptographic solutions to address genuine customer use cases. - Ensuring robust data isolation within shared infrastructure supporting disparate customers. - Monitoring and applying the latest advancements and best practices in security, including authentication, identity management, cryptography, and data access management. - Collaborating with peers across the company to embed security into new customer features from the outset. - Driving vulnerability management efforts by collaborating closely with the InfoSec team to proactively identify, assess, and remediate security risks. - Leveraging AI-driven tools to automate vulnerability triage, prioritization, and preliminary investigation, streamlining security workflows and reducing manual intervention. Qualifications - Deep knowledge of Java internals and JVM memory management. - Understanding of concurrency models. - Ability to write high-performance, thread-safe, and lock-free code. - Experience with large open-source and enterprise codebases. - Experience building scalable and performant authorization systems under high concurrency and large permission sets. - Solid comprehension of distributed systems security, including node-to-node mutual trust and zero-trust transport. - Deep knowledge of edge identity protocols (OAuth 2.0, SAML). - Proven track record of using AI to accelerate development and optimize code. - Ability to collaborate across functions and teams. - Capability to work autonomously in a distributed team. Bonus Points - Knowledge of cipher suites, TLS handshakes, and PKI/certificate lifecycle management. - Cryptographic methods considering memory usage and delays. - Familiarity with Post-Quantum Cryptography (PQC) and readiness to support migration to quantum-resistant algorithms. - Hands-on experience mapping engine-level technical controls to FedRAMP, FIPS 140, and SOC 2 requirements. - Experience working on the internals of a data store or search engine. Compensation Compensation for this role is in the form of base salary. The typical starting salary range for new hires in this role is: - $133,100 — $210,600 USD In select locations (including Seattle WA, Los Angeles CA, the San Francisco Bay Area CA, and the New York City Metro Area), an alternate range may apply: - $159,900 — $252,900 USD Elastic believes that employees should have the opportunity to share in the value created for shareholders. This role is currently eligible to participate in Elastic's stock program. Our total rewards package includes: - Company-matched 401k with dollar-for-dollar matching up to 6% of eligible earnings. - A range of other benefits with a holistic emphasis on employee well-being. Additional Information - We Take Care of Our People - Competitive pay based on the work you do here and not your previous salary. - Health coverage for you and your family in many locations. - Ability to craft your calendar with flexible locations and schedules for many roles. - Generous number of vacation days each year. - Matching up to $2000 for financial donations and service. - Up to 40 hours each year to use toward volunteer projects. - Minimum of 16 weeks of parental leave. Elastic is an equal opportunity employer and is committed to creating an inclusive culture that celebrates different perspectives, experiences, and backgrounds. We welcome individuals with disabilities and strive to create an accessible and inclusive experience for all individuals.

United States + 7 moreAll locations: United States | Ukraine | Russia | Belarus | Cuba | Iran | North Korea | Syria
$159.9K - $252.9K / year