EngineerJobs.io
← Back to all jobs
The Hartford

Senior Security Engineer

Hartford, CT $128k - $193k/yr Full time Posted 9d ago

Job Description

The Hartford is seeking a Senior Security Engineer to join its Enterprise Cyber Focal Office in Hartford, CT, operating with a hybrid in‑office schedule. You will help shape AI driven cybersecurity solutions, steer end‑to‑end architecture, and provide technical leadership across security, reliability, infrastructure, and software teams.

Responsibilities

  • Serve as a trusted technical advisor to the Enterprise Cyber Focal Lead, translating cyber strategy into scalable, high‑impact technical solutions.
  • Design, build, and deploy complex cyber capabilities that leverage AI/ML to enhance threat detection, vulnerability management, risk prioritization, and automation.
  • Lead end‑to‑end solution architecture, including design reviews, implementation, and operational readiness for cyber platforms and tooling.
  • Apply full‑stack development expertise to deliver secure, resilient, and high‑performing cyber applications and services.
  • Architect and deliver cloud‑native solutions on AWS, aligned with well‑architected, security‑driven principles.
  • Hands‑on AI/ML work (GCP preferred) to operationalize intelligent cyber capabilities such as analytics, anomaly detection, automation, and decision support.
  • Collaborate with data, AI, and platform teams to ensure solutions are scalable, secure, and production ready.
  • Demonstrate hands‑on experience with enterprise security, logging, and monitoring platforms (Splunk, Dynatrace, Orca Security, Akamai) to drive threat detection, observability, and risk reduction at scale.
  • Apply deep expertise in security telemetry, application logging, and runtime monitoring to design, integrate, and optimize application security and observability enterprise‑wide.
  • Utilize GitHub Copilot as a productivity accelerator for secure software development, including scaffolding, refactoring, test generation, and documentation, while upholding security standards.
  • Own and lead application vulnerability management, including tooling, integrations, automation, and remediation workflows.
  • Partner with the CISO (THIP) and Engineering organization to modernize vulnerability intake, prioritization, and reporting using AI and data‑driven techniques.
  • Collaborate with application teams to embed vulnerability remediation into SDLC and CI/CD pipelines.
  • Act as a trusted partner to Security, Platform, Reliability, and Software Engineers, enabling secure, reliable, and resilient application delivery.
  • Define, promote, and enforce application security best practices, including secure coding, dependency management, secrets handling, logging, and monitoring.
  • Influence engineering teams through technical standards, reference architectures, and hands‑on guidance rather than mandates.
  • Provide technical leadership to an offshore engineering team, including design guidance, code reviews, mentoring, and delivery oversight.
  • Ensure high engineering quality, operational stability, and adherence to enterprise security and compliance standards.
  • Contribute to roadmap planning, prioritization, and continuous improvement of cyber platforms and capabilities.

Requirements

  • 6+ years of experience in cyber‑focused application development (security engineering), including technical leadership roles.
  • Strong security application development experience across frontend, backend, APIs, and integrations, with proficiency in Angular, React, or Vue.js and adherence to CSP and XSS prevention; Node.js or NestJS using security modules like Helmet, Jose, and express‑validator.
  • Proven track record designing and delivering enterprise‑scale cyber, security, or application platforms.
  • Experience leading and mentoring distributed/offshore technical teams, using Splunk, Dynatrace, Akamai, or similar logging and event tools.
  • Ability to function as a trusted partner and influencer across Cyber, Engineering, and Infrastructure organizations.
  • Experience spanning logging and monitoring, edge and application security, AI‑assisted development, ITSM workflows, CI/CD pipelines, and automated deployment platforms to ensure scalable, secure engineering practices.
  • Knowledge of application security, vulnerability management, and secure SDLC practices is preferred.
  • Expertise in API design (REST/GraphQL), SQL and NoSQL databases, and cloud‑native development on Azure or AWS; capable full‑stack tech lead with CI/CD, infrastructure‑as‑code, containerization (Docker, Kubernetes), and secure coding practices, with hands‑on experience integrating security, logging, monitoring, and performance tools.
  • Strong problem‑solving abilities, systems thinking, and collaboration across product, security, and operations teams.
  • Deep hands‑on experience with AWS architectures and related services; practical AI/ML implementation experience, with GCP preferred (Vertex AI, BigQuery, ML pipelines, or equivalent).
  • Authorized to work in the United States without company sponsorship; STEM OPT I‑983 endorsement not available for this position.

Technologies

  • AWS, GCP, Azure
  • Vertex AI, BigQuery
  • Kubernetes, Docker
  • Node.js, NestJS
  • Angular, React, Vue.js
  • Helmet, Jose, express‑validator
  • Splunk, Dynatrace, Akamai, Orca Security
  • GitHub Copilot
  • REST, GraphQL
  • SQL, NoSQL

Required Certifications

  • One or more security certifications focused on application security (examples include CSPM, CSSM, CISSP, CISM, CSSLP, CCSP, CompTIA, ISC2, GIAC, EC‑Council).
  • One or more cloud security certification: AWS Certified Security – Specialty (SCS-C02).
  • Google Professional Cloud Security Engineer.

Preferred Certifications

  • AI/ML Certification (AWS, GCP, or equivalent).
  • AWS Certification (Solutions Architect, DevOps Engineer, or similar).

Similar Jobs