
Staff CorpSec Engineer
Posted Sep 17

Posted Sep 17
This is a fully remote position, open to applicants in United States.
• Take charge of endpoint fleet security for macOS, Windows, and Linux, encompassing hardening, EDR, patch management, and MDM-driven device compliance.
• Design and manage identity and access frameworks, which include SSO, MFA, conditional access, and ensuring least-privilege access.
• Propel the zero-trust strategy for corporate access.
• Safeguard the SaaS environment through configuration hardening, monitoring, and automated detection of risky changes and access.
• Create scalable automation and tools for provisioning, deprovisioning, access reviews, and self-service guardrails.
• Collaborate with IT and Detection & Response teams to implement corporate telemetry and develop detection mechanisms for phishing, account compromise, and device threats.
• Oversee the corporate security response to phishing, account takeover, and endpoint incidents while establishing prevention systems.
• Establish standards and mentor engineers across IT and security domains.
• Define corporate security strategy, identify significant workforce risks, elevate engineering talent, and strengthen the internal attack surface.
• Extensive experience, generally 8+ years, in security engineering with a focus on corporate/enterprise security.
• Practical experience in endpoint security and management for both macOS and Windows.
• Proficiency in identity and access management, including SSO, MFA, SAML/OIDC, and modern identity providers like Okta, Entra ID, and Google Workspace.
• Experience in securing SaaS environments and advancing zero-trust access frameworks.
• Strong software development and scripting skills in Python, Go, or similar languages.
• Capability to balance robust security measures with employee experience while leading cross-team initiatives.
• Nice to have: experience in detection engineering for corporate telemetry.
• Nice to have: familiarity with device management tools and osquery-style fleet visibility.
• Nice to have: experience in responding to phishing and account compromise incidents at scale.
• Nice to have: experience securing a rapidly growing, remote-friendly workforce.
• Engage at the forefront of AI, assisting leading AI labs in enhancing advanced models.
• Contribute to pioneering AI research and present findings at conferences such as ICLR, ICML, and NeurIPS.
• Introduce cutting-edge AI innovations to the enterprise sector.
• Collaborate with outstanding colleagues possessing extensive AI expertise.
• Thrive in a startup-like environment that emphasizes speed, ownership, and impact.
• Enjoy an equal opportunity, diverse, inclusive, and authentic workplace.
Mercor
RTX
Expel
Qualus
Get handpicked remote jobs straight to your inbox weekly.