Corporate Security Engineer
Core
Own the security of Legora's internal environment (identities, devices, SaaS, AI tools) and build security controls as code to protect an AI platform handling sensitive legal work.
Role type
Senior Corporate Security Engineer (AI & Identity focus)
Builds
Security controls, guardrails, and automation as code (Python/Terraform) for internal identities, devices, and AI usage.
Domain
AI Security, Identity & Access Management (IAM), SaaS Security, Enterprise IT Security
Deliverable
production ML models | infrastructure
Required skills
Python, Infrastructure as Code (Terraform), Non-human identity management, AI security governance, Phishing-resistant MFA, SSO/SCIM lifecycle, Endpoint security (MDM/EDR), Data Loss Prevention (DLP), Threat modeling
Preferred skills
Prompt injection detection, Agent authorization (MCP/OAuth), Identity Threat Detection (ITDR), Secrets management, SOC 2/ISO 27001 control implementation, Jamf/Intune, SOAR
Technologies
Python, Terraform, Okta, Microsoft Entra ID, Google Workspace, FIDO2, Jamf, Intune, CrowdStrike, 1Password, HashiCorp Vault
Responsibilities
Manage non-human identities and service accounts with short-lived credentials; Define authorization models for AI agents; Govern employee AI usage and secure data paths; Implement phishing-resistant MFA and continuous access evaluation; Monitor SaaS security posture and config drift; Manage endpoint trust via MDM/EDR; Build security controls and guardrails as code.
Seniority
Senior, hands-on IC
