Job Closed
This listing is no longer active.
AppOmni prevents SaaS data breaches by delivering end-to-end SaaS security. Our platform gives security teams clear visibility into posture, access, third-party connections, AI-related activity, and with built-in discovery to identify unsanctioned SaaS and Shadow AI tools. Backed by continuous monitoring and real-time threat detection, AppOmni helps enterprises identify and resolve risks early, keeping their SaaS applications secure. Recognized as a Frost Radar™ 2025 Leader and Great Place To Work®, AppOmni continues to set the standard for innovation and customer value in SaaS security. The largest and fastest-growing global enterprises across industries trust AppOmni to secure their SaaS applications.
Senior Security Engineer
Location
United States
Posted
71 days ago
Salary
$175K - $200K / year
Seniority
Senior
Job Description
Senior Security Engineer
AppOmni
• Design and develop detection logic and security rules to identify threats, suspicious behaviors, and misconfigurations across SaaS applications. • Research SaaS platforms (e.g., Google Workspace, Microsoft 365, Salesforce, Slack, etc.) to understand security models, APIs, and potential attack surfaces. • Translate real-world attack techniques and SaaS security risks into scalable product capabilities, including detections, posture checks, and risk signals. • Contribute to both threat detection and posture management content, ensuring broad coverage across identity, access, integrations, and data exposure risks. • Analyze large-scale SaaS telemetry to identify patterns, anomalies, and opportunities for new detections or improvements. • Continuously improve detection quality by reducing false positives and ensuring signals are actionable for customers. • Collaborate with Engineering to productionize detection logic and ensure reliable execution at scale. • Partner with Product to shape how security insights are surfaced, prioritized, and explained to users. • Stay current on emerging SaaS attack techniques, identity threats, OAuth risks, and AI-related security considerations. • Contribute to internal knowledge sharing and help elevate SaaS security expertise across the organization.
Job Requirements
- 5–8+ years of experience in cybersecurity, with hands-on work in areas such as detection engineering, threat research, security analytics, or cloud/SaaS security.
- Strong understanding of SaaS security concepts, including identity and access management, OAuth integrations, third-party app risks, and misconfiguration-driven exposure.
- Experience working with security telemetry and logs, including querying and analyzing large datasets (e.g., SQL, Python, or similar tools).
- Experience developing or tuning detection logic, rules, or analytics in a SIEM, XDR, or similar system.
- Familiarity with SaaS application APIs and security-relevant data sources.
- Understanding of attacker techniques in SaaS environments, including identity-based attacks, privilege escalation, and persistence mechanisms.
- Ability to translate complex technical findings into clear, actionable security insights.
- Experience balancing detection fidelity, coverage, and performance in production systems.
- Experience partnering with Product and Engineering to deliver customer-facing security capabilities.
- Strong analytical thinking and problem-solving skills, with attention to detail.
- Strong written and verbal communication skills.
Benefits
- Generous PTO
- Company and floating holidays
- Parental and family leave
- Health insurance (medical, dental, vision with HSA option)
- EAP
- Company-provided life insurance
- AD&D
- STD/LTD
- Supplemental life insurance options
- 401(k) with Roth
- Monthly wellness benefit reimbursement
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Senior Systems Security Engineer
VerTALENTSWe are talent cultivators mentoring tomorrow’s technology and cybersecurity influencers.
