> Markdown version of [/jobs/ext/182437-senior-security-engineer](https://www.wearedevelopers.com/jobs/ext/182437-senior-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Security Engineer - **Company:** Semperis Inc. - **Location:** Austin, TX, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** JavaScript (Programming Language), Agile Methodology, Cloud Computing, Cloud Computing Security, Collaborative Software, Cyber Security, Data Security, DevOps, Identity and Access Management, Intrusion Detection and Prevention, Python (Programming Language), Windows PowerShell, Runbook, Scripting, Cloud Platform System, Multi-Cloud, Serverless Computing - **Published:** May 14, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=98afa4d4089dbd6b ## About the Role Do you have experience in Threat detection & response?, * 5+ years of hands-on experience as a Security Engineer with exposure to identity, endpoint, and cloud security. * Strong understanding of identity security and governance (privileged access, strong authentication, conditional access, federation, access reviews, and role design). * Experience with endpoint security (hardening, configuration baselines, detection and response capabilities). * Experience with data protection (DLP/DSPM), endpoint privilege management (EPM), or privileged access management (PAM) solutions is a strong plus. * Ability to script or automate using languages such as Python, PowerShell, or JavaScript. * Experience building automation using workflow orchestration and serverless platforms (for example, runbooks, pipelines, and function-as-a-service patterns). * Strong understanding of IAM concepts and identity behavior across multi-cloud environments. * Experience implementing practical, business-aligned security controls in cloud environments (experience in more than one major cloud is a plus). * Ability to work independently, make informed decisions, and manage competing priorities. * Experience collaborating with distributed teams and cross-functional stakeholders. * Familiarity with DevOps practices and Agile methodologies is a plus. ## Description We're looking for a hands-on Senior Security Engineer with broad experience across enterprise security - identity, cloud, collaboration platforms, and endpoints. This is not a traditional SOC or Detection & Response role. Your focus will be on building, improving, and scaling the security controls, guardrails, and automation that protect a modern, cloud-first environment. You'll work closely with engineering, IT, and compliance teams to strengthen our security posture, drive security initiatives end-to-end, and ensure our environments remain secure as we grow. Deep experience with cloud identity and access platforms is especially important. Experience with data protection (DLP/DSPM) is a strong plus. What You Will Do Identity & Access Security * Engineer and operate identity security controls, including just-in-time access, privileged elevation, federation, conditional access, strong authentication, and least-privilege patterns. * Strengthen identity governance across cloud and enterprise environments, including role design, access reviews, and lifecycle processes. Cloud Security & Governance * Build and maintain cloud guardrails across multi-cloud environments (policies, blueprints, configuration rules, organizational guardrails). * Implement and tune cloud security posture / CNAPP capabilities to continuously monitor, prioritize, and reduce misconfigurations and exposed risks. * Analyze cloud IAM configurations and identity behavior to identify risky patterns, excessive permissions, and gaps in controls. Endpoint, Collaboration & Data Security * Enhance endpoint security through EDR tuning, hardening baselines, and consistent configuration enforcement. * Own key corporate security controls across email, collaboration, endpoints, cloud applications, and endpoint privilege management. * Support data protection initiatives, including DLP/DSPM policies, classifications, and monitoring, with a focus on usable, business-aligned controls. Automation & Engineering * Develop automation and tooling (for example, using scripting languages and workflow/serverless automation services) to improve visibility, consistency, and reduce manual effort. * Build scalable, business-aligned security controls that integrate smoothly into engineering, IT, and operational workflows. Security Architecture & Cross-Functional Work * Contribute to the long-term security architecture and strategy for identity, cloud, endpoints, and data protection. * Lead small to medium security projects end-to-end: define scope, align stakeholders, implement, and follow through on outcomes. * Collaborate with compliance and risk teams to maintain and audit controls aligned with relevant frameworks and certifications. * Provide guidance and mentorship to cross-functional teams on secure patterns and best practices. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Technical Documentation - How Can I Write Them Better and Why Should I Care?](https://www.wearedevelopers.com/videos/681-technical-documentation-how-can-i-write-them-better-and-why-should-i-care) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [3 Key Steps for Optimizing DevOps Workflows](https://www.wearedevelopers.com/videos/962-3-key-steps-for-optimizing-devops-workflows) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)