Principal Cyber Security Engineer, Strategy and Architecture
About the role
As a Lead Cyber Security Engineer, you will be a senior-level leader supporting the Security Engineering and Operations organization. You will work closely with the Deputy CISO to implement security strategies and guide the overall direction of the security organization. This role involves leading the organization's roadmap, resolving blockers with engineering authorities, and delivering technical solutions that advance strategic objectives.
You will operate across multiple cybersecurity technical and functional groups, translating strategic vision into practical work while collaborating with engineering and operational security teams. The ideal candidate is a hands-on engineer, mentor, and multi-functional facilitator capable of contributing directly to programs.
Responsibilities
- Strategic & Multi-Functional Leadership:
- Serve as a technical liaison between the CISO organization and other senior leadership domains to anticipate future security needs.
- Collaborate across security functions in other parts of the company to ensure alignment, scalability, and efficiency.
- Participate in enterprise security architecture discussions and translate outcomes into domain-specific engineering requirements and repeatable patterns.
- Technical Leadership & Execution:
- Provide hands-on technical leadership in designing, developing, and validating secure system architectures, communications networks, and security controls.
- Guide the implementation of secure network design, segmentation strategies, encryption mechanisms, identity and access controls, and monitoring systems.
- Establish a robust methodology for documenting technical decisions to ensure efficient maturation of security-impacting services.
- Develop an understanding of operational security processes to identify difficulties and opportunities for improvement.
- Maintain technical proficiency with security tools to identify gaps in coverage.
- Bridge the gap between security operations and engineering, ensuring operational realities inform engineering decisions.
- Encourage the responsible adoption of AI capabilities across the Security organization.
- Collaboratively develop mechanisms to enforce security policies, procedures, and compliance with frameworks like NIST, ISO 27001, GDPR, and CCPA.
- Team Development & Enablement:
- Mentor and develop security engineers across multiple teams, providing technical support and professional growth opportunities.
- Build trust-based relationships with engineering teams, product owners, executives, and external partners.
- Use critical thinking to navigate complex problem-sets with real-world business impacts when prioritizing system and network events.
Requirements
- Bachelor’s or Master’s degree in Electrical Engineering, Computer Engineering, Computer Science, Cybersecurity, or a related technical field.
- 10+ years of experience in security engineering, systems engineering, network engineering, or similar roles.
- Impeccable judgment and ability to analyze risk in applying security controls for real-world risk reduction.
- Experience navigating trade-offs between security, performance, and reliability.
- Knowledgeable in secure system design, communications networks, cybersecurity controls, and threat modeling.
- Familiarity working across organizational boundaries including security, infrastructure, networking, and product engineering.
- Experience with modern network protocols, routing, wireless communications, encryption, and network security architecture.
- Hands-on management and operation of enterprise security tools (e.g., firewalls, IDS/IPS, PKI, SIEM/SOAR, EDR/NDR, CSPM/CNAPP, zero-trust).
- Excellent communication skills with the ability to influence collaborators at multiple levels.
- US Citizenship required.
- Ability to travel up to 20%.
Preferred Qualifications
- A growth-mindset and willingness to learn new skills and tools.
- Ability to influence without direct authority.
- Systems-level thinking and architectural insight.
- Strong problem-solving, analytical reasoning, and risk-based judgment.
- Experience establishing structure and consistency across decentralized teams.
- Strong understanding of satellite (or similar) communications networks.
- Experience in environments subject to regulatory frameworks such as FedRAMP, CMMC, HIPAA, PCI-DSS, or SOC 2.
- Familiarity with zero-trust architecture principles and practical implementation challenges.
- Relevant certifications such as CISSP, CISM, GIAC (GSLC, GCSA, GSOM), or SABSA (valued but not required).
Pay
Salary range: $230,000.00 - $363,000.00 annually. For specific work locations within San Jose, the San Francisco Bay area, and the New York City metropolitan area, the base pay range is $285,500.00 - $428,500.00 annually.
Base pay may vary depending on job-related knowledge, skills, and experience. Additional cash or stock incentives may be provided as part of the compensation package.
Benefits
Viasat offers a range of medical, financial, and other benefits focused on holistic health and wellness. Learn more at https://careers.viasat.com/benefits.
Schedule
This is a hybrid role based out of Carlsbad, CA, Tempe, AZ, Reston, VA, or Marlborough, MA.