Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Principal Security Engineer image - Rise Careers
Job details

Principal Security Engineer

Overview

Atlassians can choose where they work – whether in an office, from home, or a combination of the two. That way, Atlassians have more control over supporting their family, personal goals, and other priorities. We can hire people in any country where we have a legal entity. Interviews and onboarding are conducted virtually, a part of being a distributed-first company.

Role Specifics

Do you love penetration testing, application security and uplifting programs and capabilities? We’re looking for a principal Security Testing Engineer to work closely with the Security Testing Manager to build the Security Testing team and capability. You will be the Technical SME, drive process improvements, and equip the team with the latest tools techniques and methodologies to find meaningful vulnerabilities which off-the-shelf tools won’t.

As the principal Security Testing Engineer you will be responsible for penetration testing and manual code review across Atlassian’s vast footprint. You will lead others to validate the state of Atlassian’s technical security, working closely with our security teams and leadership groups.

More about our team

We are a growing security team committed to protecting the security of our customers and of Atlassian itself. You will be part of the Security Testing team whose mission is to partner with internal teams to provide innovative and holistic security testing solutions to secure Atlassian products, platforms and customers.

Our Security Testing team:

  • Love pen testing & code review

  • Enjoy working together

  • Love sharing knowledge (and learning from others)

  • Have great communication skills

  • Are keen to contribute to the efforts of a larger security team

  • Enjoy building as much as breaking

Responsibilities

This role supports Atlassian’s security team, Engineers and Customers by providing world class technical assurance of our software, platforms and services through high quality manual penetration testing and code review. The principal security testing engineer will be responsible for establishing and growing a team of penetration testers based out of our Bangalore office.

Role Experience

Day-to-day this person will be:

  • Providing SME knowledge and guidance to a team of pen testers/code review

  • Continuing to mature pen testing/code review workflows

  • Identifying and recruiting top-class penetration testing talent

  • Supporting and guiding the growth of a India based penetration testing team

  • Analysing vulnerability data for trends and gaps in controls

Biggest challenges: staying current; maturing talent; managing pipeline; recruiting top-tier talent

Early Success

  • Identifying significant vulnerabilities in Atlassian products prior to production deployment

  • Building contacts in the Atlassian engineering team, product team and security team

  • Building and leveraging existing contacts to identify potential talent to join the team

  • Establishing testing processes in the local team that complements and extends existing processes

  • Identifying insights which contribute to strategic investments

  • Maturing holistic security testing plays/processes

Future Success

  • You will have established a team of 5-7 highly talented penetration testers

  • The team will be fully integrated with the global team in providing high-quality testing

  • You will work hand-in-glove with your peers to proactively identify where security testing can be applied to new and existing product features and development pipelines

Qualifications

  • 6+ years penetration testing experience in a consultancy, dedicated internal pentesting team, or similar offensive security function

  • 2+ years experience as an offensive security team lead

  • Strong experience in white-box application security testing; bonus if in Java

  • Full stack application security technical experience

  • Delivery focused

  • Experience mentoring junior penetration testers

On your first day, we'll expect you to have:

  • The ability to complete a penetration test and code review of a modern cloud application

  • Experience leading security teams on complex penetration testing engagements

  • Strong, practical understanding of security testing methodologies, supporting infrastructure requirements and legal considerations

  • Strong collaboration and communication skills when working with closely with deeply technical development and infrastructure teams

  • Worked in a principal penetration testing/application security role

  • Strong application security experience

  • Experience with program development and uplift

  • Affinity for growing teams and helping people succeed

It's great, but not required, if you have:

  • CVE’s to your name

  • Contributions to open source security or penetration testing tools

  • Delivered industry presentations

  • Public write ups or blogs of vulnerabilities you have identified

  • Certifications, notably: OSWE, OSCP, OSCE, or CREST CRT, or GPEN

  • Comfortable operating in AWS, Azure, and/or GCP

Our perks & benefits

Atlassian offers a wide range of perks and benefits designed to support you, your family and to help you engage with your local community. Our offerings include health and wellbeing resources, paid volunteer days, and so much more. To learn more, visit go.atlassian.com/perksandbenefits.

