Lead Security Engineer

Refinitiv

Frisco, Northern (TX, KY)

Hybrid

USD 118,000 - 220,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Flexible vacation
Mental Health Days
Headspace access
Competitive benefits
401k with company match

Job summary

Thomson Reuters is building a dedicated security engineering capability. The Lead Security Engineer shapes security across application, cloud, and infrastructure, including on-prem data centres and major clouds.

You will set technical direction, drive backlogs, and mentor engineers while collaborating with cross-functional teams to raise overall security posture. The role focuses on designing controls, revamping patch cycles, and enabling fast, safe delivery with AI-assisted tooling.

Qualifications

  • 8+ years hands-on security engineering or related field.
  • Experience as a technical lead or senior individual contributor.

Responsibilities

  • Lead security across application, cloud, and infrastructure.
  • Set technical direction and backlog quality end-to-end.
  • Design security controls across OS, containers, CI/CD, cloud, and networks.
  • Improve patching cycles, image refreshes, and automation.
  • Mentor engineers and coordinate with regional teams.
  • Own reporting, runbooks, and escalation paths.

Skills

Security engineering
Vulnerability management
Cloud and infrastructure security
Multi-cloud (AWS, Azure, GCP, OCI)
Automation and tooling
AI-assisted security tooling
Communication

Education

Bachelor’s degree in Computer Science/Info Security

Tools

SAST
SCA

Job description

The Opportunity

Do you want to set the technical direction for how a global business secures its infrastructure at scale? Thomson Reuters™ is investing in a dedicated security engineering capability, and we are looking for a hands‑on technical lead to help build and shape it. You will design how we secure our estate end to end, not just work through a backlog. This role sits on our Service Management & Transformation team.

As the Lead Security Engineer, you will be the technical lead for security across our application, cloud, and infrastructure estate, which spans on‑premises data centres and major clouds. This is a senior individual-contributor role: you set the technical direction and guide the work of the engineers around you, but you are not their line manager. It is as much a process‑design role as a hands‑on one.

You will design new security controls and ways of working across patching, hardening, network isolation, identity, and secrets management, revamping patching cycles and golden-image refreshes so the team can move fast without sacrificing safety, and you will partner across Information Security, Platform Engineering, and application teams to raise our overall security posture.

About the Role

In this opportunity as Lead Security Engineer, you will:

  • Act as the technical lead for security across application, cloud, and infrastructure.
  • Set technical direction, make the key calls, own the shape and quality of the security backlog end to end, and serve as the point of escalation for complex security and remediation work, without direct line management responsibility.
  • Design and build security controls across layers such as operating systems, container orchestration, CI/CD pipelines, cloud configuration, and network boundaries, to defend against sophisticated adversaries and insider threats.
  • Design new security processes and ways of working, revamping patching cycles and golden-image and base-image refreshes across cloud and on‑prem, so the team can move fast without sacrificing safety.
  • Come to the table with ideas: identify where security and remediation processes can be improved, propose better approaches, and turn them into standards the team adopts.
  • Set the technical approach across the full security scope: application and open-source dependency fixes, infrastructure patching, cloud configuration and guardrails, WAF, network isolation, and secrets and machine-identity management.
  • Prioritise by risk in line with industry best practice such as CISA guidance (CISA KEV, CVSS/EPSS, and SLA-driven burndown), and champion adoption of AI-augmented security tooling, including SAST and SCA.
  • Raise the technical bar by reviewing fixes and mentoring engineers, and coordinate with the wider security team across regions to keep standards and priorities aligned across time zones.
  • Own clear reporting and metrics, and build the runbooks, standards, and escalation paths that make security a repeatable, auditable capability.
About You

You’re a fit for the role of Lead Security Engineer if your background includes:

