[Remote] Principal Security Engineer at Empower

San Antonio, Texas, United States

Empower Logo
Not SpecifiedCompensation
Senior (5 to 8 years), Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
NoVisa
Financial Services, Information SecurityIndustries

Requirements

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field
  • Must have CISSP Certification (Current and active)
  • 6+ years of experience in the realms of enterprise cybersecurity at scale
  • 5+ years of experience with EDR, SIEM, email and network security
  • 3+ years of experience with cloud environment security, scripting/coding
  • Extensive knowledge of the incident response process and lifecycle, ability to contribute to policy and procedure
  • Ability to respond to security alerts/incidents and drive the process start to finish
  • Ability to use generative AI in day-to-day operations as a force multiplier
  • Strong technical written and verbal communication skills, ability to document and present details on incidents
  • Strong analytic skills

Responsibilities

  • Lead major cybersecurity incidents from detection through containment, eradication, recovery, and post-incident review; including participating in on-call rotation
  • Serve as the top escalation point for complex, high-severity incidents, ensuring rapid and effective resolution
  • Develop, maintain, and optimize incident response playbooks, runbooks, and escalation procedures
  • Oversee enterprise-wide monitoring of networks, cloud, and endpoints for threats, vulnerabilities, and anomalous activity
  • Advance detection capabilities using EDR, SIEM, and behavioral analytics aligned with MITRE ATT&CK
  • Act as subject matter expert on EDR and SIEM
  • Design and implement automation frameworks (Python, PowerShell, AWS Lambda) to streamline response workflows and reduce manual effort
  • Integrate AI/ML models into security monitoring and response processes for enhanced detection accuracy and prioritization
  • Conduct forensic investigations and threat hunting to identify root causes and emerging threat patterns
  • Collaborate cross-functionally with infrastructure, application, and network teams to enforce secure configurations and compliance
  • Mentor and guide incident response analysts, fostering technical growth and operational excellence
  • Communicate effectively with executives and technical teams during and after incidents, producing clear reports and recommendations
  • Drive continuous improvement in detection, response, and prevention strategies to strengthen enterprise security posture
  • Contribute to, and strengthen, the corporate Information Security program
  • Establish and audit security operational functions, and provide technical security recommendations and/or solutions
  • Develop, update, document, and maintain security standards and policies for the organization
  • Assist in ensuring that secure computing practices are established and communicated throughout the organization, and that the business is conducted in accordance with established guidelines and regulatory requirements
  • Contribute to security due diligence assessments on current and prospective vendors and products

Skills

Key technologies and capabilities for this role

CybersecurityIncident ResponseIncident ContainmentIncident EradicationPost-Incident ReviewSecurity StandardsSecurity PoliciesSecurity AuditingVendor Due DiligenceOn-Call Rotation

Questions & Answers

Common questions about this position

Is this a remote position or does it require office work?

The company offers a flexible work environment.

What salary or compensation does this role offer?

This information is not specified in the job description.

What key skills are required for the Principal Security Engineer role?

Key skills include expertise in EDR and SIEM, proficiency in Python, PowerShell, and AWS Lambda for automation, knowledge of MITRE ATT&CK, and experience with AI/ML models in security monitoring.

What is the company culture like at Empower?

Empower emphasizes a flexible work environment, fluid career paths, internal mobility, purpose, well-being, work-life balance, inclusivity, and volunteering.

What makes a strong candidate for this Principal Security Engineer position?

Strong candidates should have deep expertise in leading cybersecurity incidents, EDR/SIEM, automation scripting, threat hunting, and mentoring teams, along with the ability to collaborate cross-functionally.

Empower

Personal finance management and credit building

About Empower

Empower.me provides personal finance management and credit building services through a subscription model. Users can sign up for a 14-day free trial, after which they pay $8 per month for access to various financial tools. These tools include customizable payment plans, budgeting features, and credit score monitoring. A key aspect of Empower.me is its focus on helping users build credit by reporting their payments to credit bureaus, which can enhance their credit history if payments are made on time. Additionally, Empower.me offers a Thrive line of credit, which involves a soft inquiry on the user's credit report, ensuring that their credit score remains unaffected during the application process. Unlike many competitors, Empower.me specifically targets individuals with no minimum credit score, aiming to improve their financial health and savings.

San Francisco, CaliforniaHeadquarters
2016Year Founded
$96.8MTotal Funding
LATE_VCCompany Stage
Fintech, Financial ServicesIndustries
51-200Employees

Benefits

Generous equity package
Full healthcare benefits
Unlimited PTO
Technology expense reimbursement
Work from anywhere

Risks

Increased competition from fintech companies like Chime and Varo could impact market share.
Integration challenges from acquisitions may disrupt operations and delay strategic goals.
Regulatory scrutiny on credit services could increase compliance requirements and costs.

Differentiation

Empower offers a unique subscription-based model for financial management tools.
The company focuses on credit building by reporting payments to credit bureaus.
Empower's Thrive line of credit involves a soft inquiry, not affecting credit scores.

Upsides

Acquisition of Petal and Cashalo expands Empower's product offerings and customer base.
Increased demand for financial literacy tools among millennials and Gen Z benefits Empower.
Growing interest in alternative credit scoring aligns with Empower's mission for underserved consumers.

Land your dream remote job 3x faster with AI