> Markdown version of [/jobs/ext/2509173-security-engineer](https://www.wearedevelopers.com/jobs/ext/2509173-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** Financial Industry Regulatory Authority, Inc. - **Location:** United States - **Experience:** Expert - **Contract:** Temporary to permanent - **Skills:** Application Programming Interfaces (APIs), Amazon Web Services, Amazon S3, Build Automation, Microsoft Azure, Configuration Management, Continuous Integration, Data Reduction, Data Security, Domain Name System (DNS), IP Addressing, Subnetting, Python (Programming Language), Routing, Power BI, Ansible, Zero Trust Network Access, Security Information and Event Management, Data Streaming, Data Processing, Computer Networking Systems, Google Cloud, Kubernetes, Data Analytics, Dataiku, Data Delivery, Api Design, Amazon Simple Queue Service (SQS), Terraform, Splunk, Data Pipelines - **Published:** August 16, 2026 - **Apply:** https://www.dice.com/job-detail/8a23f907-dd56-487f-ba9c-6e4a6fad1d0f ## About the Role The Senior Security Engineer works under minimal supervision to engineer, administer, and optimize security data pipeline and Zero Trust access platforms. Responsibilities include managing data routing and transformation across cloud and on-prem environments, ensuring pipeline performance and scalability, and developing automation to streamline access workflows. This role requires strong networking fundamentals and a demonstrated ability to design solutions., * Cribl certifications (CCOE/Admin) or deep production Cribl Stream experience with packs and distributed worker groups. * Splunk Edge Processor or SPL2 experience. * Direct Appgate SDP experience, especially API-driven policy/entitlement automation or ITSM-integrated just-in-time access workflows. * Infrastructure-as-code and deployment tooling (Terraform, Ansible, CI/CD pipelines, containers/Kubernetes). * Experience with SIEM cost optimization and data reduction strategies. * Experience operating security tooling in a regulated enterprise environment., * Bachelor's degree and a minimum of ten (10) years of experience in the securities/financial services industry; or an equivalent combination of education and experience in positions of increasing responsibilities. * Minimum five (5) years supervisory experience required. * Demonstrated project management, process improvement, understanding of surveillance development lifecycle and goal attainment skills. * Extensive working knowledge of FINRA, MSRB and other SRO rules and the Securities Exchange Act of 1934 and the rules and regulations thereunder. * Working knowledge of data analytics and data analytic platforms (e.g., Power Bi and Dataiku) * Demonstrated ability to lead regulatory program and produce outstanding measurable results. * Requires excellent written and verbal communications skills, including interpersonal and presentation skills. * Strong organizational skills and excellent detail orientation. ## Description We're looking for a Senior Security Engineer to own the design, operation, and scaling of the security data pipeline platform that feeds our SIEM, and to drive automation for our Zero Trust access platform. This is a hands-on engineering role with real ownership: you'll take ambiguous problems ("data delivery is lagging," "this team needs just-in-time access to a new environment") from symptom to root cause to a durable, well-designed solution. You'll join a Security Engineering & Architecture team responsible for the platforms that power detection, response, and secure access across the enterprise. What You'll Do: Own the observability/telemetry pipeline platform (primary focus) * Serve as the primary administrator and engineer for Cribl Stream: building routes, pipelines, and packs; managing sources and destinations; and shaping data in flight (parsing, enrichment, field extraction, reduction, transformation) before it lands in Splunk and other destinations. * Design and operate cloud-native data collection across AWS, Azure, and Google Cloud Platform - working with services like SQS/SNS, S3 event notifications, Azure Event Hubs, and Google Cloud Platform Pub/Sub to reliably ingest security telemetry at scale. * Engineer for reliability and scale: tune persistent queues and backpressure behavior, troubleshoot data delivery and throughput issues, capacity-plan worker infrastructure, implement autoscaling, and design load distribution (e.g., DNS-based or load-balancer-based) so the platform grows gracefully with ingest volume. * Manage deployments and lifecycle of pipeline infrastructure - upgrades, configuration management, and monitoring of distributed worker fleets. * Help lead our adoption of Splunk Edge Processor as a complementary data processing tier, building SPL2 pipelines and defining where each tool fits in the overall architecture. Support and automate our Zero Trust access platform * Administer a Zero Trust Network Access (ZTNA) / software-defined perimeter platform: handle data access requests, adjust entitlements and policies, and troubleshoot user access issues. * Build