Perfect Sense, Inc

Security Engineer

Perfect Sense, Inc Reston, Virginia, United States · $125K–$130K/yr

Software Development · 201-500 employees

8 h ago
security Senior (5-10 yrs) Full-time United States
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The Security Engineer will independently drive security projects, manage cloud infrastructure hardening, and investigate security incidents. They will collaborate across engineering and IT teams to embed security into workflows and ensure compliance with standards like SOC 2.

What they look for

Cloud security Infrastructure as code Terraform Pulumi Vulnerability management GRC Network security AWS Azure GCP DevOps SAST DAST SOC 2 Type 2 Incident response Observability

Requirements

Candidates must have 7+ years of hands-on security engineering experience in cloud-native or SaaS environments. Proficiency in Infrastructure as Code, networking fundamentals, and vulnerability management is required, along with strong communication skills.

Benefits

Health insurance Dental insurance Vision insurance 3 weeks paid vacation Paid sick leave Paid company holidays Safe Harbor 401(k) with employer matching Continuing education stipend 3-week paid sabbatical

Full description

About the Company

At Brightspot, we help content-driven organizations turn content chaos into momentum. Our flexible, AI-powered content management platform (CMS) enables teams to move faster, collaborate more effectively, and scale with confidence. Since 2008, leading enterprises have partnered with Brightspot to transform fragmented ecosystems into streamlined, high-performing operations that drive growth, strengthen governance, and deliver real business impact.

About the Role

We're looking for a hands-on Security Engineer to help protect our platform and strengthen our overall security posture. This is a highly technical, self-directed role for someone who enjoys getting into the details of infrastructure and application security, can drive projects from idea to completion with minimal oversight, and knows how to use AI tools as a force multiplier to move faster and dig deeper.

You'll split your time between hardening cloud infrastructure, investigating and resolving security issues, and partnering closely with Engineering, Platform, QA, and IT to make security a shared responsibility across the company. If you're someone who values ownership and autonomy and enjoys solving complex security challenges end-to-end, this role will give you room to make a real impact.

Responsibilities

  • Drive security projects independently from scoping through completion, working across teams to see initiatives through rather than handing them off after the design phase.
  • Contribute directly to the investigation of security issues, incidents, and alerts as a hands-on member of the response effort.
  • Identify security issues, develop plans for resolution, and, where appropriate, contribute code through pull requests.
  • Work hands-on with Cloud Security Posture Management, vulnerability management, and GRC tooling to identify risks and drive them to closure.
  • Continuously evaluate and strengthen existing security tools and processes to improve our overall security maturity.
  • Conduct external security assessments and operationalize the findings.
  • Partner with engineering teams to securely integrate Infrastructure as Code tools, such as Terraform and Pulumi, into the development lifecycle.
  • Improve alerting, monitoring, and production observability for security-relevant events.
  • Collaborate closely with Engineering, Platform, QA, and IT to embed security into everyday workflows and help build a culture in which security is everyone's responsibility.
  • Clearly communicate risks and proposed solutions to both technical and non-technical audiences.

Qualifications

  • 7+ years of hands-on security engineering experience within a software development environment.
  • Proven experience as a hands-on security engineer, ideally in a SaaS or cloud-native environment.
  • Experience securing cloud environments, such as AWS, Azure, or GCP, and working within modern DevOps pipelines.
  • Strong self-direction, with the ability to identify problems, prioritize them, and drive them to resolution with minimal oversight.
  • Deep understanding of networking and network security fundamentals, including segmentation, routing, firewalls, VPNs, TLS, and secure configuration management.
  • Experience with Infrastructure as Code, particularly Terraform or Pulumi, and securing IaC workflows.
  • Solid coding and scripting skills sufficient to investigate issues, build tooling, and contribute pull requests that directly address infrastructure vulnerabilities.
  • Proven track record of identifying vulnerabilities and driving remediation through completion in fast-paced environments.
  • Working knowledge of Cloud Security Posture Management platforms, vulnerability management tools, GRC and compliance tools, and Static Application Security Testing tools.
  • Familiarity with application security practices, including secure SDLC, code review, SAST, and DAST.
  • Experience working at a company undergoing or maintaining SOC 2 Type 2 certification.
  • Practical experience applying AI tools to security work, including investigation, code analysis, automation, and detection logic.
  • Excellent cross-functional collaboration skills, with a track record of working effectively alongside Engineering, Platform, QA, and IT teams.
  • Ability to clearly communicate technical risks and remediation plans to both engineering teams and non-technical stakeholders.

Preferred Qualifications

  • Experience operationalizing compliance frameworks, such as SOC 2 Type 2, in real production environments—not just passing an audit, but making the controls meaningful and sustainable.
  • Experience coordinating with third-party vendors for penetration testing and managing findings through remediation.
  • Experience building or tuning security monitoring and alerting pipelines, such as SIEM or cloud-native detection tooling.
  • Relevant certifications, such as AWS or GCP security certifications, OSCP, or CISSP.

Compensation & Benefits

  • The starting salary for this role is $125,000 with bonus potential.
  • Benefits include health, dental, and vision insurance, 3 weeks paid vacation, paid sick leave, paid company holidays, Safe Harbor 401(k) with employer matching, continuing education stipend, and a 3-week paid sabbatical after your 5th anniversary.

Hybrid Expectations

  • This is a hybrid position. Candidates are expected to work on-site at our Reston office 2-3 days per week.

Similar roles