Senior Security Engineer

Posted 6 Hours Ago
Easy Apply
Be an Early Applicant
Hiring Remotely in Lafayette, CO, USA
Remote or Hybrid
110K-130K Annually
Senior level
Automotive • Greentech • HR Tech • Sales • Software
KPA helps organizations keep people safe, protect their business, and elevate compliance.
The Role
Lead KPA's enterprise security platforms and technical security initiatives across cloud, identity, endpoints, network, and DevOps. Own vulnerability management, incident response, SOC 2 compliance, vendor security assessments, and security automation. Partner with IT and DevOps to embed security in CI/CD, IaC, containers, and cloud workloads while improving posture through detection engineering, automation, and governance.
Summary Generated by Built In
Position Description:

KPA is seeking a Senior Security Engineer to serve as the senior technical counterpart to the Director of Security & Technology. This role owns KPA's security platforms, cloud security, identity, automation, and technical security initiatives. The ideal candidate is a hands-on security engineer with strong cloud and infrastructure experience who can independently lead complex security projects, partner effectively with IT Operations and DevOps, and continuously improve KPA's security posture.

Responsibilities:

  • Own KPA's enterprise security platforms, including CrowdStrike, Rapid7 (InsightIDR, InsightVM, InsightAppSec, MDR), Cisco Umbrella, Cisco Duo, KnowBe4, and related technologies.
  • Lead vulnerability management and remediation, endpoint security, identity security, privileged access, penetration testing, and security hardening initiatives.
  • Lead security incident response, investigations, containment, remediation, and post-incident reviews.
  • Own the ongoing operation of SOC 2 controls, security audit requirements, and technical compliance initiatives.
  • Own Cisco Meraki security, VPN infrastructure, network security controls, and secure cloud connectivity.
  • Secure Azure, AWS, Microsoft 365, Entra ID, AWS Identity Center, Auth0, and cloud-native workloads using modern security best practices.
  • Administer and improve identity governance across Microsoft Entra ID, Cisco Duo, AWS Identity Center, Auth0, SSO, SCIM, Conditional Access, PIM, privileged accounts, service accounts, and authentication architecture.
  • Partner with DevOps to integrate security into CI/CD pipelines, Infrastructure as Code, containers, Kubernetes, and cloud workloads, including SAST, DAST, Snyk, and other application security technologies.
  • Own and continually improve KPA's cloud security posture management, workload protection, identity controls, logging, alerting, detection engineering, and remediation processes.
  • Own email security across Microsoft 365, SendGrid, Amazon SES, SPF, DKIM, DMARC, and phishing protection.
  • Build security automation using PowerShell, Python, Microsoft Graph, REST APIs, and AI-assisted development.
  • Lead security assessments for new vendors, SaaS platforms, cloud services, and third-party integrations; administer third party vendor management (TPVM) and support ongoing vendor risk management.
  • Administer and improve KPA's security awareness program, security policies, standards, and technical procedures.
  • Support AI security and governance initiatives, including ChatGPT Enterprise, Claude, MCP, and emerging AI technologies.
  • Support security architecture reviews for new cloud services, platforms, integrations, and technical initiatives.
  • Proactively identify security gaps, technical debt, and opportunities to improve KPA's security posture through automation, AI, and modern engineering practices.

Qualifications:

  • 5+ years of experience in security engineering, cloud security, infrastructure security, or a related senior technical role.
  • Strong knowledge of identity security, endpoint security, vulnerability management, network security, incident response, and zero trust principles.
  • Experience securing Azure, AWS, Microsoft 365, Entra ID, Windows, and Linux.
  • Familiarity with CI/CD pipelines, Kubernetes, container security, application security scanning, and DevSecOps practices.
  • Scripting and automation experience using PowerShell, Python, REST APIs, or similar technologies.
  • Experience supporting SOC 2 & NIST CSF or comparable security and compliance frameworks.
  • Relevant certifications such as CompTIA Security+, CISSP, CCSP, AWS Certified Security, or equivalent certifications are preferred.
  • Excellent communication, documentation, project leadership, and problem-solving skills.
  • Bachelor's degree in Computer Science, Information Technology or Cybersecurity or equivalent experience.

