
Dice Talent & Staffing Solutions
Hybrid in Denver, Colorado • Yesterday
Easy Apply
Full-time
170,000 - 200,000
424 results (11 new)

Dice Talent & Staffing Solutions
Hybrid in Denver, Colorado • Yesterday
Easy Apply
Full-time
170,000 - 200,000
















Providence Health & Services
Remote or Renton, Washington • Today
Full-time
Compensation information provided in the description







Remote from Denver, infrequent on site will be required | Information Security | Full-Time
Candidates requiring sponsorship, now or in the future, will not be considered for this role
No C2C please
We are hiring a Senior Security Engineer / Architect to serve as the principal technical authority for information security and the Chief Information Security Officer''''s most trusted technical partner. Reporting directly to the CISO, this individual translates security strategy into architecture, capability, and operational reality, owning the technical blueprint that protects the organization''''s most confidential and sensitive information.
This is a high-visibility, high-trust position for a seasoned practitioner ready to operate as the organization''''s go-to technical expert across detection engineering, incident response, and security architecture. You will shape the technical roadmap, lead engineering execution behind the security strategy, and influence how security investments are used. You will serve as the lead technical voice during incidents, mentor the broader team, and support the CISO in representing security capabilities to clients, regulators, and auditors.
What makes this role unusual is that it demands both dimensions in full. You are expected to be the hands-on practitioner who builds, tunes, and operates the security environment, and the enterprise architect who evaluates what the organization should be running, why, and what alternatives exist. You will be asked to make defensible technology recommendations — not just implement decisions handed down from above — which means knowing the security tool landscape broadly enough to compare options, identify gaps in the current stack, and articulate a clear rationale for the path forward to the CISO and other senior stakeholders.
This is the senior-most individual contributor role on the security team. It is a net-new position built around technical strategy and implementation leadership rather than people management, and it carries the influence, autonomy, and expectations that come with that distinction. There is no direct report responsibility, though the role includes program management and mentorship of other engineers and analysts.
• Provide architectural oversight across the security stack, ensuring identity, endpoint, network, data, and cloud controls are designed and implemented coherently and in line with best practices.
• Own the design, deployment, and continuous improvement of security controls across Microsoft Entra ID, Conditional Access, Azure, and the broader Microsoft Defender suite (Endpoint, Identity, Cloud, Cloud Apps), driving full utilization of licensed protections and staying current with Microsoft''''s evolving security platform.
• Serve as the CISO''''s primary technical advisor on security design, investment, and risk decisions; partner on business case development and contribute to executive presentation of major initiatives.
• Lead technical evaluation of security technologies across the full ecosystem: conduct structured proof-of-concept assessments, evaluate competing platforms and tools against current deployments, identify capability gaps and overlaps, and develop defensible recommendations that inform technology investment and architecture decisions.
• Maintain working knowledge of the broader security tool landscape beyond the current stack, including competing identity providers, SIEM platforms, endpoint detection solutions, and cloud security posture management tools, in order to benchmark current capabilities and surface alternatives when the environment warrants.
• Partner with infrastructure, identity, and application teams to embed security into every project lifecycle, leading design reviews, threat modeling, and risk-based recommendations.
• Own the detection engineering lifecycle in the enterprise SIEM platform: develop, tune, and retire analytics rules; build and refine workbooks; curate connectors and data sources for high-fidelity visibility.
• Design and implement User and Entity Behavior Analytics (UEBA), baselining normal activity for users, service accounts, and entities, and tuning anomaly detections to surface meaningful risk while minimizing analyst fatigue.
• Set strategy for SIEM log onboarding, parsers, filters, and ingestion pipelines, balancing signal fidelity against cost and aligning telemetry with detection priorities.
• Build and curate advanced KQL libraries, hunting notebooks, and automations (Logic Apps, playbooks, SOAR-style workflows) that elevate the team''''s capability and accelerate triage, enrichment, and response.
• Continuously benchmark detection coverage against current adversary tradecraft.
• Lead a proactive, hypothesis-driven threat hunting program: define methodology, set cadence, and own outcomes across endpoints, identity, email, cloud workloads, and SaaS, leveraging Sentinel, Defender XDR Advanced Hunting, and other tools.
• Translate industry, sector, and geopolitical threat intelligence into actionable detections, hunts, and architectural improvements.
• Mature the threat hunting program over time, ensuring documented hypotheses, tracked coverage gaps, and a durable feedback loop into detection engineering and architecture.
• Serve as the lead technical responder during significant security incidents, directing investigation, containment, eradication, and recovery under the CISO''''s overall incident leadership, partnering with an existing MDR provider and other external resources as appropriate.
• Lead deep-dive forensic analysis across Microsoft 365, Entra ID, Azure, endpoints, email, and network telemetry; reconstruct attacker activity; produce clear, defensible findings for executive and client audiences.
• Author and maintain incident response playbooks; co-lead tabletop exercises and after-action reviews; ensure lessons learned become durable engineering and architectural improvements.
• Lead technical execution of the identity security strategy, guiding architectural decisions across Entra ID, including Conditional Access, Privileged Identity Management, Identity Protection, and risk-based authentication, aligned to a Zero Trust strategy.
• Partner on the design and operation of data protection controls such as Microsoft Purview information protection, DLP, insider risk management, and eDiscovery.
• Drive secure configuration baselines for Microsoft 365 and Azure workloads, including CIS benchmarks, Microsoft Secure Score, and organization-specific hardening standards.
• Serve as the senior technical voice within the security team; mentor analysts and engineers, raise the bar on detection, hunting, and response, and contribute to hiring decisions for the function.
• Support the CISO in client security reviews, third-party audits, and regulatory inquiries; act as a primary technical voice during high-stakes external engagements.
• Help shape the organization''''s security culture through clear, credible communication with non-technical audiences.
• Ten or more years of progressive experience in information security, including substantial time as a senior individual contributor in security engineering, detection engineering, or threat analysis roles.
• Relevant certifications are valued and, in some cases, may substitute for portions of the experience requirements: CISSP, GCIH, GCDA, GCFA, OSCP, and/or Microsoft certifications such as SC-100/200/300 and AZ-500.
• A documented track record of leading security architecture and detection engineering initiatives end-to-end with measurable improvements to an organization''''s security posture.
• Deep, hands-on mastery of the Microsoft enterprise security stack, including Entra ID, Conditional Access, Microsoft 365, Azure, Microsoft Sentinel, and the Microsoft Defender suite.
• Demonstrated experience setting detection engineering strategy in a modern SIEM, including authoring and tuning high-fidelity analytics rules, implementing and tuning UEBA, and managing log sources and ingestion economics at scale; advanced proficiency with KQL is required.
• Proven experience serving as the lead technical responder or incident commander on significant security incidents, including investigations spanning cloud identity, email, endpoints, and SaaS.
• Fluency with adversary tradecraft and frameworks including MITRE ATT&CK, the cyber kill chain, and Zero Trust architectural principles.
• Recognized strength across core security architecture domains: identity, endpoint, network, email, data protection, and cloud security.
• Breadth across the security tool ecosystem beyond any single vendor; demonstrated ability to evaluate, compare, and recommend security technologies through structured assessment, with enough market knowledge to identify where current tools are the right fit and where gaps or alternatives merit consideration.
• Scripting and automation depth in PowerShell and at least one general-purpose language (Python preferred) for detection, enrichment, response, and analytics workflows.
🔢 Crunching numbers...
Lone Tree, Colorado
•
Today
The ISR (Intelligence, Surveillance & Reconnaissance), Aviation, and Security (IAS) business area is a leader in ISR and aviation, it is a leading prime manned and unmanned aircraft systems integrator for innovative, high-performance ISR and aviation systems. Its end-to-end Command, Control, Computers, Communications and Intelligence, Surveillance & Reconnaissance (C4ISR) capabilities encompass design, integration, test, certification, ground/flight training and complete logistics support. IAS t
Full-time
USD 108,496.89 - 149,183.22 per year
No location provided
•
Today
The Senior Security Engineer plays a critical role in designing, implementing, and maintaining the security infrastructure of the organization. This position is responsible for ensuring the confidentiality, integrity, and availability of enterprise systems and data across on-premises and cloud environments. The ideal candidate possesses deep expertise in cybersecurity threats, tools, and frameworks and has the ability to develop and oversee enterprise-level defenses that mitigate risk and impro
Full-time
USD 117,000.00 - 132,000.00 per year
Colorado Springs, Colorado
•
Today
Who is Trace3? Trace3 is a leading Transformative IT Authority, providing unique technology solutions and consulting services to our clients. Equipped with elite engineering and dynamic innovation, we empower IT executives and their organizations to achieve competitive advantage through a process of Integrate, Automate, Innovate. Our culture at Trace3 embodies the spirit of a startup with the advantage of a scalable business. Employees can grow their career and have fun while doing it! Trace3
Full-time
USD 170,000.00 - 190,000.00 per year
Remote
•
Today
Company Description Guardant Health is a leading precision oncology company focused on guarding wellness and giving every person more time free from cancer. Founded in 2012, Guardant is transforming patient care and accelerating new cancer therapies by providing critical insights into what drives disease through its advanced blood and tissue tests, real-world data and AI analytics. Guardant tests help improve outcomes across all stages of care, including screening to find cancer early, monitor
Full-time
USD 110,755.00 per year