Senior Security Engineer

Location

United States

Posted

36 days ago

Salary

$150K - $250K / year

Seniority

Senior

Job Description

Senior Security Engineer

Nova Intelligence

Role Description We're hiring Senior Security Engineers to design, harden, and continuously test the security of the Nova platform. Our mission is to build the most powerful AI platform for SAP — and that includes being the most secure. Nova operates inside the systems that run global business, with broad access and powerful capabilities; the security work is technically deep and central to the product. What you'll do - Own platform security architecture. - Lead our internal red team. - Solve hard auth and identity problems in SAP. - Raise our internal security baseline. - Partner with customer security teams. - Push the frontier on offensive and defensive AI for SAP. - Represent Nova on security in the SAP community. Qualifications - Deep, hands-on security experience — application security, cloud security (AWS in particular), identity and access management. - Adversarial thinking by default, with a background in offensive (red team, pentest, vulnerability research) or defensive engineering. - Informed opinions on AI security: prompt injection, agent action boundaries, tool-use vulnerabilities, sandbox escape. - Fluency in compliance frameworks (SOC 2, ISO 27001, GDPR, CCPA) as a baseline for driving security efforts. - Clear communication with both engineers and executives. - Track record of public technical output — writing, talks, CVEs, open-source contributions (strong plus, not required). Requirements - 5+ years of security engineering, security architecture, or offensive security work. - Hands-on AWS security depth (IAM, KMS, networking, multi-account architectures). - Experience designing or hardening multi-tenant SaaS platforms in enterprise contexts. - Leading SOC 2 Type II, ISO 27001, or comparable certification efforts. - Familiarity with SAP, ABAP, or enterprise application security generally. - Working directly with enterprise customer security teams (CISOs, DPOs, security architects). Benefits - Work alongside top engineers, AI researchers, and SAP experts on unique security problems. - Competitive compensation and meaningful equity. - Full health, dental, and vision coverage.

Related Categories

Related Job Pages

More Security Engineer Jobs

Ford Motor Company logo

Principal Technical Specialist – Vehicle & Connected Cyber Security

Ford Motor Company

At Ford Motor Company, we believe freedom of movement drives human progress. We also believe in providing you with the freedom to define and realize your dreams. With our incredible plans for the future of mobility, we have a wide variety of opportunities for you to accelerate your career potential as you help us define tomorrow’s transportation.

Full TimeRemoteTeam 10,001+Since 1903H1B Sponsor

• Act as the principal technical authority for vehicle, embedded, and connected cybersecurity across all vehicle programs and platforms. • Define and evolve cybersecurity architectures and technical standards for ECUs, in-vehicle networks, OTA, cloud backends, mobile apps, and V2X ecosystems. • Provide expert guidance on secure-by-design principles and emerging threats affecting automotive and connected systems. • Partner with vehicle, software, and systems engineering teams to integrate cybersecurity requirements throughout the product development lifecycle. • Lead or support threat modeling, risk assessments, and security architecture reviews for vehicle platforms and connected services. • Influence design decisions to balance security, safety, performance, cost, and customer experience. • Support compliance with automotive cybersecurity standards and regulations (e.g., ISO/SAE 21434, UNECE R155/R156, NIST). • Provide technical input for cybersecurity policies, processes, and audit readiness. • Advise leadership on cybersecurity risk posture, residual risks, and mitigation strategies. • Serve as a senior technical advisor during cybersecurity incidents affecting vehicles or connected services. • Guide root cause analysis, remediation strategies, and long-term corrective actions. • Oversee vulnerability disclosure, penetration testing findings, and coordinated response activities. • Represent the company in industry working groups, standards bodies, and technical forums. • Engage with suppliers and technology partners to assess cybersecurity capabilities and risks. • Monitor emerging threats, technologies, and regulatory trends impacting automotive cybersecurity. • Mentor and develop cybersecurity engineers and specialists across the organization. • Elevate overall cybersecurity maturity through knowledge sharing, best practices, and technical reviews.

Michigan
$141.7K - $268.3K / year
Job Closed
Western Digital logo

Senior Security Engineer

Western Digital

We create data storage solutions that power the technology of today and inspire the innovations of tomorrow.

Full TimeRemoteTeam 10,001+Since 1970H1B Sponsor

• Own, design, and continuously improve the security tooling ecosystem that underpins a modern, detection-first Security Operations Center (SOC) • Engineer, deploy, and maintain all core SOC platforms, including Malware analysis and sandboxing solutions, Analyst workstation environments (Windows investigation VMs), Endpoint Detection & Response (EDR/XDR), Email Security Engineering, Vulnerability Scan Engineering • Act as technical owner for SOC platforms, including alignment with architecture requirements, lifecycle management, upgrades, and decommissioning • Ensure SOC platforms are engineered for scale, reliability, performance, and forensic integrity • Own EDR platform engineering, configuration, and operational health across the enterprise • Define and enforce EDR hygiene standards (sensor coverage, policy consistency, versioning, asset attribution) • Monitor EDR health metrics and proactively remediate gaps impacting detection or response efficacy • Develop testing frameworks to validate EDR detections, policies, and response actions • Serve as a technical owner of detection engineering, enabling high-fidelity detections through better tooling, telemetry, and data quality • Engineer and maintain malware detonation and analysis environments that support safe, repeatable analysis • Assess new attacker techniques, malware families, and evasion tactics for detection and prevention opportunities across the enterprise

California
$131.4K - $217.6K / year
Interface Systems logo

Security Alarm Tech Support – Access Control, CCTV, Intrusion

Interface Systems

Managed Business Security, Business Intelligence, and Purpose-Built Managed Network and Voice Solutions

Full TimeRemoteTeam 501-1,000H1B No Sponsor

• Demonstrate sustained effectiveness and high performance within a fast-paced, dynamic environment while resolving complex, time-critical service needs. • Own technician success by delivering accurate diagnostics, correct parts selection, and clearly defined, executable scopes of work supported by complete, relevant documentation. • Drive SLA compliance by analyzing service outliers, executing root cause analysis, and delivering targeted corrective and preventative actions. • Collaborate with STS L1 and L2 leadership to identify and remediate process, coaching, or training deficiencies.

United States
Children's Health logo

IT Security Systems Senior Engineer

Children's Health

At Children's Health, our mission is to Make Life Better for Children, and we recognize that their health plays a crucial role in achieving this goal. Through our cutting-edge treatments and affiliation with UT Southwestern, we strive to deliver an extraordinary patient and family experience, ensuring that every moment, big or small, contributes to their overall well-being. Our dedication to promoting children's health extends beyond our organization and encompasses the broader community. Together, we can make a significant difference in the lives of children and contribute to a brighter and healthier future for all.

Full TimeRemoteTeam 5,001-10,000

Role Description The Senior Security Systems Engineer is responsible for architecting, implementing, and operating enterprise security engineering solutions focused on Identity & Access Management (IAM), data privacy, data security, AI, automated workflow creation and management, and infosec data analytics reporting for a large hospital system. This role engineers security controls across Microsoft 365 and Microsoft Azure, enabling secure clinical and corporate workflows while maintaining compliance with HIPAA and internal governance standards. This position requires deep hands-on experience with identity security, data protection, and automation-driven operations, including advanced Python scripting to maintain pre-existing solutions and expand AI capabilities internally to reduce security risk, improve security posture management from an observability and monitoring perspective, and support audit readiness in a regulated healthcare environment. Responsibilities - Identity & Access Management (Primary Focus) - Design, implement, and operate enterprise IAM controls including: - Microsoft Entra ID (Azure AD) authentication, authorization, and federation - Conditional Access (risk-based access, device trust, MFA, session controls) - Privileged Identity Management (PIM) and just-in-time administrative access - Identity lifecycle processes (joiner/mover/leaver) and access hygiene - Engineer least-privilege role models for clinical, research, and administrative users. - Integrate IAM with clinical systems, analytics platforms, and SaaS applications using SSO and modern auth standards (SAML, OAuth2, OIDC). - Develop and maintain detections and operational responses for identity compromise, abnormal access, and privilege escalation. - Data Privacy & Security Engineering - Implement Microsoft-native data protection controls for PHI/ePHI: - Sensitivity labels, encryption, and rights management - Data Loss Prevention (DLP) across Exchange, Teams, SharePoint, OneDrive, endpoints, and sanctioned SaaS - Enforce secure sharing controls and domain restrictions aligned with hospital policy. - Translate HIPAA privacy requirements into enforceable technical solutions. - Provide architectural guidance for secure analytics and collaboration environments handling sensitive healthcare data. - Microsoft 365 Security Administration - Administer and engineer security features across M365 workloads: - Exchange Online (anti-phishing, impersonation protection, secure mail routing) - Teams, SharePoint, and OneDrive sharing and access controls - Microsoft Defender and Microsoft Purview security features - Support investigations, legal holds, and security incidents in coordination with Privacy, Legal, and SecOps teams. - Tune policies to balance clinician usability with security and compliance. - Azure Security & Identity Engineering - Secure Azure identity and platform services: - Entra ID hardening, tenant security posture improvements - RBAC, managed identities, service principals, Key Vault - Integrate logging and telemetry with centralized monitoring/SIEM platforms. - Participate in design reviews, threat modeling, and security sign-off for new cloud initiatives. - Python Scripting & Security Automation - The Senior Security Systems Engineer is expected to actively design and maintain Python-based automation to support IAM, privacy, and security operations. - Ensure scripts follow secure coding practices, logging standards, and production change controls. - Governance, Risk & Compliance Support - Provide engineering input, evidence, and architecture documentation for HIPAA Security Rule compliance. - Support risk assessments, tabletop exercises, and control testing activities. - Collaborate with GRC teams to map technical controls to regulatory requirements and internal policies. Qualifications - At least 5 years experience in information security, with a focus on security systems engineering required. - Strong knowledge of security technologies, including firewalls, IDS/IPS, and encryption required. Requirements - Four-year Bachelor's degree or equivalent experience in Computer Science, Information Security, or a related field required. Benefits - Employee portion of medical plan premiums are covered after 3 years. - 4%-10% employee savings plan match based on tenure. - Paid Parental Leave (up to 12 weeks). - Caregiver Leave. - Adoption and surrogacy reimbursement.

United States