
Senior Information Security Engineer
Posted Aug 21

Posted Aug 21
This is a fully remote position, open to applicants in Colorado.
• Take ownership of KPA's enterprise security platforms, which include CrowdStrike, Rapid7, Cisco Umbrella, Cisco Duo, KnowBe4, and associated technologies.
• Direct vulnerability management and remediation efforts, endpoint security, identity security, privileged access, penetration testing, and security hardening initiatives.
• Oversee security incident response, conducting investigations, containment, remediation, and post-incident evaluations.
• Manage the continuous operation of SOC 2 controls, security audit obligations, and technical compliance initiatives.
• Supervise Cisco Meraki security, VPN infrastructure, network security controls, and secure cloud connectivity.
• Ensure security for Azure, AWS, Microsoft 365, Entra ID, AWS Identity Center, Auth0, and cloud-native workloads.
• Administer and enhance identity governance across Entra ID, Cisco Duo, AWS Identity Center, Auth0, SSO, SCIM, Conditional Access, PIM, privileged accounts, service accounts, and authentication architecture.
• Collaborate with DevOps to integrate security within CI/CD pipelines, Infrastructure as Code, containers, Kubernetes, and cloud workloads, utilizing SAST, DAST, Snyk, and other application security technologies.
• Enhance cloud security posture management, workload protection, identity controls, logging, alerting, detection engineering, and remediation processes.
• Manage email security across Microsoft 365, SendGrid, Amazon SES, SPF, DKIM, DMARC, and phishing protection.
• Develop security automation using PowerShell, Python, Microsoft Graph, REST APIs, and AI-assisted development.
• Conduct security assessments for vendors, SaaS platforms, cloud services, and third-party integrations; oversee third-party vendor management and support vendor risk management.
• Administer and refine security awareness programs, policies, standards, and technical procedures.
• Assist with AI security and governance initiatives, including ChatGPT Enterprise, Claude, MCP, and emerging AI technologies.
• Support security architecture evaluations for new cloud services, platforms, integrations, and technical initiatives.
• Identify security vulnerabilities, technical debt, and opportunities to enhance KPA's security posture through automation, AI, and modern engineering methodologies.
• Act as the senior technical liaison to the Director of Security & Technology and serve as the senior escalation point for intricate security incidents and technical security challenges.
• Collaborate with IT Operations and DevOps to integrate security into workflows.
• A minimum of 5 years of experience in security engineering, cloud security, infrastructure security, or a related senior technical position.
• Comprehensive understanding of identity security, endpoint security, vulnerability management, network security, incident response, and zero trust principles.
• Proven experience securing Azure, AWS, Microsoft 365, Entra ID, Windows, and Linux environments.
• Familiarity with CI/CD pipelines, Kubernetes, container security, application security scanning, and DevSecOps practices.
• Experience in scripting and automation with PowerShell, Python, REST APIs, or similar technologies.
• Background supporting SOC 2 and NIST CSF or similar security and compliance frameworks.
• Relevant certifications such as CompTIA Security+, CISSP, CCSP, AWS Certified Security, or equivalent certifications are preferred.
• Strong communication, documentation, project leadership, and problem-solving abilities.
• Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or equivalent experience.
• This is a full-time, exempt role.
• Annual bonus potential of 10%.
• Flexibility for remote work.
• Minimal travel required.
• Reasonable accommodations may be provided to enable individuals with disabilities to perform essential functions.
Alcoa
McKesson
Zillow
Truelogic Software
Get handpicked remote jobs straight to your inbox weekly.