You’ll need
Certifications
✓One or more of the following certifications (or equivalent) are required at time of hire: CISSP, CISM, GSEC, OSCP.
Education
✓Bachelor’s degree in applicable field plus five (5) years of relevant experience.
Master’s degree in applicable field plus four (4) years of relevant experience preferred.
Qualifications
✓Pertinent fields of study and experience include, but are not limited to, information security, computer science, information systems, engineering, or a related field.
✓Strong understanding of SSDLC and application security practices, with experience translating security requirements into technical solutions and guidance.
Strong software, systems, platform, or security engineering experience supporting modern application development and delivery environments. preferred
Experience with CI/CD pipelines, build processes, cloud or container technologies, and application security controls such as SAST, SCA, and software supply chain security. preferred
Experience with AI-assisted and agentic software development technologies and workflows, including associated application security risks and controls. preferred
Strong technical leadership, communication, and collaboration skills across security and technology teams. preferred
This vacancy is not eligible for sponsorship/ we will not sponsor or transfer visas for this position. Also, Mayo Clinic DOES NOT participate in the F-1 STEM OPT extension program. preferred
Benefits
Medical: Multiple plan optionsDental: Delta Dental or reimbursement account for flexible coverageVision: Affordable plan with national networkPre-Tax Savings: HSA and FSAs for eligible expenses
More support jobs near Rochester, MNMore support jobs nearby
All 542 in Minnesota →All 542 →Highest-paying support roles in Minnesota
Employer-posted ranges only
About the role
The Senior Information Security Engineer is a senior-level technical position responsible for leading complex security engineering initiatives and providing advanced expertise across multiple information security domains.