Summary
What you’ll impact
The Senior Security Engineer at the organization will implement, monitor, and maintain security controls across corporate IT, cloud infrastructure, and SaaS applications. This role works closely with IT, operations, and business owners to design access controls, oversee security baselines, respond to incidents, and support compliance documentation.
Responsibilities
What you'll do
- Configure and maintain security settings for critical SaaS applications, including identity, collaboration, productivity, and business operations platforms.
- Manage and enforce mobile device management policies for company-owned and BYOD devices, including compliance policies that gate access to controlled data.
- Oversee endpoint security for Windows, macOS, and mobile devices, including patching, encryption, and threat protection.
- Implement and maintain secure authentication and access control policies, including MFA and conditional access aligned to NIST technical controls.
- Conduct regular security reviews of SaaS configurations and device compliance reports.
- Monitor for security incidents across endpoints, mobile devices, and SaaS applications; investigate, remediate, and document per incident response procedures.
- Maintain documentation of security controls, policies, and incident response procedures.
- Collaborate with IT and organizational stakeholders to design security protocols that empower business operations and productivity.
- Support System Security Plan (SSP) development by documenting how controls are implemented in systems you own.
Requirements
What you’ll bring
- 5+ years of experience in IT security, endpoint management, or related fields.
- Strong knowledge of SaaS application administration and security configuration best practices.
- Experience with identity and access management, MFA, and conditional access policies (Microsoft Entra ID experience strongly preferred).
- Understanding of endpoint protection technologies, patch management, and encryption.
- Experience investigating and remediating security incidents, and documenting the investigation.
- Strong communication skills and ability to work across technical and non-technical teams.
- Hands-on experience with MDM solutions (e.g. Microsoft Intune, JAMF, Kandji) for device enrollment, configuration, and compliance management