  • 8+ years of hands‑on experience in security engineering, vulnerability management, or cloud and infrastructure security, including time as a technical lead or senior individual contributor setting direction and guiding the technical work of other engineers, plus a bachelor’s degree in Computer Science, Information Security, or a related field (or equivalent practical experience).
  • A deep understanding of security principles, common vulnerabilities, and best practice across application, cloud, and infrastructure layers.
  • A working command of vulnerability management at scale: prioritisation frameworks, CVSS/EPSS, CISA KEV, and SLA-driven burndown.
  • Breadth across the security stack: application and dependency vulnerabilities, infrastructure patching, guardrails, WAF, network isolation, and identity and access controls, with multi‑cloud experience across two or more of AWS, Azure, GCP, and OCI (all four an advantage) alongside on‑premises infrastructure.
  • A track record of designing and improving technical processes, such as patching cycles, image or GAMI refreshes, or remediation workflows, rather than only executing them, with a proactive mindset for identifying and closing security gaps through automation and tooling; experience with AI‑assisted or automated security tooling is an advantage.
  • Strong judgement on balancing risk reduction against operational and customer impact.
  • Excellent written and verbal communication, comfortable operating across security, engineering, and business audiences and able to convey complex security concepts to technical and non‑technical stakeholders, with enthusiasm for collaborating with cross‑functional teams to build secure, reliable systems that scale globally.
What’s in it For You?

Hybrid Work Model: We’ve adopted a flexible hybrid working environment for our office‑based roles while delivering a seamless experience that is digitally and physically connected.

Flexibility & Work-Life Balance: Flex My Way is a set of supportive workplace policies designed to help manage personal and professional responsibilities, whether caring for family, giving back to the community, or finding time to refresh and reset. This builds upon our flexible work arrangements, including work from anywhere for up to 8 weeks per year, empowering employees to achieve a better work‑life balance.

Career Development and Growth: By fostering a culture of continuous learning and skill development, we prepare our talent to tackle tomorrow’s challenges and deliver real‑world solutions. Our Grow My Way programming and skills‑first approach ensures you have the tools and knowledge to grow, lead, and thrive in an AI‑enabled future.

Industry Competitive Benefits
  • flexible vacation
  • two company-wide Mental Health Days off
  • access to the Headspace app
  • retirement savings
  • tuition reimbursement
  • employee incentive programs
  • resources for mental, physical, and financial wellbeing
  • market competitive health
  • dental
  • vision
  • disability
  • life insurance programs
  • competitive 401k plan with company match
  • competitive vacation
  • sick and safe paid time off
  • paid holidays (including two company mental health days off)
  • parental leave
  • sabbatical leave
  • optional hospital, accident and sickness insurance paid 100% by the employee
  • optional life and AD&D insurance paid 100% by the employee
  • Flexible Spending and Health Savings Accounts
  • fitness reimbursement
  • access to Employee Assistance Program
  • Group Legal Identity Theft Protection benefit paid 100% by employee
  • access to 529 Plan
  • commuter benefits
  • Adoption & Surrogacy Assistance
  • Tuition Reimbursement
  • access to Employee Stock Purchase Plan
Social Impact

Make an impact in your community with our Social Impact Institute. We offer employees two paid volunteer days off annually and opportunities to get involved with pro‑bono consulting projects and Environmental, Social, and Governance (ESG) initiatives.

In the United States, Thomson Reuters offers a comprehensive benefits package to our employees.

Our benefit package includes market competitive health, dental, vision, disability, and life insurance programs, as well as a competitive 401k plan with company match. In addition, Thomson Reuters offers market leading work life benefits with competitive vacation, sick and safe paid time off, paid holidays (including two company mental health days off), parental leave, sabbatical leave. These benefits meet or exceed the requirements of paid time off in accordance with any applicable state or municipal laws.

Additional Benefits

Finally, Thomson Reuters offers the following additional benefits:

  • optional hospital, accident and sickness insurance paid 100% by the employee
  • optional life and AD&D insurance paid 100% by the employee
  • Flexible Spending and Health Savings Accounts
  • fitness reimbursement
  • access to Employee Assistance Program
  • Group Legal Identity Theft Protection benefit paid 100% by employee
  • access to 529 Plan
  • commuter benefits
  • Adoption & Surrogacy Assistance
  • Tuition Reimbursement
  • access to Employee Stock Purchase Plan
Base Compensation

For any eligible US locations, unless otherwise noted, the base compensation range for this role is $118,400 USD - $219,800 USD. Base pay is positioned within the range based on several factors including an individual’s knowledge, skills and experience with consideration given to internal equity.

