1

Senior Security Engineer Jobs in Minnesota (NOW HIRING)

Senior Dev SecOps Engineer

Saint Paul, MN · On-site

$115K - $158K/yr

Position Specific Description We are seeking a high-caliber Senior DevSecOps Engineer to embed ... This role is designed for an experienced security engineer who combines deep technical expertise ...

Bank is seeking a Senior HashiCorp Vault Engineer to support and enhance an enterprise secrets ... They will partner with application developers, information security teams, infrastructure engineers ...

Senior HashiCorp Vault Engineer

Minneapolis, MN · On-site

$119K - $163K/yr

Bank is seeking a Senior HashiCorp Vault Engineer to support and enhance an enterprise secrets ... They will partner with application developers, information security teams, infrastructure engineers ...

Mack Solutions is looking for a senior software developer/architect with a passion for government ... Engineer and deploy comprehensive security measures throughout the software lifecycle, from ...

Showing results 41-60

Senior Security Engineer information

See Minnesota salary details

$72K

$134.3K

$182.7K

How much do senior security engineer jobs pay per year?

As of Sep 6, 2026, the average yearly pay for senior security engineer in Minnesota is $134,308.00, according to ZipRecruiter salary data. Most workers in this role earn between $112,100.00 and $153,800.00 per year, depending on experience, location, and employer.

What skills and qualifications are needed to be a senior security engineer?

To thrive as a Senior Security Engineer, you need deep expertise in network security, risk assessment, incident response, and a relevant degree or equivalent experience. Familiarity with security tools such as SIEM platforms, firewalls, IDS/IPS, and certifications like CISSP or CEH are typically required. Strong analytical thinking, effective communication, and leadership abilities help you excel in complex security environments. These skills and qualifications are crucial to safeguard organizational assets and maintain robust defense against evolving cyber threats.

How does a senior security engineer collaborate with other departments to enhance organizational security?

Senior Security Engineers frequently work cross-functionally, partnering with IT, software development, and compliance teams to implement security best practices and respond to incidents. They play a key role in conducting security reviews, advising on secure design, and leading incident response efforts. Effective communication and collaboration are essential, as these engineers often translate technical risks into business terms and provide guidance during audits or vulnerability assessments. This collaborative approach helps ensure comprehensive protection across all organizational assets.

What is the difference between Senior Security Engineer vs Security Analyst?

AspectSenior Security EngineerSecurity Analyst
Required CredentialsCertifications like CISSP, CISA, CEH; Bachelor's or Master's in Cybersecurity or related fieldsCertifications like CompTIA Security+, GIAC Security Essentials; Bachelor's in Cybersecurity, Information Technology, or related fields
Work EnvironmentDesigning security systems, implementing security measures, leading security projectsMonitoring security alerts, analyzing threats, conducting security assessments
Employer & Industry UsageUsed in tech companies, finance, healthcare for security infrastructure rolesCommon in various industries for threat detection and incident response

The main difference is that Senior Security Engineers focus on designing and implementing security solutions, while Security Analysts primarily monitor and analyze security threats. Both roles require relevant certifications and work in similar environments, but their responsibilities differ in scope and focus.

What are the most commonly searched types of Security Engineer jobs in Minnesota?

The most popular types of Security Engineer jobs in Minnesota are:

What are popular job titles related to Senior Security Engineer jobs in Minnesota?

For Senior Security Engineer jobs in Minnesota, the most frequently searched job titles are:

What job categories do people searching Senior Security Engineer jobs in Minnesota look for?

The top searched job categories for Senior Security Engineer jobs in Minnesota are:

What cities in Minnesota are hiring for Senior Security Engineer jobs?

Cities in Minnesota with the most Senior Security Engineer job openings:

Infographic showing various Senior Security Engineer job openings in Minnesota as of August 2026, with employment types broken down into 84% Full Time, 14% Part Time, and 2% Contract. Highlights an 91% Physical, 2% Hybrid, and 7% Remote job distribution, with an average salary of $134,308 per year, or $64.6 per hour.

Senior Dev SecOps Engineer

NextEra Energy

Saint Paul, MN • On-site

$115K - $158K/yr

Full-time

Posted 12 days ago


NextEra Energy rating

8.4

Company rating: 8.4 out of 10

Based on 55 frontline employees who took The Breakroom Quiz

19th of 53 rated energy and utility


Job description

Requisition ID: 97058
NextEra Analytics offers energy consulting services using industry-leading scientific analysis for planning, siting, forecasting and optimizing all forms of energy projects. Our optimization and analytics platforms integrate open-source technologies to leverage massive, diverse sets of utility operating data. This enables rapid development of operational solutions. Applying expertise in advanced mathematics, data and physical sciences, we solve some of the hardest problems facing the energy industry.
Position Specific Description
We are seeking a high-caliber Senior DevSecOps Engineer to embed security throughout the software development lifecycle and strengthen the security of our cloud platforms, development pipelines, and software supply chain. This role is designed for an experienced security engineer who combines deep technical expertise with a strong understanding of modern software engineering and developer workflows.
You will partner closely with software engineering, cloud, platform, cybersecurity, and governance teams to build scalable security controls that reduce risk without creating unnecessary friction. You will operate with a high degree of autonomy, establishing secure-by-default patterns, influencing system design, and implementing measurable controls across traditional and AI-assisted development environments.
Key Responsibilities & Expectations
1. Secure Software Delivery
Secure CI/CD Pipelines: Build and maintain secure CI/CD pipelines with automated security gates, including static application security testing, software composition analysis, dynamic application security testing, secret scanning, infrastructure-as-code scanning, and container or image scanning.
Risk-Based Security Controls: Configure and tune security tooling using exploitability and reachability-based prioritization to minimize false positives and reduce unnecessary developer friction.
Secure Design Influence: Lead threat modeling, security design reviews, and the adoption of secure architecture patterns early in the development lifecycle.
Root-Cause Remediation: Promote architectural and systemic security improvements that prevent recurring issues rather than relying on short-term or symptom-based fixes.
2. Developer Enablement & AI Security
Developer Guardrails: Develop reusable pipeline templates, hardened base images, security guardrails, and secure-by-default development patterns that shift security left without slowing delivery.
AI-Assisted Development Security: Establish security standards and governance for AI coding assistants, agentic development tools, and AI-generated code.
Agentic Security Controls: Implement least-agency permission models, human review requirements, code provenance standards, and controls governing autonomous agent access to tools, data, and environments.
Secure Tool Integration: Evaluate and secure agent tool integrations, including Model Context Protocol integrations, while ensuring appropriate authentication, authorization, isolation, and oversight.
3. Cloud, Platform & Software Supply Chain Security
Cloud Security Controls: Implement identity and access management, least-privilege access, network boundaries, centralized logging, and secure configuration standards across AWS and GCP environments.
Software Supply Chain Security: Establish software and AI bills of materials, dependency governance, artifact signing, and software provenance aligned with frameworks such as SLSA.
Pipeline Hardening: Protect the software delivery pipeline through OIDC-based publishing, ephemeral runners, controlled network egress, secure secrets management, and hardened build environments.
Infrastructure- and Policy-as-Code: Implement infrastructure-as-code and policy-as-code controls that provide consistent enforcement, immutable logging, and automated evidence generation.
4. Vulnerability Management & Risk Reduction
Vulnerability Ownership: Lead vulnerability triage, exploitability-informed risk ranking, remediation service-level objectives, exception management, and recurrence prevention.
Security Metrics: Define and track meaningful measures such as mean time to remediate, scan coverage, policy compliance, vulnerability recurrence, and developer adoption of security guardrails.
Continuous Improvement: Use security findings, operational data, and engineering feedback to continuously improve tooling, processes, and preventative controls.
Measurable Outcomes: Demonstrate risk reduction over time through clear reporting, actionable metrics, and transparent communication with technical and business stakeholders.
5. Cybersecurity, Risk & Compliance Partnership
Cross-Functional Partnership: Collaborate with application security, engineering, cloud, platform, cybersecurity, risk, and compliance teams to integrate security into technical delivery.
Automated Security Evidence: Feed pipeline evidence, security findings, software inventories, and control results into application security reviews, third-party risk assessments, and compliance activities.
Assessment Support: Support penetration testing, application assessments, audit requests, and remediation efforts by providing accurate technical evidence and tracking corrective actions.
Security Translation: Clearly communicate security risks, technical tradeoffs, and remediation priorities to engineering teams, cybersecurity leadership, and business stakeholders.
Required Qualifications
• Bachelor's degree in Computer Science, Cybersecurity, Engineering, Information Technology, or equivalent practical experience.
• 7+ years of experience in DevSecOps, application security, cloud security, platform engineering, software engineering, or a related technical discipline.
• Hands-on experience designing and securing enterprise CI/CD pipelines and software development workflows.
• Experience implementing and operating security testing capabilities such as SAST, SCA, DAST, secret scanning, infrastructure-as-code scanning, and container or image scanning.
• Strong knowledge of software supply chain security concepts, including SBOMs, artifact signing, software provenance, dependency governance, and SLSA-aligned practices.
• Hands-on experience implementing cloud security controls across AWS, GCP, or comparable public cloud platforms.
• Experience with infrastructure-as-code and policy-as-code technologies such as Terraform, Open Policy Agent, or comparable toolsets.
• Strong understanding of identity and access management, least privilege, network segmentation, secure logging, secrets management, and cloud-native security architecture.
• Experience assessing or governing AI coding assistants, autonomous development agents, AI-generated code, or agent tool integrations.
• Proven ability to collaborate with software engineering, cybersecurity, risk, compliance, and platform teams in a fast-paced development environment.
• Strong written and verbal communication skills, including the ability to explain complex security risks and technical decisions in clear, outcome-oriented terms.
Job Overview
This position is responsible for managing, monitoring and deploying a highly available, highly scalable production application. The individual will be responsible for one or more environments and/or systems and interface directly with the Development and Operations team on a daily basis for the maintenance, expansion, and documentation of these environments, providing assistance and review of proposed architectures, as needed. This role is responsible for vetting emerging technologies and guides the direction of the teams that support software development.
Job Duties & Responsibilities
  • Drives the automation and continuous improvement of the software delivery process
  • Manages the continuous integration services maintenance and configuration, ensuring the build environment is meeting the needs of the software developers
  • Leads the maintenance and creation of automatic deployment of software builds to the test and production environments, enabling the operations team to easily and consistently deploy new software products
  • Monitors system development and maintenance and ensures that staff at all technical levels are informed of the health of our systems
  • Evaluates Operation teams processes and automates repetitive and temporary solutions
  • Improves the product environment and practices used by the software developers
  • Sets up back-up mechanisms for production environments and test disaster recovery mechanisms
  • Performs other job-related duties as assigned

Required Qualifications
  • High School Grad / GED
  • Bachelor's or Equivalent Experience
  • Experience: 4+ years

Preferred Qualifications
  • None

The estimated base pay for this position is $109,600.00 to $164,400.00 per year. Starting pay will be based on several factors including, but not limited to, experience, qualifications, job-related and industry knowledge and skills and education/training.
NextEra Energy offers a wide range of benefits to support our employees and their eligible family members. Click here to learn more.
Employee Group: Exempt
Employee Type: Full Time
Job Category: Information Technology
Organization: NextEra Analytics, Inc
Relocation Provided: Yes, if applicable
NextEra Energy is an Equal Opportunity Employer. Qualified applicants are considered for employment without regard to race, color, age, national origin, religion, marital status, sex, sexual orientation, gender identity, gender expression, genetics, disability, protected veteran status or any other basis prohibited by law.
NextEra Energy provides reasonable accommodation in its application and selection process for qualified individuals, including accommodations related to compliance with conditional job offer requirements, consistent with federal, state, and local laws. Supporting medical or religious documentation will be required where applicable and permitted by applicable law. To request a reasonable accommodation, please send an e-mail to recruiting-coordinator.sharedmailbox@nexteraenergy.com, providing your name, telephone number and the best time for us to reach you.
NextEra Energy will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor's legal duty to furnish information.
NextEra Energy does not accept any unsolicited resumes or referrals from any third-party recruiting firms or agencies. Please see our policy for more information.

What NextEra Energy employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom