Trupanion

Insurance

CybersecurityEngineer

$120–160k Seattle, Washington, United States FULL TIME Remote Friendly
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for mid candidates.

The Brief

“Cybersecurity Engineer at Trupanion. Skills: Microsoft Defender, Privileged Access Management, Security engineering, Azure security. Engineer Microsoft Defender security stack. Operate Microsoft Defender security stack”

What You'll Achieve.

Deliver practical security outcomes

Industry & Context.

Insurance
Problems you'll solve

Problem-solving skills; Analytical skills; Prioritize initiatives; Deliver initiatives

What They're Looking For.

Must Have

Bachelor's degree in Computer Science, 5+ years of hands-on security engineering experience, Supporting enterprise security platforms, Microsoft 365/Azure environments

Nice to Have

Microsoft Security certifications, AZ-500 certification, CISSP certification, CISM certification, GIAC certification

What You'll Do.

Engineer Microsoft Defender security stack

Operate Microsoft Defender security stack

Improve Microsoft Defender security stack

Protect cloud applications

Administer Privileged Access Management tool

Onboard privileged accounts

Offboard privileged accounts

Configure PAM workflow

Integrate Defender signals

Integrate PAM signals

Improve detection fidelity

Reduce false positives

Accelerate remediation

Design security engineering solutions

Implement security engineering solutions

Harden cloud environments

Harden on-prem environments

Establish hardening standards

Establish configuration standards

Automate security controls

Develop security tooling lifecycle

Maintain security tooling lifecycle

Ensure resilient operations

Ensure supportable operations

Create detection engineering content

Maintain detection engineering content

Tune threat hunting queries

Tune automated response playbooks

Perform security assessments

Perform vulnerability management

Embed security controls

Implement secure-by-default patterns

Implement CI/CD security checks

Implement least-privilege access

Respond to security incidents

Coordinate remediation

Drive root-cause fixes

Drive preventive controls

Produce reference architectures

Support regulatory exams

Provide control narratives

Provide technical subject-matter expertise

Stay current with emerging threats

Implement pragmatic improvements

How You'll Work.

Team & Collaboration

Partnering with IT teams; Partnering with engineering teams; Partner with infrastructure teams; Partner with identity/IAM teams; Partner with application teams

Communication Scope

Explain security issues; Explain tradeoffs; Explain remediation steps; Technical stakeholders; Non-technical stakeholders

Process & Methodology

Roadmap planning

Full Job Description

Trupanion is a leading provider of medical insurance for cats and dogs in North America. Our mission is to help loving, responsible pet owners budget and care for their pets. At Trupanion, we offer a collaborative, casual, and pet-friendly environment where everyone is encouraged to be themselves. We are seeking a Cybersecurity Engineer to help design, operate, and continuously improve Trupanion’s security controls and tooling across our Microsoft 365/Azure environment and supporting on-prem systems. This role balances hands-on ownership of core security platforms—particularly the Microsoft Defender suite and Privileged Access Management (CyberArk)—with strong security engineering practices such as automation, integrations, hardening, and detection and response improvements. The ideal candidate is proactive, detail-oriented, and comfortable partnering with IT and engineering teams to reduce risk, respond to incidents, and deliver practical, measurable security outcomes. This position is open to candidates in the Seattle area. You will have a hybrid remote/in-office schedule where you will work from our casual, pet-friendly office at least 3 days a week. Key Responsibilities: * Engineer, operate, and continuously improve the Microsoft Defender security stack (e.g., Defender for Endpoint, Defender for Identity, Defender for Office 365, Defender for Cloud Apps, Defender Vulnerability Management) to protect endpoints, identities, email, and cloud applications. * Own and administer Privileged Access Management tool, including onboarding/offboarding privileged accounts, policy and workflow configuration, vault health, upgrades, and integrations. * Integrate Defender and PAM signals with SIEM/SOAR and ITSM workflows to improve detection fidelity, reduce false positives, and accelerate response and remediation. * Design and implement security engineering solutions across cloud and on-prem environments (primarily Azure/M365), including baseline hardening, configuration stand

Free ATS check

Applying for this Cybersecurity Engineer role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on SmartRecruiters

  • SmartRecruiters often includes a video screening step — check camera and mic permissions.
  • Link your GitHub or portfolio directly in the profile section for technical roles.
  • Applications may be reviewed by AI scoring before reaching a recruiter — use keywords from the job description.

ANONYMOUS · UNFILTERED

What do employees actually say about Trupanion?

Real rants from real employees. Read before you apply.

Read Company Rants →