A
New
USD 153000–194600/yr

Principal Engineer, DevSecOps

United StatesUnited States·Las VegasFull-Timelead
OtherPrincipal Engineer
0 views0 saves0 applied

Quick Summary

Key Responsibilities

• Proven and demonstrable ability to lead at least two other team members in an official capacity towards specific DevSecOps outcomes. • Lead the DevSecOps team (two engineers) in daily execution,

Requirements Summary

Bachelor’s Degree or equivalent experience.Certification: Technical certifications or equivalents, CISSP is optional.Years of Experience: Minimum eight (8) years experience in information security.

Technical Tools
OtherPrincipal Engineer

Short Description
The Principal Engineer, Information Security (DevSecOps) is the technical lead for Allegiant's DevSecOps program. This person owns the security tooling, policies, and automation that protect code, infrastructure, and cloud workloads as they move through CI/CD pipelines into production. 

Responsibilities

~5 min read

Minimum Requirements
Combination of Education and Experience will be considered. Must be authorized to work in the US as defined by the Immigration Act of 1986. Must pass a Criminal Background Check.
Education:  Bachelor’s Degree or equivalent experience.
Certification: Technical certifications or equivalents, CISSP is optional.
Years of Experience:  
Minimum eight (8) years experience in information security.
Minimum eight (8) years supporting / implementing network security platforms & strategies.

Preferred Requirements
•    Has production experience across all four domains: application security, pipeline engineering, cloud infrastructure security, and IaC governance. Can demonstrate work in each, not just one or two. 
•    Has administered GitHub Advanced Security (CodeQL, secret scanning, Dependabot) for an organization with active developer adoption metrics. 
•    Has authored custom Checkov or equivalent IaC policies that enforced specific compliance or security outcomes in production pipelines. 
•    Has operated a CNAPP platform (Palo Alto Cortex Cloud, Prisma Cloud, Wiz, or Orca) including onboarding, policy configuration, and integration with engineering workflows. 
•    Has integrated security scan outputs into a SIEM and SOAR (Cortex XSOAR preferred) platform. 
•    Has experience with Cloud Custodian or similar cloud governance automation.
•    Has gathered compliance evidence from automated tooling for PCI-DSS, NIST, or CIS audits.
•    Has led or mentored a small engineering team (2-5 engineers). 
•    Has hands-on experience securing agentic AI systems: MCP server configuration, AI gateway trust policies, tool-use authorization, or prompt injection controls. Can point to public artifacts (GitHub repos, blog posts, talks, open-source work) demonstrating this experience. 
•    Can provide references or artifacts demonstrating security tooling adopted by development teams in production.

Job Duties
•    Provide technical leadership to the DevSecOps team daily and during PI planning. 
•    Lead the DevSecOps team in weekly syncs to track program progress, remove blockers, and adjust priorities. 
•    Advises the IT organization towards adoption of standards and influences security security culture—setting the tone and expectations for secure SDLC. 
•    Own GitHub Advanced Security administration: manage CodeQL query suites, configure secret scanning policies, tune Dependabot alerts, and run developer adoption campaigns. 
•    Build, maintain, and enforce security scanning stages in GitHub Actions pipelines across the organization. 
•    Author custom Checkov policies for Terraform IaC. Drive golden policy deployment across all pipelines toward hard-fail enforcement. 
•    Operate and configure Cortex Cloud (CNAPP) for cloud workload protection, image scanning, and application security posture. 
•    Manage Terraform-based security infrastructure across multi-account AWS environments (Control Tower, IAM, VPC, Transit Gateway). 
•    Integrate DevSecOps tooling outputs into SIEM and Cortex XSOAR (SOAR) for detection, alerting, and automated response. 
•    Collaborate with Security Governance to generate and validate compliance evidence from automated tooling for PCI-DSS, NIST, and CIS. 
•    Evaluate incoming technology stacks from acquisitions against Allegiant's pipeline and IaC security standards. 
•    Document architecture decisions, security policies, and operational runbooks. Maintain team documentation standards. 
•    Identify skills gaps on the DevSecOps team. Provide training, pair on complex work, and review output from junior and mid-level engineers. 
•    Work with DevOps and Full Stack Engineering to ensure security gates are adopted, not circumvented. Measure and report on developer adoption. 
•    Maintain SAFe Agile practices. Keep Jira hygiene current. Assist security leadership with story sizing, capacity planning, and backlog negotiation. 
•    Promote awareness of DevSecOps program objectives during PI planning and cross-team syncs. 
•    Recommend and implement efficiencies for security alerting, triage workflows, and operational intake. 
•    Define and maintain security controls for agentic AI tooling: MCP trusted server registries, gateway configurations, tool-use authorization policies, and usage standards. 
•    Troubleshoot and resolve escalated security tooling issues across pipelines, cloud infrastructure, and application scanning. 
•    Support the security manager in long-range planning, roadmap development, and team growth strategy. 
•    Other duties as assigned.

Physical Requirements
The Physical Demands and Work Environment described here are a representative of those that must be met by a Team Member to successfully perform the essential functions of the role. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of the role.


Office/IT - While performing the duties of this job, the Team Member is regularly required to stand, sit, talk, hear, see, reach, stoop, kneel, and use hands and fingers to operate a computer, key board, printer, and phone. May be required to lift, push, pull, or carry up to 50 lbs. May be required to work various shifts/days in a 24 hour situation. Regular attendance is a requirement of the role. Exposure to moderate noise (i.e. business office with computers, phones, printers, and foot traffic), temperature and light fluctuations. Ability to work in a confined area as well as the ability to sit at a computer terminal for an extended period of time. Some travel may be a requirement of the role.

Essential Services Provider
Allegiant as a national air carrier is deemed an essential service provider during declared national and state emergencies. Team Members will be required to report to their assigned trip or work location during national and state emergencies unless prohibited by local, state or federal order.

EEO Statement
We welcome all individuals from varied backgrounds and experiences to apply. Our company values the unique perspectives and talents that each person brings to our team.

Equal Opportunity Employer: Disability/Veteran
For more information, see https://allegiantair.jobs

Location & Eligibility

Where is the job
Las Vegas, United States
On-site at the office
Who can apply
US

Listing Details

Posted
May 26, 2026
First seen
May 27, 2026
Last seen
May 27, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
79%
Scored at
May 27, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

A
Principal Engineer, DevSecOpsUSD 153000–194600