Senior IT Security Engineer

Simpro Software

$110K — $130K *
Miami, FL 33186In-Person
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years in enterprise security programs and compliance audits.
  • Expertise in identity and access management, network security, and cloud security.
  • Experience assessing third-party vendor risk.
  • Knowledgeable in incident response and technical exercises.
  • Excellent communication skills for engaging technical and non-technical stakeholders.
  • Track record of influencing teams without formal authority.
  • Strong analytical and decision-making skills.

Responsibilities

  • Own and manage the enterprise security and compliance program.
  • Establish and maintain the organizational risk register for prioritizing mitigation strategies.
  • Define identity architecture and access management controls.
  • Drive vulnerability management governance with established SLAs and metrics.
  • Lead third-party risk management initiatives with vendor assessments.
  • Oversee compliance reporting and security questionnaire workflows.
  • Shape incident response playbooks and conduct tabletop simulations.

Benefits

  • Career advancement potential within a senior role.
  • Significant autonomy to drive security initiatives.
  • Opportunity to shape enterprise security governance frameworks.
  • Engagement with cross-functional teams across the organization.
  • Access to new security technologies and practices.
Full Job Description

Job Context

The Senior IT Security Engineer is a senior individual contributor role responsible for owning and advancing the security, risk management, and compliance posture across internal systems and operational environments. This position defines security governance frameworks, oversees certification maintenance, and manages technical risk remediation across enterprise infrastructure. Operating with significant autonomy, the incumbent serves as an authoritative advisor on identity management, access controls, vulnerability governance, and vendor risk. Through technical authority and cross-functional influence, this role ensures internal operations maintain continuous alignment with industry security standards and organizational resilience objectives.

What You’ll Do

Owns the enterprise security and compliance program, driving continuous alignment with industry-standard security frameworks, certifications, and audit disciplines.

Establishes and maintains the organizational risk register across physical, logical, and systems infrastructure to prioritize risk mitigation and remediation strategies.

Defines and enforces identity architecture standards, access management controls, and credentials governance to minimize operational exposure.

Drives vulnerability management governance across technical environments by establishing severity SLAs, standardizing inspection metrics, and overseeing remediation adherence.

Leads third-party risk management initiatives by conducting security assessments of software vendors, integrations, and external technologies prior to onboarding.

Oversees security questionnaire workflows and compliance reporting to deliver streamlined assurance for external stakeholders.

Shapes incident response playbooks, conducts regular tabletop simulations, and acts as a primary technical advisor during security events and resilience reviews.

Advises technical and operational teams on secure configuration, access modeling, secrets management, and policy execution.

Evaluates emerging security platforms, governance technologies, and operational controls to continuously elevate enterprise resilience and audit readiness.

Balances security risk considerations against business velocity to recommend practical controls and defensible risk-acceptance thresholds.

This job description is not an exhaustive list of duties and may be modified at the discretion of Simpro Group

What You’ll Bring

  • Demonstrated experience designing, implementing, and managing enterprise security programs, risk registers, and compliance audit lifecycles.
  • Technical expertise in identity and access management (IAM), network security controls, cloud infrastructure security, and vulnerability management governance.
  • Proven ability to evaluate third-party vendor risk and govern data access security across complex software environments.
  • Practical experience in incident response coordination, playbook development, and conducting technical tabletop exercises.
  • Exceptional communication and stakeholder management skills, with the ability to articulate technical risk and security trade-offs to non-technical partners.
  • Demonstrated track record of setting technical direction, establishing standards, and influencing cross-functional technical teams without direct formal authority.
  • Strong analytical, problem-solving, and decision-making capabilities focused on practical risk reduction and operational enablement.
  • Relevant degree in Computer Science, Information Technology, Cybersecurity, or an equivalent combination of senior professional experience and industry certifications.

Similar Jobs

More Jobs at Simpro Software

More Information Technology Jobs

Find similar Senior IT Security Engineer jobs: