Logo for The College Board

Senior Security Engineer

Role overview

Qualifications

  • 5+ years of experience in security engineering, cloud security, or security architecture
  • Deep experience with AWS security fundamentals
  • Experience with Infrastructure as Code (Terraform, CloudFormation, CDK)
  • Understand secure system design across multi-tier architectures

Responsibilities

  • Design, implement, and operationalize automated preventive and detective guardrails across enterprise cloud environments
  • Enhance vulnerability management processes to improve prioritization and remediation velocity
  • Implement standardized, automated security checks across prioritized security domains
  • Contribute to documentation, engineering standards, and continuous improvement practices

Key facts

Hard skills

Other skills

  • Mentorship
  • Communication
  • Collaboration
  • Problem Solving
  • Time Management
  • Curiosity
  • Growth Mindedness
  • Empathy

About the company

The College Board logo

The College Board

Education Administration

Clearing a path for all students to own their future The College Board is a non-profit organization that clears a path for all students to own their future through the Advanced Placement Program, the SAT, Official SAT Practice on Khan Academy, BigFuture, and more. For more information, go to collegeboard.org.

Company details

Company typeLarge
IndustryEducation Administration
Company size1001 - 5000

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

College Board – Technology – Cloud Security

Location: This is a fully remote role. Candidates who live near CB offices have the option of being fully remote or hybrid (Tuesday and Wednesday in office).

Type: This is a full-time position

About the Team 

The College Board’s Cloud Security and Platform Engineering (CSPE) team designs, builds, and secures the cloud foundation that powers our most critical applications and services. We partner closely with product engineering, platform, risk, compliance, and application teams to design, automate, and operationalize scalable security controls, building reusable tooling and guardrails that make secure application deployments the default across AWS environments. Rather than operating as a reactive review function, we implement preventive and detective controls that reduce systemic risk while enabling teams to move quickly. Our work spans multi-account cloud architecture, identity and access management, network segmentation, automation, detection engineering, and compliance alignment. We focus on scalable, repeatable solutions that strengthen security posture across the enterprise.

About the Opportunity  

As a Senior Security Engineer, you will play a critical role in strengthening the cloud security foundation that supports College Board’s enterprise platforms and services. This position focuses on building and scaling automated, preventive security controls that reduce systemic risk while enabling engineering teams to deliver quickly and confidently. You will work across cloud environments to expand automated guardrails, improve external exposure management, and reduce high-risk misconfigurations through enforceable, enterprise-wide controls. This role emphasizes secure-by-default architecture, infrastructure automation, and measurable risk reduction, ensuring security controls are consistently applied as the organization scales. In partnership with Cloud Engineering, Product Security, and Cyber Operations, you will enhance vulnerability management workflows, increase automation across intake and response processes, and strengthen detection and triage capabilities. You will help drive improved remediation velocity, clearer security posture visibility, and more efficient security operations through engineering-led solutions.

You will also contribute to the resilience and reliability of critical security platforms, ensuring continuity of monitoring and posture management capabilities while supporting modernization efforts. Success in this role means delivering durable, scalable security outcomes: stronger preventive coverage, reduced exposure windows, improved operational efficiency, and measurable improvements in enterprise security posture.

In this role, you will:

Strengthen Cloud Guardrails and Preventive Controls (40%)

  • Design, implement, and operationalize automated preventive and detective guardrails across enterprise cloud environments.

  • Build and enforce enterprise-wide controls that prevent or automatically remediate high-risk misconfigurations.

  • Improve protection coverage for internet-facing systems by validating asset inventories and expanding enforcement mechanisms.

  • Continuously evaluate control effectiveness through telemetry, compliance validation, and risk trend analysis.

  • Partner with cloud platform teams to embed secure-by-default infrastructure patterns into reusable modules and deployment workflows.

Advance Vulnerability Management and Security Automation (35%)

  • Enhance vulnerability management processes to improve prioritization, remediation velocity, and cross-team accountability.

  • Increase automation across vulnerability intake, enrichment, ticketing, and response workflows to reduce manual triage burden.

  • Design and deliver engineering solutions that improve detection quality and response speed in collaboration with Cyber Operations.

  • Translate security requirements into scalable technical implementations using infrastructure-as-code and automation frameworks.

  • Measure and report on workflow efficiency and risk reduction outcomes using operational metrics.

