Jobs · Minnesota

Senior Security Engineer

Thomson Reuters · Eagan, MN · 2 days ago
Hybrid$95k/yrFull-time

About the Role

In this opportunity as Senior Security Engineer, you will:

  • Secure and harden the estate hands-on across the full stack: application and open-source dependency fixes, infrastructure patching, cloud configuration and guardrails, WAF, network isolation, and secrets and machine-identity management.
  • Improve and optimize how security gets done, reworking patching cycles and golden-image refreshes, cutting cycle time, and removing friction so the team moves faster.
  • Implement and tune security controls across operating systems, containers, CI/CD pipelines, cloud configuration, and network boundaries to defend against sophisticated adversaries and insider threats.
  • Scale adoption of AI-augmented SAST and SCA tooling, expanding coverage, reviewing generated pull requests, and validating fixes, prioritizing by risk in line with CISA guidance and measuring mean time to remediate, throughput, and burndown against SLA.
  • Package reusable patterns, tooling, and runbooks so routine work can be executed by more junior engineers, and mentor them with technical review of their fixes.
  • Partner with application and platform teams to land and validate changes safely, and coordinate with the wider team across regions to keep progress continuous across time zones.
  • Feed accurate security metrics and status into program reporting.

Requirements

You're a fit for the role of Senior Security Engineer if your background includes:

  • 5+ years of security, software, or DevSecOps engineering experience, comfortable securing and hardening across application, infrastructure, and cloud, plus a bachelor's degree in Computer Science, Information Security, or a related field (or equivalent practical experience).
  • Multi-cloud experience across two or more of AWS, Azure, GCP, and OCI (all four an advantage), alongside on-premises infrastructure.
  • A solid understanding of security principles and common vulnerabilities, with hands-on work across patching, hardening, cloud configuration, network isolation, and identity and access controls.
  • Hands-on experience with SAST/SCA tooling and remediating application and open-source dependency vulnerabilities, plus infrastructure patching.
  • A track record of improving and optimizing engineering processes, reducing cycle time in patching, releases, or security work, rather than only executing it.
  • Familiarity with vulnerability prioritization (CVSS/EPSS, CISA KEV) and SLA-driven burndown, plus comfort with AI-assisted tooling and reviewing its output critically.
  • Clear communication, some experience mentoring engineers, and strong ownership of security outcomes.

Benefits

  • Hybrid Work Model: Flexible hybrid working environment for office-based roles while delivering a seamless experience that is digitally and physically connected.
  • Flexibility & Work-Life Balance: Flex My Way policies including work from anywhere for up to 8 weeks per year, plus supportive workplace policies for managing personal and professional responsibilities.
  • Career Development and Growth: Culture of continuous learning and skill development with Grow My Way programming and a skills-first approach.
  • Industry Competitive Benefits: Comprehensive benefit plans including flexible vacation, two company-wide Mental Health Days off, access to the Headspace app, retirement savings, tuition reimbursement, employee incentive programs, and resources for mental, physical, and financial wellbeing.
  • Additional Benefits:
    • Health, dental, vision, disability, and life insurance programs.
    • Competitive 401k plan with company match.
    • Paid holidays, parental leave, sabbatical leave, and sick/safe paid time off meeting or exceeding state/municipal requirements.
    • Optional hospital, accident, sickness, life, and AD&D insurance.
    • Flexible Spending and Health Savings Accounts.
    • Fitness reimbursement and Employee Assistance Program.
    • Group Legal Identity Theft Protection benefit.
    • Access to 529 Plan, commuter benefits, Adoption & Surrogacy Assistance, and Tuition Reimbursement.
    • Employee Stock Purchase Plan.
  • Culture: Globally recognized for inclusion and belonging, flexibility, work-life balance, and values-driven environment.
  • Social Impact: Two paid volunteer days off annually, opportunities for pro-bono consulting projects, and Environmental, Social, and Governance (ESG) initiatives through the Social Impact Institute.
  • Making a Real-World Impact: Contribute to products and services that help uphold the rule of law, turn the wheels of commerce, catch bad actors, report the facts, and provide trusted, unbiased information globally.

Pay

The base compensation range for this role is $94,900 USD - $176,300 USD. Base pay is positioned within the range based on several factors including an individual’s knowledge, skills, and experience with consideration given to internal equity. This role may also be eligible for an Annual Bonus based on a combination of enterprise and individual performance.

Similar jobs

Senior Security Engineer

CGIPennsylvania, United States· 2 wk ago
Information Technology$57k–$154k/yrapply on cgi.njoyn.com