Security Engineer

K&L Gates
Boston, MA, United States
7 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
$112,000.0 - $209,000.0
Working hours
Regular working hours

Tech stack

Artificial Intelligence Software System Penetration Testing User Authentication Microsoft Azure Microsoft Online Services Cloud Computing Cloud Computing Security Cyber Security Data Security Monitoring of Systems Identity and Access Management Intrusion Detection and Prevention
+15 more
Python (Programming Language) Network Security Microsoft Security Essentials Windows PowerShell Zero Trust Network Access Security Information and Event Management Systems Integration Data Logging Mitre Att&ck HybridCloud Containerization Information Technology Restful APIs Splunk Devsecops

Job description

At K&L Gates, we are looking for smart, imaginative and hard-working people with diverse backgrounds, experiences and ideas to join us. Perhaps our search for talented visionaries and your search for important and impactful work lead to the same place. The global law firm of K&L Gates LLP is seeking a Senior Security Engineer to join the firm. The Senior Security Engineer develops, automates, and enhances security capabilities for cloud, on-premises, and hybrid environments. This position provides senior-level expertise in security engineering, cloud security, detection engineering, automation, incident response, and technical leadership. It utilizes AI-driven tools to improve security measures and optimize operational efficiency across the organization. KEY RELATIONSHIPS Director, Security; Manager, Security Operations; Forensics and Incident Response; Security Intelligence and other Digital & Technology teams; third-party technology partners; Enterprise Operations; Cloud Operations ESSENTIAL DUTIES

  • Design, implement, and support DevSecOps practices
  • Designing, implementing, and enhancing enterprise security solutions across cloud, on-premises, and hybrid environments
  • Developing scalable automation and orchestration capabilities to improve security operations and reduce manual effort
  • Creating automation solutions utilizing PowerShell, Python, REST APIs, Microsoft Graph, and cloud-native technologies
  • Implementing and optimize Azure security controls, identity protections, encryption, and data security capabilities
  • Integrating security controls throughout the technology lifecycle in partnership with infrastructure, cloud, and application teams
  • Developing and maintaining security detections, analytics, correlation rules, and threat monitoring capabilities
  • Enhancing security visibility through improved telemetry, logging strategies, and attack surface monitoring
  • Applying threat intelligence and industry frameworks, including MITRE ATT&CK, to strengthen detection and response capabilities
  • Leading or supporting complex investigations, threat hunting activities, and major incident response efforts
  • Conducting security assessments, control validation activities, and supporting penetration testing initiatives
  • Evaluating emerging security and AI technologies and recommending solutions that improve security maturity and operational effectiveness
  • Leading technical initiatives, mentoring security engineers, and providing architecture guidance, standards, and documentation, For more information or to view other job opportunities, please click here to go back to our careers page. Notice: We participate in E-Verify in certain Firm locations for purposes of verifying employment eligibility. Please be advised that this position requires successful completion of a background check. In accordance with the Washington State Fair Chance Act, Los Angeles Fair Chance Ordinance, San Francisco Fair Chance Ordinance, the California Fair Chance Act, and applicable law qualified California and Washington State applicants with criminal history records will be considered. A criminal history will not categorically exclude a candidate from employment, and the Firm will consider relevant factors before making employment decisions based on criminal history information. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Requirements

  • Demonstrated experience designing, implementing, and maturing enterprise security, cloud security, and DevSecOps capabilities.
  • Possess Bachelor’s degree in Information Security, Cybersecurity, Computer Science, Information Technology, or a related discipline, OR equivalent experience
  • Understand Zero Trust principles, authentication, encryption, identity security, and data protection concepts
  • Possess knowledge of SIEM, EDR/XDR, identity security, cloud security, and enterprise security monitoring technologies
  • Possess solid knowledge of enterprise networking, operating systems, network security, and hybrid cloud architectures
  • Possess relevant certifications such as CISSP, CCSP, GIAC (GCIA, GCIH, GCFA, GPEN, GWEB), Microsoft Security, Azure (AZ-500, SC-200, SC-100, AZ-305), Splunk, or CrowdStrike.
  • Demonstrate proficiency in automation and scripting using PowerShell, Python, REST APIs, Microsoft Graph, or similar technologies
  • Have 7+ years of progressive experience in cybersecurity, security engineering, cloud security, or related technology fields
  • Work experience with Microsoft security and cloud platforms such as Microsoft Defender, Sentinel, Entra ID, Purview, Azure Security services, or equivalent technologies
  • Develop and refine security detections, analytics, and correlation rules to enhance system monitoring and threat response capabilities.
  • Demonstrate expertise in threat detection, incident response, threat hunting, and cyber threat actor tactics, techniques, and procedures (TTPs)
  • Demonstrate experience supporting or working within a Security Operations Center (SOC) environment
  • Demonstrate experience designing, implementing, and improving enterprise security capabilities, The compensation salary for this position will be determined during the interview process and will vary based on multiple factors, including but not limited to prior experience, relevant expertise, current business needs, and market factors.

Benefits & conditions

K&L Gates offers our personnel a comprehensive suite of benefits to help meet your needs now and in the future. Depending on your eligibility, options for full-time personnel include:

  • Medical/Prescription Drug Coverage (including a Health Savings Account feature)

  • Back-up Child/Elder Care and access to a caregiving concierge

  • Dental Insurance

  • Wellness Program

  • Vision Insurance

  • Pre-tax Commuting Benefits

  • 401(k) Retirement Plan and Profit Sharing

  • Business Travel Accident Insurance

  • Short- and Long-term Disability Protection

  • Pet Insurance

  • Life Insurance (including Basic, Supplemental, Spouse, Child, and Accidental Death and Dismemberment)

  • Health Advocacy Services

  • Paid Time Off (25-30 days per year)

  • Identity Protection/Restoration and Fraud Insurance

  • Parental Leave (18 weeks of which 6 are paid; short-term disability may provide additional paid time off)

  • Student loan refinancing options and access to a student loan concierge service

  • Paid Holidays (12)

  • Addiction Resources

  • Family Building Benefits

  • Breast Milk Delivery and Lactation Support Services

  • Flexible Spending Accounts

  • Employees also may be eligible to receive bonuses and certain expense reimbursements

  • Employee Assistance Program

  • Professional Development and CLE Credit Opportunities

  • 529 Deductions

  • Relocation

  • Accident Insurance

  • Employee Referral Program

  • Critical Illness Insurance

  • Hybrid/Remote Work Opportunities

  • Hospital Indemnity Insurance

  • Perks including: Technology, Entertainment, and Travel Discount Programs

  • Bereavement Leave

  • All other benefits (such as leaves of absence) required by law

About the company

K&L Gates is a fully integrated global law firm with lawyers located in more than 40 offices. We have experienced dramatic growth in the past decade and now rank among the largest U.S. based law firms in the world. We take pride in constantly striving for innovation, imagination and an entrepreneurial spirit. We come up with big ideas and then roll up our sleeves to get the job done, guiding our clients through their most complex issues in a variety of industry sectors and across multiple regions of the world. The industry recognition the firm has garnered emanates from the foundation of a global community aligned on behalf of our clients. The people at K&L Gates are committed to working together to create a legacy for each other, the firm, our clients, and the communities in which we serve. We thrive in an inclusive and socially conscious environment that embraces diversity and takes a holistic approach to the career evolution of all our professionals.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on klgates.recsolu.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

Videos

See all

Related articles

See all