Engr III-Security Engrg
Explicitly requires vibe coding skills and use of generative AI assistants (Gemini, Claude Code, Copilot) and agentic workflows to prototype, script, and automate security tasks.
About the Role
Senior Security Engineer focused on SaaS and cloud security who will define, scale, and execute SaaS security posture and compliance across Verizon’s enterprise SaaS ecosystem. The role emphasizes automation and prototyping using generative AI tools to build custom integrations, remediate configuration drift, and perform deep technical vendor risk reviews.
Job Description
Role
Engineer III — SaaS Security on the Cloud Security team responsible for securing enterprise SaaS applications and cloud-based services. Serve as a technical anchor for SaaS security initiatives, partnering with distributed application owners to align security standards with business operations.
Key Responsibilities
- Own daily engineering operations of the SSPM platform (Obsidian Security) and remediate configuration drift, integration risks, and data over-sharing.
- Design, build, and deploy custom integrations and connectors to bring bespoke SaaS applications into security monitoring.
- Conduct deep-dive technical security architecture and risk reviews of third-party SaaS vendors (identity flows, API permissions, data boundaries, encryption).
- Collaborate with business stakeholders and application administrators to onboard new applications and ensure proper permissions, logging, and visibility.
- Leverage generative AI tools and agentic workflows to prototype, write Python scripts, automate repetitive security tasks, parse data, and triage alerts.
- Act as a trusted technical resource translating technical risk into business context and driving consensus on security best practices.
Requirements
- Bachelor’s degree or two or more years of relevant work experience.
- Four or more years of relevant work experience in Security Engineering, Cloud Security, Systems Engineering, or a closely related technical domain.
- Hands-on experience with SSPM solutions (highly preferred: Obsidian Security; similar: AppOmni, Wing, Adaptive Shield) or demonstrated ability to rapidly learn complex cloud security tooling.
- Practical experience using generative AI tools and frameworks (examples: Gemini, Claude Code, GitHub Copilot, MCP, agentic workflows) to accelerate outputs and automate workflows.
- Strong Python and REST API skills; able to read, debug, and guide AI-generated code for connectors, scripting, and data manipulation (JSON/YAML).
- Deep knowledge of SaaS and cloud identity and access protocols (SAML, OIDC, OAuth scopes), token management, and tenant architecture.
- Strong verbal and written communication, cross-functional collaboration, and ability to drive projects with high autonomy.
Preferred / Nice-to-Have
- Master’s degree.
- Cloud certifications (AWS, GCP).
- Experience with secure SDLC tools (e.g., Fortify).
- Experience with Linux containers (Docker), Kubernetes, containerized deployments, and efficient SQL.
- Familiarity with information security frameworks (ISO 27001-2, NIST 800-53).
- Experience in networking, security risk management, and excellent documentation/organizational skills.
Working Hours & Location
- Full-time, 40 hours per week.
- Hybrid role: defined work location with a mix of work-from-home and assigned office days set by the manager.