Jobs and Careers
WO

Principal CyberSecurity Engineer (US Federal)

Workday
United Statesfull_timeVerifiedPosted 9 Dec 2025
💰 $288,000/yr($164,900/yr$288,000/yr)

About the role

Your work days are brighter here.

We’re obsessed with making hard work pay off, for our people, our customers, and the world around us. As a Fortune 500 company and a leading AI platform for managing people, money, and agents, we’re shaping the future of work so teams can reach their potential and focus on what matters most. The minute you join, you’ll feel it. Not just in the products we build, but in how we show up for each other. Our culture is rooted in integrity, empathy, and shared enthusiasm. We’re in this together, tackling big challenges with bold ideas and genuine care. We look for curious minds and courageous collaborators who bring sun-drenched optimism and drive. Whether you're building smarter solutions, supporting customers, or creating a space where everyone belongs, you’ll do meaningful work with Workmates who’ve got your back. In return, we’ll give you the trust to take risks, the tools to grow, the skills to develop and the support of a company invested in you for the long haul. So, if you want to inspire a brighter work day for everyone, including yourself, you’ve found a match in Workday, and we hope to be a match for you too.

About the Team

Workday is paving the road forward with how we build, package, deploy and secure our tools and services. We're using the latest technologies to build platforms and services to support our growth while also ensuring the protection of Workday data and infrastructure is paramount.

As a Security Engineer within the Federal Infrastructure Security Engineering team, you will be responsible for building, deploying/operating security tooling, developing security standards and implementing technical controls in support of the platforms and infrastructure used in Workday.

About the Role

This role will support one or more direct or indirect contracts with the U.S. Federal Government which, due to federal government security requirements, mandates that all Workday personnel working on the contracts be United States citizens (naturalized or native).

Innovation and creativity are heavily emphasized upon and encouraged at Workday to combat an ever-evolving threat landscape. The tools, processes and standards developed by the team are a critical part of the threat defense capabilities of Workday. Candidates for this role should have an analytical and problem solving approach, capability to learn new skills, comfortable with accepting feedback and able to work well with a team.

Responsibilities include: 

  • Design and deploy security services, tools and automated controls across the various platforms in Workday's Cloud environments.

  • Improve in-house security tooling and solutions.

  • Actively drive product technology and engineering process innovation to help Workday be a leader in Security.

About You

Basic Qualifications:

  • 10+ years of progressively responsible experience in security tools development or technical cloud security architecture and design.

  • Experience securing infrastructure hosted on cloud service providers like AWS, GCP and Azure.

  • Proficient in at least one scripting language with the ability to apply automation to ensure desired and consistent security configurations are maintained. (Bash, Python, Ruby etc.)

  • Expert Knowledge with Linux operating systems and containerization.

  • Expert Knowledge of cloud security concepts and professional hands-on experience documenting and implementing security controls of the same.

  • Expert Knowledge of threat modeling, security policy, NIST 800-53 security standards and functional requirements.

  • Expert knowledge of network, application and platform security tools and concepts

  • Expert knowledge of and experience with Infrastructure as Code (IaC) development (Terraform, Chef, Ansible etc).

Other Qualifications:

  • Experience with CI/CD.

  • Knowledge of and experience with deploying Kubernetes/EKS and container security.

  • Knowledge of REST API and HTTP protocol.

  • Knowledge of common encryption functions and authorization schemas.

  • Operational experience supporting production systems.

  • Certificates or courses taken against cloud service providers like AWS, GCP and Azure.

  • Understanding of application, system, and security threats, attack techniques and mitigating controls.

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Workday

View company profile →