Skip to content
FlexportFlexport

Security Engineer, Corporate Security

Corporate Security Engineer responsible for identity, endpoint, SaaS, and security automation controls across the company. The role requires 2–5 years of security engineering experience, hands-on endpoint and EDR expertise, identity protocol knowledge, and scripting ability.

About the job

Responsibilities

Identity and Access

  • Advance identity security posture through SSO coverage, phishing-resistant MFA, SCIM lifecycle automation, and least-privilege access across SaaS and cloud environments.
  • Build detections and guardrails for account takeover, MFA fatigue attacks, and session token theft.

Endpoint and Device Lifecycle

  • Write and deploy device policy as code, including configuration profiles, remediation scripts, and enforcement rules for macOS and Windows.
  • Implement staged rollouts with rollback capabilities.
  • Maintain and improve EDR detection and response coverage across the device fleet.

SaaS Security

  • Reduce SaaS risk through SSPM tooling and automation, including detection of risky OAuth grants, shadow IT, and configuration drift.
  • Own security configuration for Google Workspace, Slack, and other critical SaaS applications.
  • Assess security implications of AI agents and MCP integrations.

Automation and Enablement

  • Automate device provisioning, access reviews, vendor security questionnaires, and other repetitive corporate security workflows.
  • Write runbooks and documentation.
  • Partner with IT and People teams to implement effective, low-friction security controls.

Requirements

  • 2–5 years of experience in corporate, enterprise, or IT security engineering; demonstrated delivery and impact are valued.
  • Hands-on experience with endpoint management and EDR tools such as Jamf, Kandji, Intune, CrowdStrike, or SentinelOne.
  • Working knowledge of SAML, OIDC, and SCIM identity protocols.
  • Experience with a major identity provider such as Okta, Entra, or Google Workspace.
  • Ability to write production code or scripts in Python, Go, or similar languages.
  • Clear communication skills and the ability to explain security control tradeoffs to technical and nontechnical stakeholders.

Nice to Have

  • Experience with SSPM tooling and OAuth grant governance.
  • Exposure to DLP or insider-risk tooling.
  • Familiarity with Terraform for infrastructure-as-code security configuration.
  • Understanding of how agentic AI tools and MCP integrations affect corporate security monitoring.
  • Interest in expanding into broader corporate security or detection engineering responsibilities.

Compensation

  • US base salary range: $130,950–$202,125, varying by location.
  • Additional compensation may include bonus, equity, and benefits.

Skills

SAML, OIDC, SCIM, Jamf, Kandji, Intune, Crowdstrike, Sentinelone, Okta, Google Workspace, Python, Go, Terraform, OAuth

Applied Intuition

Applied Intuition

Sunnyvale, CA

Cybersecurity Software Engineer - New Grad
$130k+/yrOn-siteSecurity Engineering

Build security into embedded vehicle platforms through security assessments, secure boot implementation, and HSM integration. This new-grad role requires a relevant computer or electrical engineering degree, foundational cryptography knowledge, and proficiency in C, C++, or Python.

Coinbase

Coinbase

United States

Threat Intelligence Platform Engineer
$145k+/yrRemote2+ YOESecurity Engineering

Own and operate Vertex Synapse, integrating and modeling threat intelligence while delivering it to detections, blocklists, data pipelines, and security workflows. Requires at least two years of production threat-intelligence platform or security data-pipeline experience and software development skills in Python, Go, or Storm.

Hover

Hover

San Francisco, CA
Security Software Engineer
$148k+/yrHybrid1+ YOESecurity Engineering

Build foundational security services and automation protecting Hover’s applications, users, and cloud infrastructure. The role suits an early-career software engineer with strong programming fundamentals, a computer science background, and interest in secure development practices.

Harvey

Harvey

San Francisco, CA

Software Engineer, Security
$161k+/yrOn-site2+ YOESecurity Engineering

Build and operate foundational security services spanning identity, access, secrets, privileged access, and secure AI-agent infrastructure. The role requires at least two years of production software engineering experience, cloud expertise, and experience translating security requirements into reliable automated systems.

Sentry

Sentry

San Francisco, CA
Security Engineer, Detection & Response
CA$162k+/yrHybrid2+ YOESecurity Engineering

Security engineer responsible for detection engineering, investigations, incident response, identity and access management, and preventative security controls across corporate and production environments. Requires 2+ years of security engineering experience, programming ability, and familiarity with cloud and defensive security tooling.