CareerPlanSign in

Corporate Security Engineer

New York City💼 Full-time🗓 2026-07-25 → 2026-09-26

Core

Own the security of Legora's internal environment (identities, devices, SaaS, AI tools) and build security controls as code to protect an AI platform handling sensitive legal work.

Role type

Senior Corporate Security Engineer (AI & Identity focus)

Builds

Security controls, guardrails, and automation as code (Python/Terraform) for internal identities, devices, and AI usage.

Domain

AI Security, Identity & Access Management (IAM), SaaS Security, Enterprise IT Security

Deliverable

production ML models | infrastructure

Required skills

Python, Infrastructure as Code (Terraform), Non-human identity management, AI security governance, Phishing-resistant MFA, SSO/SCIM lifecycle, Endpoint security (MDM/EDR), Data Loss Prevention (DLP), Threat modeling

Preferred skills

Prompt injection detection, Agent authorization (MCP/OAuth), Identity Threat Detection (ITDR), Secrets management, SOC 2/ISO 27001 control implementation, Jamf/Intune, SOAR

Technologies

Python, Terraform, Okta, Microsoft Entra ID, Google Workspace, FIDO2, Jamf, Intune, CrowdStrike, 1Password, HashiCorp Vault

Responsibilities

Manage non-human identities and service accounts with short-lived credentials; