Enterprise Security Engineer
Summary
Design and implement identity, endpoint, and SaaS security controls using automation and AI tooling, while integrating logging and compliance workflows.
You will design and deliver identity, endpoint, and SaaS security improvements, automate controls with infrastructure-as-code, build security integrations, apply AI tooling to engineering and triage, improve detection and vulnerability remediation, and support compliance operations.
Responsibilities
- Engineer secure-by-default endpoint baselines for macOS and Windows
- Automate identity and access controls in Microsoft Entra ID and Google Workspace
- Codify security controls using Terraform, configuration profiles, and policy-as-code
- Build automations and integrations that reduce manual access workflows
- Apply AI tooling to engineering and triage work
- Harden SaaS and collaboration platforms
- Integrate endpoint, identity, and SaaS logging into security platforms
- Reduce vulnerability and configuration drift through remediation pipelines
- Produce evidence and document controls with Compliance and Risk stakeholders
- Participate in an approximately one-week-on, every-three-weeks on-call rotation
Requirements
- Experience engineering endpoint management platforms such as Microsoft Intune for macOS and Windows
- Hands-on Microsoft Entra ID experience with Conditional Access, SSO, and Access Governance
- Experience with Google Workspace and/or Microsoft 365
- Ability to automate workflows using Bash, PowerShell, or Python
- Fluency with AI-assisted engineering and LLM tooling
- Troubleshooting and systems-thinking skills across identity, endpoints, networking, security controls, and SaaS integrations
- Risk-based security decision-making and communication skills
- Terraform or configuration-as-code experience
- Security incident response or countermeasure experience
- Security Operations Center experience
- Experience governing enterprise AI adoption
Benefits
- Remote work
- Equity participation