automation (primarily Python) against the platform's APIs to enable just-in-time access - provisioning entitlements automatically from approved request workflows so users get exactly the access they need, only when approved, and lose it when it expires. * Apply strong networking fundamentals daily: subnetting, IP address planning, routing, DNS, ports/protocols, and TLS. Engineer, don't just operate * Take problems from symptom to root cause to redesigned solution. * Write scripts and tooling to eliminate repetitive work. * Document architectures and decisions so others can build on your work. * Partner with SIEM engineers, detection teams, and infrastructure teams to keep security data complete, timely, and cost-efficient., * You treat "the data stopped flowing" as an engineering problem, not a ticket to escalate. * You're comfortable being the subject-matter expert - the person others come to when the platform misbehaves. * You automate yourself out of repetitive work instinctively. * You can explain a complex architecture to a security analyst, a network engineer, and a director - and adjust the depth for each. Other Responsibilities: * Represents FINRA at speaking engagements with various internal and external constituencies * Leads multi-level initiatives across Regulatory Operations * Provides subject matter expertise in regulatory area to advance FINRA and industry initiatives (e.g., CAT, Notice to Members, rule filings, market events, congressional testimony preparation) * Remains current on industry and technology trends, practices, and regulatory impacts, FINRA's Code of Conduct imposes restrictions on employees' investments and requires financial disclosures that are uniquely related to our role as a securities regulator. FINRA employees are required to disclose to FINRA all brokerage accounts that they maintain, and those in which they control trading or have a financial interest (including any trust account of which they are a trustee or beneficiary and all accounts of a spouse, domestic partner or minor child who lives with the employee) and to authorize their broker-dealers to provide FINRA with duplicate statements for all of those accounts. All of those accounts are subject to the Code's investment and securities account restrictions, and new employees must comply with those investment restrictions-including disposing of any security issued by a company on FINRA's Prohibited Company List or obtaining a written waiver from their Executive Vice President-by the date they begin employment with FINRA. Employees may only maintain securities accounts that must be disclosed to FINRA at one or more securities firms that provide an electronic feed (e-feed) of data to FINRA, and must move securities accounts from other securities firms to a firm that provides an e-feed within three months of beginning employment. You can read more about these restrictions here. As standard practice, employees must also execute FINRA's Employee Confidentiality and Invention Assignment Agreement without qualification or modification and comply with the company's policy on nepotism. Search Firm Representatives, FINRA strives to make our career site accessible to all users. If you need a disability-related accommodation for completing the application process, please contact FINRA's Employee Relations team at or by email at Please note that this process is exclusively for inquiries regarding accommodations in the application process. FINRA abides by the requirements of 41 CFR 60-741.5(a). This regulation prohibits discrimination against qualified individuals on the basis of disability and requires affirmative action by covered prime contractors and subcontractors to employ and advance in employment qualified individuals with disabilities. FINRA abides by the requirements of 41 CFR 60-300.5(a). This regulation prohibits discrimination against qualified protected veterans and requires affirmative action by covered prime contractors and subcontractors to employ and advance in employment qualified protected veterans. 2026 FINRA. All rights reserved. FINRA is a registered trademark of the Financial Industry Regulatory Authority, Inc. ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Dev & Test in the Cloud? Deploy your cloud environments with Ansible & Terraform](https://www.wearedevelopers.com/videos/1607-dev-test-in-the-cloud-deploy-your-cloud-environments-with-ansible-terraform) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Eclipse Che for Infrastructure Automation](https://www.wearedevelopers.com/videos/1611-eclipse-che-for-infrastructure-automation) - [Embracing the Hybrid Cloud: Unlocking Success with Ansible](https://www.wearedevelopers.com/videos/932-embracing-the-hybrid-cloud-unlocking-success-with-ansible) ## Related Articles - [Data Engineer Salary UK](https://www.wearedevelopers.com/magazine/253-data-engineer-salary-uk) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Software Engineer Salary London](https://www.wearedevelopers.com/magazine/252-software-engineer-salary-london) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)