Principal Security Engineer


Bellevue, WA, US
  • Job Type: Full-Time
  • Function: IT
  • Post Date: 01/11/2021
  • Website:
  • Company Address: 530 Lytton Avenue Suite 301, Palo Alto, CA, 94301

About Yubico

Yubico sets new global standards for simple and secure access to computers, mobile devices, servers, and internet accounts.

The company’s core invention, the YubiKey, delivers strong hardware protection, with a simple touch, across any number of IT systems and online services. The YubiHSM, Yubico’s ultra-portable hardware security module, protects sensitive data stored in servers.

Job Description

Yubico’s mission is to create a safer internet for everyone. Our core invention, the YubiKey, a hardware-based token, revolutionized secure logins for top Internet brands, including Google and Facebook, and for millions of users in 160 countries. Collaboration and innovation are at the core of our culture, as we expand to more advanced software and services for encryption and Internet of Things (IoT). We are a multinational, fast-growing company, offering an opportunity to bring your ideas to life with our global team.
Yubico is seeking for a Principal Security Engineer to join the team and help secure the next generation of products for a safer Internet.
The Role
The Principal Security Engineer role reports to the Chief Information Security Officer and is a Sr. member of the Yubico Enterprise Security (YES) team. The team is responsible for the security of Yubico’s people, process, product, and infrastructure. As part of our team, you will be responsible for the company’s technical security strategy. You will also have an opportunity to influence Yubico’s products and services. The role is equally challenging and rewarding

Roles and Responsibilities

    • Own the technical security strategy for Yubico
    • Influence the corporate governance, risk, and compliance strategy
    • Solve complex security challenges and drive security improvements wherever needed
    • Leverage threat models to define requirements and collaborate with stakeholders to address threats
    • Perform security reviews of Yubico’s infrastructure, products, and services
    • Provide mentoring and guidance to engineers
    • Participate in the security response function
    • Identify and advocate for new and novel uses of Yubico’s technology

Required Skills & Experience

    • 8 years of experience in a technical information security role
    • 2 years of experience mentoring employees
    • Experience leading threat modeling exercises
    • Proficient in one or more programming languages
    • Knowledge of common vulnerability classes
    • Demonstrable experience building security solutions
    • Experience with Amazon Web Services, Google Cloud, or Azure

Optional Skills and Experience

    • Bachelor’s or master’s degree in Computer Science or in a related field, or equivalent experience
    • Knowledge of WebAuthn, OATH HOTP, OATH TOTP, U2F, PIV, or OpenPGP

Job Details

    • Preferred location is near Bellevue, WA but will consider remote locations for the right candidate
    • All security team members must be able to travel to Yubico’s other offices in Stockholm, Sweden, Palo Alto, CA, and Bellevue, WA at least two times per year. Travel is subject to COVID-19 restrictions and precautions
    • Start date: immediately
    • Hours: full time
    • Competitive salary + Bonus + Benefits + Stock options
Our benefits include comprehensive medical insurance, including dental and vision; 401(K) match; wellness reimbursements; equity; parental leave; and education allowance.
We are an equal opportunity employer, we value diversity and uphold an inclusive environment where all people feel that they are equally respected and valued. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, gender expression, age, marital status, religion, national origin, veteran or disability status. We'd love to learn about what you can add to our diverse team.
Personal data submitted through this form is used for the legitimate business interests of managing Yubico’s recruitment and hiring related activities, which include setting up and conducting interviews and tests for applicants, evaluating and assessing the results thereto, and as is otherwise needed in the recruitment and hiring processes. 
Your personal data will be retained in compliance with Yubico’s record retention policies, as long as necessary for the purpose for which it was collected including the consideration for relevant future employment opportunities.

If you do not want us to reach out to you or use your information as described herein please contact us at [email protected] to let us know and we will delete all such information. Providing your personal data is voluntary, but necessary to join our talent community, and if you do not agree to provide your data, we will not be able to consider you as part of our talent community

As part of providing the requested service, we will transfer your data to be processed by Lever, Inc., a service provider contracted by Yubico AB and/or its subsidiaries that meets legally mandated privacy requirements.The Yubico Privacy Notice offers more information about Yubico privacy practices, including the lawful basis for processing of personal data, how to lodge a complaint with the supervisory authority, and how to contact Yubico to exercise your data subject rights.

Related Jobs

Software Engineer (Python)

Yubico - Stockholm, SE

Software Engineer (Java, Android)

Yubico - Stockholm, SE

Senior Sales Manager, France

Yubico - Paris, FR

Product Designer - hardware & software

Yubico - Stockholm, SE

Sales Engineer / Solutions Engineer

Yubico - Remote
Disclaimer: Local Candidates Only
This company does NOT accept candidates from outside recruiting firms. Agency contacts are not welcome.