Principal Security Engineer, Research & Engineering

1 week, 3 days ago
Full-time
Lead
Cybersecurity
Trail of Bits

Trail of Bits

Trail of Bits is a leading company specializing in computer and network security. Since 2012, they have been helping secure the world's most targeted organizations and products by combining high-end security research with a real-world attacker mentalit...

Internet Software & Services
51-250
Founded 2012

Description

  • Set technical vision and guide complex security research and engineering efforts within your area of expertise.
  • Lead projects end-to-end, including breaking down objectives into milestones, allocating work, and ensuring delivery.
  • Engage with potential clients, drive the sales process, and help secure new business opportunities.
  • Support proposal development through statement of work writing and scoping.
  • Mentor and develop 3–4 Senior Engineers, including helping expand their professional networks and skillsets.
  • Represent the company through blog posts, whitepapers, academic publications, conference talks, and panel discussions.
  • Identify organizational, operational, and knowledge gaps across the team and help drive improvements.
  • Architect and oversee the development of security tools and frameworks, contributing hands-on when needed.
  • Collaborate with Staff Engineers, Directors, and other practices on roadmaps, resourcing, and shared technical goals.
  • Guide the team’s approach to AI/ML security research and tooling, including identifying emerging risks and opportunities.

Requirements

  • Extensive software development and security engineering experience.
  • Deep expertise in Rust, C++, and/or Python.
  • A well-established professional network in the security industry, government, or adjacent technical communities.
  • Demonstrated experience leading security projects from scoping and proposal through delivery.
  • Experience engaging with clients and participating in sales or business development.
  • Proven ability to mentor and develop senior-level engineers.
  • Experience setting technical vision and strategy for a team or practice area.
  • Strong knowledge of AI/ML systems and associated security challenges.
  • Public speaking experience at conferences, panels, or industry events.
  • Published thought leadership through blog posts, whitepapers, academic papers, or open-source tools.
  • Excellent written and verbal communication skills across technical, client, and executive audiences.
  • Experience writing statements of work, scoping proposals, and supporting the business development lifecycle.
  • Ability to identify organizational and operational problems and drive solutions.
  • Preferred: experience building and maintaining a revenue-generating practice area or service line.
  • Preferred: track record of securing external funding through government contracts, grants, or sponsored research.
  • Preferred: deep understanding of low-level systems such as memory management, OS internals, compiler technology, or binary analysis.
  • Preferred: experience designing IRAD portfolios or technical roadmaps for a research organization.
  • Preferred: contributions to major open-source security tools or frameworks.
  • Preferred: experience managing 1–4 direct reports and providing career development guidance.
  • Preferred: familiarity with the US Government contracting and proposal process.

Benefits

  • US base salary of $200,000 to $250,000, depending on experience and qualifications, plus potential bonuses.
  • Performance-based bonuses.
  • Fully company-paid health, dental, vision, disability, and life insurance.
  • 401(k) plan with a 5% company match.
  • 20 days of paid vacation with flexibility for more, subject to jurisdictional regulations.
  • 4 months of parental leave.
  • $10,000 relocation assistance for candidates moving to NYC.
  • $1,000 work-from-home stipend.
  • $750 annual learning and development stipend.
  • Company-sponsored all-team celebrations with travel and accommodation covered.
  • Philanthropic contribution matching up to $2,000 annually.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Business Applications Security Engineer

AlphaSense 251-1K Internet Software & Services

AlphaSense is hiring a Senior Business Applications Security Engineer to build and own a centralized security program for its business application ecosystem, spanning SaaS, cloud, and on-premise tools.

OAuth Salesforce SAML
12 minutes ago

Cybersecurity Engineer - EU/US Timezones

hermeneutic Investments 11-50 Technology, Information and Internet

hermeneutic Investments is seeking a Junior–Mid Cybersecurity Engineer to run day-to-day security operations and strengthen protections across cloud, endpoints, identity, and collaboration systems in its proprietary trading and hedge fund environment.

AWS Azure Cybersecurity GCP OAuth SIEM System Design WAF
27 minutes ago

Security Engineer

SymSoft Solutions Web Design, Development, and System Integration

Symsoft Solutions is hiring a remote six-month contract professional to support state and local government web, application, and data services work with prior State of California experience.

27 minutes ago

Sr. Security Software Engineer (Starshield)

SpaceX 10K-50K Aerospace & Defense

SpaceX is hiring a Sr. Security Software Engineer for Starshield to secure software and infrastructure supporting government-focused space systems, including communications, sensing, and in-space mesh networks.

C++ Go Network Security Python TCP/IP
27 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers