> Markdown version of [/jobs/ext/1928884-senior-security-engineer](https://www.wearedevelopers.com/jobs/ext/1928884-senior-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Security Engineer - **Company:** K&L Gates - **Location:** Portland, OR, United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Data Analysis, Software System Penetration Testing, Microsoft Azure, Microsoft Online Services, Cloud Computing, Cloud Computing Security, Cloud Engineering, Cyber Security, Data Security, Monitoring of Systems, Identity and Access Management, Intrusion Detection and Prevention, Python (Programming Language), Microsoft Security Essentials, Windows PowerShell, Security Information and Event Management, Data Logging, Scripting, Mitre Att&ck, HybridCloud, Information Technology, Cybercrime, Restful APIs, Devsecops - **Published:** August 5, 2026 - **Apply:** https://us.experteer.com/career/view-jobs/senior-security-engineer-portland-or-usa-58800085 ## About the Role * app teams * Develop security detections, analytics, and threat monitoring capabilities * Improve telemetry, logging, and attack surface monitoring * Apply MITRE ATT&CK framework to strengthen detection and response * Lead or support investigations, threat hunting, and major incident response * Conduct security assessments, control validation, and support penetration testing * Evaluate emerging security and AI technologies to raise maturity * Lead technical initiatives, mentor engineers, and provide architecture guidance * Documentation and standards development Tasks * Bachelor's degree in Information Security, Cybersecurity, Computer Science, Information Technology, or related discipline, OR equivalent experience * 7+ years of progressive experience in cybersecurity, security engineering, cloud security, or related fields * Experience designing and maturing enterprise security and DevSecOps capabilities * Knowledge of SIEM, EDR/XDR, identity security, cloud security, and enterprise a DevSecOps tech * Strong understanding of networking, operating systems, and hybrid cloud architectures * Proficiency in automation/scripting (PowerShell, Python, REST APIs, Microsoft Graph) * Experience with Microsoft security/Cloud platforms (Defender, Sentinel, Entra ID, Azure security services) * Threat detection, incident response, threat hunting, and TTPs * SOC experience and incident response leadership * Relevant certifications (e.g., CISSP, CCSP, GIAC, Microsoft Security/Azure) Key requirements * Medical/Prescription Drug Coverage * 401(k) Retirement Plan and Profit Sharing * Hybrid/Remote Work Opportunities * Paid Time Off * Professional Development and CLE Credit Opportunities * Parental Leave ## Description Experteer Overview In this role you will advance security for cloud, on-premises, and hybrid environments, providing senior expertise in security engineering and cloud security. You will drive automation, detection, and incident response while guiding cross-functional teams. You'll leverage AI-driven tools to improve security and operational efficiency at scale. This is a chance to shape security maturity in a global law firm and contribute to a proactive security program. Compensation / Benefits * Design, implement, and support DevSecOps practices * Build and enhance security solutions across cloud, on-premises, and hybrid environments * Develop scalable automation to improve security operations and reduce manual work * Create automation using PowerShell, Python, REST APIs, Microsoft Graph, and cloud-native tech * Optimize Azure security controls, identity protections, encryption, and data security * Integrate security controls through the technology lifecycle with infra, cloud, and app teams * Develop security detections, analytics, and threat monitoring capabilities * Improve telemetry, logging, and attack surface monitoring * Apply MITRE ATT&CK framework to strengthen detection and response * Lead or support investigations, threat hunting, and major incident response * Conduct security assessments, control validation, and support penetration testing * Evaluate emerging security and AI technologies to raise maturity * Lead technical initiatives, mentor engineers, and provide architecture guidance * Documentation and standards development Tasks * Bachelor's degree in Information Security, Cybersecurity, Computer Science, Information Technology, or related discipline, OR equivalent experience * 7+ years of progressive experience in cybersecurity, security engineering, cloud security, or related fields * Experience designing and maturing enterprise security and DevSecOps capabilities * Knowledge of SIEM, EDR/XDR, identity security, cloud security, and enterprise monitoring tech * Strong understanding of networking, operating systems, and hybrid cloud architectures * Proficiency in automation/scripting (PowerShell, Python, REST APIs, Microsoft Graph) * Experience with Microsoft security/Cloud platforms (Defender, Sentinel, Entra ID, Azure security services) * Threat detection, incident response, threat hunting, and TTPs * SOC experience and incident response leadership * Relevant certifications (e.g., CISSP, CCSP, GIAC, Microsoft Security/Azure) Key requirements * Medical/Prescription Drug Coverage * 401(k) Retirement Plan and Profit Sharing * Hybrid/Remote Work Opportunities * Paid Time Off * Professional Development and CLE Credit Opportunities * Parental Leave ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline)