Jobgether logo
Jobgether

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team. We appreciate your interest and wish you the best! Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time. #LI-CL1 We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Senior Security Engineer

Security EngineerSecurity EngineerFull TimeRemoteSeniorH1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

3 days ago

Salary

$170K - $200K / year

Seniority

Senior

AWSNIST 800-53CI/CDIaCSIEMIncident ResponseIAMRBACPatch ManagementCloud SecurityDevSecOps

Job Description

Role Description

This role offers a critical opportunity to safeguard and optimize cloud-based systems in a highly regulated environment. As a Senior Security Engineer, you will lead security operations, ensuring infrastructure, deployments, and access controls meet rigorous compliance standards. You will design and implement automated workflows, manage CI/CD pipelines, respond to security incidents, and maintain audit-ready documentation. This position is ideal for professionals who combine deep cloud security expertise with operational discipline and a passion for efficiency through automation. You will collaborate across engineering, product, and compliance teams to embed security best practices while supporting mission-critical systems at scale. The role provides exposure to federal or regulated environments and a chance to shape security operations with cutting-edge tools and processes.

  • Maintain, improve, and secure CI/CD pipelines to support reliable deployments and operational workflows.
  • Manage infrastructure-as-code (IaC) changes, including reviews, approvals, and security assessments.
  • Conduct security impact analyses for system and application changes, providing actionable recommendations.
  • Oversee patch management, hardened images, and secure baseline operations for regulated cloud environments.
  • Govern identity and access management, ensuring proper account provisioning, RBAC maintenance, and regular audits.
  • Monitor, tune, and manage logging and SIEM pipelines for accurate security alerting and incident response.
  • Lead incident response activities from investigation through containment, recovery, and post-mortem reporting.
  • Maintain comprehensive SOPs, runbooks, and documentation to ensure consistent operations and compliance readiness.
  • Collaborate with engineering, DevOps, and compliance teams to integrate security practices into development and operations workflows.

Qualifications

  • 5+ years of experience in security engineering or infrastructure operations within federal or regulated cloud environments.
  • Deep familiarity with NIST 800-53 controls and continuous monitoring practices.
  • Proven expertise in AWS/SaaS security, CI/CD pipelines, infrastructure automation, and IaC security practices.
  • Hands-on experience with patch management, secure baselines, hardened images, and access management.
  • Ability to manage SIEM pipelines and lead Tier 1/Tier 2 incident response efforts.
  • Strong technical documentation, collaboration, and incident/project management skills.
  • Nice to have: experience integrating security automation into CI/CD and SecOps workflows, federal audit support experience, and knowledge of SaaS security operations at scale.

Benefits

  • Competitive base salary range of $170,000–$200,000 USD.
  • Eligible for performance-based bonus and restricted stock units (RSUs).
  • Health, dental, and vision coverage.
  • Opportunities to work in cutting-edge cloud security environments.
  • Professional growth in a fast-paced, compliance-driven, and collaborative setting.
  • Flexible work arrangements and remote work options.

Job Requirements

  • 5+ years of experience in security engineering or infrastructure operations within federal or regulated cloud environments.
  • Deep familiarity with NIST 800-53 controls and continuous monitoring practices.
  • Proven expertise in AWS/SaaS security, CI/CD pipelines, infrastructure automation, and IaC security practices.
  • Hands-on experience with patch management, secure baselines, hardened images, and access management.
  • Ability to manage SIEM pipelines and lead Tier 1/Tier 2 incident response efforts.
  • Strong technical documentation, collaboration, and incident/project management skills.
  • Nice to have: experience integrating security automation into CI/CD and SecOps workflows, federal audit support experience, and knowledge of SaaS security operations at scale.

Benefits

  • Competitive base salary range of $170,000–$200,000 USD.
  • Eligible for performance-based bonus and restricted stock units (RSUs).
  • Health, dental, and vision coverage.
  • Opportunities to work in cutting-edge cloud security environments.
  • Professional growth in a fast-paced, compliance-driven, and collaborative setting.
  • Flexible work arrangements and remote work options.

Related Categories

Related Job Pages

More Security Engineer Jobs

Sift Healthcare logo

Senior Cloud Security Engineer

Sift Healthcare

Sift transforms healthcare payments through advanced data science.

Security Engineer3 days ago
Full TimeRemoteTeam 11-50Since 2017H1B No Sponsor

Senior Cloud Security Engineer responsible for secure cloud infrastructure at Sift.

AWSCloudCyber Security
United States

Senior Security Engineer

SpyCloud

SpyCloud is a leader in digital identity protection, dedicated to preventing targeted cyberattacks and unmasking threat actors through innovative solutions. Fou

Security Engineer3 days ago
Full TimeRemote

The role involves designing, improving, and maintaining secure infrastructure for applications, security tooling, and data workflows, while also evolving log collection and supporting AWS networking architectures with security principles. Key duties include developing and maintaining Splunk detection content, administering the Splunk Cloud platform, and designing/implementing SOAR playbooks for automated response.

AWSTerraformPythonBashSIEMSplunkSOARAPINetworkingGitGitHubVPCEC2EKSLambdaS3CloudWatchELBTransit GatewayCodePipeline
United States
Security Engineer3 days ago
Full TimeRemoteTeam 201-500Since 2012H1B No Sponsor

Staff Engineer advancing AI Reinforcement Learning development at Bugcrowd

LinuxPythonRust
United States
$176.4K - $242.6K / year
Trulieve logo

Senior Information Security Manager

Trulieve

Trulieve provides equal employment opportunities to all employees and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, pregnancy or any other characteristic protected by federal, state or local laws.

Security Engineer3 days ago
Full TimeRemoteTeam 5,001-10,000

The Senior Information Security Manager oversees key areas of the Information Security Department, managing the Cybersecurity Operations Centre (CSOC) functions, monitoring incidents, and ensuring technological initiatives meet security standards. This role involves developing and executing the SOC strategy, directing security event monitoring and response, and enhancing infrastructure security through advanced technology implementation.

Cybersecurity OperationsSOC ManagementIncident ResponseSIEMThreat IntelligenceVulnerability ManagementFirewall ManagementEndpoint SecurityIDS/IPS/WAFISO 27001NISTCISSOX ComplianceCISSPCISMNetwork SecuritySecurity ArchitectureRisk AnalysisSecurity MonitoringCSOC
United States