We’re determined to make a difference and are proud to be an insurance company that goes well beyond coverages and policies. Working here means having every opportunity to achieve your goals – and to help others accomplish theirs, too. Join our team as we help shape the future.
The Enterprise Cyber Focal Office – Sr. Security Engineer is a senior, hands-on technical leader and trusted partner to the Enterprise Cyber Focal Lead. This role is responsible for designing, developing, and implementing complex, AI‑driven cyber security solutions that strengthen application security, vulnerability management, and enterprise cyber resilience.Operating at a technical lead/manager (T7) level, this role combines deep engineering expertise, cloud-native architecture, and applied AI with strong leadership and influence across Cyber, Reliability Engineering, Infrastructure Engineering and Software Engineering teams. The role also provides technical leadership and direction to offshore teams and drives adoption of secure-by-design engineering practices across the enterprise.This role will have a Hybrid work schedule, with the expectation of working in an office (Columbus, OH, Hartford, CT or Charlotte, NC) 3 days a week (Tuesday through Thursday). Technical Leadership & Solution Delivery
- Serve as a trusted technical advisor to the Enterprise Cyber Focal Lead, translating cyber strategy into scalable, high‑impact technical solutions.
- Design, build, and implement complex cyber solutions leveraging AI/ML to improve threat detection, vulnerability management, risk prioritization, and automation.
- Lead end-to-end solution architecture, including design reviews, implementation, and operational readiness for cyber platforms and tooling.
- Apply full‑stack application development expertise to build secure, resilient, and performant cyber applications and services.
- Architect and deliver solutions using AWS cloud services, following cloud-native, well‑architected, and security principles.
- Apply hands-on AI/ML capabilities (GCP preferred) to build and operationalize intelligent cyber capabilities (e.g., analytics, anomaly detection, automation, decision support).
- Partner with data, AI, and platform teams to ensure solutions are scalable, secure, and production-ready.
- Demonstrated hands‑on experience with enterprise security, logging, and monitoring platforms (e.g., Splunk, Dynatrace, Orca Security, Akamai), leveraging these tools to drive threat detection, observability, and risk reduction at scale.
- Applies deep technical expertise in security telemetry, application logging, and runtime monitoring to design, integrate, and optimize application level security and observability capabilities enterprise‑wide.
- Experienced in Leveraging GitHub Copilot as a hands‑on productivity and quality accelerator for secure software development, including code scaffolding, refactoring, test generation, and documentation, while ensuring adherence to enterprise security and coding standards.
- Own and lead application vulnerability management from a technical standpoint, including tooling, integrations, automation, and remediation workflows.
- Partner with CISO (THIP) and Engineering organization and drive modernization and automation of vulnerability intake, prioritization, and reporting using AI and data-driven techniques.
- Partner with application teams to embed vulnerability remediation into SDLC and CI/CD pipelines.
- Act as a trusted partner to Security, Platform, Reliability and Software Engineers, enabling secure, reliable, and resilient application delivery.
- Define, promote, and enforce application security best practices, including secure coding, dependency management, secrets handling, logging, and monitoring.
- Influence engineering teams through technical standards, reference architectures, and hands-on guidance rather than mandate.
- Provide technical leadership to an offshore engineering team, including design guidance, code reviews, mentoring, and delivery oversight.
- Ensure high engineering quality, operational stability, and adherence to enterprise security and compliance standards.
- Contribute to roadmap planning, prioritization, and continuous improvement of cyber platforms and capabilities.
- 6+ years of experience in cyber-focused application development (security engineering), with time in technical leadership roles.
- Strong security application development experience (frontend, backend, APIs, integrations). This includes proficiency in modern frameworks and languages such as Angular, React, or Vue.js with strict Content Security Policy (CSP) and XSS prevention. Node.js or NestJS using security modules like Helmet, Jose, and express-validator.
- Proven experience designing and delivering enterprise-scale cyber, security or application platforms.
- Experience leading and mentoring distributed/offshore technical teams, using Splunk, Dynatrace, Akamai or other events and logs.
- Ability to operate as a trusted partner and influencer across Cyber, Engineering, and Infrastructure organizations.
- Experience across logging and monitoring, edge and application security, AI‑assisted development, ITSM workflows, CI/CD pipelines, and automated deployment platforms, ensuring scalable, secure, and repeatable engineering practices.
- Knowledge of application security, vulnerability management, and secure SDLC practices is preferred.
