Senior Security Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

KSM (Katz, Sapper & Miller) · 10 hours ago

Senior Security Engineer

KSM is one of the top 50 largest independent advisory, tax, and audit firms in the United States, known for its supportive culture and employee ownership. The Senior Security Engineer will be responsible for managing security findings, designing and implementing controls, and leading incident response efforts to ensure the security of cloud and application environments.

AccountingProfessional Services
check
Growth Opportunities

Responsibilities

Own remediation of cloud, identity, and application security findings in partnership with engineering and IT teams
Design, implement, and maintain security controls across AWS, identity platforms, and CI/CD pipelines
Triage and validate security alerts and indicators of compromise
Lead technical investigation, containment, and recovery efforts for security incidents
Coordinate incident response with IT, engineering, and external partners as appropriate
Perform root cause analysis and drive preventative improvements to controls and processes
Improve detection quality by tuning alerts and reducing false positives
Support compliance efforts such as SOC 2 by providing clear, auditable technical evidence
Automate repeatable security tasks to reduce manual effort and operational friction
Document incidents, risks, remediation actions, and outcomes for both technical and leadership audiences
Act as a technical escalation point and mentor for security-related engineering questions

Qualification

Security EngineeringAWS SecurityIdentityAccess ManagementIncident ResponseCI/CD Security ControlsRoot Cause AnalysisCompliance (SOC 2)Automation of Security TasksCommunication Skills

Required

6+ years of hands-on experience in security engineering, cloud security, or infrastructure security roles
Strong practical experience securing AWS environments, including networking, compute, and managed services
Deep understanding of identity and access management, least privilege principles, and credential hygiene
Demonstrated experience triaging security alerts and leading technical investigation of security incidents
Proven ability to remediate security findings and validate fixes across cloud and application environments
Experience implementing security controls within CI/CD pipelines and infrastructure-as-code workflows
Ability to operate independently, prioritize effectively, and own issues from detection through resolution
Strong written and verbal communication skills with the ability to explain risk and remediation clearly to both technical and non-technical audiences

Preferred

Experience improving detection quality by tuning alerts and reducing false positives
Experience leveraging native cloud provider security services to identify, investigate, and remediate risk across AWS and Azure environments, including but not limited to the following
IAM Access Analyzer
CloudTrail
GuardDuty
Security Hub
AWS Config
Azure AD sign-in logs and Activity Logs
Defender for Cloud
Service-level security controls
Prior experience collaborating closely with engineering and IT teams in production environments
Experience supporting compliance efforts such as SOC 2, HITRUST, or similar frameworks

Company

KSM (Katz, Sapper & Miller)

twittertwittertwitter
company-logo
KSM (Katz, Sapper & Miller) is a nationally recognized advisory, tax, and audit firm.

Funding

Current Stage
Late Stage

Leadership Team

T
Tim Cook
CEO and President
linkedin

Recent News

Company data provided by crunchbase