About Atlassian

At Atlassian, we're motivated by a common goal: to unleash the potential of every team. Our software products help teams all over the planet and our solutions are designed for all types of work. Team collaboration through our tools makes what may be impossible alone, possible together.

We believe that the unique contributions of all Atlassians create our success. To ensure that our products and culture continue to incorporate everyone's perspectives and experience, we never discriminate based on race, religion, national origin, gender identity or expression, sexual orientation, age, or marital, veteran, or disability status. All your information will be kept confidential according to EEO guidelines.

To provide you the best experience, we can support with accommodations or adjustments at any stage of the recruitment process. Simply inform our Recruitment team during your conversation with them.

To learn more about our culture and hiring process, visit go.atlassian.com/crh.

Atlassian Glassdoor Company Review
4.1 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
Atlassian DE&I Review
4.6 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
CEO of Atlassian
Atlassian CEO photo
Scott Farquhar & Mike Cannon-Brookes
Approve of CEO

Average salary estimate

$135000 / YEARLY (est.)
min
max
$120000K
$150000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Principal Security Engineer, Atlassian

Are you ready to take your career to the next level? Join Atlassian as a Principal Security Engineer in our Bengaluru office! This is a unique opportunity where you can make a significant impact by leading our Security Testing team. You'll work closely with the Security Testing Manager to build a capable team admired for its expertise in penetration testing and application security. In this role, you'll be the go-to technical subject matter expert, guiding your team with the latest tools and methodologies to uncover vulnerabilities that typical tools might miss. Your day-to-day will include conducting manual code reviews and penetration tests across a range of Atlassian products, all while collaborating with talented colleagues in a supportive environment. At Atlassian, we believe in a distributed-first culture, giving our employees the flexibility to work where they feel most productive, whether that’s from home or our office. We're committed to enhancing our customers’ security and ensuring our products are top-notch, so we need someone with your advanced skills! With a background in offensive security, you're set to lead a team of penetration testers and bring fresh insights to our security practices. If you’re passionate about mentoring talent and creating a robust security framework, then we can't wait to see what you can bring to Atlassian!

Frequently Asked Questions (FAQs) for Principal Security Engineer Role at Atlassian
What are the responsibilities of a Principal Security Engineer at Atlassian?

As a Principal Security Engineer at Atlassian, you will engage in a variety of responsibilities ranging from leading penetration tests to establishing and mentoring a skilled team of penetration testers. You will provide world-class technical assurance of our software, conduct manual code reviews, and facilitate communication between the security team and other departments. Your insights will drive the maturation of pen testing workflows and strategies, ensuring ATLASSIAN’s products remain secure and robust.

Join Rise to see the full answer
What qualifications are required for the Principal Security Engineer position at Atlassian?

To qualify for the Principal Security Engineer role at Atlassian, you’ll need a minimum of 6 years of penetration testing experience, along with 2 years of experience in a leadership role within an offensive security team. Proficiency in white-box application security testing and a strong understanding of security methodologies are crucial. Certifications like OSWE, OSCP, or equivalent are highly valued but not mandatory.

Join Rise to see the full answer
What tools and methodologies does Atlassian use for penetration testing?

Atlassian employs a variety of advanced tools and methodologies tailored for effective penetration testing. As a Principal Security Engineer, you will have the opportunity to introduce and utilize the latest technologies and techniques that go beyond off-the-shelf solutions. This ensures a more thorough examination of vulnerabilities in our products and enhances the overall security posture of the organization.

Join Rise to see the full answer
How does Atlassian promote professional growth for its Principal Security Engineers?

At Atlassian, professional growth is strongly supported through mentorship opportunities, participation in innovation projects, and a culture that encourages knowledge sharing. As a Principal Security Engineer, you will lead a team, allowing you to cultivate leadership skills and actively participate in developing junior penetration testers, contributing to both personal and team growth within the organization.

Join Rise to see the full answer
What is the team culture like for the Security Testing group at Atlassian?

The culture within the Security Testing team at Atlassian is collaborative and focused on sharing knowledge. Team members are passionate about penetration testing and application security and have a strong desire to learn together. If you enjoy working in a friendly environment where innovation and communication are paramount, you'll find a perfect fit with Atlassian's security team.

