KSM (Katz, Sapper & Miller) · 2 hours ago
Senior Security Engineer
KSM is one of the top 50 largest independent advisory, tax, and audit firms in the United States. They are seeking a Senior Security Engineer to own remediation of security findings, design and maintain security controls, and lead technical investigations for security incidents.
AccountingProfessional Services
Responsibilities
Own remediation of cloud, identity, and application security findings in partnership with engineering and IT teams
Design, implement, and maintain security controls across AWS, identity platforms, and CI/CD pipelines
Triage and validate security alerts and indicators of compromise
Lead technical investigation, containment, and recovery efforts for security incidents
Coordinate incident response with IT, engineering, and external partners as appropriate
Perform root cause analysis and drive preventative improvements to controls and processes
Improve detection quality by tuning alerts and reducing false positives
Support compliance efforts such as SOC 2 by providing clear, auditable technical evidence
Automate repeatable security tasks to reduce manual effort and operational friction
Document incidents, risks, remediation actions, and outcomes for both technical and leadership audiences
Act as a technical escalation point and mentor for security-related engineering questions
Qualification
Required
6+ years of hands-on experience in security engineering, cloud security, or infrastructure security roles
Strong practical experience securing AWS environments, including networking, compute, and managed services
Deep understanding of identity and access management, least privilege principles, and credential hygiene
Demonstrated experience triaging security alerts and leading technical investigation of security incidents
Proven ability to remediate security findings and validate fixes across cloud and application environments
Experience implementing security controls within CI/CD pipelines and infrastructure-as-code workflows
Ability to operate independently, prioritize effectively, and own issues from detection through resolution
Strong written and verbal communication skills with the ability to explain risk and remediation clearly to both technical and non-technical audiences
Preferred
Experience improving detection quality by tuning alerts and reducing false positives
Experience leveraging native cloud provider security services to identify, investigate, and remediate risk across AWS and Azure environments, including but not limited to the following: IAM Access Analyzer, CloudTrail, GuardDuty, Security Hub, AWS Config, Azure AD sign-in logs and Activity Logs, Defender for Cloud, Service-level security controls
Prior experience collaborating closely with engineering and IT teams in production environments
Experience supporting compliance efforts such as SOC 2, HITRUST, or similar frameworks
Company
KSM (Katz, Sapper & Miller)
KSM (Katz, Sapper & Miller) is a nationally recognized advisory, tax, and audit firm.
Funding
Current Stage
Late StageRecent News
Seattle TechFlash
2025-05-17
Inside INdiana Business
2025-03-01
Cincinnati Business Courier
2025-02-25
Company data provided by crunchbase