Information Security Engineer – SaaS Security & Continuous Threat Exposure Management (CTEM) at Resource Consultings Services Inc. | Torre

Information Security Engineer – SaaS Security & Continuous Threat Exposure Management (CTEM)

Emma highlights
This highlight was written by Emma’s AI. Ask Emma to edit it.
Freelance
Recurrent
Provide your expected compensation while applying
location_on
Remote (for United States residents)
Shared by
Daniel Correa Laverde
about 2 months ago

Responsibilities


Job Summary:Looking for an Information Security Engineer focused on SaaS Security, Vulnerability Management, and Continuous Threat Exposure Management (CTEM). The candidate will secure enterprise SaaS platforms, identify security risks, improve security posture, and collaborate with vendors and internal stakeholders.Key Responsibilities:Manage and secure SaaS platforms including Workday, Monday.com, Epic, and other enterprise applications.Perform SaaS security assessments focusing on misconfigurations, access risks, insecure integrations, and identity-related vulnerabilities.Support Continuous Threat Exposure Management (CTEM) by identifying and prioritizing the highest security risks.Build SaaS application inventory and maintain security posture documentation.Develop security baselines and hardening standards aligned with CIS/NIST frameworks.Work with SaaS vendors, application owners, IAM, GRC, and security teams to drive remediation.Track vulnerabilities, risks, remediation plans, and compliance requirements.Provide technical and executive-level security reporting.Leverage AI tools to improve security analysis and automation.Required Skills:5+ years of cybersecurity experience with 3+ years in vulnerability management, threat analysis, or security assessments.Strong experience with SaaS Security / SSPM / CASB / IAM.Hands-on experience with tools such as: Wiz, Microsoft Defender, Netskope, Entra ID (Azure AD), Okta.Strong understanding of: Vulnerability Management, Risk Assessment & Mitigation, Identity Security, Cloud/SaaS Security, Security Frameworks (CIS, NIST).Excellent communication skills with ability to work with vendors and business stakeholders.Experience with Windows, Linux, MacOS, and networking security concepts.Preferred Skills:Healthcare cybersecurity experience.Experience with Workday, Epic, Monday.com, or enterprise SaaS applications.Certifications: CISSP, Security+, CASP+, GIAC, or equivalent.Experience with: Azure/AWS Security, DevSecOps, Incident Response, Power BI / Power Automate, Generative AI security automation.Regards Sajjad Sr. Executive – Talent Acquisition Resource Consultings Services Inc.