Jobs and Careers
TO

Principal Systems Security Engineer

Torus
Salt Lake City, United Statesfull_timeVerifiedPosted 27 Apr 2026
💰 $150,000/yr

About the role

About Torus

Torus is headquartered in Utah and is expanding manufacturing at our 540,000-square-foot facility in Salt Lake City called GigaOne. Our mission is to build the world’s first mesh energy infrastructure — built to unite people and communities through resilient, secure, and intelligent power. We design, engineer, manufacture, install, and support our systems end-to-end, standing behind them throughout their lifecycle. Torus systems help reduce costs, lower emissions, and protect facilities from outages, while strengthening the security and reliability of the broader utility grid. Torus is committed to American manufacturing, engineering excellence, and building energy systems that last.


At Torus, you will be part of something larger than a single product or technology. Your work will help build energy infrastructure that supports critical systems, industry, and communities for decades to come. We value accountability, collaboration, and clear thinking. We are looking for people who want to solve hard problems and build things that matter.

About the Role

The Principal Systems Security Engineer will define and implement the security architecture of the Torus system — spanning devices, cloud infrastructure, control planes, APIs, and integrations. You will define secure patterns and guardrails that allow application teams to build and integrate systems safely and reliably.


Security is a foundational property of the Torus system. This role ensures security is built into the architecture from the ground up. This is a hands-on senior role with real influence. You’ll set patterns, raise the bar for reliability and developer experience, and help scale how teams build and connect software.


Responsibilities

  • Security Ownership Across the Platform
    • Maintain a clear, current view of the security posture across all Torus products, services, devices, and infrastructure — and know what needs attention
    • Define and drive the security roadmap, prioritizing by risk and business impact
    • Lead threat modeling across product and infrastructure systems, proactively surfacing exposure before it becomes an incident
  • Architecture & Standards
    • Design and own the security architecture spanning device firmware, cloud services, APIs, and third-party integrations
    • Establish and enforce standards for authentication, authorization, secrets management, and secure communication — device-to-cloud and service-to-service
    • Design and implement a secure API gateway and integration layer enabling internal and external systems to interact safely
  • Execution & Tooling
    • Build security testing into CI/CD pipelines (SAST, dependency scanning, etc.)
    • Design and implement network discovery, vulnerability scanning, and anomaly detection capabilities across the Torus environment
    • Develop internal security tooling where commercial solutions fall short
    • Leverage AI-assisted development tools to move fast and operate with a high degree of independence
  • Resilience & Incident Response
    • Evaluate and harden system resilience against adversarial scenarios including compromised devices, malicious integrations, and infrastructure failures
    • Lead investigation and remediation of security incidents across the platform
  • Cross-functional Partnership
    • Partner with application and platform engineers to raise the security bar without becoming a bottleneck — abstract complexity, improve developer experience, and embed security into how teams build
    • Communicate risk clearly to technical and non-technical stakeholders
  • Securing the Torus energy system architecture

Required Experience

  • 8+ years of information security experience with demonstrated scope and ownership at a systems or platform level
  • 5+ years of hands-on engineering experience; you can build, not just advise
  • Deep experience in AWS (IAM, networking, compute, managed services)
  • Strong working knowledge of security tooling: CrowdStrike, Nessus/Tenable, SIEMs, and similar
  • Proven ability to assess and secure fleets of devices, distributed services, and complex integrations
  • Strong understanding of netwo

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Torus

View company profile →