- Company Name
- Circle
- Job Title
- Senior Principal Security Engineer, Cloud Security
- Job Description
-
**Job title**
Senior Principal Security Engineer, Cloud Security
**Role Summary**
Lead the design, implementation, and continuous improvement of a global cloud‑security posture for blockchain, stablecoin, and payment services across AWS, GCP, and Azure. Partner with infrastructure, product, and third‑party validation teams to embed secure practices into the Arc SDK, USDC platform, and supporting systems.
**Expectations**
- Establish and evolve a comprehensive Cloud Security strategy aligned with business goals.
- Demonstrate independent ownership of security architecture, risk reporting, and stakeholder engagement.
- Drive cross‑functional collaboration and influence senior management and external auditors.
- Deliver measurable reductions in security risk and operational incidents.
**Key Responsibilities**
- Develop and maintain secure cloud infrastructure blueprints (IaC, CI/CD).
- Define and enforce controls for blockchain node operation across Ethereum, Cosmos, Solana, and other chains.
- Recommended, validate, and audit security controls for production and third‑party validator environments.
- Produce risk‑based security reports for executive leadership.
- Continuously improve tooling, automation, and process for scalability and resilience.
- Act as the primary liaison with external auditors, cloud vendors, and customers regarding security posture.
**Required Skills**
- 15+ years in security engineering with at least 5 years focused on cloud and infrastructure security.
- Deep expertise in AWS, GCP, and Azure security services.
- Proven experience running and securing blockchain nodes (Ethereum, Cosmos, Solana, etc.).
- Advanced knowledge of secure coding, OWASP, Burp Suite, and secure application practices.
- Strong container orchestration, Kubernetes, and IaC (Terraform, CloudFormation, Pulumi).
- Proficiency in scripting (Python, Bash) and automation pipelines.
- Experience with ISO 27001/27002, NIST CSF, and financial services security frameworks.
- Excellent communication, stakeholder management, and influence abilities.
**Required Education & Certifications**
- Master’s degree in Computer Science or related field (strongly preferred).
- Certifications: CISSP, CISM, or equivalent; AWS/Azure/GCP security certifications highly desirable.