Senior Cybersecurity Engineer
Work with a Top 20 CPA and advisory firm that delivers proven expertise, deep understanding, and strategic foresight for fast-growing industries. Aprio has 40 U.S. office locations, international presence, and over 3,200 team members speaking 60+ languages globally. Join Aprio's Information Technology team to help clients maximize their opportunities in a progressive, fast-growing firm.
This position supports U.S. Government engagements involving Controlled Unclassified Information (CUI) and requires access to export-controlled technical data. In accordance with CUI and U.S. export control regulations, this role is limited to ‘U.S. persons’ (U.S. citizens, lawful permanent residents, and certain protected individuals) as defined in 22 C.F.R. 120.62.
About the role
Aprio’s Cybersecurity Engineering team builds and operates the controls that make the firm defensible: identity, network segmentation, cloud security baselines, endpoint, monitoring, encryption, and vulnerability management. The Senior Cybersecurity Engineer is the senior individual contributor on that team — the engineer who takes a control domain from “documented” to “running cleanly in production,” sets the standard for execution, and mentors Mid and Associate engineers. This is a hands-on engineering role that also leads cross-team initiatives.
Responsibilities
- Domain ownership: Own the operational health of one or two engineering domains (identity, network/segmentation, cloud security baselines, monitoring/logging, encryption/key management, endpoint, vulnerability management, configuration management). Keep them measurably healthy and improving.
- Cross-team initiatives: Lead initiatives that span Security, IT, Identity, Cloud Operations, and delivery teams — controlled rollouts, control set hardening, tool migrations. Land them without breaking production.
- Architecture and standards: Design new control patterns and reference architectures. Write the decision records, runbooks, and standards the team executes against and the auditors review.
- Controlled rollouts: Lead the end-to-end deployment of new control sets (e.g., bringing a new EDR online, hardening a new cloud account, standing up new logging pipelines) — pilot, measure, expand, document.
- Mentorship: Pair with Mid and Associate engineers, run design reviews, give substantive code/config review, and grow the next tier. Quality of output from less senior engineers is part of your scope.
- Operational partnership: Be the senior partner Cloud Ops, Identity, IT Service Management, GRC, and the SOC call when they need security engineering input. Solve problems with them, not at them.
- Detection/response engineering support: Partner with Detection Engineering and the SOC on logging coverage, telemetry quality, and the engineering pieces of response (privileged access tooling, isolation capabilities, evidence capture).
- Evidence and audit readiness: Produce control evidence and architecture documentation that holds up under audit and peer review. Keep your domains’ evidence map current.
- Automation: Push toward repeatable, codified controls (IaC, policy-as-code, automated evidence collection) instead of one-off manual work.
What Success Looks Like
- First 30–60 days: Operate your priority domains safely on Aprio’s tooling, assess current control posture, and publish a prioritized remediation backlog for at least one domain.
- By 90 days: Lead at least one cross-team initiative, publish or substantially revise at least one architecture pattern or decision record, and actively mentor Mid and Associate engineers.
- By 6–12 months: Achieve measurable improvement in control health (less drift, cleaner evidence, faster remediation, fewer escalations). Successfully land at least one controlled rollout. Elevate the performance of less senior engineers through mentorship.
Requirements
- 5+ years in security engineering, with hands-on responsibility for implementing controls across identity, network, cloud, endpoint, and/or monitoring.
- Strong fundamentals in IAM, network segmentation, encryption/key management, and centralized logging/monitoring.
- Experience with at least one major cloud platform (Azure, AWS, GCP) in a security-engineering capacity.
- Ability to produce clear architecture documentation, runbooks, and decision records that hold up under audit and peer review.
- Excellent written and verbal communication; able to explain tradeoffs across Security, IT, and delivery audiences in plain language.
- Comfortable mentoring less senior engineers and owning quality-of-output for one or more domains.
Preferred Qualifications
- Regulated-environment experience (CMMC, NIST 800-171, NIST 800-53, FedRAMP-aligned, SOC 2, ISO 27001, HIPAA, PCI).
- Infrastructure-as-code experience (Terraform, Bicep, Pulumi) and policy-as-code (Sentinel, OPA).
- Security tooling integration experience (SIEM, EDR, vulnerability scanning, IAM, secrets management).
- Industry certifications (one or more): CISSP, CCSP, GIAC (e.g., GCED, GPEN, GCWN), AZ-500, AWS Security Specialty.
- Experience supporting a SOC’s detection/response engineering needs.
- Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or related field — or equivalent applicable years of experience.
Pay
$100,000 - $125,000 a year
The salary range for this opportunity is stated above. Actual salary may vary based on factors such as experience and qualifications. The application window is anticipated to close on July 27th and may be extended as needed.
Benefits
- Medical, Dental, and Vision Insurance on the first day of employment
- Flexible Spending Account and Dependent Care Account
- 401k with Profit Sharing
- 9+ holidays and discretionary time off structure
- Parental Leave – coverage for both primary and secondary caregivers
- Tuition Assistance Program and CPA support program with cash incentive upon completion
- Discretionary incentive compensation based on firm, group, and individual performance
- Incentive compensation related to origination of new client sales
- Top-rated wellness program
- Flexible working environment including remote and hybrid options
Why Work For Aprio
- Industry leadership: Be part of a high-growth firm passionate about what’s next.
- Culture: Thirty-one fundamental behaviors guide daily interactions, fostering lasting relationships among team members and clients — known as the Aprio Way.
- Team: Work with a high-energy, passionate, caring, and ambitious team in a collaborative culture.
- Entrepreneurship: Freedom to innovate and bring ideas to help grow the firm into the CPA firm of choice nationally.
- Growth opportunities: Professional development in an environment that fosters continuous learning and advancement.
- Competitive compensation: Rewarded with industry-leading benefits and a flexible work environment for work/life balance.