Senior Security Engineer
ECS · Portland, OR · 4 wk ago
Information TechnologyFull-time
Key Responsibilities
- Security Engineering & Architecture
- Design, implement, and maintain security controls across network, endpoint, cloud, and application environments
- Lead secure architecture reviews and contribute to system and platform designs
- Evaluate and recommend security tools, technologies, and architectural improvements
- Ensure security is embedded into system lifecycles and engineering workflows
- Detection, Monitoring & Incident Response
- Design and tune detection logic, alerts, and monitoring for threats and anomalous activity
- Lead and support incident response activities, including triage, investigation, containment, and remediation
- Perform root cause analysis and drive long-term corrective actions
- Support threat hunting and proactive security assessments
- Vulnerability & Risk Management
- Oversee vulnerability management efforts, including prioritization and remediation guidance
- Conduct security assessments, configuration reviews, and system hardening
- Support compliance, audit, and risk management initiatives
- Automation & Engineering Excellence
- Develop scripts, tooling, or automation to improve security operations and response
- Partner with DevOps, SRE, and engineering teams to integrate security tooling into CI/CD pipelines
- Improve reliability, scalability, and efficiency of security platforms
- Leadership & Collaboration
- Serve as a technical escalation point and subject matter expert
- Mentor and guide junior security engineers
- Collaborate cross-functionally with IT, DevOps, Product, and SOC teams
- Communicate risks, findings, and recommendations to technical and leadership audiences
Required Skills
- U.S. Citizenship with ability to obtain and maintain a DOE “L” clearance after start
- 5+ years of experience in security engineering or related technical security roles
- Strong expertise in: Operating systems (Linux, Windows), Networking concepts and protocols, Common attack techniques and defensive controls
- Hands-on experience with enterprise security tools such as: SIEM, EDR/XDR, IDS/IPS, vulnerability scanners, firewalls
- Experience leading or significantly contributing to incident response efforts
- Strong scripting or automation skills (Python, Bash, PowerShell, or similar)
Desired Skills
- Experience with cloud security (AWS, Azure, GCP) and hybrid environments
- Familiarity with infrastructure-as-code and CI/CD tooling
- Experience in regulated industries (finance, healthcare, government)
- Security certifications (CISSP, GIAC, Security+, CEH, or equivalent)
- Experience designing security for large-scale or high-availability environments