Jobs and Careers
ID

Principal Security Engineer

ID.me
United Statesfull_timeVerifiedPosted 30 May 2025
💰 $255,000/yr($203,183/yr$255,000/yr)

About the role

Company Overview

ID.me is the next-generation digital identity wallet that simplifies how individuals securely prove their identity online. Consumers can verify their identity with ID.me once and seamlessly login across websites without having to create a new login and verify their identity again. Over 140 million users experience streamlined login and identity verification with ID.me at 20 federal agencies, 44 state government agencies, and 66 healthcare organizations. More than 600 consumer brands use ID.me to verify communities and user segments to honor service and build more authentic relationships. ID.me’s technology meets the federal standards for consumer authentication set by the Commerce Department and is approved as a NIST 800-63-3 IAL2 / AAL2 credential service provider by the Kantara Initiative. ID.me is committed to “No Identity Left Behind” to enable all people to have a secure digital identity. To learn more, visit https://network.id.me/.

Role Overview

ID.me is looking for a Principal Security Engineer to add to our growing security team. If you love innovation, here's your chance to make a career of it by advancing the digital identity ecosystem. 

We are seeking a talented Principal Security Engineer who enjoys the challenges of combining software and systems engineering to design, build, run, and automate distributed, fault-tolerant security solutions at scale. You will ensure that our security controls are effective and efficient and minimize friction for end users. 

The Principal Security Engineer will also have the opportunity to provide thought leadership, research, and innovation on a broad scale.

This is a fully onsite position based out of our McLean, VA headquarters.

Responsibilities

  • Identify opportunities for increased resilience in current and future Security solutions and services.  This includes, process and technology solutions for Change Management and development of automated reviews and checks, health checks/measurement, measuring resiliency across our solutions, and improving audit-ability of our security control configurations.  
  • Set technology direction and roadmap for development and continuous improvement of security controls (e.g., own Security Architecture)
  • Continuously improve Change Management processes, guidelines, and documentation across security tools/services to ensure reliability, efficiency (e.g., increased automation), and compliance
  • Measure and report on reliability, efficiency, and compliance of security tool/service operations
  • Lead system and solution design for security controls across the team and ensure design is well-understood and documented
  • Identify and drive opportunities to improve control effectiveness and efficiency and reduce friction for end users
  • Ensure security controls are optimized for ease of use by both security operators and end users
  • Dig deep into complex problems either lacking a clear approach or with a high degree of execution risk and find an appropriate path forward
  • Maintain many of the essential cross-team and cross-functional relationships necessary for the team's success
  • Be a role model for the team and the security organization and shape the culture
  • Help, teach, and mentor the less experienced engineers on the team
  • Define standards and best practices for the team and the security organization
  • Improve the quality of the output of the team - code, technical documentation, operational processes

Basic Qualifications

  • 12+ years of experience in security engineering, systems engineering, software engineering, or SRE roles
  • GCP Professional level certification, and current hands on GCP experience
  • 5+ years of experience dedicated to Cloud Site Reliability Engineering and related roles
  • 5+ years of current and hands on experience in scripting or software development (i.e. Python, Ruby, Go)
  • 5+ years of current and hands-on experience with infrastructure-as-code (e.g. Terraform, Ansible, etc.)
  • 5+ years of Security Architecture and best practices experience (e.g. Zero trust, network security, Okta/IDPs, OAuth, etc.)

Preferred Qualifications 

The qualifications below are preferred. We encourage candidates to apply if they satisfy some, but not all of the qualifications.

  • Strong understanding of cloud security and infrastructure security best practices 
  • Experience in Linux/Unix administration and solid networking knowledge
  • The ability to take a systematic approach to analyzing, troubleshooting, and diagnosing system problems to identify, locate, resolve, and repair

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

ID.me

View company profile →