
Principal Engineer - Cloudforce One
Cloudflare3 months ago
Responsibilities
- Drive architectural direction and technical strategy across Cloudforce One engineering, including Kubernetes services, Workers, D1, and Cloudflare’s global network.
- Replace technical bottlenecks, legacy patterns, and architectural debt with faster, more reliable systems.
- Design and build large-scale data pipelines and services that collect, enrich, analyze, and expose threat intelligence and abuse signals.
- Work across threat intelligence platforms, abuse detection systems, legal response tooling, and customer-facing security products.
- Apply threat-informed engineering judgment to account for adversary adaptation, degrading detection rules, and evolving attack techniques.
- Collaborate with Threat Intelligence, Trust & Safety, Product, Legal, and engineering teams on scalable security and compliance solutions.
- Mentor engineers and raise standards for code quality, system design, operational rigor, and security-first thinking.
- Develop agentic AI workflows and AI-assisted development practices for threat hunting, detection engineering, and abuse investigation.
- Own operational excellence, including on-call participation and incident response.
Requirements
- 15+ years of cybersecurity experience, focused on building systems for presenting adversarial trends and techniques.
- 10+ years of experience building and operating large-scale distributed systems in production, including complex architecture and design.
- Hands-on production proficiency in Go and/or TypeScript, with experience deploying services in Kubernetes and on edge platforms such as Cloudflare Workers and D1/SQLite-at-the-edge.
- Subject matter expertise in threat intelligence, adversarial analysis, or detection engineering, including the Cyber Kill Chain, TTP tracking, and attacker infrastructure analysis.
- Ability to lead technical initiatives across multiple teams, codebases, and problem domains.
- Experience with AI-assisted development and agentic AI workflows.
- Experience designing and operating critical data pipelines and using SQL databases and caching layers at scale.
- Excellent communication skills and strong architectural judgment.
- Track record of fundamentally improving team, system, or organizational operations.
- Bonus experience in Trust & Safety or platform abuse, including phishing detection, malware analysis, fraud prevention, or content moderation.
- Bonus proficiency writing detection rules with YARA, Snort, or similar languages.
- Experience analyzing web-based threat vectors and phishing obfuscation techniques.
- Familiarity with Rust, Terraform, DNS, TLS/SSL, HTTP, and web security standards.
- Experience building threat intelligence platforms, IOC distribution systems, automated mitigation pipelines, or React-based internal and analyst-facing tools.
Benefits
- Medical/Rx insurance, dental insurance, and vision insurance
- Flexible Spending Accounts and Commuter Spending Accounts
- Fertility and family-forming benefits
- On-demand mental health support and Employee Assistance Program
- Global Travel Medical Insurance
- Short- and long-term disability insurance and life and accident insurance
- 401(k) Retirement Savings Plan and Employee Stock Participation Plan
- Flexible paid time off covering vacation and sick leave
- Parental, pregnancy health, medical, and bereavement leave programs
- Austin, Texas location with possible in-person interview attendance; the role may require on-call flexibility outside standard working hours
Tech Stack
Categories
About Cloudflare
Cloudflare builds a global network that provides CDN, DDoS mitigation, DNS, Zero Trust security, and developer/edge computing tools for organizations of all sizes. It sells subscriptions to its cloud-based platform and usage-based services that protect and accelerate web sites, APIs, and corporate networks, plus serverless apps via Workers. Founded in 2009 and headquartered in San Francisco, it is a public company traded on the NYSE (ticker: NET).