Senior Security Engineer

Jahnel GroupSchenectady, NY
12dRemote

About The Position

Jahnel Group’s mission is to provide the absolute best environment for software creators to pursue their passion by connecting them with great clients doing meaningful work. We get to build some of the most complex and compelling applications for our clients located across the country. We’re a fast-growing INC 5000 recognized company, yet we still work as a very close-knit team (100+ employees). We’re growing like crazy, and if you’re looking for the next place to call home, hit us up for a beer or coffee. Who We’re Looking For We are in search of a Senior Security Engineer to join our engineering organization. We are seeking a hands-on security expert who brings strong judgment, ownership, and real-world risk assessment experience to modern cloud-native environments. This role is focused on security signal ownership, not checkbox compliance. You will act as the authority on application and infrastructure security findings—bringing together signals from multiple tools, applying exploitation knowledge, and determining what actually matters. You’ll partner closely with development, DevOps, and SRE teams to ensure security efforts reduce real risk while enabling teams to deliver services at scale.

Requirements

  • Bachelor’s degree in Computer Science, Cybersecurity, or related field (or equivalent experience).
  • 10+ years of experience in security engineering, application security, cloud security, or senior technical roles.
  • Deep expertise in application security vulnerabilities, exploitation techniques, and cloud/infrastructure security.
  • Experience with CVEs, threat modeling, incident response, and security monitoring.
  • Proven ability to assess severity beyond scanner output, balance risk and business impact, and challenge “checkbox security.”
  • Strong communication skills, able to translate security risk for engineers and leadership.

Responsibilities

  • Conduct threat modeling, risk analysis, and mitigation planning for cloud-native applications and infrastructure.
  • Embed security practices across all phases of the SDLC and CI/CD pipelines.
  • Analyze and validate application and infrastructure security findings, distinguishing real-world risk from theoretical vulnerabilities.
  • Consolidate security signals from multiple sources, prioritize findings, and ensure actionable context for engineering teams.
  • Collaborate with development, DevOps, and SRE teams to route validated findings and recommend effective mitigations.
  • Serve as the human intelligence layer above automated tools, adjusting severity based on impact, likelihood, and context.
  • Continuously improve security processes, automation, and risk communication across the organization.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service