Principal Security Engineer - SaaS Security Posture Mgt
$135k - $180kCitizens Bank
Job Description Principal Security Engineer, SaaS Security Posture Management, SSPM Platform Lead Location: Hybrid - 4 days onsite, 1 remote in one of the following hubs: | Pittsburgh, PA | Cleveland, OH Summary
Lead the strategy, rollout, and ongoing management of the enterprise SSPM program. Own the platform end to end, drive SaaS onboarding and security posture improvements, and partner across cybersecurity, risk, IT, and business teams to reduce data exposure and strengthen controls across a growing SaaS environment. Key Responsibilities
• Own SSPM platform management across planning, onboarding, configuration, and operations for enterprise SaaS applications
• Develop and execute SSPM roadmap aligned to risk, business criticality, and regulatory requirements
• Configure and continuously tune SSPM controls to monitor SaaS security posture and align with policy and best practices
• Conduct threat modeling and risk assessments for SaaS integrations and APIs
• Integrate SSPM with SIEM, SOAR, ITSM, and identity platforms to enable automation, alerting, and reporting
• Partner with Cyber Operations to define detection rules, alert thresholds, and escalation processes
• Establish SaaS governance processes including onboarding, configuration baselines, access reviews, and third party risk
• Track and report SSPM metrics such as posture scores, remediation timelines, and coverage to leadership
• Drive remediation of misconfigurations, excessive access, and data exposure with application owners
• Support compliance by mapping SSPM findings to frameworks such as NIST, CIS, SOC 2, PCI DSS, ISO 27001
• Maintain awareness of emerging SaaS threats and continuously enhance SSPM capabilities
• Contribute to SaaS security policies, standards, and training programs Required Qualifications
• Bachelor's degree or equivalent experience in Computer Science, Information Security, or related field
• 7+ years experience in cybersecurity engineering or related discipline
• 2+ years hands on experience with SSPM tools
• Deep knowledge of SaaS security models including APIs, OAuth, OIDC, federation, and SaaS integrations
• Experience securing enterprise SaaS platforms such as Microsoft 365, Salesforce, ServiceNow, Workday, Google Workspace
• Strong knowledge of SIEM, SOAR, ITSM, and security workflow orchestration
• Experience with identity and access management including least privilege, privilege escalation, and non human identities
• Understanding of regulatory frameworks including NIST, CIS, SOC 2, PCI DSS, ISO 27001
• Strong communication skills translating technical risk into clear actions
• Proven ability to lead cross functional initiatives and deliver results Preferred Qualifications
• Certifications such as CISSP, CCSP, CISM, SSCP, or cloud security certifications
• Experience with SaaS security and data protection platforms
• Scripting or automation experience such as Python or PowerShell
• Background in regulated industries such as financial services or healthcare
• Experience building security governance programs and risk frameworks
• Exposure to AI security risks including securing AI agents and preventing data leakage Core Skills
• Systems implementation and rollout, advanced, leads enterprise platform deployments and SaaS onboarding
• Compliance and controls, intermediate, implements and monitors controls aligned to regulatory standards
• Cybersecurity strategy, intermediate, aligns SSPM operations with enterprise security strategy
• Emerging technologies, advanced, evaluates and deploys new SaaS security and AI security capabilities
• Incident and problem management, intermediate, supports alert triage and remediation coordination
• Capacity optimization, intermediate, manages licensing and platform scale
• Contingency planning, intermediate, supports resiliency and monitoring continuity planning Core Capabilities
• Building relationships, advanced, partners across cyber, IT, risk, and business teams
• Industry insight, advanced, stays current on SaaS threats and SSPM market trends
• Technologically savvy, advanced, deep SSPM platform expertise and tool integration
• Leading others, intermediate, provides guidance and drives deliverables
• Strategic thinking, advanced, converts risk insights into actionable plans
• Customer centricity, advanced, designs effective onboarding and user experience
• Collaboration, intermediate, works cross functionally to solve security challenges
• Innovation, advanced, drives automation and continuous improvement
• Agility, advanced, adapts to evolving threats and priorities
• Inclusion, advanced, promotes inclusive collaboration across teams
• Performance measurement, advanced, defines KPIs and tracks outcomes
• Motivation, advanced, drives accountability and adoption across stakeholders Equal Opportunity Employer
We are committed to building a diverse and inclusive workplace. All qualified applicants will receive consideration for employment without regard to legally protected status. Pay Transparency
The salary range for this position is from $135,000 to $180,000 per year, plus an opportunity to earn an annual discretionary bonus. Actual pay is based on various factors including but not limited to, the budget, work location, relevant skills, and experience. We offer competitive pay, comprehensive medical, dental, and vision coverage, retirement benefits, maternity and paternity leave, flexible work arrangements, education reimbursement, wellness programs, and more. Citizens' paid time off policy exceeds the mandatory paid sick or paid time away policies of local and state jurisdictions in the United States. For an overview of our benefits, visit our Careers site - #LI-Citizens1 About Us Equal Employment Opportunity Citizens, its parent, subsidiaries, and related companies (Citizens) provide equal employment and advancement opportunities to all colleagues and applicants for employment without regard to age, ancestry, color, citizenship, physical or mental disability, perceived disability or history or record of a disability, ethnicity, gender, gender identity or expression, genetic information, genetic characteristic, marital or domestic partner status, victim of domestic violence, family status/parenthood, medical condition, military or veteran status, national origin, pregnancy/childbirth/lactation, colleague's or a dependent's reproductive health decision making, race, religion, sex, sexual orientation, or any other category protected by federal, state and/or local laws. At Citizens, we are committed to fostering an inclusive culture that enables all colleagues to bring their best selves to work every day and everyone is expected to be treated with respect and professionalism. Employment decisions are based solely on merit, qualifications, performance and capability. Equal Employment and Opportunity Employer Job Applicant Data Privacy Policy Background Check Any offer of employment is conditioned upon the candidate successfully passing a background check, which may include initial credit, motor vehicle record, public record, prior employment verification, and criminal background checks. Results of the background check are individually reviewed based upon legal requirements imposed by our regulators and with consideration of the nature and gravity of the background history and the job offered. Any offer of employment will include further information.
Lead the strategy, rollout, and ongoing management of the enterprise SSPM program. Own the platform end to end, drive SaaS onboarding and security posture improvements, and partner across cybersecurity, risk, IT, and business teams to reduce data exposure and strengthen controls across a growing SaaS environment. Key Responsibilities
• Own SSPM platform management across planning, onboarding, configuration, and operations for enterprise SaaS applications
• Develop and execute SSPM roadmap aligned to risk, business criticality, and regulatory requirements
• Configure and continuously tune SSPM controls to monitor SaaS security posture and align with policy and best practices
• Conduct threat modeling and risk assessments for SaaS integrations and APIs
• Integrate SSPM with SIEM, SOAR, ITSM, and identity platforms to enable automation, alerting, and reporting
• Partner with Cyber Operations to define detection rules, alert thresholds, and escalation processes
• Establish SaaS governance processes including onboarding, configuration baselines, access reviews, and third party risk
• Track and report SSPM metrics such as posture scores, remediation timelines, and coverage to leadership
• Drive remediation of misconfigurations, excessive access, and data exposure with application owners
• Support compliance by mapping SSPM findings to frameworks such as NIST, CIS, SOC 2, PCI DSS, ISO 27001
• Maintain awareness of emerging SaaS threats and continuously enhance SSPM capabilities
• Contribute to SaaS security policies, standards, and training programs Required Qualifications
• Bachelor's degree or equivalent experience in Computer Science, Information Security, or related field
• 7+ years experience in cybersecurity engineering or related discipline
• 2+ years hands on experience with SSPM tools
• Deep knowledge of SaaS security models including APIs, OAuth, OIDC, federation, and SaaS integrations
• Experience securing enterprise SaaS platforms such as Microsoft 365, Salesforce, ServiceNow, Workday, Google Workspace
• Strong knowledge of SIEM, SOAR, ITSM, and security workflow orchestration
• Experience with identity and access management including least privilege, privilege escalation, and non human identities
• Understanding of regulatory frameworks including NIST, CIS, SOC 2, PCI DSS, ISO 27001
• Strong communication skills translating technical risk into clear actions
• Proven ability to lead cross functional initiatives and deliver results Preferred Qualifications
