Principal Software Engineer
General Dynamics Information Technology2 hours ago
San Antonio, TX, USAStaff+
Base Salary
$119k - $161k/yr
Responsibilities
- Lead implementation and management of DevSecOps practices across multiple projects and teams.
- Design, implement, and maintain automated and secure CI/CD pipelines with security testing and validation.
- Provide technical leadership, guidance, mentoring, and training to developers, security engineers, and operations staff.
- Architect and manage secure, highly available cloud-based and on-premises infrastructure using automation and infrastructure as code.
- Design and manage containerized applications and orchestration environments at scale.
- Lead security assessments, penetration testing, threat modeling, risk assessments, vulnerability remediation, and security policy implementation.
- Develop system, security, architectural, and operational documentation, including diagrams and runbooks.
- Conduct proof-of-concept evaluations of DevSecOps tools and technologies and recommend adoption.
- Lead incident response and root cause analysis focused on security vulnerabilities.
- Develop and deliver DevSecOps training programs.
Requirements
- Bachelor of Arts or Bachelor of Science degree in computer science or a related field.
- 10+ years of related experience.
- Active Top Secret/SCI clearance and U.S. citizenship.
- Expert-level proficiency with CI/CD tools and pipelines, including advanced configuration, scripting, and customization.
- Expertise with configuration management, automation, and infrastructure-as-code tools.
- Extensive experience with containerization and orchestration technologies.
- Senior-level knowledge of AWS, Azure, or Google Cloud, including secure architecture, cost optimization, and resource management.
- Mastery of Python, Bash, Go, or Java for custom tools and automation scripts.
- In-depth knowledge of security best practices, security monitoring, threat intelligence, and tools such as OWASP, Nessus, Burp Suite, Splunk, and SIEM solutions.
- Knowledge of networking concepts and protocols including TCP/IP, DNS, HTTP, and TLS.
- Experience with NIST, CIS, ISO 27001, SOC 2, and other security compliance frameworks and standards.
- Experience with static and dynamic code analysis tools.
- Experience with reverse engineering and malware analysis is preferred.
- Active participation in the security community through open-source contributions, conference presentations, or research is preferred.
Benefits
- Medical, dental, vision, and health savings account plan options.
- 401(k) plan with company match and pre-tax and post-tax contribution options.
- Paid vacation, sick, personal, holiday, parental, military, bereavement, and jury duty leave.
- Short- and long-term disability, life, accidental death and dismemberment, personal accident, critical illness, and business travel and accident insurance.
- Hybrid work arrangement in San Antonio, Texas, with full-flex work weeks where possible.
- 40 scheduled hours per week and less than 10% travel.
- AI-powered career development tools and internal mobility support.
- Identity verification during hiring may use biometrics and artificial intelligence, and virtual interviews require the candidate to be on camera.