Corient Logo

Corient

Senior Security Engineer

Posted Yesterday
Be an Early Applicant
In-Office
Denver, CO, USA
Senior level
In-Office
Denver, CO, USA
Senior level
Designs, implements, and improves enterprise security capabilities across endpoint, cloud, network, data protection, email security, vulnerability management, SIEM, SOAR, and Zero Trust environments. Owns major security platforms including Rapid7, Microsoft Defender, Microsoft Purview, Mimecast, and Zscaler. Develops scalable architectures, detection and automation workflows, vulnerability controls, email protections, and security integrations while partnering with infrastructure, network, cloud, application engineering, security operations, and MDR teams.
The summary above was generated by AI

Join a team that values your ambition and empowers your growth

 

At Corient, we help high- and ultra-high-net-worth individuals and families to enjoy a full life, while enabling them to preserve their wealth for future generations, and provide for the people, causes and communities they care about. We focus on exceeding expectations, simplifying lives, and establishing legacies that last for generations. We are always looking for talented and motivated individuals to join our team. If you want to work for a company that values your contributions and supports your growth, we would like to meet you.

Senior Security Engineer 

About the Role 

We are seeking a Senior Security Engineer to design, implement, and continuously improve enterprise security capabilities across endpoint, cloud, network, data, and security operations environments. 

This is a hands-on senior engineering role responsible for the architecture, implementation, integration, and optimization of core security platforms, including Rapid7, Microsoft Defender, Microsoft Purview, Mimecast, and Zscaler. The engineer will serve as a technical owner for these platforms and translate security requirements and identified risks into scalable technical controls. 

The role works closely with Security Operations, Infrastructure, Network, Cloud, and Application Engineering teams and requires the ability to independently lead complex technical initiatives and solve problems across multiple technology domains. 

Key Responsibilities 

Security Platform & Architecture Engineering 

  • Serve as a senior technical owner for enterprise security platforms, leading complex implementations, integrations, migrations, and major technology changes. 
  • Establish scalable security architectures, engineering standards, and configuration baselines aligned with secure-by-design, defense-in-depth, and Zero Trust principles. 
  • Evaluate existing and emerging capabilities to close security gaps, improve effectiveness, simplify the technology environment, and provide senior-level technical guidance across engineering teams. 

SIEM, Detection & Security Operations Engineering 

  • Engineer and evolve Rapid7 InsightIDR and supporting SIEM capabilities, including telemetry, detection logic, correlation, alerting, and visibility across enterprise environments. 
  • Partner with Security Operations and MDR providers to improve detection coverage, reduce operational noise, and translate lessons from incidents into improved controls. 
  • Develop SOAR workflows and platform integrations that automate enrichment, investigation, response, remediation, and other security processes. 

Vulnerability Management Engineering 

  • Engineer and evolve Rapid7 InsightVM capabilities to provide comprehensive and actionable vulnerability visibility across endpoints, servers, network infrastructure, and cloud workloads. 
  • Improve vulnerability prioritization and remediation by incorporating severity, exploitability, asset criticality, and environmental context. 
  • Partner with technology teams to identify coverage gaps, validate remediation, and improve vulnerability management through automation and platform integration. 

Microsoft Security & Data Protection 

  • Engineer and optimize Microsoft Defender capabilities across enterprise endpoints, servers, cloud workloads, and Microsoft 365 environments. 
  • Design and maintain preventative and detective controls, including endpoint protection, attack surface reduction, threat protection, and related security policies. 
  • Engineer Microsoft Purview Data Loss Prevention and information protection capabilities to protect sensitive information while balancing security requirements with legitimate business processes. 

Email Security Engineering 

  • Engineer and optimize Mimecast or comparable Secure Email Gateway capabilities to protect against phishing, malware, business email compromise, impersonation, and other email-borne threats. 
  • Maintain layered email security controls and secure mail-flow architecture across Microsoft 365 and third-party security platforms, including SPF, DKIM, and DMARC. 
  • Continuously improve email security controls based on emerging threats, security events, and observed control effectiveness. 

Zero Trust & Network Security 

  • Support the continued development of Zero Trust capabilities using Zscaler and related technologies. 
  • Partner with Network Engineering to strengthen secure internet access, traffic inspection, application control, and network security enforcement. 
  • Improve security controls through the effective use of identity, device posture, application, network, and threat context. 

Qualifications 

  • Bachelor's degree in Computer Science, Engineering, Information Security, or a related field, or equivalent professional experience. 
  • 7+ years of experience in security engineering, infrastructure security, cloud security, or a related technical discipline, with demonstrated experience independently designing and implementing enterprise security solutions. 
  • Strong hands-on experience across multiple security domains, including SIEM/detection engineering, vulnerability management, endpoint security, data protection, email security, and security automation. 
  • Experience with technologies such as Rapid7 InsightIDR/InsightVM, Microsoft Defender/Purview, Mimecast or comparable Secure Email Gateway technologies, and Zscaler or comparable SASE/Secure Web Gateway platforms. 
  • Strong scripting, automation, integration, and troubleshooting skills using technologies such as PowerShell, Python, REST APIs, and platform APIs. 
  • Strong understanding of enterprise security architecture, Zero Trust, defense-in-depth, and frameworks such as NIST CSF, CIS Controls, and MITRE ATT&CK. 

Preferred Qualifications 

  • Experience engineering security technologies within a large, distributed enterprise or hybrid cloud environment. 
  • Experience integrating SIEM, MDR, endpoint security, vulnerability management, email security, ticketing, and SOAR technologies. 
  • Relevant security or technology certifications such as CISSP, CCSP, GIAC, Microsoft, Rapid7, Zscaler, Mimecast, or comparable certifications. 

 

Physical Requirements

  • This position requires the physical capabilities to work in an office environment, which may include prolonged periods of sitting at a desk and working on a computer. Corient seeks to make reasonable accommodations that enable individuals with disabilities to perform essential duties when possible.
  • This position may require the ability to lift up to 15 pounds.
  • This position is required to work onsite 4 days per week.

U.S. Eligibility Requirements

  • Must be 18 years of age or older.
  • Must have unrestricted work authorization to work in the United States. For U.S. employment opportunities, Corient hires U.S. citizens or permanent residents. Exceptions to these requirements will be determined based on shortage of qualified candidates with a particular skill. Corient will require proof of work authorization.
  • Corient participates in E-Verify and will provide the federal government with your Form I-9 information to confirm that you are authorized to work in the U.S. If E-Verify cannot confirm that you are authorized to work, this employer is required to give you written instructions and an opportunity to contact Department of Homeland Security (DHS) or Social Security Administration (SSA) so you can begin to resolve the issue before the employer can take any action against you, including terminating your employment. Employers can only use E-Verify once you have accepted a job offer and completed the Form I-9.
  • Must be willing to execute Corient’s Employee Agreement or Confidentiality and Non-Disclosure Agreement, which require, among other things, post-employment obligations relating to non-solicitation, confidentiality, and non-disclosure.

What You Can Expect from Us

Our dedication to the Employee Experience at Corient is aimed at supporting, empowering, and inspiring our talented team through:

  • 401(k) Plan with Employer Matching 
  • Four Medical Plan options that is generously subsidized by Corient
  • Employer paid Dental, Vision & Life and AD&D Insurance 
  • Employer paid Short-term & Long-term Disability  
  • Paid Maternity & Parental Leave 
  • Flexible Spending Accounts & Health Savings Accounts
  • Dependent Care FSA 
  • Commuter & Transit FSA 
  • Corporate Discount Program - Perkspot 
  • Training Reimbursement  
  • Paid Professional Designations  
  • Giving back to the community - Volunteer days

Corient is the world’s largest multi-family office and non-bank wealth manager focused on serving ultra-high- and high-net-worth clients. As the industry’s only global professional services partnership, we combine the personal service and objectivity of a boutique with the scale and resources of a global institution. Our partnership model fosters collaboration over competition, bringing together the collective expertise of Corient to each relationship to deliver a transparent, client-first experience. As a fully integrated global firm, we deliver comprehensive solutions across investment management, wealth strategy and family office services to help clients simplify their lives, manage their wealth and establish lasting legacies.


