> Markdown version of [/jobs/ext/2425054-lead-security-engineer](https://www.wearedevelopers.com/jobs/ext/2425054-lead-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead Security Engineer - **Company:** Reuters America LLC - **Location:** Frisco, TX, United States - **Experience:** Expert - **Salary:** $118,400.0 - $219,800.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Microsoft Azure, Cloud Computing, Cyber Security, Continuous Integration, Data Centers, Identity and Access Management, Key Management, Open Source Technology, Software Vulnerability Management, Google Cloud, Multi-Cloud, Build Management, Kubernetes, Information Technology, Hardware Infrastructure, Oracle Cloud Infrastructure, Static Application Security Testing - **Published:** August 25, 2026 - **Apply:** https://diversityjobs.com/main/sendform/8/8/28176/1/18063705?backUrl=%2Fcareer%2F18063705%2FLead-Security-Engineer-Texas-Frisco ## About the Role You're a fit for the role of Lead Security Engineer if your background includes: * 8+ years of hands-on experience in security engineering, vulnerability management, or cloud and infrastructure security, including time as a technical lead or senior individual contributor setting direction and guiding the technical work of other engineers, plus a bachelor's degree in Computer Science, Information Security, or a related field (or equivalent practical experience). * A deep understanding of security principles, common vulnerabilities, and best practice across application, cloud, and infrastructure layers. * A working command of vulnerability management at scale: prioritization frameworks, CVSS/EPSS, CISA KEV, and SLA-driven burndown. * Breadth across the security stack: application and dependency vulnerabilities, infrastructure patching, guardrails, WAF, network isolation, and identity and access controls, with multi-cloud experience across two or more of AWS, Azure, GCP, and OCI (all four an advantage) alongside on-premises infrastructure. * A track record of designing and improving technical processes, such as patching cycles, image or GAMI refreshes, or remediation workflows, rather than only executing them, with a proactive mindset for identifying and closing security gaps through automation and tooling; experience with AI-assisted or automated security tooling is an advantage. * Strong judgment on balancing risk reduction against operational and customer impact. * Excellent written and verbal communication, comfortable operating across security, engineering, and business audiences and able to convey complex security concepts to technical and non-technical stakeholders, with enthusiasm for collaborating with cross-functional teams to build secure, reliable systems that scale globally. ## Description As the Lead Security Engineer, you will be the technical lead for security across our application, cloud, and infrastructure estate, which spans on-premises data centers and major clouds. This is a senior individual-contributor role: you set the technical direction and guide the work of the engineers around you, but you are not their line manager. It is as much a process-design role as a hands-on one. You will design new security controls and ways of working across patching, hardening, network isolation, identity, and secrets management, revamping patching cycles and golden-image refreshes so the team can move fast without sacrificing safety, and you will partner across Information Security, Platform Engineering, and application teams to raise our overall security posture., In this opportunity as Lead Security Engineer, you will: * Act as the technical lead for security across application, cloud, and infrastructure. Set technical direction, make the key calls, own the shape and quality of the security backlog end to end, and serve as the point of escalation for complex security and remediation work, without direct line-management responsibility. * Design and build security controls across layers such as operating systems, container orchestration, CI/CD pipelines, cloud configuration, and network boundaries, to defend against sophisticated adversaries and insider threats. * Design new security processes and ways of working, revamping patching cycles and golden-image and base-image refreshes across cloud and on-prem, so the team can move fast without sacrificing safety. * Come to the table with ideas: identify where security and remediation processes can be improved, propose better approaches, and turn them into standards the team adopts. * Set the technical approach across the full security scope: application and open-source dependency fixes, infrastructure patching, cloud configuration and guardrails, WAF, network isolation, and secrets and machine-identity management. Prioritize by risk in line with industry best practice such as CISA guidance (CISA KEV, CVSS/EPSS, and SLA-driven burndown), and champion adoption of AI-augmented security tooling, including SAST and SCA. * Raise the technical bar by reviewing fixes and mentoring engineers, and coordinate with the wider security team across regions to keep standards and priorities aligned across time zones. * Own clear reporting and metrics, and build the runbooks, standards, and escalation paths that make security a repeatable, auditable capability. ## Related Videos - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [The Open-source Java SDK for Multi-Cloud Development - Sandeep Pal](https://www.wearedevelopers.com/videos/2113-the-open-source-java-sdk-for-multi-cloud-development-sandeep-pal) - [The Sustainability Race: AI's Promises, Pitfalls and Potential](https://www.wearedevelopers.com/videos/100155-the-sustainability-race-ai-s-promises-pitfalls-and-potential) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Instant KAI Sandboxes with vCluster: Multi-Tenant, Multi-Scheduler GPU Sharing](https://www.wearedevelopers.com/videos/100333-instant-kai-sandboxes-with-vcluster-multi-tenant-multi-scheduler-gpu-sharing) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers)