Senior Security Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

KSM (Katz, Sapper & Miller) · 2 hours ago

Senior Security Engineer

KSM is one of the top 50 largest independent advisory, tax, and audit firms in the United States. They are seeking a Senior Security Engineer to own remediation of security findings, design and maintain security controls, and lead technical investigations for security incidents.

AccountingProfessional Services
check
Growth Opportunities

Responsibilities

Own remediation of cloud, identity, and application security findings in partnership with engineering and IT teams
Design, implement, and maintain security controls across AWS, identity platforms, and CI/CD pipelines
Triage and validate security alerts and indicators of compromise
Lead technical investigation, containment, and recovery efforts for security incidents
Coordinate incident response with IT, engineering, and external partners as appropriate
Perform root cause analysis and drive preventative improvements to controls and processes
Improve detection quality by tuning alerts and reducing false positives
Support compliance efforts such as SOC 2 by providing clear, auditable technical evidence
Automate repeatable security tasks to reduce manual effort and operational friction
Document incidents, risks, remediation actions, and outcomes for both technical and leadership audiences
Act as a technical escalation point and mentor for security-related engineering questions

Qualification

Security EngineeringAWS SecurityIdentityAccess ManagementIncident ResponseCI/CD Security ControlsRoot Cause AnalysisCloud Security ServicesCompliance EffortsCommunication Skills

Required

6+ years of hands-on experience in security engineering, cloud security, or infrastructure security roles
Strong practical experience securing AWS environments, including networking, compute, and managed services
Deep understanding of identity and access management, least privilege principles, and credential hygiene
Demonstrated experience triaging security alerts and leading technical investigation of security incidents
Proven ability to remediate security findings and validate fixes across cloud and application environments
Experience implementing security controls within CI/CD pipelines and infrastructure-as-code workflows
Ability to operate independently, prioritize effectively, and own issues from detection through resolution
Strong written and verbal communication skills with the ability to explain risk and remediation clearly to both technical and non-technical audiences

Preferred

Experience improving detection quality by tuning alerts and reducing false positives
Experience leveraging native cloud provider security services to identify, investigate, and remediate risk across AWS and Azure environments, including but not limited to the following: IAM Access Analyzer, CloudTrail, GuardDuty, Security Hub, AWS Config, Azure AD sign-in logs and Activity Logs, Defender for Cloud, Service-level security controls
Prior experience collaborating closely with engineering and IT teams in production environments
Experience supporting compliance efforts such as SOC 2, HITRUST, or similar frameworks

Company

KSM (Katz, Sapper & Miller)

twittertwittertwitter
company-logo
KSM (Katz, Sapper & Miller) is a nationally recognized advisory, tax, and audit firm.

Funding

Current Stage
Late Stage

Leadership Team

T
Tim Cook
CEO and President
linkedin

Recent News

Company data provided by crunchbase