Senior Corporate Security Engineer

About the position

Ready to be a Titan? We are looking for an exceptional Senior Corporate Security Engineer to lead initiatives across key security domains, including Endpoint Security, SaaS Security Posture Management (SSPM), Identity & Access Management (IAM), Identity Governance, and Data-Loss Prevention. You will collaborate closely with IT, GRC, Engineering, and Business stakeholders to integrate security tools, policies, and processes into corporate systems and workflows, enabling secure-by-design implementations. What You’ll Do: Secure SaaS, Endpoints, and the Extended Workforce SaaS Posture Management: Evaluate, configure, and harden SaaS applications (Google Workspace, Microsoft 365, Slack, HRIS, ticketing) to align with enterprise security policies. Implement and tune controls such as data access policies, DLP, sharing controls, and audit logging across the SaaS estate. Endpoint Hardening: Collaborate with Endpoint/IT teams to define and enforce baseline configurations for laptops, workstations, and other managed devices via MDM and EDR. Data Loss & Insider Risk: Develop and implement strategies and tooling for Data Loss Prevention (DLP) and the mitigation of insider risks within the organization. Engineer Modern Identity and Access Controls Single Sign-On Assurance & Federation: Partner with Information Technology to implement, configure, and monitor highly secure workforce identity solutions (e.g., Okta/Entra and other IdPs) while enforcing strict SSO assurance levels including Multi-Factor Authentication and Conditional Access. Privileged Identity & JIT Provisioning: Define and maintain RBAC/ABAC patterns for enterprise applications, focusing on role models, entitlements, and separation of duties. Implement Just-In-Time (JIT) access and automated approval workflows to ensure users only have elevated access when strictly necessary. Zero Trust & Break-Glass Workflows: Design and deploy controls that combine user identity, device posture, network context, and application sensitivity to aggressively enforce least-privilege access. Build automated, self-service experiences for access requests, recurring access reviews, and emergency break-glass workflows. Automate and Instrument Everything Security Workflows: Design and build automation scripts and tools to streamline security workflows, collect actionable metrics, and enforce security policies at scale. Build automation and self-service experiences for access requests, approvals, access reviews, and break-glass workflows. System Integrations: Develop integrations between IdPs, HRIS, ticketing, and other systems to minimize manual toil and reduce identity-related error rates. Operational Support & Incident Response Incident Partnership: Partner with our Incident Manager and provide subject matter expertise for investigations and incident response related to identity, endpoint, and SaaS domains. Detection & Visibility: Work with Security Operations and SIEM teams to ensure robust visibility into identity, device, and SaaS activity, and to build high-signal detections. Clear Documentation: Author clear documentation and runbooks that make it easy for teams to consume and operate the controls you build.

Responsibilities

  • Secure SaaS, Endpoints, and the Extended Workforce
  • SaaS Posture Management: Evaluate, configure, and harden SaaS applications (Google Workspace, Microsoft 365, Slack, HRIS, ticketing) to align with enterprise security policies.
  • Implement and tune controls such as data access policies, DLP, sharing controls, and audit logging across the SaaS estate.
  • Endpoint Hardening: Collaborate with Endpoint/IT teams to define and enforce baseline configurations for laptops, workstations, and other managed devices via MDM and EDR.
  • Data Loss & Insider Risk: Develop and implement strategies and tooling for Data Loss Prevention (DLP) and the mitigation of insider risks within the organization.
  • Engineer Modern Identity and Access Controls
  • Single Sign-On Assurance & Federation: Partner with Information Technology to implement, configure, and monitor highly secure workforce identity solutions (e.g., Okta/Entra and other IdPs) while enforcing strict SSO assurance levels including Multi-Factor Authentication and Conditional Access.
  • Privileged Identity & JIT Provisioning: Define and maintain RBAC/ABAC patterns for enterprise applications, focusing on role models, entitlements, and separation of duties.
  • Implement Just-In-Time (JIT) access and automated approval workflows to ensure users only have elevated access when strictly necessary.
  • Zero Trust & Break-Glass Workflows: Design and deploy controls that combine user identity, device posture, network context, and application sensitivity to aggressively enforce least-privilege access.
  • Build automated, self-service experiences for access requests, recurring access reviews, and emergency break-glass workflows.
  • Automate and Instrument Everything
  • Security Workflows: Design and build automation scripts and tools to streamline security workflows, collect actionable metrics, and enforce security policies at scale.
  • Build automation and self-service experiences for access requests, approvals, access reviews, and break-glass workflows.
  • System Integrations: Develop integrations between IdPs, HRIS, ticketing, and other systems to minimize manual toil and reduce identity-related error rates.
  • Operational Support & Incident Response
  • Incident Partnership: Partner with our Incident Manager and provide subject matter expertise for investigations and incident response related to identity, endpoint, and SaaS domains.
  • Detection & Visibility: Work with Security Operations and SIEM teams to ensure robust visibility into identity, device, and SaaS activity, and to build high-signal detections.
  • Clear Documentation: Author clear documentation and runbooks that make it easy for teams to consume and operate the controls you build.

Requirements

  • Experience: 4 to 5+ years of experience in Corporate Security, IT Security, enterprise security, identity and access management, or closely related security engineering roles.
  • IAM & Zero Trust Expertise: Strong, practical understanding of modern IAM concepts (SSO, RBAC/ABAC, least privilege), zero trust architecture, threat modeling, and security frameworks such as SOC 2, ISO 27001, and CIS Controls.
  • Tooling Familiarity: Hands-on experience with security configurations for platforms such as Okta, Entra ID, Google Workspace, and EDR/MDM tooling.
  • Automation Mindset: Some experience writing and maintaining scripts, with proficiency in at least one modern language (e.g., Python, Powershell, KQL) used to build automations, integrations, or internal tooling.
  • AI Forward: Demonstrates curiosity about AI tools and emerging technologies, with a willingness to learn and leverage them to enhance productivity, collaboration, or decision-making.

Benefits

  • Flextime, recognition, and support for autonomous work: Flexible time off with ample learning and development opportunities to continue growing your career. We offer a comprehensive onboarding program, leadership training for Titans at all levels, and other programs and events. Great work is rewarded through Bonusly, peer-nominated awards, and more.
  • Holistic health and wellness benefits: Company-paid medical, dental, and vision (with 100% employer paid options and 90% coverage for dependents), FSA and HSA, 401k match, and telehealth options including memberships to One Medical.
  • Support for Titans at all stages of life: Parental leave and support, up to \$20k in fertility services (i.e. IUI and IVF), surrogacy, and adoption reimbursement, on demand maternity support through Maven Maternity, free breast milk shipping through Maven Milk, pet insurance, legal advisory services, financial planning tools, and more.
Back to blog
Ads

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...