Senior Security Engineer

1 month, 4 weeks ago
Full-time
Senior
Cybersecurity
Abnormal AI

Abnormal AI

Abnormal AI provides advanced email security solutions designed to block malicious email attacks, including credential phishing, business email compromise, and account takeover.

Internet Software & Services
Founded 2018

Description

  • Own and improve technical security workflows that keep Abnormal Gov systems compliant and resilient at scale.
  • Maintain and improve CI/CD pipelines to support secure deployments and infrastructure workflows.
  • Manage infrastructure-as-code (IaC) pull requests and Change Control Board reviews to ensure changes are tested, approved, and secure before release.
  • Perform security impact analyses (SIAs) for system and application changes and provide risk-based recommendations.
  • Run OS and infrastructure patch cycles and manage hardened images and secure image pipelines for FedRAMP environments.
  • Govern access management including account provisioning, RBAC module maintenance, and periodic access reviews.
  • Manage logging and monitoring pipelines and tune SIEM ingestion and alerting for coverage and accuracy.
  • Triage and respond to security incidents from alert investigation through containment, recovery, and after-action reporting.
  • Maintain and refine runbooks, SOPs, and documentation to ensure consistent operations and audit readiness, and collaborate with cross-functional teams to embed secure practices.

Requirements

  • 5+ years in security engineering or infrastructure operations within federal or other regulated cloud environments.
  • Strong familiarity with NIST SP 800-53 controls and continuous monitoring practices.
  • Proven delivery of AWS and SaaS security best practices.
  • Hands-on expertise with CI/CD, infrastructure automation, and IaC security practices.
  • Experience in patch management, hardened baselines, and secure image pipelines.
  • Strong knowledge of identity and access management (IAM) design and enforcement in large-scale environments.
  • Proven ability to manage SIEM pipelines and lead Tier 1 / Tier 2 incident response.
  • Strong technical documentation, collaboration, and incident/project management skills.
  • Experience integrating security automation into CI/CD pipelines and SecOps workflows (preferred).
  • Prior experience supporting federal audits or 3PAO engagements, and familiarity with SaaS security operations and monitoring at scale (preferred).

Benefits

  • Base salary range: $153,000 — $220,000 USD.
  • Eligibility for bonus or incentive compensation.
  • Equity may be offered as part of total compensation.
  • Comprehensive benefits package (medical, retirement, and other standard employee benefits).

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Security Engineer

Eleos 51-250 IT Services

Eleos Health is hiring a Senior Security Engineer to help secure its AI-driven, multi-cloud behavioral health platform by partnering closely with R&D on architecture, data protection, and security controls.

AWS Azure CI/CD Encryption GCP LLM
43 minutes ago

SOC Engineer

Kyivstar 1K-5K Wireless Telecommunication Services

Kyivstar.Tech is hiring a SOC Engineer to strengthen its Security Operations team by improving monitoring, threat detection, and incident response processes for the company’s IT environment.

Active Directory Cybersecurity Elasticsearch Linux SIEM Splunk
1 hour, 50 minutes ago

Senior Cloud Security Engineer

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is hiring a Security Engineer to build and operate defensive controls that protect the infrastructure supporting its advanced defense technology products.

AWS AWS CDK Azure CI/CD GCP Go Linux Network Security Python Rust Secrets Management Terraform
2 hours, 50 minutes ago

Senior DevSecOps Consultant (Azure / Secrets Management)

Trility Consulting 51-250 Internet Software & Services

Trility Consulting is seeking a remote Senior DevSecOps Consultant to lead a short-term Azure security engagement focused on strengthening secrets management, application security, and repeatable DevSecOps standards across client environments.

Azure CI/CD DevSecOps GitHub .NET Python Secrets Management SQL Server
2 hours, 51 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers