Remote Source

    Senior Security Engineer, Enterprise SaaS

    New York, NY or Remote
    Full-Time
    Senior (7+ yrs)
    IT & Security
    Posted on April 10, 2026

    The Role

    As a Senior Security Engineer, Enterprise SaaS, you’ll serve as Ro’s hands-on technical lead and builder for SaaS security posture management (SSPM) and data loss prevention (DLP). You’ll define the standards, automation, and monitoring that keep our SaaS platforms secure, compliant, and reliable as the business scales. This role blends architecture with execution: you’ll engineer hands-on solutions and automated workflows while guiding how Ro integrates, governs, and secures numerous SaaS services across the enterprise. You’ll partner across Security Operations, IT, GRC, and Product Security to shape a unified SaaS security strategy that keeps our people productive and patient data protected.
    What You’ll Do
  1. Own the architecture, implementation, and continuous improvement of Ro’s SSPM and DLP platforms driving security maturity across our robust SaaS landscape.
  2. Define and evolve SaaS security standards, access models, and configuration baselines that balance control with business agility.
  3. Engineer the SaaS lifecycle: Build scalable SaaS lifecycle automations, ranging from posture monitoring and alerting to end-to-end remediation workflows using Tines or similar orchestration platforms.
  4. Partner across teams to embed SaaS security into identity management, onboarding/offboarding, and vendor risk processes.
  5. Collaborate with Security Operations to investigate SaaS-related alerts, ensuring rapid, documented, and systemic remediation.
  6. Lead the integration of SaaS controls into SIEM and SOAR systems (e.g., Splunk, Tines), ensuring actionable telemetry and streamlined response.
  7. Contribute to compliance alignment, ensuring SSPM and DLP controls satisfy HIPAA,HITRUST and SOC 2 requirements.
  8. Mentor peers and share expertise across Security and IT teams, elevating overall SaaS security awareness and discipline.
  9. What You’ll Bring
  10. 5+ years of experience in Security Engineering or Cloud Security roles, with expertise in SaaS ecosystems, automation, and data protection.
  11. Proven success implementing and managing SSPM and DLP technologies such as AppOmni, Obsidian, BetterCloud, Nightfall, Netskope, etc.
  12. A sharp analytical mindset with the ability to ask the right questions to uncover hidden risks, coupled with the judgment to rationalize complex SaaS features against security policies and risk tolerance.
  13. Demonstrated experience integrating SaaS controls into SIEM/SOAR systems and automating detection, response, and reporting.
  14. Working knowledge of data classification, privacy, and governance frameworks relevant to healthcare or regulated industries.
  15. Excellent communication and collaboration skills — able to influence both technical and executive stakeholders.
  16. A builder’s mindset — practical, automation-oriented, and focused on delivering scalable, measurable outcomes.
  17. Bonus: direct experience supporting HIPAA, HITRUST or SOC 2 compliance, or prior work securing cloud-first healthcare or fintech environments.
  18. We’ve Got You Covered
  19. Full medical, dental, and vision insurance + OneMedical membership
  20. Healthcare and Dependent Care FSA
  21. 401(k) with company match
  22. Flexible PTO
  23. Wellbeing + Learning & Growth reimbursements
  24. Paid parental leave + Fertility benefits
  25. Pet insurance
  26. Student loan refinancing
  27. Virtual resources for mindfulness, counseling, and fitness
  28. Apply for this position

    Company:  Ro

    Telehealth platform that provides weight management services, including prescription medications and coaching.
    201-500 employees
    Healthcare & Life Sciences
    HQ: United States