Senior Security Engineer
Salt Lake City UT
This individual will serve as a key technical leader responsible for securing a large-scale, cloud-first environment while driving automation, incident response, vulnerability management, and security program maturity. The ideal candidate combines strong hands-on security engineering expertise with a passion for automation, cloud security, and modern security operations practices.
This role offers the opportunity to influence security strategy, improve operational effectiveness through engineering and AI-driven solutions, and collaborate closely with executive leadership on security initiatives and reporting.
This position requires occasional after-hours support for critical security incidents.
What You'll Do
Cloud Security & Infrastructure Protection
- Own and continuously improve cloud security posture across complex AWS environments.
- Operate and optimize security technologies including:
- CSPM
- SIEM
- Vulnerability Management
- Network Security
- Zero Trust Network Access (ZTNA)
- Data Loss Prevention (DLP)
- Endpoint Detection & Response (EDR)
- Endpoint Management
- Lead vulnerability management efforts including scanning, prioritization, remediation tracking, and reporting
- Partner with IT and Engineering teams to strengthen identity and access management capabilities
- Support the development and maturation of privileged access management (PAM) initiatives.
- Contribute to cloud migration and modernization security efforts.
- Monitor threat intelligence and external attack surface exposure to identify and prioritize risks.
Incident Response & Security Operations
- Act as a primary responder for security incidents
- Perform incident triage, containment, eradication, recovery, and post-incident analysis.
- Improve incident response processes, playbooks, and forensic readiness capabilities.
- Participate in occasional after-hours response activities for critical security events.
Security Engineering & Automation
- Develop automation solutions that reduce manual security operations work.
- Build integrations between security platforms using APIs and scripting.
- Improve security metrics collection, asset visibility, compliance evidence gathering, and alert triage processes.
- Support Infrastructure-as-Code (IaC) and CI/CD security initiatives.
- Evaluate and implement AI-assisted security operations capabilities.
- Contribute to emerging AI and automation initiatives within the security program.
- Help identify and mitigate risks associated with AI technologies and adoption.
Security Program Support
- Support security program objectives, roadmap initiatives, and remediation tracking.
- Maintain risk and compliance artifacts and ensure timely resolution of findings.
- Assist with audit-readiness and evidence-collection efforts for industry-standard compliance frameworks.
- Develop meaningful security metrics and reporting for technical and executive audiences.
- Partner with Engineering, IT, Product, and business stakeholders to drive security outcomes
Required Qualifications
- 5+ years of experience in Security Engineering, Security Operations, or a related cybersecurity role
- Must be authorized to work in the United States and currently reside in the U.S.
- Strong hands-on experience securing AWS environments
- Proficiency in Python or another scripting/programming language
- Experience working with SIEM platforms, dashboards, alert tuning, and threat detection
- Strong understanding of vulnerability management and incident response processes
- Experience supporting compliance initiatives such as SOC 2, PCI DSS, ISO 27001, or similar frameworks
- Familiarity with AI/ML-enabled security tools and automation platforms
- Demonstrated ability to mentor team members and elevate technical capabilities across a team
- Excellent written and verbal communication skills, with the ability to communicate effectively to both technical and non-technical audiences
- Willingness to participate in occasional after-hours incident response activities
Preferred Qualifications
- Experience with GRC platforms, compliance automation, or risk management solutions
- Exposure to Identity Governance (IGA) and Privileged Access Management (PAM) technologies
- Relevant security certifications such as:
- CISSP
- CISM
- AWS Security Specialty
- GIAC certifications (GCIH, GCED, etc.)
- Experience within regulated industries such as financial services, fintech, healthcare, or other compliance-driven environments
- Background building internal security tooling or contributing to platform engineering initiatives
- Experience with SOAR technologies and automated response workflows