security engineer

Lever, Inc.
United States
about 1 month ago
Apply on jobs.lever.co
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$110,000.0 - $130,000.0
Working hours
Regular working hours
Job source

Tech stack

Kubernetes Security Microsoft Access Microsoft Windows Artificial Intelligence Amazon Web Services Software System Penetration Testing Microsoft Azure Microsoft Online Services Software as a Service Cloud Computing Cloud Computing Security Cloud Engineering
+36 more
CompTIA Security+ Cyber Security Continuous Integration Linux DevOps Domainkeys Identified Mail Domain-Based Message Authentication Reporting and Conformance (DMARC) Identity and Access Management Information Technology Operations Intrusion Detection and Prevention Virtual Private Networks (VPN) Python (Programming Language) Network Security Windows PowerShell Azure Active Directory Cloud Services Phishing Zero Trust Network Access Information Technology Security Auditing Systems Integration Software Vulnerability Management Data Logging Sonatype Software Security Technical Debt Sender Policy Framework (SPF) Kubernetes Information Technology Integration Frameworks Sendgrid Restful APIs GPT Devsecops Cisco Static Application Security Testing Dynamic Application Security Testing

Job description

KPA is seeking a Senior Security Engineer to serve as the senior technical counterpart to the Director of Security & Technology. This role owns KPA’s security platforms, cloud security, identity, automation, and technical security initiatives. The ideal candidate is a hands-on security engineer with strong cloud and infrastructure experience who can independently lead complex security projects, partner effectively with IT Operations and DevOps, and continuously improve KPA’s security posture., * Own KPA’s enterprise security platforms, including CrowdStrike, Rapid7 (InsightIDR, InsightVM, InsightAppSec, MDR), Cisco Umbrella, Cisco Duo, KnowBe4, and related technologies.

  • Lead vulnerability management and remediation, endpoint security, identity security, privileged access, penetration testing, and security hardening initiatives.
  • Lead security incident response, investigations, containment, remediation, and post-incident reviews.
  • Own the ongoing operation of SOC 2 controls, security audit requirements, and technical compliance initiatives.
  • Own Cisco Meraki security, VPN infrastructure, network security controls, and secure cloud connectivity.
  • Secure Azure, AWS, Microsoft 365, Entra ID, AWS Identity Center, Auth0, and cloud-native workloads using modern security best practices.
  • Administer and improve identity governance across Microsoft Entra ID, Cisco Duo, AWS Identity Center, Auth0, SSO, SCIM, Conditional Access, PIM, privileged accounts, service accounts, and authentication architecture.
  • Partner with DevOps to integrate security into CI/CD pipelines, Infrastructure as Code, containers, Kubernetes, and cloud workloads, including SAST, DAST, Snyk, and other application security technologies.
  • Own and continually improve KPA’s cloud security posture management, workload protection, identity controls, logging, alerting, detection engineering, and remediation processes.
  • Own email security across Microsoft 365, SendGrid, Amazon SES, SPF, DKIM, DMARC, and phishing protection.
  • Build security automation using PowerShell, Python, Microsoft Graph, REST APIs, and AI-assisted development.
  • Lead security assessments for new vendors, SaaS platforms, cloud services, and third-party integrations; administer third party vendor management (TPVM) and support ongoing vendor risk management.
  • Administer and improve KPA’s security awareness program, security policies, standards, and technical procedures.
  • Support AI security and governance initiatives, including ChatGPT Enterprise, Claude, MCP, and emerging AI technologies.
  • Support security architecture reviews for new cloud services, platforms, integrations, and technical initiatives.
  • Proactively identify security gaps, technical debt, and opportunities to improve KPA’s security posture through automation, AI, and modern engineering practices., * Owns and continually improves KPA’s enterprise security platforms and technical security controls.
  • Improves KPA’s security posture across endpoints, identity, networking, cloud, and DevOps environments.
  • Delivers complex security initiatives with strong planning, communication, documentation, testing, and post-implementation validation.
  • Reduces manual security work through automation and modern engineering practices.
  • Serves as the senior escalation point for complex security incidents and technical security issues.
  • Partners effectively with IT Operations and DevOps to embed security into operational and development workflows.

Physical Requirements:

Physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

  • Working at a computer typing and view a screen - Constantly
  • Stationary sitting or standing - Constantly
  • Visual Recognition - Constantly
  • Hearing/Listening - Occasionally
  • Communicating verbally and/or in writing - Occasionally
  • Travel - Seldom

Requirements

  • 5+ years of experience in security engineering, cloud security, infrastructure security, or a related senior technical role.
  • Strong knowledge of identity security, endpoint security, vulnerability management, network security, incident response, and zero trust principles.
  • Experience securing Azure, AWS, Microsoft 365, Entra ID, Windows, and Linux.
  • Familiarity with CI/CD pipelines, Kubernetes, container security, application security scanning, and DevSecOps practices.
  • Scripting and automation experience using PowerShell, Python, REST APIs, or similar technologies.
  • Experience supporting SOC 2 & NIST CSF or comparable security and compliance frameworks.
  • Relevant certifications such as CompTIA Security+, CISSP, CCSP, AWS Certified Security, or equivalent certifications are preferred.
  • Excellent communication, documentation, project leadership, and problem-solving skills.
  • Bachelor’s degree in Computer Science, Information Technology or Cybersecurity or equivalent experience.

Benefits & conditions

  • Annual base salary range between $110-130k commensurate with experience.
  • Bonus potential of 10% annually

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.lever.co
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

40 sec

Generative pre-trained transformer models powering code completions

lgonta lgonta +1 · World Congress 2024

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

51 sec

Assessing GPT-4o performance for pull request feedback

Merrill Lutsky Merrill Lutsky · World Congress 2025

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all