• Certifications such as CISSP, CCSP, CISM, SSCP, or cloud security certifications
• Experience with SaaS security and data protection platforms
• Scripting or automation experience such as Python or PowerShell
• Background in regulated industries such as financial services or healthcare
• Experience building security governance programs and risk frameworks
• Exposure to AI security risks including securing AI agents and preventing data leakage Core Skills
• Systems implementation and rollout, advanced, leads enterprise platform deployments and SaaS onboarding
• Compliance and controls, intermediate, implements and monitors controls aligned to regulatory standards
• Cybersecurity strategy, intermediate, aligns SSPM operations with enterprise security strategy
• Emerging technologies, advanced, evaluates and deploys new SaaS security and AI security capabilities
• Incident and problem management, intermediate, supports alert triage and remediation coordination
• Capacity optimization, intermediate, manages licensing and platform scale
• Contingency planning, intermediate, supports resiliency and monitoring continuity planning Core Capabilities
• Building relationships, advanced, partners across cyber, IT, risk, and business teams
• Industry insight, advanced, stays current on SaaS threats and SSPM market trends
• Technologically savvy, advanced, deep SSPM platform expertise and tool integration
• Leading others, intermediate, provides guidance and drives deliverables
• Strategic thinking, advanced, converts risk insights into actionable plans
• Customer centricity, advanced, designs effective onboarding and user experience
• Collaboration, intermediate, works cross functionally to solve security challenges
• Innovation, advanced, drives automation and continuous improvement
• Agility, advanced, adapts to evolving threats and priorities
• Inclusion, advanced, promotes inclusive collaboration across teams
• Performance measurement, advanced, defines KPIs and tracks outcomes
• Motivation, advanced, drives accountability and adoption across stakeholders Equal Opportunity Employer
We are committed to building a diverse and inclusive workplace. All qualified applicants will receive consideration for employment without regard to legally protected status. Pay Transparency
The salary range for this position is from $135,000 to $180,000 per year, plus an opportunity to earn an annual discretionary bonus. Actual pay is based on various factors including but not limited to, the budget, work location, relevant skills, and experience. We offer competitive pay, comprehensive medical, dental, and vision coverage, retirement benefits, maternity and paternity leave, flexible work arrangements, education reimbursement, wellness programs, and more. Citizens' paid time off policy exceeds the mandatory paid sick or paid time away policies of local and state jurisdictions in the United States. For an overview of our benefits, visit our Careers site - #LI-Citizens1 About Us Equal Employment Opportunity Citizens, its parent, subsidiaries, and related companies (Citizens) provide equal employment and advancement opportunities to all colleagues and applicants for employment without regard to age, ancestry, color, citizenship, physical or mental disability, perceived disability or history or record of a disability, ethnicity, gender, gender identity or expression, genetic information, genetic characteristic, marital or domestic partner status, victim of domestic violence, family status/parenthood, medical condition, military or veteran status, national origin, pregnancy/childbirth/lactation, colleague's or a dependent's reproductive health decision making, race, religion, sex, sexual orientation, or any other category protected by federal, state and/or local laws. At Citizens, we are committed to fostering an inclusive culture that enables all colleagues to bring their best selves to work every day and everyone is expected to be treated with respect and professionalism. Employment decisions are based solely on merit, qualifications, performance and capability. Equal Employment and Opportunity Employer Job Applicant Data Privacy Policy Background Check Any offer of employment is conditioned upon the candidate successfully passing a background check, which may include initial credit, motor vehicle record, public record, prior employment verification, and criminal background checks. Results of the background check are individually reviewed based upon legal requirements imposed by our regulators and with consideration of the nature and gravity of the background history and the job offered. Any offer of employment will include further information.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Principal Security Engineer - SaaS Security Posture Mgt in Pittsburgh, PA vacancy
$145k - $180k
...Job Description Principal Security Engineer, DLP AI Automation, Platform Integration Location: Hybrid - 4 days onsite, 1 remote in one of the... ...platform integration and strategy across cloud, endpoint, SaaS, and emerging AI environments, driving scalable, automated...SuggestedLocal areaRemote workFlexible hours$171k - $273k
...efficient and accessible for all. We’re searching for a Staff Security Engineer - Enterprise Security. In this role, you will Define and... ...councils. Advanced familiarity with enterprise infrastructure, SaaS ecosystems, internal platforms, and the strategic integration...SuggestedWork at officeLocal area3 days per week- ...SVP, Vulnerability Management & Cloud Security Posture Platform Engineering We're seeking a team member for the role of SVP, Vulnerability Management & Cloud Security Posture Platform Engineering to join our Cybersecurity Engineering Tools & Platforms team. This role...SuggestedWork experience placement
$171k - $247k
...for all. We're searching for a Staff Security Engineer to join our Enterprise Security... ...that power Aurora's internal security posture at scale. In this role you will... ...identities, internal infrastructure, and SaaS environment. Design and build Aurora...SuggestedWork at officeLocal area3 days per weekEarly shift- ...Job Description Job Description Senior Security & Network Engineer | PJ Dick-Trumbull-The Lindy Group Pittsburgh | North Shore (Hybrid)... ...security leadership to continuously improve cybersecurity posture and risk management Participate in incident response, threat...SuggestedTemporary workFor contractorsRemote work
$57.1k - $154.3k
...Senior Security Engineer Category: Cyber Security Main location: United States, Pennsylvania, Various Alternate Location(s): United... ...within defined SLA windows. . Provide weekly security posture updates to the Delivery Manager covering open high-risk items...Permanent employmentFull timeLocal areaImmediate start$170.6k - $390k
...the best place in the world to grow your career in information security! The opportunity The Senior Network Security Architect... ...Join our dynamic team as a Senior Manager in Cybersecurity Engineering, where you will play a pivotal role in developing, managing, and...Summer holidayRemote workFlexible hours- ...the company's IT and IS responsibilities, ensuring systems are secure, reliable, well documented, and aligned with business operations... ...with vendors to remediate vulnerabilities and improve security posture • Maintain IT security documentation, issue tracking, and...Full timeWork at officeRemote workDay shift
- ...role: The Deputy Chief Information Security Officer (Deputy CISO) is a critical... ...advancing a modern, resilient security posture. This role offers the opportunity to... ...CIS frameworks Partner with IT and engineering to embed secure architecture, cloud security...Work at officeRemote workFlexible hours
$70.6k - $118.3k
...Information Security Operations Engineer Being on medication is tough enough. We want to make getting it the easy part. Getting prescriptions to patients has become increasingly complex. When things get messy along the prescription journey, pharmaceutical manufacturers...Flexible hours- ...Nakupuna Prime is seeking a Cybersecurity Information System Security Officer (ISSO) to support the U.S. Army Combat Capabilities Development... ...-level cybersecurity reports and briefings outlining system posture, risk status, compliance metrics, and remediation progress...
- ...storage available to scientists, engineers and scholars nationwide for... ...is seeking an Information Security Analyst/Engineer. This role is... ...security team, reporting to PSC’s Principal Information Security Officer... ...of PSC’s security posture by leveraging evidence-based...Permanent employmentFull timePart timeWork experience placement
- ...POA&M tracking activities, supporting remediation efforts and preparation of recurring cybersecurity scorecard data. - Monitor security tools and alerts, performing initial triage and escalating issues in accordance with defined processes. - Maintain and update incident...Minimum wageContract workTemporary workWork experience placementRemote work
$118.8k - $132k
...benefits package that includes bonus and 401(k). Primary Purpose of Position We are seeking a skilled and motivated Electrical Engineer with a strong background in high voltage transmission power, substation design, data center primary power infrastructure, on-site...$57.1k - $154.3k
...Senior Security Engineer We're standing up a dedicated vulnerability management practice at one of the largest banks in the US, automating what two vendor teams currently do by hand, and building the AI layer that takes it further. The work is hands-on, the impact is...Permanent employment- ...Senior Principal Digital Engineer We are seeking a highly experienced Senior Principal Digital Engineer to join our team supporting the modernization of Digital Engineering (DE) and Model-Based Systems Engineering (MBSE) for Naval Nuclear Laboratory (NNL) programs...For contractors
