CareerPlanSign in

Staff Corporate Security Engineer

San Francisco, CA - US💼 Full-time💰 $210,000–$210,000🗓 2026-04-20 → 2026-09-26

Core

Principal architect for corporate security posture, designing high-assurance preventative systems for identity perimeter, global network, and SaaS ecosystem.

Role type

Staff Corporate Security Engineer (Principal Architect)

Builds

Zero Trust Network Access (ZTNA), Secure Access Service Edge (SASE), SaaS security controls, device trust mechanisms, Data Loss Prevention (DLP), AI-native security frameworks, and Identity and Access Management (IAM) systems.

Domain

Cybersecurity, Cloud Infrastructure, AI Security

Deliverable

production ML models | product features | infrastructure

Required skills

Zero Trust architecture design, SASE implementation, SaaS security (CASB, DLP), device trust and hardware-backed identity, Identity and Access Management (SSO, SAML, OAuth, SCIM), application-layer vulnerability mitigation, AI security governance

Preferred skills

CASB platform implementation at scale, Model Context Protocol (MCP) familiarity, Secure by Default environment building, cloud-native or AI infrastructure background

Technologies

ZTNA, SASE, Google Workspace, Slack, Okta, CASB, TPM, Secure Enclave, SSO, SAML 2.0, OAuth, SCIM, JIT access

Responsibilities

Design and implement Zero Trust and SASE architectures replacing legacy VPNs; Architect preventative SaaS security across platforms; Implement Binary Authorization and device trust mechanisms; Design and tune Data Loss Prevention controls; Strengthen email security posture; Architect AI-native security frameworks for agent-based systems; Scale identity and access management systems; Define and execute Crown Jewels security methodology.

Seniority

Staff, hands-on IC with strategic architecture focus

Sourced via ashby · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.