SaaS Security Engineer
6–9 Month Contract | Potential Extension
Hybrid – New York City | 2–3 Days/Week Onsite
Overview
Our client is seeking a SaaS Security Engineer to help strengthen the security posture of its critical SaaS applications. This role will focus heavily on SaaS Security Posture Management (SSPM), including onboarding applications into an SSPM platform, identifying and remediating security findings, partnering with application owners, and tracking improvements in SaaS security posture over time.
The ideal candidate has hands-on experience with an SSPM platform such as CrowdStrike Falcon Shield, AppOmni, Obsidian Security, Grip Security, DoControl, or a similar tool.
Important: This role specifically requires experience using an SSPM tool. Experience solely with EDR, ITDR, SIEM, or traditional security monitoring tools does not meet the core requirement.
What You'll Do
- Onboard critical SaaS applications into an SSPM platform to establish security visibility and baseline posture.
- Use SSPM tooling to identify misconfigurations, security gaps, excessive permissions, and other SaaS security findings.
- Partner directly with application owners and business stakeholders to understand findings and drive remediation.
- Translate SaaS security issues into practical, understandable recommendations for stakeholders who may not have a security background.
- Track remediation progress and maintain visibility into security finding burndown.
- Report on improvements to SaaS security posture through MBR/MTM metrics and reporting.
- Work with security and application teams to harden high-value SaaS applications.
- Support security efforts across critical applications such as Salesforce, Workday, Box, Microsoft 365/SharePoint Online, and similar platforms.
- Develop or enhance scripts and workflows to improve efficiency and automate repetitive security processes.
- Use Python or other scripting/programming languages to support automation, integrations, reporting, and workflow optimization.
- Identify opportunities to leverage AI and emerging AI models to improve security workflows, automate processes, and optimize existing systems.
- Help continuously improve SaaS security processes, tooling, and operational workflows.
What We're Looking For
- Hands-on experience with an SSPM (SaaS Security Posture Management) platform.
- Experience with CrowdStrike Falcon Shield is highly desirable, but experience with other SSPM platforms such as AppOmni, Obsidian Security, Grip Security, DoControl, or similar tools is also relevant.
- Demonstrated experience onboarding SaaS applications into an SSPM platform, establishing visibility, reviewing findings, and driving remediation.
- Experience working directly with application owners, business stakeholders, and technical teams to remediate SaaS security findings.
- Familiarity with securing enterprise SaaS applications, ideally including one or more of:
- Salesforce
- Workday
- Box
- Microsoft 365
- SharePoint Online
- Experience tracking security remediation, burndown, KPIs/KRIs, or similar security posture metrics.
- Python or other scripting/programming experience preferred.
- Ability to understand technical security findings and communicate them effectively to non-security stakeholders.
- Strong problem-solving skills with an interest in automation and continuous workflow improvement.
- Experience using AI/LLM technologies to improve or automate security workflows is a plus.
- Ability to work in a hybrid NYC environment 2–3 days per week.
Application Security Engineer in New York City Metropolitan Area at Clear Point Consultants
This position is listed as contract and hybrid. It was posted 5 days ago.