Cybersecurity Engineer

Posted 9 Days Ago
Be an Early Applicant
Seattle, WA, USA
Hybrid
120K-160K Annually
Senior level
Healthtech • Insurance • Pet
Trupanion provides medical insurance for cats and dogs across North America and has helped innovate their industry.
The Role
The Cybersecurity Engineer will manage Microsoft Defender and CyberArk, integrate security signals, enhance security controls, and respond to security incidents in a Microsoft 365/Azure environment.
Summary Generated by Built In
Company Description

Trupanion is a leading provider of medical insurance for cats and dogs in North America. Our mission is to help loving, responsible pet owners budget and care for their pets. At Trupanion, we offer a collaborative, casual, and pet-friendly environment where everyone is encouraged to be themselves.

Job Description

We are seeking a Cybersecurity Engineer to help design, operate, and continuously improve Trupanion’s security controls and tooling across our Microsoft 365/Azure environment and supporting on-prem systems. This role balances hands-on ownership of core security platforms—particularly the Microsoft Defender suite and Privileged Access Management (CyberArk)—with strong security engineering practices such as automation, integrations, hardening, and detection and response improvements. The ideal candidate is proactive, detail-oriented, and comfortable partnering with IT and engineering teams to reduce risk, respond to incidents, and deliver practical, measurable security outcomes. 

This position is open to candidates in the Seattle area. You will have a hybrid remote/in-office schedule where you will work from our casual, pet-friendly office at least 3 days a week. 

Key Responsibilities: 

  • Engineer, operate, and continuously improve the Microsoft Defender security stack (e.g., Defender for Endpoint, Defender for Identity, Defender for Office 365, Defender for Cloud Apps, Defender Vulnerability Management) to protect endpoints, identities, email, and cloud applications. 
  • Own and administer Privileged Access Management tool, including onboarding/offboarding privileged accounts, policy and workflow configuration, vault health, upgrades, and integrations. 
  • Integrate Defender and PAM signals with SIEM/SOAR and ITSM workflows to improve detection fidelity, reduce false positives, and accelerate response and remediation. 
  • Design and implement security engineering solutions across cloud and on-prem environments (primarily Azure/M365), including baseline hardening, configuration standards, and security control automation. 
  • Develop and maintain security tooling lifecycle management (health, licensing, capacity, performance, roadmap, and upgrades), ensuring resilient and supportable operations. 
  • Create and maintain detection engineering content: analytic rules/use cases, alert tuning, threat hunting queries, and automated response playbooks. 
  • Perform security assessments and vulnerability management, including scanning, prioritization, remediation tracking, and validation of fixes in partnership with IT and engineering teams. 
  • Partner with infrastructure, identity/IAM, and application teams to embed security controls into designs and delivery (secure-by-default patterns, CI/CD security checks, and least-privilege access). 
  • Respond to security incidents as an engineering escalation point—triage alerts, contain threats, coordinate remediation, and drive root-cause fixes and preventive controls. 
  • Produce clear, accurate, and up-to-date runbooks, procedures, and reference architectures for security tooling and operational processes. 
  • Support audits and regulatory exams by providing evidence, control narratives, and technical subject-matter expertise for implemented security controls. 
  • Stay current with emerging threats and Microsoft security capabilities; recommend and implement pragmatic improvements to Trupanion’s security posture. 

Qualifications:  

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field (or equivalent practical experience). 
  • 5+ years of hands-on security engineering experience supporting enterprise security platforms in Microsoft 365/Azure environments. 
  • Relevant certifications (one or more preferred): Microsoft Security (e.g., SC-200/SC-300/SC-100), AZ-500, CISSP, CISM, GIAC, or equivalent. 

Skills:  

