Principal Cybersecurity Engineer Jobs
Principal Cybersecurity Engineer jobs are open across defense, financial services, healthcare, and enterprise technology, from senior individual contributor to staff and principal levels, with specializations in cloud security, threat architecture, and identity and access management. Find a role that fits from the openings below and apply directly.
Find JobsOverview
Showing 5 of 401+ Principal Cybersecurity Engineer jobs











INTRODUCTION
Your work days are brighter here.
We’re obsessed with making hard work pay off, for our people, our customers, and the world around us. As a Fortune 500 company and a leading AI platform for managing people, money, and agents, we’re shaping the future of work so teams can reach their potential and focus on what matters most. The minute you join, you’ll feel it. Not just in the products we build, but in how we show up for each other. Our culture is rooted in integrity, empathy, and shared enthusiasm. We’re in this together, tackling big challenges with bold ideas and genuine care. We look for curious minds and courageous collaborators who bring sun-drenched optimism and drive. Whether you're building smarter solutions, supporting customers, or creating a space where everyone belongs, you’ll do meaningful work with Workmates who’ve got your back. In return, we’ll give you the trust to take risks, the tools to grow, the skills to develop and the support of a company invested in you for the long haul. So, if you want to inspire a brighter work day for everyone, including yourself, you’ve found a match in Workday, and we hope to be a match for you too.
ABOUT THE TEAM
Your work matters here. At Workday Government, we focus on outcomes that serve a larger mission. Our work supports U.S. federal agencies as they modernize and transform the full employee lifecycle experience and finance operations—so they can operate with greater clarity, accountability, and trust. As a Fortune 500 company and a proven enterprise cloud platform, Workday brings modern technology, responsible AI, and secure infrastructure to some of the most complex environments in the world. The work isn’t theoretical. It’s operational. It’s high-impact. And it demands rigor, integrity, and long-term thinking.
From day one, you’ll be part of a team that values collaboration, follow-through, and doing the right thing—especially when the stakes are high. Our culture is grounded in integrity, respect, and shared responsibility. We challenge each other to think clearly, act thoughtfully, and build solutions that stand up to real-world demands. Here, curiosity is matched with accountability. Ambition is paired with trust. You’ll have the space to do your best work, the support to keep growing, and the backing of a company committed to long-term investment in both its people and the federal mission.
If you’re looking to apply your experience to meaningful, mission-driven work—alongside colleagues who take pride in building things that last—you’ll find that opportunity at Workday.
ABOUT THE ROLE
This role will support one or more direct or indirect contracts with the U.S. Federal Government which, due to federal government security requirements, mandates that all Workday personnel working on the contracts be United States citizens (naturalized or native).
Workday is expanding into the US Government air-gapped classified cloud environment. We are looking for a Principal Cybersecurity Engineer to help build out the team, technology, and processes to support cybersecurity in this new environment. You will be our Cyber Defense presence in the air-gapped network and will be part of a team responsible for all cybersecurity functions such as vulnerability management, incident response, threat hunting, and threat detection. You will work closely with the customers and with our Cyber Defense teams to ensure consistency across environments and develop best practices in this exciting environment.
BASIC QUALIFICATIONS
- 10+ years of experience in technical security consultancy, security operations, response, vulnerability management, threat detection, or threat hunting.
- 2+ years of hands-on technical leadership experience.
- Experience deploying, monitoring, and managing systems in the AWS or Microsoft Top Secret clouds.
- BS or MS degree in Computer Science, Engineering, or equivalent job experience.
PREFERRED QUALIFICATIONS
- Preferred DoD 8570/8140 compliant with at least IAT Level II certification, including a current Computing Environment (CE) credential and one approved specialty certification (e.g., CompTIA CySA+, GICSP, CASP+).
- Strong understanding of platform, application, and cloud security fundamentals.
- Familiarity with containerized applications and their security considerations.
- Demonstrated knowledge of adversary TTPs (Tactics, Techniques and Procedures).
- Deep understanding of network and application security threats, attack techniques, and mitigation options.
- Experience managing vulnerability scans and effectively prioritizing actions for system owners.
- Experience building and maintaining investigation and/or response tools.
- Experience with SIEM and SOAR security technologies and solutions.
- Experience with hunting techniques.
- Able to work independently and coordinate activities across multiple teams.
- Ability to drive multiple projects and priorities while managing operational responsibilities.
- Excellent written and verbal communication skills, building positive relationships with partner organizations.
COMPENSATION
The annualized base salary ranges for the primary location and any additional locations are listed below. Workday pay ranges vary based on work location. As a part of the total compensation package, this role may be eligible for the Workday Bonus Plan or a role-specific commission/bonus, as well as annual refresh stock grants. Recruiters can share more detail during the hiring process. Each candidate’s compensation offer will be based on multiple factors including, but not limited to, geography, experience, skills, job duties, and business need, among other things.
Primary Location: USA.VA.Reston
Primary Location Base Pay Range: $184,800 USD - $277,200 USD
Additional US Location(s) Base Pay Range: $167,200 USD - $300,000 USD
OUR APPROACH TO FLEXIBLE WORK
With Flex Work, we’re combining the best of both worlds: in-person time and remote. Our approach enables our teams to deepen connections, maintain a strong community, and do their best work. We know that flexibility can take shape in many ways, so rather than a number of required days in-office each week, we simply spend at least half (50%) of our time each quarter in the office or in the field with our customers, prospects, and partners (depending on role). This means you'll have the freedom to create a flexible schedule that caters to your business, team, and personal needs, while being intentional to make the most of time spent together. Those in our remote "home office" roles also have the opportunity to come together in our offices for important moments that matter.
Pursuant to applicable Fair Chance law, Workday will consider for employment qualified applicants with arrest and conviction records.
Workday is an Equal Opportunity Employer including individuals with disabilities and protected veterans.
At Workday, we are committed to providing an accessible and inclusive hiring experience where all candidates can fully demonstrate their skills. If you require assistance or an accommodation at any point, please email accommodations@workday.com.
Are you being referred to one of our roles? If so, ask your connection at Workday about our Employee Referral process!
At Workday, we value our candidates’ privacy and data security. Workday will never ask candidates to apply to jobs through websites that are not Workday Careers.
Please be aware of sites that may ask for you to input your data in connection with a job posting that appears to be from Workday but is not.
In addition, Workday will never ask candidates to pay a recruiting fee, or pay for consulting or coaching services, in order to apply for a job at Workday.
See All 401+ Principal Cybersecurity Engineer Jobs
Jump back to the full list of openings and apply to any principal cybersecurity engineer role that fits.
Find JobsPrincipal Cybersecurity Engineer Job Market
A snapshot from current openings nationwide, updated as new roles post.
Who's Hiring
- CVS Health108