Join Rise to see the full answer
Common Interview Questions for Principal Security Engineer
Can you explain your experience with penetration testing?

Certainly! When discussing your experience with penetration testing, emphasize specific engagements you've led or contributed to. Highlight the type of testing—be it web application, network, or cloud platform—and any tools or methodologies you've utilized. It’s also beneficial to mention vulnerabilities you’ve discovered and how those experiences helped shape your approach to security.

Join Rise to see the full answer
What methodologies do you follow for application security testing?

When addressing methodologies for application security testing, talk about recognized frameworks such as OWASP Top Ten and SANS. Explain how you apply these methodologies to real-world applications. Discuss the importance of a comprehensive approach that includes both automated tools and manual testing, ensuring a thorough evaluation of application security.

Join Rise to see the full answer
How do you stay updated with the latest security trends and vulnerabilities?

Explain your approach to continuous learning in the security field. Mention resources you follow—like blogs, webinars, industry standards, or conferences—and any professional communities you engage with. Demonstrating your commitment to staying informed underlines your dedication to security as a dynamic field.

Join Rise to see the full answer
Describe a time you identified a critical vulnerability during testing.

Share a specific example of a vulnerability you discovered, detailing the context and the impact. Describe the steps you took to find the vulnerability and how you communicated it to relevant stakeholders. Emphasize your proactive approach in mitigating the risk and the subsequent improvements made to prevent similar issues.

Join Rise to see the full answer
What role does collaboration play in security testing?

Highlight the importance of cross-team collaboration in security testing. Discuss how you work with development teams to understand their systems, communicate vulnerabilities effectively, and support them in implementing fixes. Mention that collaboration fosters a holistic approach to security, which is more effective than working in isolation.

Join Rise to see the full answer
How do you approach mentoring junior penetration testers?

When discussing your mentoring approach, focus on providing structured guidance while allowing for autonomy. Talk about how you share resources, conduct regular knowledge-sharing sessions, and involve them in various testing scenarios. Stress how fostering a safe and supportive environment encourages learning and growth.

Join Rise to see the full answer
What programming languages are you most comfortable with for security testing?

Identify the programming languages relevant to your experience, particularly those that are vital for application security testing, like Java, Python, or Ruby. Explain how your proficiency in these languages helps you to understand application architecture and secure coding practices, which is critical for effective penetration testing.

Join Rise to see the full answer
What tools do you prefer for penetration testing and why?

Discuss your favorite tools, such as Burp Suite, Metasploit, or OWASP ZAP, highlighting their specific contributions to the penetration testing process. Mention why you prefer them—be it user-friendliness, comprehensive functionalities, or integration capabilities—and how they fit into your overall testing strategy.

Join Rise to see the full answer
How would you evaluate a new security tool for your team?

Describe the criteria you would use to assess new security tools, including effectiveness, ease of use, compatibility with existing systems, and their ability to address specific security challenges. Additionally, mention your strategy for trialing and integrating new tools within your team's workflow.

Join Rise to see the full answer
Why do you want to work at Atlassian as a Principal Security Engineer?

When answering this, reflect on Atlassian's culture, commitment to security, and opportunities for professional growth. Discuss how the role aligns with your skills and aspirations, and convey your enthusiasm for contributing to a company that values teamwork and innovation in security testing.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Customer-Centric
Empathetic
Collaboration over Competition
Feedback Forward
Inclusive & Diverse
Mission Driven
Diversity of Opinions
Rise from Within
Medical Insurance
Paid Time-Off
Dental Insurance
Vision Insurance
Maternity Leave
Mental Health Resources
Equity
401K Matching
Employee Resource Groups
Performance Bonus
Education Stipend
Life insurance

As a Senior Machine Learning Engineering Manager at Atlassian, you will lead a dynamic team in developing innovative machine learning solutions with a focus on business impact.

Photo of the Rise User
Customer-Centric
Empathetic
Collaboration over Competition
Feedback Forward
Inclusive & Diverse
Mission Driven
Diversity of Opinions
Rise from Within
Medical Insurance
Paid Time-Off
Dental Insurance
Vision Insurance
Maternity Leave
Mental Health Resources
Equity
401K Matching
Employee Resource Groups
Performance Bonus
Education Stipend
Life insurance

Become an integral part of Atlassian's team by driving customer renewals and building loyalty through proactive engagement.

