Senior IT Security Engineer

simpro

Miami (FL)

On-site

USD 110,000 - 160,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Simpro Group is seeking a Senior IT Security Engineer to own and advance security, risk management, and compliance across enterprise infrastructure. You will guide governance, risk, and resilience initiatives with significant autonomy and cross‑functional influence.

The role focuses on identity management, access controls, vulnerability governance, and incident response, ensuring alignment with industry standards and organizational resilience objectives.

Qualifications

  • Proven experience designing and managing enterprise security programs.
  • Experience with IAM, access controls, and cloud security.
  • Experience with third‑party risk assessments and vendor risk governance.

Responsibilities

  • Owns the enterprise security and compliance program, aligning with security frameworks and audit disciplines.
  • Maintains organizational risk register across physical, logical, and systems infrastructure.
  • Defines identity architecture standards, access controls, and credentials governance.
  • Leads vulnerability management governance with SLAs and remediation tracking.
  • Conducts security assessments of third‑party software vendors before onboarding.
  • Oversees security questionnaire workflows and compliance reporting.

Skills

IAM
Network security
Cloud security
Vulnerability management
Incident response
Vendor risk management
Security governance
Stakeholder communication

Education

Bachelor’s degree in Computer Science/IT/Cybersecurity

Job description

Job Context

The Senior IT Security Engineer is a senior individual contributor role responsible for owning and advancing the security, risk management, and compliance posture across internal systems and operational environments. This position defines security governance frameworks, oversees certification maintenance, and manages technical risk remediation across enterprise infrastructure. Operating with significant autonomy, the incumbent serves as an authoritative advisor on identity management, access controls, vulnerability governance, and vendor risk. Through technical authority and cross-functional influence, this role ensures internal operations maintain continuous alignment with industry security standards and organizational resilience objectives.

What You'll Do
  • Owns the enterprise security and compliance program, driving continuous alignment with industry-standard security frameworks, certifications, and audit disciplines.
  • Establishes and maintains the organizational risk register across physical, logical, and systems infrastructure to prioritize risk mitigation and remediation strategies.
  • Defines and enforces identity architecture standards, access management controls, and credentials governance to minimize operational exposure.
  • Drives vulnerability management governance across technical environments by establishing severity SLAs, standardizing inspection metrics, and overseeing remediation adherence.
  • Leads third-party risk management initiatives by conducting security assessments of software vendors, integrations, and external technologies prior to onboarding.
  • Oversees security questionnaire workflows and compliance reporting to deliver streamlined assurance for external stakeholders.
  • Shapes incident response playbooks, conducts regular tabletop simulations, and acts as a primary technical advisor during security events and resilience reviews.
  • Advises technical and operational teams on secure configuration, access modeling, secrets management, and policy execution.
  • Evaluates emerging security platforms, governance technologies, and operational controls to continuously elevate enterprise resilience and audit readiness.
  • Balances security risk considerations against business velocity to recommend practical controls and defensible risk-acceptance thresholds.

This job description is not an exhaustive list of duties and may be modified at the discretion of Simpro Group

What You'll Bring
  • Demonstrated experience designing, implementing, and managing enterprise security programs, risk registers, and compliance audit lifecycles.
  • Technical expertise in identity and access management (IAM), network security controls, cloud infrastructure security, and vulnerability management governance.
  • Proven ability to evaluate third-party vendor risk and govern data access security across complex software environments.
  • Practical experience in incident response coordination, playbook development, and conducting technical tabletop exercises.
  • Exceptional communication and stakeholder management skills, with the ability to articulate technical risk and security trade-offs to non-technical partners.
  • Demonstrated track record of setting technical direction, establishing standards, and influencing cross-functional technical teams without direct formal authority.
  • Strong analytical, problem-solving, and decision-making capabilities focused on practical risk reduction and operational enablement.
  • Relevant degree in Computer Science, Information Technology, Cybersecurity, or an equivalent combination of senior professional experience and industry certifications.
Our Core Values
  • We Are One Team
  • We Are Customer Centric
  • We Are Growth Minded
  • We Are Accountable
  • We Celebrate Success

Simpro, AroFlo, BigChange & ClockShark are equal opportunity employers with a best-of-class onboarding program and supportive team environments. This means that we want everyone to feel welcome with us and to provide equal opportunities for everyone, regardless of age, disability, gender reassignment, marriage and civil partnership, pregnancy and maternity, race, religion or belief, sex or sexual orientation, or any other non-performance factor.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior IT Security Engineer: Enterprise Security & Compliance
Senior IT Security Engineer: Enterprise Security & Compliance

Simpro Group • Miami (FL)

Hybrid
USD 130,000 - 190,000
Senior Security Engineer
Senior Security Engineer

Thomson Reuters • Frisco (TX)

Hybrid
USD 140,000 - 210,000
Hybrid Work
Flexible policies
Career growth
+2
Senior Enterprise Security & Risk Architect
Senior Enterprise Security & Risk Architect

simpro • Miami (FL)

On-site
USD 110,000 - 160,000
Sr. Security Engineer
Sr. Security Engineer

California Water Service • San Jose (CA)

On-site
USD 180,000 - 240,000
Sr Cybersecurity Engineer
Sr Cybersecurity Engineer

Think Consulting • United States

On-site
USD 120,000 - 160,000
Security Engineer
Security Engineer

Insight Global • Naperville (IL)

On-site
USD 100,000 - 130,000
Technical Security Manager
Technical Security Manager

Cambium Learning Group • United States

On-site
USD 120,000 - 180,000
Senior Information Security Engineer
Senior Information Security Engineer

Grayson Search Partners • Nashville (TN)

On-site
USD 120,000 - 150,000
Senior IT Security Engineer
Senior IT Security Engineer

USA Simpro Software Ltd. • Miami (FL)

On-site
USD 110,000 - 180,000
Senior IT Security Engineer
Senior IT Security Engineer

Simpro Group • Miami (FL)

Hybrid
USD 130,000 - 190,000