Education: Bachelor's degree or related field
Experience: 8+ years
We are looking for a Senior Staff SaaS Security Engineer reporting within the Defensive Engineering leadership team in Global Cyber Security (GCS). You will lead the deployment, integration, and operationalization of SaaS security platforms and controls, enabling visibility, governance, and protection across the enterprise SaaS ecosystem.
The team you will be joining is part of the Defensive Engineering, in Global CyberSecurity , a function that is critical to the company's cybersecurity strategy. As enterprise adoption of SaaS applications and AI-enabled services continues to grow, this role will help ensure these platforms are securely deployed, continuously monitored, and protected against evolving SaaS-to-SaaS, identity-based, and agent-to-SaaS threats.
- Lead the deployment, integration, and operationalization of SaaS Security Posture Management (SSPM), SaaS threat protection, and governance capabilities across enterprise SaaS platforms. - Partner with application owners, platform teams, and security stakeholders to onboard SaaS applications, implement security controls, and drive remediation of identified risks. - Design and maintain SaaS security integrations, API-based telemetry collection, and automation workflows to provide continuous visibility into SaaS security posture and threats. - Develop and maintain SaaS security standards, architecture documentation, operational procedures, and implementation guidelines. - Track and report key SaaS security metrics, including application coverage, posture findings, threat exposure, and remediation progress.
- Hands-on experience with SSPM, CASB, SaaS security, or SaaS threat protection platforms such as Obsidian Security. - Strong understanding of SaaS-to-SaaS, identity-to-SaaS, and agent-to-SaaS threats, including account takeover, OAuth abuse, privilege escalation, data exposure, and unauthorized application access. - Experience onboarding enterprise SaaS applications and implementing security controls through APIs, automation, and governance frameworks. - Strong knowledge of OAuth, OpenID Connect (OIDC), SAML/SSO, API permission models, and modern SaaS security architectures. - Strong analytical, problem-solving, automation, and scripting skills.
- Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience. - 8+ years of experience in information security with a focus on SaaS security, cloud security, identity security, or platform security. - 5+ years of hands-on experience with SSPM, CASB, SaaS threat protection, or related security technologies. - Experience working in financial services or other highly regulated industries preferred. - Relevant cloud or information security certifications (e.g., CISSP, CCSP, AWS/Azure Security) preferred.
- Experience securing enterprise SaaS ecosystems and managing application risk at scale. - Experience working with modern SaaS platforms, APIs, automation frameworks, and cloud-native security technologies. - Knowledge of emerging AI and agentic technologies and their impact on SaaS security is a plus.
- Hybrid work model in accordance with company policy. - Ability to collaborate effectively with global teams across multiple time zones. - Standard business hours with flexibility to support critical incidents and deployments when required.
Search Senior Staff SaaS Security Architect jobs near Boston, MA → Browse all live jobs
This posting was published by State Street Bank GmbH on their own careers system and is shown here with a direct link to apply there. Employers: for corrections or removal, contact jobs@veritahire.com.