Senior SaaS Security Engineer
Listed on 2026-10-04
-
IT/Tech
SaaS Sales, Cybersecurity, Cloud Computing: Infrastructure & Operations
We are looking for a Senior Staff SaaS Security Engineer reporting within the Defensive Engineering leadership team in Global Cyber Security (GCS). You will lead the deployment, integration, and operationalization of SaaS security platforms and controls, enabling visibility, governance, and protection across the enterprise SaaS ecosystem.
Why this role is important to usThe team you will be joining is part of the Defensive Engineering, in Global Cyber Security, a function that is critical to the company’s cybersecurity strategy. As enterprise adoption of SaaS applications and AI-enabled services continues to grow, this role will help ensure these platforms are securely deployed, continuously monitored, and protected against evolving SaaS-to-SaaS, identity-based, and agent-to-SaaS threats.
What you will be responsible for- Lead the deployment, integration, and operationalization of SaaS Security Posture Management (SSPM), SaaS threat protection, and governance capabilities across enterprise SaaS platforms.
- Partner with application owners, platform teams, and security stakeholders to onboard SaaS applications, implement security controls, and drive remediation of identified risks.
- Design and maintain SaaS security integrations, API-based telemetry collection, and automation workflows to provide continuous visibility into SaaS security posture and threats.
- Develop and maintain SaaS security standards, architecture documentation, operational procedures, and implementation guidelines.
- Track and report key SaaS security metrics, including application coverage, posture findings, threat exposure, and remediation progress.
These skills will help you succeed in this role:
- Hands-on experience with SSPM, CASB, SaaS security, or SaaS threat protection platforms such as Obsidian Security.
- Strong understanding of SaaS-to-SaaS, identity-to-SaaS, and agent-to-SaaS threats, including account takeover, OAuth abuse, privilege escalation, data exposure, and unauthorized application access.
- Experience onboarding enterprise SaaS applications and implementing security controls through APIs, automation, and governance frameworks.
- Strong knowledge of OAuth, OpenID Connect (OIDC), SAML/SSO, API permission models, and modern SaaS security architectures.
- Strong analytical, problem-solving, automation, and scripting skills.
Preferred Qualifications
- Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience.
- 8+ years of experience in information security with a focus on SaaS security, cloud security, identity security, or platform security.
- 5+ years of hands‑on experience with SSPM, CASB, SaaS threat protection, or related security technologies.
- Experience working in financial services or other highly regulated industries preferred.
- Relevant cloud or information security certifications (e.g., CISSP, CCSP, AWS/Azure Security) preferred.
- Experience securing enterprise SaaS ecosystems and managing application risk at scale.
- Experience working with modern SaaS platforms, APIs, automation frameworks, and cloud-native security technologies.
- Knowledge of emerging AI and agentic technologies and their impact on SaaS security is a plus.
Hybrid work model in accordance with company policy. Ability to collaborate effectively with global teams across multiple time zones. Standard business hours with flexibility to support critical incidents and deployments when required.
S. Salary Range$120,000 - $202,500 Annual The range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could differ.
Employee…(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).