> Markdown version of [/jobs/ext/1206311-saas-security-posture-management-sspm](https://www.wearedevelopers.com/jobs/ext/1206311-saas-security-posture-management-sspm). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # SaaS Security Posture Management (SSPM) - **Company:** SN Cloud Solutions LLC - **Location:** Phoenix, AZ, United States - **Salary:** $91,302.0 - $109,955.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Amazon Web Services, Apple Mac Systems, Microsoft Azure, Border Gateway Protocol, Unix, CentOS, Cisco PIX, Software as a Service, Cloud Computing, Cloud Computing Security, Control Objectives for Information and Related Technology (COBIT), Cyber Security, Computer Networks, Dynamic Host Configuration Protocol, Debian Linux, Domain Name System (DNS), Cryptographic Protocols, Federal Information Processing Standards (FIPS), Information Security Management, Internet Protocol Security (IP SEC), Intrusion Detection Systems, Virtual Private Networks (VPN), Python (Programming Language), Network Security, Lightweight Directory Access Protocols (LDAP), Linux Distribution, Log Analysis, Windows Servers, Routing, Network Protocols, Open Shortest Path First (OSPF), Open Source Technology, PCI Data Security Standards, Public Key Infrastructure, Role-Based Access Control, Security Information and Event Management, TCP/IP, VMware VSphere, Software Vulnerability Management, Scripting, Google Cloud, Load Balancing, System Availability, Cyber Threat Analysis, Firewalls (Computer Science), Selinux, Information Technology, SolarWinds (Software), Network Support, Splunk, New Relic (SaaS), Vulnerability Analysis - **Published:** July 8, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=e49cfeafe8881421 ## About the Role * Proven experience in cybersecurity roles focusing on SaaS environments with expertise in cloud security engineering. * Strong knowledge of computer networking concepts including LAN/WAN architecture, routing protocols (OSPF, BGP), TCP/IP stack, DHCP, DNS, and network support. * Hands-on experience with SIEM implementation (Splunk or similar), threat intelligence platforms, vulnerability assessment tools, and incident management procedures. * Familiarity with IT infrastructure components such as SAN storage systems, VMware vSphere virtualization platform, load balancers, and system administration across multiple operating systems including Linux distributions (Debian, CentOS) and Windows Server. * Knowledge of industry standards such as ISO 27001/27000 series, FISMA/FedRAMP compliance frameworks, COBIT governance models, PCI DSS requirements. * Proficiency in scripting languages like Python or Bash for automation tasks related to system security hardening or vulnerability research. * Strong understanding of encryption protocols (SSL/TLS), PKI implementations, network security best practices including GPO management and open-source tools like SELinux. * Excellent analytical skills with the ability to perform detailed security risk assessments investigations while maintaining attention to detail. * Effective communication skills capable of translating technical findings into clear reports for diverse audiences. ## Description We are seeking a highly skilled and proactive SaaS Security Posture Management (SSPM) Specialist to join our cybersecurity team. In this role, you will be responsible for overseeing and enhancing the security posture of our cloud-based SaaS environments through comprehensive security assessments, risk analysis, and implementation of best practices aligned with industry standards such as ISO 27001, NIST, and FedRAMP. The ideal candidate will possess a deep understanding of computer networking, system security, and cloud infrastructure, enabling us to proactively identify vulnerabilities and ensure compliance across our SaaS platforms. Key responsibilities include conducting vulnerability assessments, managing security event monitoring, implementing security controls, and supporting incident response efforts. You will collaborate closely with cross-functional teams to develop security strategies that safeguard sensitive data and maintain regulatory compliance. This position offers an exciting opportunity to influence our organization's cybersecurity resilience in a dynamic cloud environment., * Perform continuous security posture assessments for SaaS applications utilizing tools such as SIEM solutions like Splunk or SolarWinds to analyze security events and detect anomalies. * Conduct vulnerability management activities including vulnerability research, vulnerability assessments, and risk analysis aligned with NIST standards. * Develop and maintain system security plans (SSPs) for cloud infrastructure environments such as AWS, Azure, or Google Cloud Platform. * Implement and manage identity & access management protocols using LDAP, SSO solutions, and RBAC models to ensure secure user authentication and authorization. * Collaborate with network engineering teams to design secure network architectures incorporating VPNs, IPsec tunnels, load balancing, firewalls (Cisco ASA), IDS/IPS systems, and network protocols. * Support incident response processes by investigating security breaches or threats related to cloud computing or on-premises systems. * Conduct system hardening procedures on operating systems including Debian, CentOS, openSUSE, Windows, macOS, and UNIX variants to mitigate vulnerabilities. * Assist in the deployment of security tools such as Endpoint Detection and Response (EDR), FIPS-compliant encryption modules, and system security hardening frameworks. * Participate in threat detection & response activities by analyzing logs through log analysis tools like Splunk or New Relic. * Contribute to the development of disaster recovery plans and high availability configurations for critical IT infrastructure components. ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [WeAreDevelopers LIVE - Node and Package Security](https://www.wearedevelopers.com/videos/2138-wearedevelopers-live-node-and-package-security) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [11 Best Practices For PHP Security](https://www.wearedevelopers.com/magazine/90-11-best-practices-for-php-security) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)