Senior Security Engineer
Senior Security Engineer builds software solutions and tools to mitigate risks, conducts security reviews and threat modeling, and leads incident response while mentoring teams to elevate organizational security maturity.
About the job
How you’ll make an impact
- Architect and build software solutions (Workflows, Services, and internal tools) that accelerate security
- Elevate security maturity across the organization by mentoring engineers, influencing leadership through clear risk metrics, and fostering a culture where security enables innovation
- Continuously improve systems by learning from real-world signals such as false positives, operational feedback, and evolving threats
- Serve as a senior technical authority during high-severity incidents, driving root cause analysis and durable architectural improvements
What we’re looking for
Minimum requirements
- Proven track record of owning security initiatives end-to-end, including post-launch validation, monitoring, and iterative improvement
- Experience performing security reviews (e.g., design reviews, threat modeling, architecture assessments) and driving actionable outcomes
- Demonstrated ability to identify, investigate, and remediate complex security issues across one or more domains
- Experience developing code and building services to enhance unique security needs
- Demonstrated ability to leverage AI-assisted tools (e.g., code generation, analysis, or investigation tools) to improve productivity while maintaining security and quality standards
Preferred qualifications
- Experience working with diverse data domains (e.g., analytics, reporting, business operations, or people data)
- Experience assessing security risks in AI/ML systems (e.g., prompt injection, model misuse, data poisoning, access control around models)
- Experience building applications hosted in a Kubernetes environment
- Experience with security orchestration tools for automating processes that are adopted beyond a single team
- Experience partnering with Legal, Risk, Compliance, and Audit teams to operationalize security controls in regulated environments
Skills
Threat Modeling, Kubernetes, Ai/Ml Security, Security Automation, Code Development, Security Reviews, Root Cause Analysis, Security Orchestration, Prompt Injection Mitigation, Architecture Assessments
Similar jobs
Security Engineering jobsLeads application security initiatives across products, APIs, distributed systems, and AI-enabled applications. The role requires at least five years of security or software engineering experience, strong threat-modeling and architecture skills, and the ability to build security automation and drive remediation.
Leads the Product Security team responsible for security posture management, governed security rollouts, and software supply chain security across GitLab’s software factory. The role combines technical security leadership, organizational adoption, audit readiness, team building, and external thought leadership.
Build and operate scalable malware-analysis, threat-enrichment, and graph-intelligence systems that power security research and detection. The role requires 6+ years of security pipeline or threat-intelligence experience, strong Python or Go skills, and expertise in cloud and distributed systems.
Build and lead product and infrastructure security for systems that move money, creating secure defaults, automation, access controls, and vulnerability management processes. The role requires strong software engineering, cloud infrastructure expertise, risk-based judgment, and the ability to operate independently as the senior security engineer.
Leads engineering for Wiz’s FedRAMP CR26 initiative, translating federal compliance requirements into scalable compliance-as-code, automation, and evidence-generation solutions. Requires 6+ years in security, DevOps, or systems engineering and deep experience with NIST, FedRAMP, and government cloud environments.