Senior Security Engineer
Wisconsin, USA
Listed on 2026-08-28
-
IT/Tech
Cybersecurity, Cloud Computing: Infrastructure & Operations
The Opportunity
Service Management & Transformation
Do you like securing systems at scale, and improving the way the work gets done so it scales further? Thomson Reuters™ is investing in a dedicated security engineering capability, and we are looking for a senior engineer to help drive it. This role sits on our Service Management & Transformation team.
As a Senior Security Engineer, you will secure and harden our application, cloud, and infrastructure estate, which spans on-premises datacenters and major clouds, and improve and optimize how that work gets done. You will implement security controls across patching, hardening, network isolation, identity, and secrets management, rework patching cycles and golden-image refreshes so the team moves fast, scale AI-augmented tooling, and package repeatable execution so more junior engineers can pick it up.
Aboutthe Role
In this opportunity as Senior Security Engineer, you will:
- Secure and harden the estate hands-on across the full stack: application and open-source dependency fixes, infrastructure patching, cloud configuration and guardrails, WAF, network isolation, and secrets and machine-identity management.
- Improve and optimize how security gets done, reworking patching cycles and golden-image refreshes, cutting cycle time, and removing friction so the team moves faster.
- Implement and tune security controls across operating systems, containers, CI/CD pipelines, cloud configuration, and network boundaries to defend against sophisticated adversaries and insider threats.
- Scale adoption of AI-augmented SAST and SCA tooling, expanding coverage, reviewing generated pull requests, and validating fixes, prioritizing by risk in line with CISA guidance and measuring mean time to remediate, throughput, and burndown against SLA.
- Package reusable patterns, tooling, and runbooks so routine work can be executed by more junior engineers, and mentor them with technical review of their fixes.
- Partner with application and platform teams to land and validate changes safely, and coordinate with the wider team across regions to keep progress continuous across time zones.
- Feed accurate security metrics and status into program reporting.
You're a fit for the role of Senior Security Engineer if your background includes:
- 5+ years of security, software, or Dev Sec Ops engineering experience, comfortable securing and hardening across application, infrastructure, and cloud, plus a bachelor's degree in Computer Science, Information Security, or a related field (or equivalent practical experience).
- Multi-cloud experience across two or more of AWS, Azure, GCP, and OCI (all four an advantage), alongside on-premises infrastructure.
- A solid understanding of security principles and common vulnerabilities, with hands-on work across patching, hardening, cloud configuration, network isolation, and identity and access controls.
- Hands-on experience with SAST/SCA tooling and remediating application and open-source dependency vulnerabilities, plus infrastructure patching.
- A track record of improving and optimizing engineering processes, reducing cycle time in patching, releases, or security work, rather than only executing it.
- Familiarity with vulnerability prioritization (CVSS/EPSS, CISA KEV) and SLA-driven burndown, plus comfort with AI-assisted tooling and reviewing its output critically.
- Clear communication, some experience mentoring engineers, and strong ownership of security outcomes.
- Hybrid Work Model: We’ve adopted a flexible hybrid working environment for our office-based roles while delivering a seamless experience that is digitally and physically connected.
- Flexibility & Work-Life Balance: Flex My Way is a set of supportive workplace policies designed to help manage personal and professional responsibilities, whether caring for family, giving back to the community, or finding time to refresh and reset. This builds upon our flexible work arrangements, including work from anywhere for up to 8 weeks per year, empowering employees to achieve a better work-life balance.
- Career Development and Growth: By fostering a culture of continuous learning and skill development,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).