Calix logo
Calix Verified
Telecommunications, Network Equipment, Cloud Software

Principal Network Security Engineer (Cloud)

California, United StatesRemoteFull TimePrincipal$159,000–$310,500 /yrPosted 2 months agoVisa sponsorship available

Is this role right for you?

Upload your resume and get a skill-by-skill breakdown — see exactly where you match, where you're close, and what to highlight. Not a mystery percentage.

Get a tailored resume highlighting what this role needs.

Role summary

Calix is seeking a Principal Network Security Engineer (Cloud) to lead the architecture, deployment, and optimization of network security controls within Google Cloud Platform (GCP). This role involves designing and implementing security policies, segmentation, and access controls, performing risk assessments, and responding to security incidents. The engineer will collaborate with cross-functional teams, develop automation for security deployment, and ensure compliance with regulatory standards. The position requires 10+ years of network security experience, with at least 3 years in cloud environments, and strong knowledge of cloud networking and security tools. This is a remote position based in the US or Canada, with potential for in-person meetings.

The Calix platform enables Communication Service Providers (CSPs) of all sizes to transform and future-proof their businesses. Through real-time data, automation, and actionable insights delivered via Calix One — our cloud-first, AI-powered platform — CSPs can simplify operations, collapse cost, and accelerate innovation. Calix One brings together the automation of everything and the experience of one, empowering customers to deliver differentiated subscriber experiences while driving acquisition, loyalty, and revenue growth. This is the Calix mission: to enable CSPs of all sizes to simplify, innovate, and grow, strengthening both their businesses and the communities they serve.
We’re at the forefront of a once in a generational change in the broadband industry. Join us as we innovate, help our customers reach their potential, and connect underserved communities with unrivaled digital experiences.
Key Responsibilities

  • Lead the architecture, deployment, and optimization of network security controls and solutions in Google Cloud Platform (GCP) environments.
  • Design and implement security policies, segmentation strategies, firewalls, and access controls to protect cloud-based assets.
  • Collaborate with the Cloud Platform Engineering, SRE, and Application teams to integrate security into cloud-native solutions and workflows.
  • Perform risk assessments, vulnerability analysis, and threat modeling for cloud networks.
  • Monitor, analyze, and respond to security incidents and anomalies within GCP networks, leveraging SIEM/SOAR/XDR/NGFW/DLP and other security tools.
  • Develop and maintain automation scripts and infrastructure-as-code (IaC) for consistent security deployment and compliance.
  • Ensure adherence to regulatory/compliance requirements (e.g., SOC2, ISO27K, GDPR) and internal policies for cloud network security.
  • Mentor and provide technical leadership to junior engineers and cross-functional teams.
  • Stay current with emerging cloud security technologies, trends, and threats.
  • Contribute to the development of security standards, best practices, and documentation for Calix Cloud environments.

Required Qualifications

  • Bachelor’s or Master’s degree in Computer Science, Information Security, Engineering, or related field.
  • 10+ years of experience in network security engineering, with at least 3 years focused on cloud environments, preferably Google Cloud Platform.
  • Expert knowledge of cloud networking concepts (VPC, subnets, load balancers, NGFW, VPN, interconnect etc.).
  • Proficiency in cloud security tools and services (Identity-Aware Proxy, Cloud IAM, Security Command Center, SecOps, DLP etc.).
  • Strong understanding of TCP/IP, routing, firewalls, IDS/IPS, zero trust, and segmentation strategies.
  • Experience with automation and scripting (Python, Terraform/OpenTofu, etc.).
  • Solid grasp of security frameworks and compliance standards relevant to cloud environments.
  • Excellent analytical, problem-solving, and communication skills.
  • Relevant certifications (e.g., Google Professional Cloud Security Engineer, CISSP, CCSP) highly desirable.
  • This is a remote-based position located in the United States or Canada. Please note that as part of the recruitment and hiring process, there is an in-person meeting that will take place.
  • While this is a remote-based position, the candidate may be required to attend in-person team or company meetings

Preferred Skills

  • Experience designing and operating secure cloud environments – preferably Google Cloud.
  • Knowledge of container security (Kubernetes, GKE) and microservices architectures.
  • Strong leadership and project management capabilities.
  • Ability to evangelize security best practices and influence organizational change.

The base pay range for this position varies based on the geographic location. More information about the pay range specific to candidate location and other factors will be shared during the recruitment process. Individual pay is determined based on location of residence and multiple factors, including job-related knowledge, skills and experience.
San Francisco Bay Area
182,900 - 310,500 USD Annual
All Other US Locations:
159,000 - 270,000 USD Annual
As a part of the total compensation package, this role may be eligible for a bonus. For information on our benefits click here.

Ready to apply?
You'll be redirected to Calix's application page.