Ceres Life Insurance Company Logo

Ceres Life Insurance Company

Senior Cybersecurity Engineer

Posted 2 Days Ago
Remote
Hiring Remotely in United States
Senior level
Remote
Hiring Remotely in United States
Senior level
The Senior Cybersecurity Engineer will enhance security across cloud infrastructure, manage security tooling, and support compliance efforts while collaborating with various teams to protect sensitive financial data.
The summary above was generated by AI

Company Overview

Westaim and CC Capital have joined forces to strategically transform Westaim from a holding company into a global alternative credit asset manager with a unique, integrated insurance platform, branded as The Westaim Corporation. This partnership supports a long-term vision to deliver innovative, customized financial solutions across alternative credit and insurance, creating scalable growth and meaningful client impact.

Ceres USA Holdings, LLC, part of the insurance platform within The Westaim Corporation strategy, is the parent company of Ceres Life Insurance – a fast-growing, technology-driven annuity carrier startup. Ceres is focused on redefining retirement security by combining modern fintech capabilities, top-tier talent, and strong vendor partnerships to deliver exceptional annuity solutions and digital experiences.

Ceres is deeply committed to a client-centered culture. Through its Digital Contact Center and advisor-facing platforms, the company delivers proactive, personalized, and technology-enabled support that empowers clients and advisors while maintaining the highest standards of trust, security, and regulatory compliance.

About the Role

We are looking for a Senior Cybersecurity Engineer to join the Information Security team, reporting directly to the CISO, to help secure a modern, cloud-based insurance platform supporting annuity products and financial operations.

This is a hands-on role for someone who enjoys building and improving security systems end-to-end across infrastructure, identity, applications, and data. You will work closely with engineering, operations, and compliance teams to protect sensitive financial information and ensure our systems meet the highest standards of security and reliability.

This is not solely a development-focused security role. You will also help manage and mature our security tooling, identity platform, and cloud security posture on a day-to-day basis. If you are passionate about solving complex security challenges in a fast-paced, growing environment, this role offers the opportunity to make a meaningful impact.

Key Responsibilities

Build and Strengthen Security

  • Design and implement security controls across cloud infrastructure, applications, and data platforms
  • Review and secure system architectures, APIs, and integrations
  • Ensure secure configurations across environments supporting customer, policy, and financial systems
  • Manage and tune cloud security posture management (CSPM) tooling to identify and remediate misconfigurations
  • Implement and manage security controls across code repositories and CI/CD platforms, including branch protection, secret scanning, and access policies
  • Implement and manage security controls within cloud service provider environments, including IAM policies, network security groups, and service configurations

Detect and Respond to Threats

  • Monitor systems for security events using centralized logging and observability platforms
  • Lead investigations, root cause analysis, and remediation efforts
  • Improve detection capabilities through log aggregation, alerting, dashboards, and automation

Protect Data and Access

  • Implement and manage identity and access controls aligned with least privilege principles
  • Safeguard sensitive customer and financial data through encryption and secure data practices
  • Manage vulnerability scanning and remediation processes

Manage Identity, Access, and DNS Security

  • Administer and optimize the identity platform, including SSO, conditional access policies, and identity governance
  • Manage DNS records and configurations to support security and operational integrity

Support Compliance and Risk Management

  • Partner with compliance and legal teams to support regulatory requirements and audits
  • Help maintain security controls aligned with industry standards
  • Contribute to risk assessments and ongoing control improvements

Collaborate Across Teams

  • Work closely with engineering, data, and operations teams to embed security into workflows
  • Provide practical guidance on secure development and system design
  • Help promote a strong security culture across the organization
  • Continuously research and evaluate emerging security tools, technologies, and best practices to strengthen the organization’s security posture

Qualifications

Required

  • 7+ years of experience in cybersecurity engineering or a related field
  • Experience securing cloud environments such as AWS, Azure, or GCP
  • Hands-on experience with security and observability tools such as SIEM, EDR/XDR, CSPM, and centralized logging/monitoring platforms
  • Strong understanding of network, application, and API security
  • Experience with identity and access management (IAM) and role-based access controls
  • Experience administering identity platforms, including SSO, conditional access, and identity governance
  • Experience managing DNS records and configurations in support of security operations
  • Experience implementing security controls in code repository platforms and cloud-native services (e.g., GitHub, AWS)
  • Experience working in regulated environments such as financial services or insurance
  • Self-motivated learner who proactively researches emerging technologies, security trends, and evolving threats without waiting for direction

Nice to Have

  • Experience supporting insurance or annuity platforms
  • Familiarity with regulatory frameworks such as SOC 2 or NAIC guidelines
  • Certifications such as CISSP, CISM, or cloud security certifications
  • Experience integrating security into CI/CD pipelines (DevSecOps)
  • Experience in security operations (SecOps), including triage, incident handling, and operational monitoring
  • Demonstrated initiative in independently building knowledge in areas such as AI, automation, or other rapidly evolving technology domains
  • Strong communication skills and ability to work across technical and business teams

Why Join Us?

  • Be part of a fast-growing, innovative insurance business dedicated to providing top-tier support to IMOs and financial advisors
  • Make a direct impact on the company’s growth strategy by playing a key role in building and optimizing IMO partnerships
  • Work in a high-energy, collaborative startup environment focused on technology, digital tools, and advisor enablement
  • Competitive compensation package with PTO, health benefits, and career growth opportunities

 

Top Skills

AWS
Azure
Centralized Logging
Cspm
Edr
GCP
Iam
SIEM
Xdr

Similar Jobs

14 Hours Ago
Remote
United States
118K-162K Annually
Senior level
118K-162K Annually
Senior level
Healthtech
The Senior CyberSecurity Engineer will drive PAM initiatives, manage privileged access capabilities, and collaborate with various teams to implement and enhance security measures.
Top Skills: Active DirectoryAPIsAzure AdBeyondtrustCloud PlatformsCyberarkDelineaLinuxPowershellPrivileged Access ManagementPythonWindows
15 Hours Ago
Remote
US
108K-195K Annually
Senior level
108K-195K Annually
Senior level
Information Technology • Software
Responsible for managing cloud cybersecurity infrastructure, ensuring secure CI/CD pipelines, troubleshooting systems, and maintaining documentation while supporting government mission planning programs.
Top Skills: AnsibleAWSAzureBashChefComptia Security+DockerJenkinsKubernetesPowershellPuppetPythonStigTerraform
2 Days Ago
Remote
United States
118K-162K Annually
Senior level
118K-162K Annually
Senior level
Healthtech
The role involves designing and deploying Policy-Based Access Control solutions in IAM, collaborating with teams to meet business needs, and managing policies in PBAC platforms.
Top Skills: Azure InfrastructureAzure Kubernetes ServiceCi/Cd PipelinesGitGithub ActionsIdentity And Access ManagementPbacPolicy Based Access ControlPowershellRestful ApisShell ScriptingSQL

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account