Principal Software Engineer, Pulumi

Secrets

$180.5-227.8k

+Bonus or variable & equity

AWS
Docker
Kubernetes
GCP
Python
Go
Rust
Azure
Senior and Expert level
Remote from US
Pulumi

Universal infrastructure as code

Open for applications

Pulumi

Universal infrastructure as code

101-200 employees

B2BEnterpriseProductivitySaaSDevOpsCloud Computing

Open for applications

$180.5-227.8k

+Bonus or variable & equity

AWS
Docker
Kubernetes
GCP
Python
Go
Rust
Azure
Senior and Expert level
Remote from US

101-200 employees

B2BEnterpriseProductivitySaaSDevOpsCloud Computing

Company mission

To democratize the cloud for every engineer.

Role

Who you are

  • 8+ years of professional software engineering experience in security, infrastructure, or distributed systems
  • Proven experience building and maintaining security-focused software solutions, especially in secrets management, cryptography, or access control
  • Deep understanding of modern security architectures, zero-trust models, and distributed systems security
  • Expertise in programming languages such as Go, Python, or Rust
  • Experience with cloud-native environments, containers, and orchestration tools like Kubernetes and Docker
  • Strong understanding of multi-cloud architectures (AWS, GCP, Azure) and hybrid environments
  • Familiarity with compliance frameworks (SOC 2, HIPAA, PCI-DSS) and secure coding standards
  • Excellent leadership and collaboration skills, with a proven ability to mentor engineers and advocate for secure engineering principles

Desirable

  • Experience with large-scale distributed systems and multi-cloud infrastructure management
  • Hands-on experience with specific security technologies such as PKI, OIDC, OAuth, etc
  • Hands-on experience with configuration management tools and secure key handling in complex environments
  • Track record of contributing to or leading security initiatives in open-source projects
  • Familiarity with secrets management solutions in cloud-native environments

What the job involves

  • As a Principal Software Engineer specializing in Security and Secrets Management, you will lead the evolution of our Environments, Secrets, and Configuration (ESC) platform, building the next generation of secrets management and orchestration
  • Your work will be at the forefront of designing scalable, secure, and user-friendly solutions that enable developers to manage sensitive data, credentials, and configurations across diverse environments
  • Your work will directly impact how organizations securely manage sensitive data, access credentials, and cryptographic keys at scale, safeguarding our users and partners
  • This is a hands-on technical leadership role where you will collaborate across engineering, product, and security teams to build cutting-edge solutions in cloud-native environments
  • Architect and lead the development of innovative secrets management solutions within the Pulumi ESC platform, enabling seamless and secure handling of sensitive data
  • Develop secure, high-performance services that provide configuration, encryption, and access control across multi-cloud and on-prem environments
  • Collaborate with engineering and security teams to enforce the highest standards of secure development practices throughout the software lifecycle
  • Lead design and implement fault-tolerant, scalable systems to manage secrets in highly distributed environments
  • Conduct security assessments and threat modeling, and provide technical leadership on projects to continuously enhance the platform’s security posture
  • Mentor engineering teams on best practices for secure code development and zero-trust architectures
  • Stay at the cutting edge of security and secrets management trends, pushing Pulumi to deliver innovative, reliable, and user-friendly solutions
  • Influence and drive cross-functional initiatives to shape the future of secrets orchestration and configuration management at Pulumi

Share this job

View 15 more jobs at Pulumi

Insights

14% employee growth in 12 months

Company

Company benefits

  • Time Off - Unlimited personal time off (PTO). We ask that employees take at least 3 weeks off during the year in addition to the 13 US holidays we recognize
  • Parental Leave - 20 weeks paid parental leave for the birthing parent or primary caregiver, and 16 for non-birthing parent or secondary caregiver
  • Remote-First - We are a 100% remote-first company with employees in nearly 20 states, and growing internationally; we encourage asynchronous communication and autonomy. We also provide an annual work from anywhere fund to help cover the employee costs of working remotely
  • Professional Development & Growth - We encourage a lifelong learning mindset and every employee is given an annual professional development budget
  • Equity - As a small but growing startup, we all act like owners and you will earn equity in the company
  • Additional Funds - We offer employees a monthly wellness fund to be spent on anything physical and/or mental wellbeing related. We also provide a quarterly happiness fund to be used toward anything that makes our employees happy!
  • Health - We offer competitive medical, dental, vision, and supplemental insurance. It is free for our direct employees to be on our insurance
  • 401K - With employer match

Funding (last 2 of 5 rounds)

Oct 2023

$41m

SERIES C

Oct 2020

$37.5m

SERIES B

Total funding: $106.5m

Our take

The Infrastructure-as-code space is new and growing, thanks to the increasing complexity of cloud services, and their increasing adoption by developers and teams who would rather not manage them. Pulumi works to bring together infrastructure, developer, and security teams to help build and operate these cloud applications, better.

The service is compatible with all clouds and all major programming languages, meaning it’s casting its net appropriately wide to shore itself up against unpredictable new developments in the market. This breadth of scope saw Pulumi win 10x growth in adoption over 2019 alone, and the company has since expanded out into what it hopes will provide a more comprehensive cloud engineering platform. This means the addition of capabilities like governance and compliance features, testing support, and policy as code - all shoring up its already strong position in the space.

Also playing firmly in Pulumi’s favor is that it’s been built as cloud-native from the ground up, meaning that it has a head start on earlier infrastructure-as-code businesses that needed to pivot to accommodate new developments like serverless and multi-cloud tech. Plus, its multi-language compatibility means that silos don’t form so readily as they do with rival HashiCorp’s Terraform, which requires that developers learn a proprietary language.

Freddie headshot

Freddie

Company Specialist at Welcome to the Jungle