Principal Security Engineer

EveryAction, Inc. USA

Apply to this job
Remote, US remote Until 9/19/2026 H-1B sponsor history First posted July 21, 2026 Last posted July 21, 2026
Job description

US Based Salary: $145,000 - $185,000 USD DOE

About Us

Bonterra exists to propel every doer of good to their peak impact. We measure that impact against our vision to increase the giving rate as a percentage of GDP from 2% to 3% by 2033. We know that this goal is lofty, but we are confident that the right technology and expertise will strengthen trust in the sector, allowing the social good industry to accelerate growth and reach peak impact. Bonterra's differentiated, end-to-end solutions collectively support a unique network of over 20,000 customers, including over 16,000 nonprofit organizations and over 50 percent of Fortune 100 companies. Learn more at bonterratech.com.

About the Role

As a Principal Security Engineer at Bonterra, you will be embedded across the Engineering organization, partnering directly with development teams to drive vulnerability remediation, build security ownership, and close the gap between identified and fixed. You will also build and operate AI agents and workflows that make that work scale across the product portfolio.

This is a technical role. The ideal candidate has engineering instincts, can build AI-powered workflows, and knows how to work alongside development teams rather than audit them from the outside.

What you'll do

  • Report directly to the Head of Application Security.

  • Build, extend, and operate AI-powered agents and workflows that automate vulnerability remediation tasks.

  • Drive vulnerabilities to closure by working directly with development teams.

  • Act as a security champion embedded across Bonterra's engineering organizations, building trust and normalizing secure development practices.

  • Triage and prioritize findings from SAST, SCA, IaC scanners, filtering noise and surfacing what needs immediate attention.

  • Integrate security validation into CI/CD pipelines and developer workflows.

  • Support SOC 2, PCI-DSS, HIPAA, and other audits as needed.


Requirements

  • Demonstrated experience building AI agents, LLM-powered workflows, or automated pipelines.

  • Working knowledge of software vulnerability classes, how CVEs are assessed, and what good remediation looks like.

  • Understand how software gets built and where security integrates into the development process.

  • You can translate a security finding into language a developer can act on without a security background.


What sets you apart

  • An extensive track record of building AI agents to solve real operational problems that accelerate outcomes.

  • Experience with SAST/SCA platforms at an engineering team level.

  • Prior work building or running a security champion program.

  • Familiarity with AWS security services or cloud environment security.

  • Knowledge of application security frameworks -- OWASP Top 10, NIST, CVSS scoring.

  • Previous software development experience.

At Bonterra, we’re building AI-powered tools to solve real human challenges—and we want teammates who share that enthusiasm. We value people who will champion AI and bring diverse perspectives from different industries, backgrounds, and cultures. Together, we create AI that breaks down barriers, empowers communities, and delivers better outcomes

At this time, we are unable to consider candidates who require current or future sponsorship for employment authorization.

____________________________________________________________________________________

Our Culture

At Bonterra, we’re innovating with a higher purpose: to increase giving to 3% of US GDP by 2033, creating $573 billion more in global impact every year. At Bonterra, we foster an inclusive, equitable culture where every team member belongs and contributes to meaningful impact. Read more about our values and culture here.

Compensation & Benefits

We offer a comprehensive benefits package that supports your health, well-being and growth - explore full details here.

Compensation and benefits for this role apply to full-time employees in the United States and may vary based on local standards, laws and norms. Pay is determined by location, skills, experience, and education, and is one part of Bonterra’s total rewards package, which may also include bonuses, incentives, equity, and a comprehensive benefits program.

____________________________________________________________________________________

Equal Opportunity & Accommodations

At Bonterra, we are proud to be an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. We provide equal employment opportunities without regard to race, color, religion, sex (including pregnancy, sexual orientation, or gender identity), national origin, age, disability, veteran status, or any other characteristic protected by law.

If you require a reasonable accommodation during the application process, please submit a request.

About this role

Summary

Build AI workflows, drive vulnerabilities closure, integrate security in development processes.

Job title

Principal Security Engineer

Experience level

null

Industry

software

Location requirements

Remote in the United States, no on-site presence needed.

Salary

$145k–$185k

Visa sponsorship

H-1B sponsor history

Management role

No

Skills & keywords

Required skills

building AI agentssoftware vulnerabilitysecurity frameworksCI/CD securitySAST/SCA platforms

Preferred skills

AWS securitysecurity champion programOWASP Top 10NISTCVSS

Specializations

AI agentsvulnerability remediationcloud securityapplication securitysoftware development
Locations

Structured locations inferred from the posting.

United States

Remote Country
Related searches