- Palo Alto Networks34

- Humana18

- Boston Consulting17

- Databricks5

Top Industries Hiring
- Technology & Software131
- Healthcare & Medical Services115
- Consulting & Professional Services32
- Agriculture & Farming24
- Banking & Financial Services20
What Employers Look For
The qualifications that appear most often in principal cybersecurity engineer jobs.
- Ten or more years of progressive cybersecurity experience with at least three in a senior or lead role
- Active CISSP, CISM, or equivalent enterprise security certification
- Demonstrated experience designing zero-trust or defense-in-depth security architectures at scale
- Proficiency with cloud security controls across AWS, Azure, or Google Cloud environments
- Experience leading security program strategy, roadmap development, and cross-functional stakeholder communication
- Familiarity with compliance frameworks including NIST CSF, SOC 2, ISO 27001, or FedRAMP
Tips for Your Principal Cybersecurity Engineer Job Search
Tailor your resume to architecture depth
Principal-level postings screen for evidence of system-wide security design, not just implementation. Lead each bullet with the architecture decision you owned, the threat model it addressed, and the outcome, not just the tools you used.
List certifications in priority order
CISSP, CISM, and cloud-provider security specializations carry different weight depending on the employer's stack. Put the certification that matches the posting's environment first on your credentials line so screeners see the right signal immediately.
Apply early to roles that fit
Migrate Mate lists principal cybersecurity engineer openings from across the United States in one place, so you can find roles that match and apply directly to each listing.
Target postings that name your threat domain
Search for your specific specialty, whether that's OT security, zero-trust implementation, or red-team program leadership, not just the title. Postings that name your domain get far fewer competing applicants than generic principal engineer searches.
Prepare a technical design narrative
Principal interviews almost always include a whiteboard or async architecture exercise. Walk through one past security architecture you designed end-to-end, including the constraints you faced and the tradeoffs you made, so you can adapt it to any scenario they present.
Negotiate scope before you negotiate pay
At the principal level, the reporting structure, program ownership, and whether you have hiring authority shape the role's actual value. Clarify those before you get to compensation, because a constrained scope with a high title is a lateral move in practice.
Principal Cybersecurity Engineer Jobs: Frequently Asked Questions
Which companies are hiring the most principal cybersecurity engineers?
The companies hiring the most principal cybersecurity engineers right now include CVS Health, Palo Alto Networks, and Humana, with the largest share of openings in California, Massachusetts, and Texas, based on current listings on Migrate Mate as of June 2026. Defense contractors, large financial institutions, and cloud-native technology companies consistently post the highest volume of principal-level security roles.
How many principal cybersecurity engineer jobs are remote?
About 32% of principal cybersecurity engineer openings are fully remote or hybrid as of June 2026, making it one of the more flexible senior engineering roles. Threat architecture, cloud security, and governance-focused positions tend to offer the most remote flexibility, while roles tied to classified environments or on-premises infrastructure typically require on-site presence.
How do you become a principal cybersecurity engineer?
Becoming a principal cybersecurity engineer typically requires progressing from a security analyst or engineer role through senior and lead positions while building ownership of increasingly complex architecture decisions. Earning enterprise-recognized certifications, leading cross-functional security initiatives, and demonstrating program-level impact rather than task execution are the steps that distinguish principal candidates from senior ones.
Can you get a principal cybersecurity engineer job without deep leadership experience?
It's difficult, because most principal postings treat program ownership and cross-team influence as baseline expectations rather than growth opportunities. The most realistic path without a formal leadership title is to document the security architecture decisions you drove independently, the business risk you quantified, and the teams whose roadmaps you shaped, then apply to companies where the principal role is defined as a technical track rather than a people-management step.
What does the principal cybersecurity engineer interview process look like?
The process typically runs across multiple rounds, starting with a recruiter screen focused on scope and seniority, followed by a technical panel covering threat modeling, architecture tradeoffs, and your approach to security program design. Most employers at this level also include a cross-functional interview with product, engineering, or legal stakeholders to assess how you communicate risk and drive alignment outside the security team.
Where can I find and apply to principal cybersecurity engineer jobs?
You can find and apply to principal cybersecurity engineer jobs on Migrate Mate, which lists current openings from across the United States. Find roles that match your background and apply directly to each listing from the results on this page.
See All 401+ Principal Cybersecurity Engineer Jobs
Jump back to the full list of openings and apply to any principal cybersecurity engineer role that fits.
Find Jobs