  • Deep expertise securing Microsoft 365 and Azure, including identity, endpoint, email, and cloud security controls. 
  • Demonstrated experience administering Microsoft Defender components and/or XDR/SIEM platforms, including alert tuning, detection engineering, and incident response collaboration. 
  • Experience implementing or operating Privileged Access Management (CyberArk preferred) and integrating PAM with identity and security monitoring systems, including policy configuration, privileged session controls, onboarding/ offboarding, and operational troubleshooting. 
  • Strong hands-on experience with the Microsoft Defender stack (Defender for Endpoint, Defender for Identity, Defender for Office 365, Defender for Cloud Apps, Defender Vulnerability Management) and associated investigation workflows. 
  • Experience with XDR/SIEM operations and integration (e.g., Microsoft Sentinel or equivalent): alert triage, tuning, threat hunting, and automation/playbooks. 
  • Strong identity and access management knowledge, including Entra ID (Azure AD), conditional access, MFA, least privilege, and role-based access control. 
  • Security engineering fundamentals across Windows, macOS, and Linux, plus network and cloud concepts (TLS, DNS, routing, segmentation, logging). 
  • Proficiency in scripting and automation (PowerShell and/or Python) to operationalize controls, integrate platforms, and improve reliability. 
  • Experience with vulnerability management and remediation workflows, including scanning, prioritization, validation, and reporting. 
  • Working knowledge of secure SDLC and DevSecOps practices, including CI/CD security checks, secrets handling, and infrastructure-as-code security. 
  • Familiarity with security frameworks and controls (NIST, CIS, ISO 27001) and translating requirements into implementable technical standards. 
  • Strong communication skills with the ability to explain security issues, tradeoffs, and remediation steps to both technical and non-technical stakeholders. 
  • Excellent problem-solving, analytical skills, and the ability to prioritize and deliver across multiple concurrent initiatives. 
  • Experience developing and maintaining runbooks, technical documentation, security guidelines, and reference architectures. 

Compensation:

  • The base pay range for this position is $120,000-$160,000, on a full-time schedule.
  • Along with base salary, Trupanion employees may be eligible for monthly bonuses.
  • We want all employees to be invested in Trupanion’s success, so we grant Restricted Stock Units to all new team members. Our new hire grants vest over 4 years

Additional Information

Benefits and Perks:

  • Full medical, dental, and vision benefits at no cost to the employee
  • Four weeks of paid time off and 9 paid float holidays (you can decide which days are most important to you!)
  • Five-week sabbatical after five years of employment
  • Open, casual, pet-friendly, and fun office environment
  • Free medical health insurance for your pet (1 dog or cat)
  • Paid time off to volunteer at nonprofit organizations
  • Seattle Office Amenities: Free on-site gym, free dog walking services for office pets during business hours, free parking, and paid ORCA cards.

For more information about Trupanion, visit https://trupanion.com/about

Learn more about how Trupanion has revolutionized our industry and the reimbursement model: https://www.youtube.com/watch?v=vdWZ4KHiPTQ

Trupanion is an equal-opportunity employer and embraces diversity. We are committed to building a team that represents a variety of backgrounds, abilities, perspectives, and skills.

We will ensure that individuals are provided reasonable accommodation to participate in the job application or interview process, perform essential job functions, and receive other benefits and privileges of employment. Please contact us to request accommodations.

Skills Required

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or related field
  • 5+ years of hands-on security engineering experience
  • Relevant certifications (e.g., Microsoft SC-200, SC-300, SC-100, AZ-500, CISSP, CISM, GIAC)

Trupanion Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Trupanion and has not been reviewed or approved by Trupanion.

  • Leave & Time Off Breadth Time off is seen as generous, with PTO, sabbatical opportunities, flexible time for sick/safe/wellness needs, and paid volunteer days highlighted. These elements support recovery time and work–life balance.
  • Healthcare Strength Health coverage breadth is emphasized, including medical, dental, vision, mental health, transgender healthcare, life insurance, and disability support. Employer-paid employee premiums on core medical plans further strengthen perceived coverage value.
  • Wellbeing & Lifestyle Benefits Pet-related and lifestyle perks stand out, including company-paid insurance for one pet and a pet‑friendly workplace, alongside a lifestyle spending account. Commuter support, snacks, and home‑office stipends further round out everyday benefits.

Trupanion Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Seattle, WA
1,053 Employees
Year Founded: 1999

What We Do

Trupanion is a rapidly growing player in the pet medical insurance space. We are known for superior coverage and top-notch customer service. We pride ourselves on swift claims resolutions and providing the best medical insurance care available.

Why Work With Us

We are all driven by the mission to help pets receive the best medical care. We are always learning and trying new things as a company and it is a great place to build your career.

Gallery

Gallery

Similar Jobs

CrowdStrike Logo CrowdStrike

Cryptography Engineer - Product Security, Cybersecurity (Remote)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
10000 Employees
120K-180K Annually

Russell Investments Logo Russell Investments

Cybersecurity Engineer

Software • Financial Services
In-Office
2 Locations
1951 Employees
140K-160K Annually
In-Office
Mountlake Terrace, WA, USA
3464 Employees
92K-157K Annually
In-Office
22 Locations
2706 Employees
95K-165K Annually

Similar Companies Hiring

Sailor Health Thumbnail
Healthtech • Social Impact • Telehealth
New York City, NY
20 Employees
Granted Thumbnail
Mobile • Insurance • Healthtech • Financial Services • Artificial Intelligence
New York, New York
23 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account