- The role requires expertise in API design (REST/GraphQL), database technologies (SQL and NoSQL), and cloud‑native development on platforms such as Azure or AWS. A full‑stack tech lead is also adept in CI/CD practices, infrastructure‑as‑code, containerization (e.g., Docker, Kubernetes), and secure coding principles, with hands‑on experience integrating security, logging, monitoring, and performance tools.
- Strong problem‑solving skills, system‑level thinking, and the ability to collaborate across product, security, and operations teams are essential to delivering scalable, resilient, and secure applications.
- Deep hands-on experience with AWS cloud architecture and related services. Demonstrated hands-on AI/ML implementation experience, with GCP preferred (Vertex AI, BigQuery, ML pipelines, or equivalent).
- One or more Security Certification focused on app sec - (e.g., CSPM, CSSM, CISSP, CISM, CSSLP, CCSP, CompTIA, ISC2, GIAC, EC-Council)
- One or more cloud security –
- The AWS Certified Security - Specialty (often called AWS Security Specialty, SCS-C02)
- Google Professional Cloud Security Engineer
- AI / ML Certification (AWS, GCP, or equivalent)
- AWS Certification (e.g., Solutions Architect, DevOps Engineer)
Compensation
The listed annualized base pay range is primarily based on analysis of similar positions in the external market. Actual base pay could vary and may be above or below the listed range based on factors including but not limited to performance, proficiency and demonstration of competencies required for the role. The base pay is just one component of The Hartford’s total compensation package for employees. Other rewards may include short-term or annual bonuses, long-term incentives, and on-the-spot recognition. The annualized base pay range for this role is:
$128,400 - $192,600Equal Opportunity Employer/Sex/Race/Color/Veterans/Disability/Sexual Orientation/Gender Identity or Expression/Religion/Age
About Us | Our Culture | What It’s Like to Work Here | Perks & Benefits
Skills Required
- 6+ years of experience in cyber-focused application development or security engineering, including technical leadership experience
- Strong security application development experience across frontend, backend, APIs, and integrations
- Proficiency with modern frontend frameworks such as Angular, React, or Vue.js
- Experience with Node.js or NestJS and application security modules such as Helmet, Jose, and express-validator
- Experience designing and delivering enterprise-scale cyber, security, or application platforms
- Experience leading and mentoring distributed or offshore technical teams
- Experience with logging and monitoring platforms such as Splunk, Dynatrace, Akamai, or equivalent tools
- Experience with application security, vulnerability management, and secure SDLC practices
- Experience with AI-assisted development, ITSM workflows, CI/CD pipelines, and automated deployment platforms
- Expertise in API design, database technologies, cloud-native development, containerization, infrastructure as code, and secure coding
- Deep hands-on experience with AWS cloud architecture and related services
- Hands-on AI/ML implementation experience; GCP experience is preferred
- One or more application security certifications, such as CSPM, CSSM, CISSP, CISM, CSSLP, CCSP, CompTIA, ISC2, GIAC, or EC-Council
- One or more cloud security certifications
- AWS Certified Security Specialty certification
- Google Professional Cloud Security Engineer certification
- AI/ML certification from AWS, GCP, or equivalent
- AWS certification such as Solutions Architect or DevOps Engineer
- Authorization to work in the United States without company sponsorship
The Hartford Financial Services Group, Inc. Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about The Hartford Financial Services Group, Inc. and has not been reviewed or approved by The Hartford Financial Services Group, Inc..
-
Retirement Support — A 401(k) with matching plus an additional company contribution, alongside an employee stock purchase plan and no‑cost financial planning, signals robust long‑term savings support. HSAs/FSAs and related financial tools further strengthen overall financial well‑being.
-
Leave & Time Off Breadth — At least 25 days of PTO to start, options to buy or roll over time, and paid parental leave indicate broad time‑off support. Paid leave for organ and bone marrow donation and generous disability coverage extend protection for significant life events.
-
Healthcare Strength — Multiple medical, dental, and vision options with the company covering most medical and dental premiums reflect strong core health coverage. Wellness programs, fitness reimbursements, well‑being credits, and accessible behavioral health services expand depth and accessibility.
The Hartford Financial Services Group, Inc. Insights
What We Do
Human achievement is at the heart of what we do. We put our belief into action by not only ensuring individuals and businesses are well protected, but by going even further – making an impact in ways that go beyond an insurance policy








