Barracuda Networks logo

Principal Application Security Engineer

Barracuda Networks

Hybrid
Full-time
Principal
8+ yrs
Salary not listedPosted 42m ago

Real job — pulled straight from Barracuda Networks’s careers page · Verified September 8, 2026 · No reposts.

Job description

Barracuda Networks is hiring a Principal Application Security Engineer — a full-time role. Apply directly on Barracuda Networks's careers page below.

Come join our passionate team! Barracuda is a leading cybersecurity company providing complete protection against complex threats. Our platform protects email, data, applications, and networks with innovative solutions, and a managed XDR service, to strengthen cyber resilience. Hundreds of thousands of IT professionals and managed service providers worldwide trust us to protect and support them with solutions that are easy to buy, deploy, and use. 

We know a diverse workforce adds to our collective value and strength as an organization. Barracuda Networks is proud to be an Equal Opportunity Employer, committed to equal employment opportunity and equitable compensation regardless of race, gender, religion, sex, sexual orientation, national origin, or disability. 

Role Overview: 

As a Principal Application Security Engineer, you will be tasked with shaping, growing, and leading Barracuda’s Application Security program. Additionally, as the most senior member of the AppSec team, you will have the opportunity to provide mentorship to other team members and have a say in the direction of the overarching security program and initiatives. 

Candidates should have deep expertise in modern Application Security and Product Security practices, have experience defining and growing appsec/prodsec programs, be familiar with product development workflows/lifecycles, and have experience owning, planning, and executing initiatives across a complex multi-stakeholder business setting. 

Core requirements: 

  • 8-10+ years in product-focused AppSec: Able to move orgs from reactive pen-test/documentation-heavy to proactive guardrail-driven programs. Has a track record of embedding security across the development life cycle and reducing late-stage findings via automation and developer enablement. 

  • Strong understanding of modern AppSec and ProdSec concepts: Deep practical (hands-on) knowledge of core security concepts across AppSec, ProdSec, and Cloud. 

  • Experience building/growing AppSec and ProdSec programs: Hands-on experience building or growing modern AppSec/ProdSec programs in a product environment. 

  • Hands-on experience owning long-term initiatives: Experience and a proven track record of owning workstreams, initiatives, or impactful project scope over an extended (year+) period. 

  • Proficient in Threat Modeling: Can facilitate lightweight, feature-level threat models, drive risk-based discussions, and flag high-risk changes across a broad spectrum of tech stacks and product designs. 

  • Hands-on security assessment experience: Has strong hands-on experience performing application penetration tests, conducting security-focused source code reviews, driving risk rating and vulnerability management processes. 

  • Programming proficiency: Proficient in at least two programming languages (TypeScript/JavaScript, Python, Ruby, Java, Go, etc.). Able to review code and provide framework-specific remediation guidance.  

  • Strong communication and presentation skills: Able to provide concise and practical developer-friendly guidance. Can partner with product, platform, and engineering leads to drive security initiatives. Comfortable leading short, outcome-focused design review discussions and security trainings. 

Ideal candidate also has: 

  • A strong sense of ownership and community within the team 

  • Ability to build automation and successfully leverage AI to facilitate daily tasks 

  • Hands-on experience building production-grade software 

  • Experience working cross-functionally with technical and non-technical teams 

Nice-to-have: 

  • Applicable certifications such as OSCP, OSCE, OSWE, etc. 

  • Previous management/leadership experience 

  • Excited and passionate about application security and software development. 


What you’ll get from us
 

A team where you can voice your opinion, make an impact, and where you and your experience are valued. Internal mobility – there are opportunities for cross training and the ability to attain your next career step within Barracuda.

  • Equity, in the form of non-qualifying options

  • High-quality health benefits 

  • Retirement Plan with employer match 

  • Career-growth opportunities 

  • Flexible Time Off and Paid Time Off benefits 

  • Volunteer opportunities

#LI-Hybrid 

Get Security Engineer jobs like this

New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.

Email me new jobs
Job Listings at Shure Incorporated logo

Application Software Development Intern

$48k–$89kRemote · US-eligible
✓ From careers page· 5m ago
Job Listings at Shure Incorporated logo

Application Systems Development Intern

$48k–$89kNiles, IL
✓ From careers page· 5m ago
Ordergroove logo

Staff Full Stack Engineer (Remote)

$170k–$170kRemote · US-eligible
✓ From careers page· 22m ago
Union.ai logo

Front-End Software Engineer

$170k–$190kSeattle, WA
✓ From careers page· 23m ago

Frequently asked questions

What skills are required for Principal Application Security Engineer at Barracuda Networks?

The required skills for Principal Application Security Engineer at Barracuda Networks include: TypeScript, JavaScript, Python, Ruby, Java, Go.

What is the seniority level for Principal Application Security Engineer at Barracuda Networks?

Principal Application Security Engineer at Barracuda Networks is a Principal level position.

How do I apply for Principal Application Security Engineer at Barracuda Networks?

You can view the full description and apply for Principal Application Security Engineer at Barracuda Networks on EchoJobs: https://echojobs.io/job/barracuda-networks-principal-application-security-engineer-bahuk.