Photo of the Rise User
Posted 7 days ago

Step into a key role at Aetos Systems, Inc. as a Senior Cyber Defense Incident Responder and lead the charge in combating cyber threats.

Photo of the Rise User

Become a key player as a PC Technician at Peraton, supporting critical operations for USSOCOM with your technical expertise.

Photo of the Rise User
Charles Schwab Remote US, Tarrant County, TX; Texas, Southlake, TX
Posted yesterday

Join Schwab as a Cloud Security Engineer and lead efforts in developing automation and orchestration to enhance their cybersecurity posture.

Photo of the Rise User
Posted 6 days ago

Join RWJBarnabas Health as a Business Systems Analyst and drive improvements in healthcare delivery through data analysis and reporting.

Photo of the Rise User
7 Kings Code Remote Baton Rouge, LA
Posted 7 days ago

Join IBM as an SAP SCM (MM) Lead, leveraging your expertise to drive successful project outcomes while initially working remotely.

Photo of the Rise User
Knak Remote Canada - Remote
Posted yesterday

Join Knak as a Solutions Architect and help revolutionize the way marketers integrate and utilize their innovative platform within their Martech ecosystems.

Posted 6 days ago

Avint LLC seeks a Mid-Cyber Security Specialist/Analyst to ensure system reliability and security in San Diego, CA.

Posted 4 days ago

Join Vattenfall as a Senior Linux Engineer to drive innovation in their Linux environment while contributing to a sustainable energy future.

Atlassian's mission is to unleash the potential in every team—including our own. We know that the highest performing teams include people with diverse perspectives and ways of solving problems.

129 jobs
MATCH
VIEW MATCH
BADGES
Badge ChangemakerBadge Diversity ChampionBadge Family FriendlyBadge Future MakerBadge Global CitizenBadge InnovatorBadge Rapid Growth
CULTURE VALUES
Customer-Centric
Empathetic
Collaboration over Competition
Feedback Forward
Inclusive & Diverse
Mission Driven
Diversity of Opinions
Rise from Within
BENEFITS & PERKS
Medical Insurance
Paid Time-Off
Dental Insurance
Vision Insurance
Maternity Leave
Mental Health Resources
Equity
401K Matching
Employee Resource Groups
Performance Bonus
Education Stipend
Life insurance
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
April 16, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, North Canton just viewed NodeJs developer at BlackStone eIT
Photo of the Rise User
Someone from OH, North Canton just viewed Software Development Engineer - Recent Grads Welcome at Sonos
Photo of the Rise User
16 people applied to SOC Analyst I at CBIZ
Photo of the Rise User
Someone from OH, Dayton just viewed Data Entry and Word Processing at MoxieIT
Photo of the Rise User
Someone from OH, Dayton just viewed Content Developer - Intern at Big Ideas Learning
Photo of the Rise User
Someone from OH, Pickerington just viewed Salesforce Lead at Bounteous
Photo of the Rise User
Someone from OH, Pickerington just viewed Industry Lead - High Tech (Salesforce) at Thunder
D
Someone from OH, Akron just viewed Junior Motion Designer at DEPT®
R
Someone from OH, Akron just viewed 2D Graphic and Motion Designer at Ruby Labs
Photo of the Rise User
Someone from OH, Columbus just viewed Customer Success Manager, US SLED at Dataminr
Photo of the Rise User
Someone from OH, Greenville just viewed Systems Engineer (Linux & Shell or Python scripting) at Visa
Photo of the Rise User
Someone from OH, Greenville just viewed Help Desk Technician - Youngstown at R.I.T.A.
Photo of the Rise User
Someone from OH, Mount Orab just viewed Backend Developer at G2i Inc.
Photo of the Rise User
Someone from OH, Cincinnati just viewed Product Marketing Manager at Cast & Crew
Photo of the Rise User
Someone from OH, Cincinnati just viewed Marketing Manager at Cast & Crew
o
Someone from OH, Cincinnati just viewed Administrative Assistant at osu
A
Someone from OH, Cincinnati just viewed Data Entry Clerk at Alphabe Insight Inc