• Implement and sustain security controls aligned to CMMC Level 1/2, NIST SP 800-171, and CUI/ITAR requirements • Design and maintain PKI (Public Key Infrastructure) and certificate lifecycle • Implement and manage Identity & Access Management (IAM/IGA) solutions • Drive continuous compliance monitoring and maintain ongoing audit readiness • Support ITGC controls in alignment with established governance frameworks • Serve as the primary Level 3 escalation resource for complex infrastructure and security challenges • Mentor and provide technical guidance to junior engineers • Champion operational continuity and long-term infrastructure stability • Oversee patch management and vulnerability remediation programs • Manage Group Policy (GPO) design, implementation, and enforcement • Develop and maintain secure, standardized golden images • Apply CIS/NIST hardening baselines across systems and environments • Support secure lifecycle management from deployment through decommission • Support Active Directory / Azure AD (Entra ID) architecture, integrations, and governance • Administer Microsoft Intune for endpoint compliance and configuration management • Deploy and manage virtual machines and cloud services within Azure, including GCC High • Design, maintain, and optimize infrastructure across hybrid Azure environments
Senior Security Engineer
PacvuePacvue is committed to employing a diverse workforce. Qualified applicants will receive consideration without regard to race, color, religion, sex, national origin, age, sexual orientation, gender identity, gender expression, veteran status, or disability.
• Implement and maintain AWS security configurations across development, staging, and production environments • Apply IAM best practices, including least-privilege access and role-based access controls • Configure and monitor AWS-native security services such as CloudTrail, GuardDuty, Security Hub, AWS Config, and Macie • Participate in cloud security reviews for new and existing services • Support security best practices in infrastructure-as-code (Terraform, AWS CDK) and CI/CD pipelines • Help maintain cloud security baselines aligned to CIS Benchmarks and AWS Well-Architected Framework • Contribute to secure Software Development Lifecycle (SDLC) practices, including shift-left security efforts • Participate in threat modeling and security design reviews • Operate SAST, DAST, and SCA tools integrated into CI/CD pipelines (e.g., Snyk, Checkmarx, Veracode, Semgrep) • Partner with engineering teams to remediate vulnerabilities and improve secure coding practices • Support development and maintenance of secure coding guidelines • Assist in vulnerability identification, triage, and remediation tracking across infrastructure and applications • Support internal and external penetration testing activities • Help track and report on vulnerability metrics and remediation progress • Support compliance efforts such as SOC 2 Type II and ISO 27001 audits • Collaborate with team members to improve security processes and documentation • Contribute to security runbooks and incident response procedures
• Lead & Build a High-Impact Security Engineering and Research Team • Build a team of elite security engineers and world-class domain experts across Detection and Response, including alert investigation, threat hunting, detection engineering, and threat intelligence • Act as a player/coach, setting strategic research and engineering directions while staying deeply involved in technical work • Establish a culture of high-quality research, rapid iteration, and operator-first thinking • Drive Product Effectiveness • Build and refine measurement and evaluation frameworks to ensure the analysis our agents produced is high quality and mirrors expert human outputs • Owns the process of encoding expert human intuitions and techniques into our agentic system • Work closely with rest of engineering to continuously improve the efficacy of our agents in real world deployments • Reimagine Detection and Response with agents • Prototype and test new ideas where unlimited analytical capacity can fundamentally change cyber defense • Serve as a key voice in shaping Dropzone’s product roadmap based on real-world operation experience • Pressure-test assumptions about how AI should be applied in security operations • Help define what “autonomous defense system” actually looks like in practice and be an industry thought leader around it
Security Control Specialist, Fluent Ukrainian
SupportYourAppSupport-as-a-Service that helps companies scale faster by taking care of their customers’ needs.
• Забезпечувати повний цикл розслідування та координації дій у відповідь на порушення безпеки або робочих процесів • Вести комунікацію з клієнтами та стейкхолдерами під час Data Breach інцидентів • Проводити Root Cause Analysis інцидентів, розробляти превентивні заходи та готувати звітність для топменеджменту • Аналізувати операційні процеси клієнтів з урахуванням інцидентів для виявлення потенційних загроз та формувати рекомендацій щодо проактивного підвищення рівня безпеки • Перевіряти безпеку постачальників, програмних платформ та сторонніх сервісів • Здійснювати аудит нових локацій для найму щодо відповідності стандартам захисту даних і впровадження інструментів безпеки • Готувати документацію та процедури управління інцидентами, а також підтримувати внутрішню базу знань.




