Are you a collaborative Sec Ops Engineer looking to work for a mission driven global organization?
About our Team
You’ll be joining the Security Engineering team within Elsevier’s Information Security & Data Protection department. Our team designs, builds, and operates the security tooling and platforms used across Elsevier Technology, spanning both vendor platforms and team-built services. The team works closely with Incident Response, Threat Engineering, and Governance, Risk & Compliance (GRC), and partners with business and engineering teams to ensure security tooling is effectively adopted across our cloud estate.
About the Role
As a Senior Security Engineer, you help lead in designing, building, and operating security tooling at scale, while raising the technical bar for the wider team. You will own architecture decisions for one or more platforms, guide junior and mid-level engineers through code and design review, and act as a trusted technical voice with Incident Response, Threat Engineering, and GRC. This role suits someone with deep, hands-on cloud security engineering experience who is ready to take ownership beyond individual delivery, shaping how the team builds and operates security tooling
Responsibilities
- Leading the design, architecture, and delivery of security platforms and services.
- Owning and evolve Infrastructure as Code standards (Terraform) and CI/CD practices (GitHub Actions) across the team, ensuring reliable, secure, and repeatable deployments.
- Providing technical leadership and mentorship to junior and mid-level engineers, including design review, code review, and guidance on secure engineering practices.
- Driving integration, tuning, and lifecycle management of core security tooling.
- Partnering with Incident Response, Threat Engineering, and GRC to translate emerging threats, incidents, and compliance requirements into engineering solutions and roadmap priorities.
- Championing adoption of AI-assisted engineering practices (e.g. Claude Code, GitHub Copilot) to improve team velocity, code quality, and test coverage.
- Leading troubleshooting and root-cause analysis for security tooling incidents, and drive resilience improvements through capacity planning, disaster recovery planning, and runbook development.
- Representing SENG in architecture reviews and cross-functional technical forums, advocating for secure-by-design and secure-by-default practices.
- Delivering production-ready systems on time and within budget, and hold the team accountable to engineering and security standards.
Requirements
We recognize that no one will meet every requirement. If you are excited about this role and have relevant experience, we encourage you to apply.
- Significant hands-on experience in security engineering or a related field, including designing and operating cloud-native security platforms at production scale.
- Demonstrated ownership of security architecture in AWS (or OCI/Aliyun), including multi-account environments and cross-region/CN considerations.
- Advanced proficiency with Terraform and Infrastructure as Code practices, with experience setting standards and patterns for a team.
- Experience designing and maintaining CI/CD pipelines (e.g. GitHub Actions) for reliability and security.
- Broad, hands-on experience across security tool categories: SIEM, EDR, DLP, PAM, WAF, SOAR, and vulnerability management,
- Proven track record mentoring engineers and leading technical design decisions within a team.
- Advanced scripting and software development skills (e.g. Python), including experience building and operating production services (APIs, cronjobs) on Kubernetes/EKS.
- Practical experience with AI-assisted engineering tools (e.g. GitHub Copilot, Claude Code, Spec-driven development) and sound judgment on where they add the most value.
- Experience with Agile and/or DevOps frameworks, including driving improvements to team process and delivery practices.
We know your well-being and happiness are key to a long and successful career. We are delighted to offer country specific benefits. Click here to access benefits specific to your location.
We are committed to providing a fair and accessible hiring process. If you have a disability or other need that requires accommodation or adjustment, please let us know by completing our Applicant Request Support Form or please contact 1-855-833-5120.
Criminals may pose as recruiters asking for money or personal information. We never request money or banking details from job applicants. Learn more about spotting and avoiding scams here.
Please read our Candidate Privacy Policy.
We are an equal opportunity employer: qualified applicants are considered for and treated during employment without regard to race, color, creed, religion, sex, national origin, citizenship status, disability status, protected veteran status, age, marital status, sexual orientation, gender identity, genetic information, or any other characteristic protected by law.
USA Job Seekers:
EEO Know Your Rights.
Skills Required
- Significant hands-on experience in security engineering or a related field, including designing and operating cloud-native security platforms at production scale.
- Security architecture experience in AWS, OCI, or Aliyun, including multi-account environments and cross-region or China-region considerations.
- Advanced proficiency with Terraform and Infrastructure as Code practices, including setting team standards and patterns.
- Experience designing and maintaining reliable and secure CI/CD pipelines, such as GitHub Actions.
- Broad hands-on experience with SIEM, EDR, DLP, PAM, WAF, SOAR, and vulnerability management tools.
- Proven experience mentoring engineers and leading technical design decisions within a team.
- Advanced scripting and software development skills, such as Python, including building and operating production APIs and cron jobs on Kubernetes or EKS.
- Practical experience with AI-assisted engineering tools, such as GitHub Copilot or Claude Code, and judgment regarding their effective use.
- Experience with Agile or DevOps frameworks, including improving team processes and delivery practices.
Elsevier Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Elsevier and has not been reviewed or approved by Elsevier.
-
Leave & Time Off Breadth — Feedback suggests paid time off spans vacation, holidays, sick days, bereavement, military leave, and volunteer time. Family-related leave options are also emphasized as part of the package.
-
Healthcare Strength — Feedback suggests medical, dental, vision, life insurance, wellness initiatives, and an EAP form a comprehensive health offering. Gym support and wellbeing hubs reinforce an ongoing health and wellness focus.
-
Retirement Support — Feedback suggests retirement programs include a 401(k)/retirement plan and pension options, with long-term savings vehicles such as an employee stock purchase plan also available. These elements contribute to a sense of financial security beyond base pay.
Elsevier Insights
What We Do
Elsevier is a world-leading provider of information solutions that enhance the performance of science, health, and technology professionals, empowering them to make better decisions, and deliver better care. Because informed decisions lead to better outcomes, Elsevier is a leader in information and analytics for customers across the global research and health ecosystems. Elsevier helps researchers and healthcare professionals advance science and improve health outcomes for the benefit of society. We do this by facilitating insights and critical decision-making for customers across the global research and health ecosystems.