- ...Senior Cyber Security Engineer Pittsburgh, PA or Remote About Stack Stack is developing revolutionary AI and advanced autonomous systems... ..., data, and users across private cloud, public cloud, SaaS, on-prem, and remote user environments. Responsibilities...Remote work
- ...Security Engineer – Infrastructure Under the supervision of the Security Manager, the Security Engineer – Infrastructure is responsible for supporting the security and compliance of the firm's infrastructure, including networks, servers, workstations, and telecommunications...Work experience placementRemote work
$240k - $330k
...Planning team to define motion planning and control systems for secure, effective, and comfortable fleet operation in complex... ...senior team members, cultivating a culture of product-focused engineering, rigorous research, and advanced development. What we're looking...- ...meaningful impact? At Apex, we're building more than a consulting and engineering firm—we're creating a place where your career accelerates,... ...help shape what comes next. Your Responsibilities as a Principal Engineer - W/WW: Assist in the establishment, management,...Temporary workFor contractorsWork at office
$136.5k - $300k
...enablement content; partner with platform leads, product owners, engineers, and risk/compliance to ensure adoption at scale. Drive... ...reuse rate of patterns, cloud/resource cost efficiency, and security posture scores). Govern decisions and traceability: Establish...Temporary workWorldwideFlexible hours$97k - $143k
...customers through user acceptance testing. This position will work on projects that deploy and integrate solutions across the engineering portfolio, including: Portfolio/Project Management, PLM, CAD, Design Simulation, Design Automation, MES, ERP, Data Lake, and other...Work experience placementLocal areaRelocation- ...biomedical, semiconductor, industrial, consumer products, scientific, security, defense and aerospace sectors. ENGAGE with us today... ..., ensuring alignment with the current security assessment posture; Support SOX IT General Controls (ITGCs), including access...Full timeRelocation
- ...The Systems Engineer position is responsible for providing full cycle implementation and support of customer systems, while working across... ...Essential functions and responsibilities: Assists with security systems integration, mapping and software updates and helps...Full timeFor contractorsWork at officeLocal areaRemote workMonday to FridayShift workNight shift
- ...work that matters, your journey starts here! The Biomedical Engineering (BME) Department at Carnegie Mellon University is renowned for... ...softwarestacks, hardware integration plans, regulatory and manufacturing posture. Track partner progress against project deliverables,...Full timePart timeFixed term contractWork experience placement
$154k
...customer expectations, and regulatory requirements. Embed Secure by Design principles into engineering and product development processes across the lifecycle... ..., Compliance). Communicate cybersecurity risk posture to senior leadership. Support audits, customer, and...$154k - $225k
...role is accountable for advancing Eaton's Secure by Design strategy by embedding... ...The role partners closely with Global R&D Engineering, Product Management, IT, Legal, and Compliance... ...) Communicate cybersecurity risk posture to senior leadership Support audits,...RelocationVisa sponsorship- ...INC. Profession (Job Category): Engineering & Science Job Schedule: Full... ...headquartered in Pittsburgh, PA, seeks a Principal System RAMS Engineer to be responsible... ...Software Safety Analyses and Safety & Security Checklists, Hazards Log and RAM Monitoring...Full timeRemote workRelocation
$110.9k - $170.72k
...Location: Monroeville, Pennsylvania Job Title: Principal Electrical / Computer Engineer Status: Full-time Professional... ...supporting the United States Navy in their pursuit of national security. Competitive and attractive pay and benefits with...Full timeContract workFor contractors- ...functionality. Collaborate with vendor and client product, engineering, implementation, and support teams to resolve client issues.... ...Experience with healthcare technology implementations or SaaS solutions. Preferred Qualifications Experience with AI...Full timeContract workRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Security Engineer - SaaS Security Posture Mgt. Be the first to apply!
Related searches
- engineering director Pittsburgh, PA
- principal engineer Pittsburgh, PA
- director software engineering Pittsburgh, PA
- general engineer Pittsburgh, PA
- principal developer Pittsburgh, PA
- data center chief engineer Pittsburgh, PA
- civil engineer project manager Pittsburgh, PA
- senior civil engineer project manager Pittsburgh, PA
- chief engineer Pittsburgh, PA
- hotel chief engineer Pittsburgh, PA



