Principal Security Engineer (7408) - Cyber Security
Secure Your Future with SEPTA – A Leader in Transportation!
The Southeastern Pennsylvania Transportation Authority (SEPTA) is the sixth-largest transportation system in the U.S., connecting communities across a 2,200-square-mile service region. SEPTA is at the forefront of innovation in the transit industry, ensuring reliable and efficient services while driving economic growth in the Philadelphia region.
We are proud to be recognized as:
2023 FORBES Best in State Employer
Philadelphia Employer of Choice for 2024
We are seeking to hire candidates for our Principal Security Engineer (7408) - Cyber Security position.
Opening Date: 11/06/2025
Closing Date: 11/20/2025
Job Grade: SAM 43
Salary Range: $121,498.00-$151,866.00
OVERALL DESCRIPTION
The Principal Security Engineer is responsible for designing, implementing, and maintaining advanced security solutions to protect the organization's infrastructure, systems, and data. This role focuses on threat detection, incident response, vulnerability management, and proactive defense. As a senior member of the security team, the engineer provides technical leadership, mentors junior staff, and ensures security best practices are integrated across the enterprise.
SPECIFIC RESPONSIBILITIES
- Designs and implements security solutions including Zero Trust, Endpoint, SIEM, IAM, DLP, and cloud security technologies.
- Evaluates and integrates new security tools such as Zscaler/CrowdStrike and technologies to improve the organization's security posture.
- Architects secure systems and networks in alignment with industry's best practices and organizational needs.
- Monitors security incidents, performing root cause analysis and forensics as needed.
- Leads incident response efforts and coordinate with internal and external stakeholders.
- Develops and maintains playbooks for common security incidents and scenarios.
- Performs regular 3rd party risk and vulnerability assessments, penetration tests across systems and applications.
- Collaborates with DevOps, IT, and application teams to remediate vulnerabilities and reduce attack surfaces.
- Maintains up-to-date knowledge of emerging threats and vulnerabilities and apply mitigations accordingly.
- Ensures systems and controls align with regulatory and compliance requirements (e.g., HIPAA, PCI-DSS, SOX).
- Supports internal and external audits with evidence and technical explanations.
- Assists in the development and enforcement of security policies and procedures.
- Secures cloud environments (AWS, Azure), including identity management, logging, and workload protection.
- Hardens operating systems, databases, and applications across cloud and on-prem environments.
- Works with infrastructure teams to ensure secure design and configurations (e.g., segmentation, least privilege).
- Mentors junior security engineers and analysts.
- Leads security projects and contribute to long-term security strategies.
- Collaborates across teams to embed security into DevOps (DevSecOps), infrastructure, and software development processes.
- Complies with all Authority and departmental safety and security policies and procedures as well as all applicable job safety responsibilities. Reports any safety concerns, compromises or hazards affecting operations, the public self and/or other employees. Responsible for personal safety and is encouraged to promote the safety of others.
- Performs other duties as assigned.
QUALIFICATIONS AND EXPERIENCE
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field is required.
- Master's degree or equivalent relevant experience is preferred.
- Minimum of 7 years of hands-on experience in cybersecurity is required.
- Strong background in network, application, and cloud security is required.
- Experience leading incident response efforts and building secure systems is required.
- Proficiency with security tools such as Zscaler, CrowdStrike, SIEMs (Splunk, QRadar, Sentinel), EDR (CrowdStrike, Defender), IDS/IPS, and OLP is required.
- Experience with scripting and automation using Python, PowerShell, or Bash is required.
- Deep understanding of protocols including TCP/IP, DNS, HTTP, TLS, and VPN is required.
- Familiarity with DevSecOps tools and CI/CD security integration is required.
- Strong communication and documentation skills are required.
- Ability to work independently and manage multiple priorities is required.
- Demonstrated ability to mentor and lead others on technical topics is required.
- Professional certifications such as CISSP, OSCP, GIAC (e.g., GSEC, GCIA, GCIH, GPEN), AWS/Azure/GCP Security, and CompTIA Security+ are preferred.
Why Join Our Team? Enjoy Outstanding Benefits!
✅ Comprehensive Healthcare Coverage – Medical, prescription, dental, and vision plans with little to no employee premiums.
✅ Retirement Security – Participate in a Defined Benefit Pension Plan and a 457B Deferred Compensation Plan to build your financial future.
✅ Work-Life Balance – Enjoy paid parental leave, generous vacation time, and paid holidays to recharge and spend time with loved ones.
✅ Employee Wellness – Access wellness programs and resources to support your physical, mental, and emotional well-being.
✅ Invest in Your Growth – We offer tuition reimbursement to support your education and career advancement.
✅ Student Loan Assistance – Our positions qualify for the Public Service Loan Forgiveness (PSLF) program, helping you manage and reduce student debt.
✅ Free Travel Perks – Receive a FREE SEPTA Transportation Pass, giving you unlimited access to all SEPTA services!
Join us and take advantage of these incredible benefits while making a difference in your community!
Join the Best in Transit! Apply Today
📢 Click Apply Now and take the next step in your career with SEPTA!
📍 Have Questions? For more information, please visit How We Hire Careers Page.
🚆 SEPTA is an Equal Opportunity Employer.
SEPTA is committed to creating a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status.
Nearest Major Market: Philadelphia