Jobs and Careers
BI

Senior IT Security Engineer (Application, Cloud, & Data)

BITCO Insurance Companies
United Statesfull_timeVerifiedPosted 25 Jun 2026

About the role

BITCO Corporation is seeking a Senior IT Security Engineer (Application, Cloud, & Data) to join our home office located in Davenport, IA. As a respected specialty insurer with 11 branch offices across 10 states, BITCO delivers tailored insurance solutions to complex industries such as construction, forest products, and oil and gas. This position is open to a hybrid work arrangement, blending flexibility with meaningful in-person collaboration.

 

At BITCO, our work is guided by core values. We care deeply about our people, partners, and customers. We are committed to excellence and accountability. We deliver on our promises with integrity and precision, and we strive to make a meaningful impact in everything we do. These values drive our mission to protect the people and industries that keep America running.

 

Join the BITCO team and be part of a workplace built on collaboration, open communication, and a positive culture that supports growth and success. If you are passionate about operational excellence and ready to make a measurable impact within a growing, industry-leading organization, BITCO offers the platform and challenge you have been looking for.

 

Position Summary:

The Senior IT Security Engineer is a unique role that will scale with the company to become a pillar of the growing Cybersecurity team, with a focus on Applications, Cloud, and Data. This role will analyze events from multiple security tools to identify anomalies/incidents and potential information security threats to the organization. The Senior IT Security Engineer will conduct comprehensive and detailed analysis of network and endpoint events, to quickly determine the source and severity, and to advise on the most effective and efficient way to triage the event.

 

In partnership with our BITCO and ORI Cybersecurity team, they will help identify, corelate, escalate, and respond to security incidents using various security technologies and incident response methodologies. They will act as the lead incident response handler, coordinate the response efforts, and provide recommendations on security policies and controls, tools, and processes to mature our cybersecurity fabric breadth and depth. The Senior IT Security Engineer will provide detailed reports to the Cybersecurity leaders, CIO, and/or other team members about the root cause of an incident and recommended follow-up actions. Additionally, they will develop, enhance, and maintain cybersecurity documentation such as policies, procedures, and guidelines.

 

Primary Responsibilities:

  • Conduct static and dynamic security testing on internal and external applications throughout the development and implementation/delivery lifecycle to ensure production readiness and supportability.
  • Collaborate with developers to integrate security throughout the SDLC.
  • In partnership with Enterprise Architect, Development and Operations Leaders, review app architecture, code, and security controls for vulnerabilities
  • Perform threat modeling and risk assessments for internal and external legacy/modernization applications/platforms.
  • Stay updated with the latest security threats, tools, and best practices as they apply to Applications, Cloud engineering, DEVOPS, Integration/API Frameworks, and code scanning.
  • Lead the evaluation and risk profiling of vendors, 3rd party partners, etc. in the evaluation of libraries, SDKs, SOC reports, to product a risk profile for potential security risks.
  • Be the evangelist of introducing best practices to guide secure coding practices, code reviews, and conduct regular security awareness sessions.
  • Work with incident response teams to investigate and remediate application, cloud, and EDW security issues.
  • Working closely with Infrastructure, Application Development, and appropriate 3rd parties to design and secure cloud architectures and develop practical, scalable security controls for new and existing services.
  • Establishes and implements appropriate standards and criteria for data security requirements.
  • Design, develop, deploy and manage enterprise data security solutions including data loss prevention (DLP), data encryption, cloud data protection, as well as data security governance and compliance
  • In-depth understanding of DLP, Data Discovery, Classification, Encryption, Masking, Tagging and Governance
  • Conduct risk assessments and vulnerability analyses to identif

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

BITCO Insurance Companies

View company profile →