Senior Security Engineer (Sec-Ops)

Elsevier

Philadelphia (Philadelphia County)

On-site

USD 140,000 - 170,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Elsevier, within the Information Security & Data Protection department, seeks a Senior Security Engineer to design, build, and operate security tooling at scale. You will own architecture decisions for cloud security platforms, guide engineers through code and design reviews, and partner with Incident Response, Threat Engineering, and GRC.

You will champion secure-by-default practices, drive IaC and CI/CD improvements, and help translate threats into engineering roadmaps while leveraging

Qualifications

  • Hands-on security engineering experience at scale in the cloud.
  • Ownership of security architecture in multi-account AWS environments.
  • Proficiency with Terraform and infrastructure as code standards.
  • Experience designing CI/CD pipelines for reliability and security.
  • Broad experience across SIEM, EDR, DLP, PAM, WAF, SOAR, and vulnerability mgmt.
  • Mentoring engineers and guiding security design decisions.
  • Strong Python scripting and production-service experience on Kubernetes/EKS.
  • Practical use of AI-assisted engineering tools in workflows.

Responsibilities

  • Leading design, architecture, and delivery of security platforms and services.
  • Owning and evolving IaC standards (Terraform) and CI/CD (GitHub Actions).
  • Providing technical leadership and mentorship to engineers.
  • Driving integration, tuning, and lifecycle management of core security tooling.
  • Partnering with IR, Threat Engineering, and GRC to map threats to engineering roadmaps.
  • Championing AI-assisted engineering practices to improve velocity and quality.
  • Leading troubleshooting and root-cause analysis for tooling incidents.
  • Representing SENG in architecture reviews and secure-by-design discussions.
  • Delivering production-ready systems on time and within budget.

Skills

Security engineering
Cloud security
AWS architecture
Infrastructure as Code
Mentoring
Leadership
Python
Kubernetes/EKS
CI/CD

Education

Bachelor's degree or equivalent

Tools

Terraform
GitHub Actions
Kubernetes
GitHub Copilot
Claude Code

Job description

You’ll be joining the Security Engineering team within Elsevier’s Information Security & Data Protection department. Our team designs, builds, and operates the security tooling and platforms used across Elsevier Technology, spanning both vendor platforms and team-built services. The team works closely with Incident Response, Threat Engineering, and Governance, Risk & Compliance (GRC), and partners with business and engineering teams to ensure security tooling is effectively adopted across our cloud estate.

About the Role

As a Senior Security Engineer, you help lead in designing, building, and operating security tooling at scale, while raising the technical bar for the wider team. You will own architecture decisions for one or more platforms, guide junior and mid-level engineers through code and design review, and act as a trusted technical voice with Incident Response, Threat Engineering, and GRC. This role suits someone with deep, hands-on cloud security engineering experience who is ready to take ownership beyond individual delivery, shaping how the team builds and operates security tooling

Responsibilities

  • Leading the design, architecture, and delivery of security platforms and services.
  • Owning and evolve Infrastructure as Code standards (Terraform) and CI/CD practices (GitHub Actions) across the team, ensuring reliable, secure, and repeatable deployments.
  • Providing technical leadership and mentorship to junior and mid-level engineers, including design review, code review, and guidance on secure engineering practices.
  • Driving integration, tuning, and lifecycle management of core security tooling.
  • Partnering with Incident Response, Threat Engineering, and GRC to translate emerging threats, incidents, and compliance requirements into engineering solutions and roadmap priorities.
  • Championing adoption of AI-assisted engineering practices (e.g. Claude Code, GitHub Copilot) to improve team velocity, code quality, and test coverage.
  • Leading troubleshooting and root-cause analysis for security tooling incidents, and drive resilience improvements through capacity planning, disaster recovery planning, and runbook development.
  • Representing SENG in architecture reviews and cross-functional technical forums, advocating for secure-by-design and secure-by-default practices.
  • Delivering production-ready systems on time and within budget, and hold the team accountable to engineering and security standards.

Requirements

We recognize that no one will meet every requirement. If you are excited about this role and have relevant experience, we encourage you to apply.

  • Significant hands-on experience in security engineering or a related field, including designing and operating cloud-native security platforms at production scale.
  • Demonstrated ownership of security architecture in AWS (or OCI/Aliyun), including multi-account environments and cross-region/CN considerations.
  • Advanced proficiency with Terraform and Infrastructure as Code practices, with experience setting standards and patterns for a team.
  • Experience designing and maintaining CI/CD pipelines (e.g. GitHub Actions) for reliability and security.
  • Broad, hands-on experience across security tool categories: SIEM, EDR, DLP, PAM, WAF, SOAR, and vulnerability management,
  • Proven track record mentoring engineers and leading technical design decisions within a team.
  • Advanced scripting and software development skills (e.g. Python), including experience building and operating production services (APIs, cronjobs) on Kubernetes/EKS.
  • Practical experience with AI-assisted engineering tools (e.g. GitHub Copilot, Claude Code, Spec-driven development) and sound judgment on where they add the most value.
  • Experience with Agile and/or DevOps frameworks, including driving improvements to team process and delivery practices.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer (Sec-Ops)
Senior Security Engineer (Sec-Ops)

RXinsider LTD. • Philadelphia

On-site
USD 150,000 - 190,000
Senior Security Engineer - Sec Ops
Senior Security Engineer - Sec Ops

Socket.dev • New York (NY)

On-site
USD 95,000 - 158,000
Senior Security Engineer - Sec Ops
Senior Security Engineer - Sec Ops

RXinsider LTD. • New Jersey

On-site
USD 93,000 - 149,000
Senior Security Engineer - Sec Ops
Senior Security Engineer - Sec Ops

relx • New Jersey

On-site
USD 93,000 - 149,000
Annual incentive bonus
Country-specific benefits
Senior SecOps Engineer - Cloud Security & Tooling Lead
Senior SecOps Engineer - Cloud Security & Tooling Lead

RXinsider LTD. • New Jersey

On-site
USD 93,000 - 149,000
Senior SecOps Engineer: Cloud Security & Tooling
Senior SecOps Engineer: Cloud Security & Tooling

LexisNexis Risk Solutions • New Jersey

On-site
USD 93,000 - 149,000
Senior Security Engineer, Cloud Security Platforms Lead
Senior Security Engineer, Cloud Security Platforms Lead

Elsevier • New Jersey

On-site
USD 93,000 - 149,000
Annual incentive bonus
Senior Cloud Security Engineer & Platform Architect
Senior Cloud Security Engineer & Platform Architect

RXinsider LTD. • Philadelphia

On-site
USD 150,000 - 190,000
Senior Security Engineer - Sec Ops
Senior Security Engineer - Sec Ops

LexisNexis Risk Solutions • Pennsylvania

Hybrid
USD 79,000 - 131,000
Annual incentive bonus
Country-specific benefits
Cloud Security Engineer – Tooling & AI-Driven SecOps
Cloud Security Engineer – Tooling & AI-Driven SecOps

relx • New Jersey

On-site
USD 93,000 - 149,000
Annual incentive bonus
Country-specific benefits