Staff Corporate Security Engineer
Core
Principal architect for corporate security posture, designing high-assurance preventative systems for identity perimeter, global network, and SaaS ecosystem.
Role type
Staff Corporate Security Engineer (Principal Architect)
Builds
Zero Trust Network Access (ZTNA), Secure Access Service Edge (SASE), SaaS security controls, device trust mechanisms, Data Loss Prevention (DLP), AI-native security frameworks, and Identity and Access Management (IAM) systems.
Domain
Cybersecurity, Cloud Infrastructure, AI Security
Deliverable
production ML models | product features | infrastructure
Required skills
Zero Trust architecture design, SASE implementation, SaaS security (CASB, DLP), device trust and hardware-backed identity, Identity and Access Management (SSO, SAML, OAuth, SCIM), application-layer vulnerability mitigation, AI security governance
Preferred skills
CASB platform implementation at scale, Model Context Protocol (MCP) familiarity, Secure by Default environment building, cloud-native or AI infrastructure background
Technologies
ZTNA, SASE, Google Workspace, Slack, Okta, CASB, TPM, Secure Enclave, SSO, SAML 2.0, OAuth, SCIM, JIT access
Responsibilities
Design and implement Zero Trust and SASE architectures replacing legacy VPNs; Architect preventative SaaS security across platforms; Implement Binary Authorization and device trust mechanisms; Design and tune Data Loss Prevention controls; Strengthen email security posture; Architect AI-native security frameworks for agent-based systems; Scale identity and access management systems; Define and execute Crown Jewels security methodology.
Seniority
Staff, hands-on IC with strategic architecture focus
