Staff Security Engineer - Enterprise Security
Leads the design, automation, and operation of enterprise endpoint security across multi-cloud and SaaS environments. The role requires 5+ years of information security experience, software development skills, and expertise across Windows, macOS, and Linux endpoint platforms.
About the job
Responsibilities
- Develop, maintain, and scale endpoint security solutions, including EDR, DLP, secure browser, MDM, and AI security solutions across a complex multi-cloud, multi-SaaS enterprise environment.
- Own the technical roadmap for endpoint security tooling.
- Build intelligent security platforms and automate security operations using AI and software engineering.
- Identify opportunities to reduce toil, increase detection fidelity, and accelerate response through scalable automation.
- Monitor security events, investigate incidents, and build real-time detection and prevention systems.
- Develop threat intelligence pipelines to anticipate adversary activity.
- Conduct risk and threat analyses to identify and remediate vulnerabilities end-to-end.
- Apply zero-trust principles to reduce the attack surface across the endpoint fleet.
- Develop and implement unified security policies, procedures, and standards for endpoint protection.
- Partner across Security, Engineering, IT, and Product to define endpoint security strategy and drive secure engineering practices.
- Provide technical guidance to staff and end-users, and promote security awareness through enablement and education.
- Establish standards for threat modeling, secure design, detection quality, and incident response.
- Mentor engineers and introduce new techniques and adversarial perspectives.
Requirements
- 5+ years of hands-on information security experience, including security engineering, threat intelligence or detection, or incident response, with a strong focus on endpoint security.
- Proficiency in software development using Python, Go, Java, C, C++, or JavaScript, along with experience using AI-assisted development.
- Experience designing, deploying, and maintaining endpoint security tools such as EDR, DLP, MDM, secure browsers, and AI security solutions across Windows, macOS, and Linux.
- Strong understanding of operating systems, network protocols, application platforms, endpoint security concepts, and best practices.
- Experience leading technical projects independently, making data-informed decisions, and executing end-to-end.
- Bachelor's degree in Computer Science, Information Security, or a related technical field, or equivalent practical experience.
Nice-to-haves
- Master's degree in Information Security, Computer Science, or a related technical field.
- Experience with AWS, Google Cloud, Azure, and enterprise SaaS platforms at scale.
- CISSP, CEH, Security+, or other relevant industry certifications.
- Ability to communicate complex security concepts to technical and non-technical audiences, including executive stakeholders.
Compensation and Benefits
- Salary range: $211,000–$303,600 annually.
Skills
Endpoint Security, Edr, Dlp, MDM, Python, Go, Java, C++, JavaScript, Artificial Intelligence, Threat Intelligence, Incident Response, Zero Trust, AWS, GCP
Similar jobs
Security Engineering jobsStaff-level AppSec engineer building secure coding practices and vulnerability management for a commerce platform. Requires 6+ years in application security with deep AWS and Python experience.
Design and operate distributed, low-latency infrastructure that protects Reddit from DDoS attacks, bots, scraping, and other network threats. The role requires 7+ years of distributed-systems experience plus expertise in security, networking, and production operations.
Own the technical security function across cloud infrastructure, detection and response, application security, incident response, and automation. The role requires 8+ years of security engineering experience, deep AWS expertise, and the ability to lead security improvements across engineering teams.
Build and scale container security capabilities that orchestrate Zero Trust Segmentation at the application and pod level. The role requires 8+ years developing distributed systems, proficiency in a higher-level language, and strong Kubernetes, networking, and Linux expertise.
Staff Security Software Engineer leading identity and access strategy, architecture, and hands-on platform development across customer, employee, contractor, and agentic identities. Requires 10+ years of production software experience and deep expertise in identity and authorization systems.