Senior Security Engineer

Jobtailor

Colorado

On-site

USD 170,000 - 250,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor is seeking a senior security engineer to own the security posture of environments used to build and deliver AI security capabilities. You will embed with engineers, threat model tooling, and harden pipelines across cloud and on-prem deployments.

You will guide secure design, vulnerability tooling, and CI/CD security, working with teams to reduce risk and improve automated compliance. Candidates should have extensive experience and relevant certifications.

Qualifications

  • 8+ years of professional security engineering, secure software development, or infra security.
  • Experience securing agentic tooling, cloud infra, and release management frameworks.
  • Ownership of security outcomes from ideation to production without direct authority.
  • Hardening deployments, networks, and production infra at scale.
  • Experience with on-prem, cloud, and air-gapped environments.

Responsibilities

  • Own security posture of environments used to build, test, and deliver advanced AI security capabilities.
  • Embed with software engineers, reverse engineers, and vulnerability researchers.
  • Harden infrastructure, software supply chains, and development pipelines.
  • Guide secure software development and evolution of software vulnerability tooling.
  • Guide and review build integrity and supply-chain security.
  • Threat model internal tooling and assess API integrations and AI orchestration.
  • Maintain tool security posture with continuous ATO reviews and pipelines.
  • Support ATO and continuous vulnerability management.

Skills

Threat Modeling
Vulnerability Management
Secure Software Development
Infrastructure Security
Scripting (Python)
CI/CD Administration

Education

CISSP
OSCP
GCIH

Tools

Ansible
Terraform
Docker
Kubernetes
GitLab CI
Jenkins
SIEM

Job description

  • Own the security posture of environments used to build, test, and deliver advanced AI-cyber capabilities
  • Embed with software engineers, reverse engineers, and vulnerability researchers
  • Harden infrastructure, software supply chains, and development pipelines
  • Guide secure software development and evolution of software vulnerability tooling
  • Guide and review build integrity and supply-chain security
  • Threat model internal tooling
  • Assess API integrations and AI/LLM orchestration
  • Maintain tool security posture using continuous ATO review workflows and pipelines
  • Support ATO and continuous vulnerability management
  • Advise engineering teams on genuine security risks versus noise
  • Scale threat detection and response capabilities
Requirements
  • 8+ years of professional experience in security engineering, secure software development, or infrastructure security
  • Experience securing and using agentic tooling for writing and maintaining production code, managing cloud infrastructure, and release management frameworks
  • Experience owning security outcomes for a technical product from ideation to production and influencing engineering teams toward secure design without direct authority
  • Experience hardening software deployments, networks, and production infrastructure at scale
  • Experience securing software clusters for online/cloud as well as on-prem or air-gapped installations
  • Experience with threat modeling, vulnerability management, and secure development practices across first- and third-party code
  • Familiarity with NIST RMF, continuous ATO, and control automation
  • 15+ years of hands-on experience securing and hardening Linux systems at the OS and network layer
  • Expertise in at least one scripting language, Python preferred
  • Working knowledge of network protocols, cryptographic fundamentals, and key management
  • Experience with infrastructure-as-code and containerization, including Ansible/Terraform and Docker/Kubernetes
  • Experience administering or securing a CI/CD system, such as GitLab CI or Jenkins
  • Relevant certifications such as CISSP, OSCP, or GCIH are useful but not required
  • Experience working in accredited/classified environments, including cross-domain solutions
  • Offensive security background, including penetration testing, red team, or serious CTF experience
  • Detection engineering or SIEM experience
  • Experience with embedded, real-time, or otherwise constrained platforms
  • Exposure to reverse engineering or vulnerability research
  • Knowledge of non-human/agent identity and secrets management
  • Experience with sandboxing and egress control for code-executing agents
  • Familiarity with NIST AI RMF
  • Experience using LLMs for control narrative drafting, evidence collection, and POA&M triage
Core Competencies

Demonstrates expertise in security engineering, secure software development, and infrastructure security, with a strong focus on threat modeling, vulnerability management, and secure design practices. Proficient in hardening software deployments and managing security outcomes across diverse environments, including cloud and on-premises systems.

Highest-signal resume keywords
  • Security Engineering
  • Threat Modeling
  • Vulnerability Management
  • Secure Software Development
  • Infrastructure Security
Hard Skills
  • Python
  • Threat Modeling
  • Vulnerability Management
  • Infrastructure-As-Code
  • Containerization
  • CI/CD Administration
  • Linux Security
  • Network Protocols
  • Cryptographic Fundamentals
  • Agentic Tooling
Soft Skills
  • Influencing Engineering Teams
  • Advising on Security Risks
Certifications & Qualifications
  • CISSP
  • OSCP
  • GCIH
Industry Keywords
  • NIST RMF
  • Continuous Vulnerability Management
  • Cross-Domain Solutions
  • Embedded Platforms
  • Red Teaming
  • Penetration Testing
  • AI RMF
Tools & Technologies
  • Ansible
  • Terraform
  • Docker
  • Kubernetes
  • GitLab CI
  • Jenkins
  • Continuous ATO Workflows
  • SIEM
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal Security Engineer
Principal Security Engineer

Jobtailor • Town of Texas (WI)

On-site
USD 140,000 - 190,000
Senior Security Engineer, AI Incident Response
Senior Security Engineer, AI Incident Response

Jobtailor • California (MO)

On-site
USD 180,000 - 230,000
Senior Security Engineer – VC Backed Startups
Senior Security Engineer – VC Backed Startups

Jobtailor • New York (NY)

On-site
USD 140,000 - 190,000
Software Engineer – Security
Software Engineer – Security

Jobtailor • California (MO)

On-site
USD 120,000 - 150,000
Lead Associate Principal, Adversarial Red Team
Lead Associate Principal, Adversarial Red Team

Jobtailor • United States

On-site
USD 170,000 - 210,000
Chief Information Security Officer – CISO
Chief Information Security Officer – CISO

Jobtailor • Salt Lake City (UT)

On-site
USD 180,000 - 240,000
Senior Information Systems Security Engineer – ISSE
Senior Information Systems Security Engineer – ISSE

Jobtailor • Maryland

On-site
USD 140,000 - 180,000
SecDevOps Engineer
SecDevOps Engineer

Jobtailor • Colorado

On-site
USD 150,000 - 190,000
Senior Application Security Architect
Senior Application Security Architect

Jobtailor • Cary (NC)

On-site
USD 120,000 - 180,000
Staff Cyber Security Engineer – AIDR, AISPM
Staff Cyber Security Engineer – AIDR, AISPM

Jobtailor • New York (NY)

On-site
USD 180,000 - 240,000