Jobs · Information Technology · Texas

Senior Security Engineer

Thomson Reuters · Frisco, TX · 2 days ago
HybridInformation Technology$95k/yrFull-time

About the Role

As a Senior Security Engineer on our Service Management & Transformation team, you will secure and harden our application, cloud, and infrastructure estate, which spans on-premises data centers and major clouds, and improve and optimize how that work gets done.

  • Secure and harden the estate hands-on across the full stack: application and open-source dependency fixes, infrastructure patching, cloud configuration and guardrails, WAF, network isolation, and secrets and machine-identity management.
  • Improve and optimize how security gets done, reworking patching cycles and golden-image refreshes, cutting cycle time, and removing friction so the team moves faster.
  • Implement and tune security controls across operating systems, containers, CI/CD pipelines, cloud configuration, and network boundaries to defend against sophisticated adversaries and insider threats.
  • Scale adoption of AI-augmented SAST and SCA tooling, expanding coverage, reviewing generated pull requests, and validating fixes, prioritizing by risk in line with CISA guidance and measuring mean time to remediate, throughput, and burndown against SLA.
  • Package reusable patterns, tooling, and runbooks so routine work can be executed by more junior engineers, and mentor them with technical review of their fixes.
  • Partner with application and platform teams to land and validate changes safely, and coordinate with the wider team across regions to keep progress continuous across time zones.
  • Feed accurate security metrics and status into program reporting.

Requirements

  • 5+ years of security, software, or DevSecOps engineering experience, comfortable securing and hardening across application, infrastructure, and cloud.
  • Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent practical experience).
  • Multi-cloud experience across two or more of AWS, Azure, GCP, and OCI (all four an advantage), alongside on-premises infrastructure.
  • A solid understanding of security principles and common vulnerabilities, with hands-on work across patching, hardening, cloud configuration, network isolation, and identity and access controls.
  • Hands-on experience with SAST/SCA tooling and remediating application and open-source dependency vulnerabilities, plus infrastructure patching.
  • A track record of improving and optimizing engineering processes, reducing cycle time in patching, releases, or security work.
  • Familiarity with vulnerability prioritization (CVSS/EPSS, CISA KEV) and SLA-driven burndown, plus comfort with AI-assisted tooling and reviewing its output critically.
  • Clear communication, some experience mentoring engineers, and strong ownership of security outcomes.

Benefits

  • Hybrid Work Model: Flexible hybrid working environment for office-based roles.
  • Flexibility & Work-Life Balance: Flexible work arrangements, including work from anywhere for up to 8 weeks per year, and supportive policies for managing personal and professional responsibilities.
  • Career Development and Growth: Culture of continuous learning and skill development with Grow My Way programming and skills-first approach.
  • Industry Competitive Benefits: Comprehensive benefit plans including flexible vacation, two company-wide Mental Health Days off, access to the Headspace app, retirement savings with company match, tuition reimbursement, and employee incentive programs.
  • Additional Benefits: Optional hospital, accident, sickness, life, and AD&D insurance; Flexible Spending and Health Savings Accounts; fitness reimbursement; Employee Assistance Program; Group Legal Identity Theft Protection; 529 Plan; commuter benefits; Adoption & Surrogacy Assistance; Tuition Reimbursement; Employee Stock Purchase Plan.
  • Culture: Globally recognized for inclusion and belonging, flexibility, work-life balance, and values-driven environment.
  • Social Impact: Two paid volunteer days off annually and opportunities for pro-bono consulting projects and ESG initiatives.

Pay

The base compensation range for this role is $94,900 USD - $176,300 USD. Base pay is positioned within the range based on several factors including an individual’s knowledge, skills, and experience with consideration given to internal equity. This role may also be eligible for an Annual Bonus based on a combination of enterprise and individual performance.

Similar jobs

Senior Security Engineer

CGIPennsylvania, United States· 2 wk ago
Information Technology$57k–$154k/yrapply on cgi.njoyn.com