Full participation of all employees in a safe, healthy and respectful environment is key to individual and company success. We are committed to fully utilizing the abilities of all our employees and expect each of our employees to honor this commitment in their daily responsibilities.


We are an equal opportunity employer. All candidates will be recruited and, if applicable, selected and employed without regard to sex, race, religion, marital status, veteran status, age, national origin, sexual orientation, gender identity, color, creed, ancestry, disability, genetic information or any other basis prohibited by law.


This position description is intended to provide a general overview of the expectations and responsibilities of this position and may not include all tasks that may be assigned. As the nature of business demands change, so may the functions of this position. Additional duties and responsibilities may be assigned with or without notice.


Corient refers to the separate but affiliated entities under common control of Corient Holdings Inc. Client assets include all assets of Corient Holdings Inc., including majority- and minority-owned businesses.

Similar Jobs

11 Days Ago
Hybrid
180K-200K Annually
Senior level
180K-200K Annually
Senior level
Fintech • Mobile • Payments • Software • Financial Services
Build and operate security solutions for detection engineering, threat hunting, incident response, and threat intelligence. Investigate security incidents, perform root-cause analysis, monitor systems, and help scale a world-class SOC. The role involves large-scale distributed systems, endpoint and cloud security technologies, collaboration across platform teams, project ownership, and participation in on-call rotations.
Top Skills: Asynchronous Message QueuesCloud InfrastructureEdrElasticGoLinuxmacOSMicroservices ArchitecturePythonRestful ApisSIEMWafWindows
12 Days Ago
Easy Apply
Remote or Hybrid
Easy Apply
158K-239K Annually
Senior level
158K-239K Annually
Senior level
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Build and operate MITRE ATT&CK-aligned threat detections across cloud, endpoint, identity, email, and application telemetry. Own the full detection lifecycle, advance detection-as-code platforms, improve data pipelines and observability, integrate threat intelligence, evaluate AI-powered security capabilities, and support investigations and incident response. Partner with Security Operations and engineering teams while independently taking projects from concept through production.
Top Skills: Agentic FrameworksAirflowAWSChatopsCi/CdContainersDatabricksEdrFedrampGitGoLinuxLlmsMcpMitre Att&CkPythonSIEMSQLTerraform
11 Hours Ago
Hybrid
Senior level
Senior level
Big Data • Real Estate • Software
Secure Realtor.com’s AI platforms across AWS and GCP by designing agent guardrails, identity controls, containment, supply-chain protections, detection, and incident response. Lead threat modeling, secure CI/CD, AI red teaming, and secure-by-default platform frameworks. Partner with enterprise cybersecurity, build security automation using AI agents, educate teams, evaluate emerging threats and vendors, and advise leadership on AI governance and risk.
Top Skills: Amazon BedrockAmazon GuarddutyAWSAws IamAws KmsAws LambdaAws ScpsAws Security HubClaudeClaude CodeCloud KmsCosaiDevinEu Ai ActGCPGcp IamGcp Organization PoliciesGeminiGithub ActionsGleanGoGoogle SaifHugging FaceIso 42001McpMitre AtlasNist Ai RmfNist SsdfOauthOidcOwasp AsvsOwasp Llm/Genai Top 10PythonSastScaSecurity Command CenterSnowflakeSsoStrideTerraformTypescriptVertex AiVpc Service Controls

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account