Improve Security Posture Visibility and Platform Resilience (25%)

  • Implement standardized, automated security checks across prioritized security domains to strengthen baseline posture.

  • Enable measurable security maturity tracking through telemetry-backed reporting and posture metrics.

  • Support continuity of cloud security monitoring and posture management during tooling transitions or modernization efforts.

  • Strengthen reliability, scalability, and resilience of critical security platforms to reduce operational risk.

  • Contribute to documentation, engineering standards, and continuous improvement practices that promote long-term maintainability.

About you, you have:

  • 5+ years of experience in security engineering, cloud security, or security architecture, with demonstrated ownership of initiatives that scale across multiple teams and environments.

  • Designed and secured cloud-native architectures, including multi-account AWS environments, microservices, serverless workloads, and API-driven systems.

  • Have deep experience with AWS security fundamentals, including IAM strategy (least privilege, cross-account access, federation), KMS, Secrets Manager, S3, logging/monitoring, and preventive guardrails using Organizations and SCPs.

  • Implemented security controls using Infrastructure as Code (Terraform, CloudFormation, CDK) and support policy-as-code approaches to enforce standards at scale.

  • Understand secure system design across multi-tier architectures and can perform threat modeling to identify systemic risks before they reach production.

  • Experienced in securing Linux-based systems and cloud infrastructure, with practical expertise in hardening, logging, identity design, and network segmentation.

  • Translate regulatory and compliance requirements (e.g., FERPA, PCI DSS, SOC 2, NIST) into practical technical controls and automated evidence collection.

  • Build automation to reduce manual security work, leveraging scripting and cloud APIs to create repeatable, measurable security improvements.

  • Comfortable operating in fast-moving environments where standards and tooling evolve, and you proactively define guardrails rather than waiting for direction.

  • Influence engineering and product stakeholders by balancing delivery velocity with risk reduction, presenting trade-offs clearly and driving alignment on secure design decisions.

  • Communicate complex security concepts in practical terms, mentor engineers, and contribute to hiring and technical evaluation processes.

  • Relevant certifications (e.g., AWS Security Specialty, CISSP, CCSP) are a plus, but hands-on engineering experience and demonstrable impact matter most.

  • Ability to travel 3–5 times per year to College Board offices.

  • Authorization to work in the United States.

All roles at College Board require:   

  • A passion for expanding educational and career opportunities and mission-driven work 

  • Authorization to work in the United States for any employer 

  • Curiosity and enthusiasm for emerging technologies, with a willingness to experiment with and adopt new AI-driven solutions and a comfort learning and applying new digital tools independently and proactively.  

  • Clear and concise communication skills, written and verbal 

  • A learner's mindset and a commitment to growth: welcoming diverse perspectives, giving and receiving timely, respectful feedback, and continuously improving through iterative learning and user input. 

  • A drive for impact and excellence: solving complex problems, making data-informed decisions, prioritizing what matters most, and continuously improving through learning, user input, and external benchmarking. 

  • A collaborative and empathetic approach: working across differences, fostering trust, and contributing to a culture of shared success.

About Our Process  

  • Application review will begin immediately and will continue until the position is filled. This role is expected to accept applications for a minimum of 5 business days. Please keep in mind that College Board offices will be closed November 27th – November 28th and December 25th – January 2nd so it is better to apply sooner than later.   

  • While the hiring process may vary, it generally includes: resume and application submission, recruiter phone/video screen, hiring manager interview, performance exercise such as live coding, a panel interview, a conversation with leadership and reference checks.   

What We Offer 

At College Board, we offer more than just a paycheck—we provide a meaningful career, a supportive team, and a comprehensive package designed to help you thrive. We’re a self-sustaining nonprofit that believes in fair and competitive compensation, grounded in your qualifications, experience, impact, and the market. 

A Thoughtful Approach to Compensation 

  • The hiring range for this role is $153,000 - $166,000

  • Your exact salary will depend on your location, experience, and how your background compares to others in similar roles at the College Board. 

  • We aim to make our best offer upfront—rooted in fairness, transparency, and market data. 

  • We adjust salaries by location to ensure fairness, no matter where you live. 

You’ll have open, transparent conversations about compensation, benefits, and what it’s like to work at College Board throughout your hiring process. Check out our careers page for more.  

#LI-DC1 

#LI-REMOTE

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Security Engineer Related jobs

Other jobs at The College Board

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.