Success Criteria:

  • Work ethic that aligns with KPA's core values:
  • Trust: earning trust through integrity, expertise, and acting in the client's best interest.
  • Innovation: continuously seeking out ways to better serve clients.
  • Excellence: holding ourselves to high standards in everything we do.
  • Results: moving with purpose to deliver meaningful outcomes.
  • Owns and continually improves KPA's enterprise security platforms and technical security controls.
  • Improves KPA's security posture across endpoints, identity, networking, cloud, and DevOps environments.
  • Delivers complex security initiatives with strong planning, communication, documentation, testing, and post-implementation validation.
  • Reduces manual security work through automation and modern engineering practices.
  • Serves as the senior escalation point for complex security incidents and technical security issues.
  • Partners effectively with IT Operations and DevOps to embed security into operational and development workflows.

Physical Requirements:

    Physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
  • Working at a computer typing and view a screen - Constantly
  • Stationary sitting or standing - Constantly
  • Visual Recognition - Constantly
  • Hearing/Listening - Occasionally
  • Communicating verbally and/or in writing - Occasionally
  • Travel - Seldom

Compensation:

  • Annual base salary range between $110-130k commensurate with experience.
  • Bonus potential of 10% annually

Skills Required

  • 5+ years of experience in security engineering, cloud security, infrastructure security, or a related senior technical role
  • Strong knowledge of identity security, endpoint security, vulnerability management, network security, incident response, and zero trust principles
  • Experience securing Azure, AWS, Microsoft 365, Entra ID, Windows, and Linux
  • Familiarity with CI/CD pipelines, Kubernetes, container security, application security scanning, and DevSecOps practices
  • Scripting and automation experience using PowerShell, Python, REST APIs, or similar technologies
  • Experience supporting SOC 2 & NIST CSF or comparable security and compliance frameworks
  • Relevant certifications such as CompTIA Security+, CISSP, CCSP, AWS Certified Security, or equivalent
  • Excellent communication, documentation, project leadership, and problem-solving skills
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity or equivalent experience

What the Team is Saying

Brandon
Marnie
Jordan
Meghan
Matt
Emma

KPA Compensation & Benefits Highlights

  • Retirement Support Retirement benefits include a 401(k) with company match, with some postings noting immediate vesting, supporting long-term savings. This structure is consistently highlighted alongside other core financial protections.
  • Leave & Time Off Breadth Time off is described as competitive, with PTO that increases with tenure, paid holidays and floating holidays, plus paid volunteer days. Flexibility through remote/hybrid roles further supports work-life balance.
  • Healthcare Strength Core coverage spans medical, dental, and vision alongside mental-health resources (EAP/telehealth). Extras such as pet insurance and wellness initiatives are also available.

KPA Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Westminster, CO
405 Employees
Year Founded: 1986

What We Do

KPA solutions help clients identify, remedy, and prevent workplace safety and compliance problems across their entire enterprise. The combination of KPA’s easy-to-use software platforms, consulting services, and award-winning training content helps organizations minimize risk so they can focus on what’s important—their core business. For nearly 40 years, KPA has helped 10,000+ clients achieve regulatory compliance, protect their business, and keep people safe.

Why Work With Us

Since 1986 we have been refining the core values with which we work together as a team and with our clients. Do you align with our core values of Integrity, Helpfulness, Excellence, Agility, Respectfulness, and Teamwork? It is these core values that promote our success through both organic growth and integrating acquisitions.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

KPA Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

KPA operates in a hybrid, remote-first work environment where daily office attendance is optional and teams get together in-person for collaboration.

Typical time on-site: Flexible
HQWestminster, CO
Our headquarters is located in the CirclePoint Corporate Center in Westminster, right off US 36 between 104th and 112th. Minutes from the Westminster Promenade, a major entertainment and food hub.

Similar Jobs

KPA Logo KPA

Operations Analyst

Automotive • Greentech • HR Tech • Sales • Software
Easy Apply
Remote or Hybrid
Lafayette, CO, USA
405 Employees
45K-55K Annually

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account