Senior Security Engineer
$120,000–$135,000 year
Hybrid · Austin, Texas, United States
Job Summary
The Senior Security Engineer is responsible for advancing security platforms, detections, automation, and cloud security capabilities across AWS, SaaS, and enterprise environments. Key responsibilities include owning engineering execution for major security initiatives, designing and implementing detections, developing SOAR and automation workflows, and collaborating with various security teams to build scalable detection and response capabilities. The role requires expertise in SIEM detection development, AWS security, SOAR platforms, and integrating telemetry into workflows. Candidates should have a strong background in security engineering and a proactive approach to emerging technologies.
Required Qualifications
- 5+ years of security engineering, detection engineering, or advanced security operations experience.
- Expertise with SIEM detection development and correlation logic (Splunk preferred), including advanced SPL and analytics authoring.
- Strong AWS security engineering experience across multi-account environments, including Security Hub, GuardDuty, Inspector, Macie, CloudTrail, and IAM.
- Proficiency with SOAR platforms and automation scripting (Python, PowerShell, Bash) for SecOps workflow automation.
- Experience with SASE technologies (SWG, CASB, ZTNA) and/or DSPM platforms in an enterprise environment.
- Deep working knowledge of adversary TTPs and the MITRE ATT&CK framework applied to detection engineering and threat modeling.
- Experience integrating cloud and SaaS telemetry into detection and incident response workflows.
- Genuine curiosity and an early-mover instinct for emerging technologies, including AI-assisted development tools such as Claude Code.
Desired Qualifications
- Hands-on CSPM engineering experience, including custom rules, policies, automation, and remediation workflows.
- DSPM platform integration and data-centric security controls.
- SASE platform engineering experience, including SWG, CASB, ZTNA policy configuration.
- SOAR workflow architecture and automation strategy across multi-platform environments.
- Relevant certifications: GIAC (GCIA, GCIH, GCED, GDAT), AWS Certifications, CISSP, or equivalent.
- Hands-on experience with AI-assisted development tools (Claude Code, GitHub Copilot, Cursor, or similar) applied to security engineering or automation workflows.
Apply with one swipe on Sorce. We auto-fill applications and apply on your behalf — no cover letters, no 40-minute forms.
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.