> Markdown version of [/jobs/ext/538658-security-engineer](https://www.wearedevelopers.com/jobs/ext/538658-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** Coterie Insurance - **Location:** United States (Remote available) - **Experience:** Experienced - **Salary:** $90,000.0 - $110,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Microsoft Azure, Cloud Engineering, Cyber Security, Identity and Access Management, Information Technology Operations, Role-Based Access Control, Phishing, Kusto Query Language, Security Information and Event Management, Software Vulnerability Management, Okta, Cyberark, Microsoft Sentinel - **Published:** June 4, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=4608464eec5b6cc2 ## About the Role Do you have experience in Vulnerability management?, * 3-5 years of experience in security operations, identity/access administration, or a related technical role * Experience with cloud-native enterprise services * Solid understanding of identity and access management concepts, including authentication, authorization, least privilege, and role-based access control * Hands-on experience with privileged access management, with specific experience in endpoint privilege management (managing local administrator rights and elevation) * Experience running or supporting access reviews and access certifications, and removing unneeded access * Familiarity with compliance frameworks (e.g., SOC 1, SOC 2, SOX) and supporting the collection of audit evidence * Comfortable triaging alerts from a SIEM or endpoint security tooling and following documented response procedures * Experience administering or supporting a security awareness or phishing simulation platform * Comfortable operating established programs and processes under direction, while contributing ideas to improve them * Self-motivated, detail-oriented, organized, and able to manage recurring deadlines across multiple workstreams * Exceptional written and verbal communication, with the ability to document processes clearly What will make you stand out: * Experience with Azure Privileged Identity Management (PIM) and Azure RBAC * Experience with an endpoint privilege management solution (e.g., CyberArk EPM, Admin By Request, BeyondTrust) * Experience administering Okta and Microsoft 365 / Entra ID * Familiarity with Microsoft Sentinel (or another SIEM) and basic KQL * Experience with a security awareness platform * Security certifications (e.g., Security+, SC-900, SC-300, CySA+) or cloud certifications (e.g., AZ-500) ## Description * Run Coterie's recurring user access reviews under the direction of the Principal Security Architect, coordinating with system owners to certify access and remove stale or over-provisioned entitlements across our environments * Gather, organize, and validate evidence to support compliance testing and audits, following established procedures to build evidence packets that trace access and changes from request through approval * Administer our privileged access management program with oversight, focusing on endpoint privilege management, operating local administrator elevation, least-privilege policies, and just-in-time access on endpoints within approved guardrails * Support time-bound, approved, and reviewed privileged access through Azure Privileged Identity Management (PIM), including role assignments and periodic recertification of privileged identities * Triage and respond to security operations alerts from our SIEM and endpoint tooling under the guidance of senior engineers, escalating, documenting, and helping close out incidents * Run the day-to-day administration of our security awareness program, including building, scheduling, and reporting on phishing simulations and assigning follow-up training * Follow and maintain the procedures, standards, and documentation the team has established for access reviews, privileged access, and related security operations workflows * Utilize a risk-based approach to your day-to-day work and surface pain points and recommend continuous-improvement ideas for these programs and processes * Partner with IT operations, engineering, and compliance teams to help close access and process gaps and mature Coterie's security posture * Take on other security operations tasks that support the team, such as detection tuning, vulnerability remediation tracking, and tooling evaluations, as directed and as priorities shift, Our hiring process generally consists of 4 phases. The goal is to provide an opportunity for us to learn more about our candidates while allowing them to get to know us as well! * Phase 1: Qualified candidates will first meet with a member of our People Operations team for a phone interview. This discussion is a high-level conversation to understand more about your background and interests and for us to share more about Coterie and the position. * Phase 2: Selected candidates will be invited to meet with our Hiring Manager for a 2nd interview via Teams video. This interview is designed to be more detail oriented and allows you to learn more about the role and expected to be 30 minutes in length. * Phase 3: Top candidates will be invited to participate in an experiential exercise and team member interviews. This will include a project provided in advance along with a 1-hour project deep dive interview conducted with our hiring manager and additional team members. This series is expected to be 1.5 hours in total. * Phase 4: Final candidates will be invited to the final interview. This interview will include 1:1 meeting with a member of our senior leadership team and is expected to be 30 minutes in length. ## Related Videos - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Skynet wants your Passwords! The Role of AI in Automating Social Engineering](https://www.wearedevelopers.com/videos/770-skynet-wants-your-passwords-the-role-of-ai-in-automating-social-engineering) - [MFA? Game over! Watch your protection collapse – live](https://www.wearedevelopers.com/videos/100322-mfa-game-over-watch-your-protection-collapse-live) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers)