Senior Security Engineer (Sec-Ops)

Elsevier

Philadelphia (Philadelphia County)

On-site

USD 140,000 - 180,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Elsevier’s Information Security & Data Protection department seeks a Senior Security Engineer to lead design, build, and operate security tooling at scale. You’ll own architecture decisions for platforms, guide engineers through code and design reviews, and partner with Incident Response, Threat Engineering, and GRC to translate threats into engineering roadmaps.

The role requires deep hands-on cloud security experience, with focus on AWS, Terraform IaC, CI/CD (GitHub Actions), and production

Qualifications

  • Hands-on experience in security engineering for cloud-native platforms.
  • Experience with AWS multi-account setups and cross-region design.
  • Advanced proficiency with Terraform and Infrastructure as Code practices.
  • Experience designing CI/CD pipelines for reliability and security.
  • Experience with SIEM, EDR, DLP, PAM, WAF, SOAR, and vulnerability management.

Responsibilities

  • Lead design, architecture, and delivery of security platforms and services.
  • Own IaC standards and CI/CD practices across the team.
  • Mentor junior and mid-level engineers.
  • Drive integration, tuning, lifecycle management of core security tooling.
  • Collaborate with Incident Response, Threat Engineering, and GRC to translate threats into engineering roadmaps.
  • Promote AI-assisted engineering practices to improve velocity and quality.
  • Lead troubleshooting and root-cause analysis for tooling incidents.
  • Represent SENG in architecture reviews and secure-by-default discussions.
  • Deliver production-ready systems on time and within budget.

Skills

Security engineering
AWS multi-account
Terraform
CI/CD pipelines
Python scripting
Kubernetes / EKS
AI-assisted engineering tools
Threat modeling / security design

Tools

Terraform
GitHub Actions
Kubernetes / EKS
GitHub Copilot
Claude Code

Job description

You’ll be joining the Security Engineering team within Elsevier’s Information Security & Data Protection department. Our team designs, builds, and operates the security tooling and platforms used across Elsevier Technology, spanning both vendor platforms and team-built services. The team works closely with Incident Response, Threat Engineering, and Governance, Risk & Compliance (GRC), and partners with business and engineering teams to ensure security tooling is effectively adopted across our cloud estate.

About the Role

As a Senior Security Engineer, you help lead in designing, building, and operating security tooling at scale, while raising the technical bar for the wider team. You will own architecture decisions for one or more platforms, guide junior and mid-level engineers through code and design review, and act as a trusted technical voice with Incident Response, Threat Engineering, and GRC. This role suits someone with deep, hands‑on cloud security engineering experience who is ready to take ownership beyond individual delivery, shaping how the team builds and operates security tooling

Responsibilities
  • Leading the design, architecture, and delivery of security platforms and services.
  • Owning and evolve Infrastructure as Code standards (Terraform) and CI/CD practices (GitHub Actions) across the team, ensuring reliable, secure, and repeatable deployments.
  • Providing technical leadership and mentorship to junior and mid-level engineers, including design review, code review, and guidance on secure engineering practices.
  • Driving integration, tuning, and lifecycle management of core security tooling.
  • Partnering with Incident Response, Threat Engineering, and GRC to translate emerging threats, incidents, and compliance requirements into engineering solutions and roadmap priorities.
  • Championing adoption of AI‑assisted engineering practices (e.g. Claude Code, GitHub Copilot) to improve team velocity, code quality, and test coverage.
  • Leading troubleshooting and root‑cause analysis for security tooling incidents, and drive resilience improvements through capacity planning, disaster recovery planning, and runbook development.
  • Representing SENG in architecture reviews and cross‑functional technical forums, advocating for secure‑by‑design and secure‑by‑default practices.
  • Delivering production‑ready systems on time and within budget, and hold the team accountable to engineering and security standards.
Requirements

We recognize that no one will meet every requirement. If you are excited about this role and have relevant experience, we encourage you to apply.

  • Significant hands‑on experience in security engineering or a related field, including designing and operating cloud‑native security platforms at production scale.
  • Demonstrated ownership of security architecture in AWS (or OCI/Aliyun), including multi‑account environments and cross‑region/CN considerations.
  • Advanced proficiency with Terraform and Infrastructure as Code practices, with experience setting standards and patterns for a team.
  • Experience designing and maintaining CI/CD pipelines (e.g. GitHub Actions) for reliability and security.
  • Broad, hands‑on experience across security tool categories: SIEM, EDR, DLP, PAM, WAF, SOAR, and vulnerability management,
  • Proven track record mentoring engineers and leading technical design decisions within a team.
  • Advanced scripting and software development skills (e.g. Python), including experience building and operating production services (APIs, cronjobs) on Kubernetes/EKS.
  • Practical experience with AI‑assisted engineering tools (e.g. GitHub Copilot, Claude Code, Spec‑driven development) and sound judgment on where they add the most value.
  • Experience with Agile and/or DevOps frameworks, including driving improvements to team process and delivery practices.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Security Engineer (Sec-Ops)
Senior Security Engineer (Sec-Ops)

RXinsider LTD. • Philadelphia

On-site
USD 150,000 - 190,000
Senior Security Engineer - Sec Ops
Senior Security Engineer - Sec Ops

Elsevier • United States

Remote
USD 78,000 - 158,000
Annual incentive bonus
Senior Security Engineer - Sec Ops
Senior Security Engineer - Sec Ops

RXinsider LTD. • New Jersey

On-site
USD 93,000 - 149,000
Senior SecOps Engineer - Cloud Security & Tooling Lead
Senior SecOps Engineer - Cloud Security & Tooling Lead

RXinsider LTD. • New Jersey

On-site
USD 93,000 - 149,000
Senior Security Engineer - Cloud Security & Tooling Lead
Senior Security Engineer - Cloud Security & Tooling Lead

Elsevier • Philadelphia

On-site
USD 140,000 - 180,000
Senior SecOps Engineer: Cloud Security & Tooling
Senior SecOps Engineer: Cloud Security & Tooling

LexisNexis Risk Solutions • New Jersey

On-site
USD 93,000 - 149,000
Senior Security Engineer - Sec Ops
Senior Security Engineer - Sec Ops

LexisNexis Risk Solutions • Pennsylvania

On-site
USD 79,000 - 131,000
Annual incentive bonus
Country-specific benefits
Senior Security Engineer, Cloud Security Platforms Lead
Senior Security Engineer, Cloud Security Platforms Lead

Elsevier • New Jersey

On-site
USD 93,000 - 149,000
Annual incentive bonus
Senior Cloud Security Engineer & Platform Architect
Senior Cloud Security Engineer & Platform Architect

RXinsider LTD. • Philadelphia

On-site
USD 150,000 - 190,000
Security Engineer
Security Engineer

Enterprise Engineering Inc. (EEI) • New York (NY)

On-site
USD 120,000 - 160,000