This role may also be eligible for an Annual Bonus based on a combination of enterprise and individual performance.

About Us

Thomson Reuters informs the way forward by bringing together the trusted content and technology that people and organisations need to make the right decisions. We serve professionals across legal, tax, accounting, compliance, government, and media. Our products combine highly specialised software and insights to empower professionals with the data, intelligence and solutions needed to make informed decisions, and to help institutions in their pursuit of justice, truth, and transparency.

Reuters, part of Thomson Reuters, is a world leading provider of trusted journalism and news. We are powered by the talents of 26,000 employees across more than 70 countries, where everyone has a chance to contribute and grow professionally in flexible work environments. At a time when objectivity, accuracy, fairness, and transparency are under attack, we consider it our duty to pursue them.

Equality, Diversity and Inclusion

To ensure we can do that, we seek talented, qualified employees in all our operations around the world regardless of race, colour, sex/gender, including pregnancy, gender identity and expression, national origin, religion, sexual orientation, disability, age, marital status, citizen status, veteran status or any other protected classification under applicable law.

Thomson Reuters is proud to be an Equal Employment Opportunity Employer providing a drug‑free workplace. Thomson Reuters makes reasonable accommodations for applicants with disabilities, including veterans with disabilities, and for sincerely held religious beliefs in accordance with applicable law.

If you reside in the United States and require an accommodation in the recruiting process, you may contact our Human Resources Department at HR.Leave-Expert@thomsonreuters.com. Disability accommodations in the recruiting process may include things such as a sign language interpreter, making interview rooms accessible, providing assistive technology, or other relevant accommodations. Please note this email is not intended for general recruitment questions and we will promptly respond to inquiries regarding accommodations. More information on requesting an accommodation here.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Security Engineer
Lead Security Engineer

Thomson Reuters • Eagan (MN)

Hybrid
USD 118,000 - 220,000
Hybrid work
Flexibility
Career growth
+4
Security Engineer
Security Engineer

Socket.dev • Town of Texas (WI)

Hybrid
USD 71,000 - 131,000
Hybrid Work Model
Flex My Way policies
Career Development and Growth
+2
Senior Security Engineer
Senior Security Engineer

Refinitiv • Frisco (TX), Northern (KY)

On-site
USD 95,000 - 176,000
Hybrid work
Career development
Mental health days
+2
Distinguished Engineer, AI Threat Defense
Distinguished Engineer, AI Threat Defense

Thomson Reuters • Frisco (TX)

On-site
USD 198,000 - 424,000
Hybrid Work Model
Competitive Benefits
Lead Security Engineer
Lead Security Engineer

Socket.dev • Town of Texas (WI)

Hybrid
USD 118,000 - 220,000
Hybrid work model
Career growth
Competitive benefits
+1
Senior Security Engineer
Senior Security Engineer

Socket.dev • Town of Texas (WI)

Hybrid
USD 95,000 - 176,000
Hybrid work model
Career development
Wellbeing programs
+1
Distinguished Engineer, AI Threat Defense
Distinguished Engineer, AI Threat Defense

Thomson Reuters • Eagan (MN)

Hybrid
USD 198,000 - 424,000
Hybrid Work Model
Medical benefits
Tuition reimbursement
+1
Senior Software Engineer, AI
Senior Software Engineer, AI

Refinitiv • Eagan (MN)

Hybrid
USD 110,000 - 204,000
Hybrid work model
Flexible work policy
Career development
+1
Lead Security Engineer
Lead Security Engineer

Relha LLC • Frisco (TX)

Hybrid
USD 118,000 - 220,000
Hybrid work model
Mental health days
Tuition reimbursement
+1
Distinguished Engineer, AI Threat Defense
Distinguished Engineer, AI Threat Defense

Thomson Reuters • Frisco (TX)

Hybrid
USD 198,000 - 368,000
Hybrid Work Model
Tuition Reimbursement
Employee Stock Purchase Plan
+1