SaaS Security Engineer/ SSPM

Technologent, Inc.
Phoenix, AZ, United States
about 2 months ago

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Artificial Intelligence Amazon Web Services Build Automation Microsoft Azure Software as a Service Cloud Computing Cloud Computing Security Cyber Security Github Identity and Access Management Issue Tracking Systems
+15 more
Information Security Management Python (Programming Language) Windows PowerShell Security Information and Event Management Systems Integration Data Logging Scripting Google Cloud Cloud Platform System Software Security CIS Benchmarks Restful APIs Terraform Oracle Cloud Infrastructure Security Orchestration, Automation & Response

Job description

The Opportunity: We are seeking a SaaS Security Posture Management (SSPM) Engineer to support enterprise SaaS security initiatives by designing, implementing, and managing security posture management capabilities across a rapidly growing SaaS ecosystem. This role will be responsible for strengthening SaaS security governance, automating security controls, and continuously monitoring SaaS platforms to identify and remediate security risks., * Lead the implementation, configuration, and administration of SaaS Security Posture Management (SSPM) platforms across enterprise environments.

  • Continuously assess SaaS applications for security risks, configuration weaknesses, identity governance issues, excessive permissions, and data exposure concerns.
  • Monitor and remediate SaaS configuration drift and security posture deviations across business-critical applications.
  • Identify and evaluate risks associated with third-party integrations, connected applications, and SaaS ecosystems.
  • Establish SaaS security baselines, governance controls, and remediation processes to improve overall security posture.
  • Support SaaS onboarding, certification, and security review activities to ensure compliance with enterprise security requirements.
  • Develop and maintain integrations between SSPM platforms, Identity and Access Management (IAM) solutions, SIEM platforms, governance tools, and ticketing systems.
  • Build automation workflows using APIs, scripting, and Infrastructure-as-Code methodologies to improve operational efficiency and security visibility.
  • Create dashboards, reports, and metrics to provide stakeholders with actionable insights into SaaS security posture and compliance status.
  • Assess cloud-connected SaaS environments across AWS, Microsoft Azure, Google Cloud Platform (GCP), and Oracle Cloud Infrastructure (OCI).
  • Review identity federation, API connectivity, logging, monitoring, and data protection controls associated with SaaS platforms.
  • Partner with cloud security, security operations, governance, and risk management teams to ensure consistent security standards and controls.
  • Document findings, risk assessments, remediation recommendations, and security exceptions.
  • Contribute to the development of SaaS security standards, governance frameworks, and secure-by-design practices.
  • Support emerging technology initiatives, including AI and Generative AI-enabled SaaS platforms, through security assessments and risk evaluations.

Requirements

The ideal candidate has a strong background in SaaS security, cloud security, automation, and identity governance, with hands-on experience implementing SSPM solutions and integrating security controls across enterprise platforms. This individual will work closely with security, cloud, governance, and engineering teams to enhance visibility, reduce risk, and support the secure adoption of cloud and AI-enabled technologies., * 5+ years of experience in Security Engineering, Cloud Security, SaaS Security, or related cybersecurity disciplines.

  • Hands-on experience implementing and managing one or more SaaS Security Posture Management (SSPM) solutions, including:
  • AppOmni
  • Obsidian
  • Palo Alto SaaS Security solutions
  • Adaptive Shield
  • Wing Security
  • Valence
  • Or similar SSPM technologies
  • Strong understanding of:
  • SaaS Security Architecture
  • Identity & Access Management (IAM)
  • Data Protection & Privacy Controls
  • API Security
  • Security Monitoring & Detection
  • SaaS Governance & Risk Management
  • Experience securing and assessing SaaS environments integrated with AWS, Azure, GCP, and/or OCI.
  • Proficiency with:
  • Python
  • PowerShell
  • REST APIs
  • Terraform
  • GitHub
  • Security Automation Frameworks
  • Experience integrating security tools and building automated workflows across enterprise environments.
  • Strong analytical, troubleshooting, documentation, and communication skills.
  • Ability to work effectively with technical and business stakeholders in complex enterprise environments.

Preferred Qualifications

  • Experience implementing CASB solutions and SaaS governance programs.
  • Knowledge of SaaS application onboarding, certification, and vendor risk management processes.
  • Familiarity with AI and Generative AI security risks within SaaS platforms.
  • Experience with cloud-native security controls and enterprise cloud security frameworks.
  • Understanding of compliance frameworks and security standards such as NIST, ISO 27001, CIS Controls, and CSA Cloud Controls Matrix.
  • Experience supporting large-scale SaaS environments with complex integration ecosystems.

Certifications Preferred

  • CISSP
  • CCSP
  • AWS Certified Security - Specialty
  • Google Professional Cloud Security Engineer
  • Microsoft Azure Security Engineer Associate
  • Oracle Cloud Infrastructure Security Professional

What We’re Looking For

  • Strong security engineer with a passion for securing modern SaaS and cloud environments.
  • Hands-on experience implementing security technologies while driving governance and operational excellence.
  • Ability to balance security requirements with business objectives and user productivity.
  • Experience collaborating across cloud, infrastructure, security operations, governance, and engineering teams.
  • Strong communication and stakeholder management skills with the ability to influence security outcomes.
  • Commitment to continuous improvement, automation, and innovation in SaaS security practices.
  • Ability to evaluate emerging technologies and develop scalable security solutions for enterprise adoption.

About the company

Technologent is a Global Provider of Edge-to-Edge Information Technology Solutions and Services for Fortune 1000 and SMB companies. We offer a unique blend of business practices that are aligned to solve for top CIO concerns. Our core competencies focus on data center infrastructure, business continuity, data protection, service automation and orchestration, continuous intelligence, monitoring, connectivity, collaboration and cybersecurity. These practices are supported by our professional services, digital transformation services and financial services offerings. By providing custom solutions and services designed to fit your business needs, we enable your organization to be more agile, responsive and competitive. Technologent empowers your company to ascend to the next level in IT.

Headquartered in Irvine, CA, Technologent has offices throughout the US and proudly serves clients around the world. When partnering with Technologent, organizations benefit from the highest caliber of professionals, committed to delivering exceptional business outcomes backed by unmatched service and support.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on technologent.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:58 min

Scaling security teams through developer advocates

Tanya Janca · WWC 2021

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · WWC 2023

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

1:34 min

Essential commands for running and testing Terraform configurations

Hennie Francis · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:40 min

Using GitHub primitives for internal documentation and corporate operations

Kyle Daigle · Coffee With Developers

Videos

See all

Related articles

See all