Skip to main content
Flexport
Зібрано зWorkСьогодні
Frontend

Security Engineer, Corporate Security

SSOMFASCIMJamfKandjiIntuneCrowdStrikeSentinelOneSAMLOpenID ConnectOktaEntraGoogle WorkspacePythonGoSSPMDLPTerraformSlack
Формат
On Site
Зайнятість
Full Time
Локація
Worldwide
Оплата
USD 165375–202125 / YEAR

Про позицію

Flexport is a technology company that aims to make global trade easier. This Security Engineer role in Corporate Security involves owning identity and access management, endpoint security, SaaS posture, and automation across the company's infrastructure, working with modern tools and a collaborative team.

Обовʼязки

  • Advance our identity posture: SSO coverage, phishing-resistant MFA rollout, SCIM lifecycle automation, and least-privilege access across the SaaS and cloud estate
  • Build the detections and guardrails that catch account takeover, MFA fatigue attacks, and session token theft before they turn into incidents
  • Write and ship device policy as code — configuration profiles, remediation scripts, and enforcement rules across macOS and Windows — with staged rollout and rollback built in from day one
  • Maintain and improve our EDR stack's detection and response coverage across the fleet
  • Reduce SaaS risk at scale through SSPM tooling and automation, including detection of risky OAuth grants, shadow IT, and configuration drift across our critical SaaS applications
  • Own security configuration for the SaaS tools hundreds of Flexporters use daily (Google Workspace, Slack, and similar), and keep pace as we add AI agents and MCP integrations to that surface
  • Automate the parts of corporate security that don't need a human — device provisioning, access reviews, vendor security questionnaires — so the team scales with headcount instead of straining against it
  • Write runbooks and documentation that make the rest of the team more capable, and partner with IT and People teams to ship controls that don't create the friction that drives people to workarounds

Вимоги

  • Typically 2–5 years of experience in corporate, enterprise, or IT security engineering
  • Hands-on experience with modern endpoint management and EDR tooling (Jamf, Kandji, Intune, CrowdStrike, SentinelOne, or similar)
  • Working knowledge of identity protocols (SAML, OIDC, SCIM) and a major identity provider (Okta, Entra, Google Workspace, or similar)
  • Comfort writing real code or scripts (Python, Go, or similar) to replace manual, ticket-driven work with automation
  • Clear, practical communicator who can explain a control tradeoff to an engineer, a salesperson, and a VP without changing the facts

Переваги

  • Bonus, equity, and comprehensive benefit offerings such as medical, dental, and flexible time off
  • The latest hardware and software, including frontier AI models on day one
  • Relocation support is available for the right candidate
Security Engineer, Corporate SecurityUSD 165375–202125 / YEAR
Оригінал