Senior Security Engineer, Vulnerability & Data/SaaS Security

Marqeta

Confirmed live yesterday High trust
Remote

Quick summary

Work type
Remote
Location
Ontario, CanadaBritish Columbia, Canada
Salary
$136,800–$171,000 / yr
Posted
15 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $174k
This role $154k
$118k most similar roles pay here $223k

This role pays less than 68% of similar roles. Most pay $145,000–$202,625 — the shaded band above. At the midpoint, this role pays about $154k versus about $174k for comparable roles.

Based on 240 similar postings.

Employer

About Marqeta

Marqeta is a modern card issuing platform that provides open API technology for businesses to create, issue, and manage customized payment cards, powering payment programs for fintech companies and enterprises. Industry: Financial Technology & Card Issuing

Marqeta currently has 17 open roles on FindRole.

Listed pay typically runs $158,550–$198,200 across 14 roles with salary data.

Most-posted roles

View all roles at Marqeta

At a glance

TL;DR · Senior Security Engineer, Vulnerability & Data/SaaS Security

Senior Security Engineer - Vulnerability & Data/SaaS Security The Senior Security Engineer manages the daily operations and continuous improvement of vulnerability management, cloud security posture, and data and SaaS security programs. This role sits at the center of the security tooling ecosystem, where you will oversee the end-to-end lifecycle of vulnerabilities across infrastructure, applications, and containers. You will build and maintain API integrations between tools like Tenable, Snyk, StackHawk, CrowdStrike, Sentra, Reco, and ArmorCode while automating remediation workflows in Jira. Key responsibilities include managing AWS infrastructure security, monitoring for misconfigurations, and overseeing data discovery and SaaS governance. To succeed, you must possess strong scripting skills in Python and experience with REST APIs to develop automated data pipelines. You will also translate technical risks into business-risk narratives for executive leadership while ensuring compliance with frameworks like PCI DSS, SOX, SOC 2, and ISO 27001.

What does a Security Engineer earn?

Median $185250 from 84 postings across 39 companies.

See salary data

What you'll do

  • Manage the end-to-end vulnerability management lifecycle including triage, prioritization, and remediation tracking across infrastructure and applications.
  • Oversee the Cloud Security Posture Management (CSPM) program to identify and remediate AWS misconfigurations and policy violations.
  • Lead Data Security Posture Management (DSPM) and SaaS Security Posture Management (SSPM) programs to monitor sensitive data and third-party apps.
  • Automate ticket creation and remediation workflows in Jira while managing risk exceptions and false-positive reviews.
  • Build and maintain API integrations between security tools and downstream systems like SIEM, CMDB, and data warehouses.
  • Develop scripts to enrich findings with asset context and automate manual triage processes.
  • Create executive dashboards and reports that translate technical risks into business narratives for leadership and audit stakeholders.

What we're looking for

  • 5+ years of experience in security engineering, specifically in vulnerability management, cloud security, or application/SaaS security programs.
  • Experience using vulnerability scanning platforms like Tenable and application security tools such as Snyk and StackHawk.
  • Hands-on experience with CSPM tooling for AWS infrastructure and endpoint/cloud workload detection platforms like CrowdStrike Falcon.
  • Experience with DSPM tooling (Sentra or equivalent) and SSPM tooling (Reco or equivalent).
  • Experience with security findings aggregation/ASPM platforms (e.g., ArmorCode) and ticketing integration via Jira.
  • Strong scripting and API integration skills using Python and REST APIs to build data pipelines.
  • Ability to develop metrics, KPIs, and executive-level reporting from security tooling data.
  • Familiarity with compliance frameworks including PCI DSS, SOX, SOC 2, and ISO 27001.
  • Experience in a fintech or highly regulated industry (preferred).
  • Prior experience owning vulnerability/risk exception processes and SLA governance models (preferred).
  • Familiarity with SIEM integration and security automation/orchestration (SOAR) (preferred).

More like this

Similar roles

Senior Security Engineer

Oracle

Reston, VA +2 51 days ago $82,200$187,000
Encryption Hashing Masking Access Management Security Monitoring Data Security Disaster Recovery
3+ yrs exp

Senior Security Engineer

Apple Inc

Seattle, WA 21 days ago $175,000$308,500
Threat Modeling Python Java Go Swift Kubernetes Cloud-Native Architecture Distributed Systems Container Orchestration Artificial Intelligence Machine Learning Security Review Vulnerability Discovery Multi-tenant System Design
10+ yrs exp

Senior Security Engineer

Green Dot Corp

Los Angeles, CA 11 days ago $104,900$157,300
Vulnerability Management SIEM EDR Tenable Qualys Rapid7 Splunk Sentinel CrowdStrike Carbon Black AWS Python Bash PowerShell Firewalls Intrusion Detection Systems PCI DSS SOC 2 NIST
3+ yrs exp Hybrid

Senior Security Engineer

Green Dot Corp

Los Angeles, CA 86 days ago $113,400$162,000
Azure Network Security Penetration Testing CI/CD DevSecOps Identity and Access Management (IAM) NIST CIS Benchmarks OWASP SSDLC Azure Firewall Network Security Groups Key Vault Firewalls
5+ yrs exp Hybrid

Senior Security Engineer

Green Dot Corp

Los Angeles, CA 86 days ago $113,400$162,000
Azure Network Security Penetration Testing CI/CD DevSecOps Identity and Access Management (IAM) NIST CIS Benchmarks OWASP SSDLC Azure Firewall Network Security Groups Key Vault Firewalls
5+ yrs exp Hybrid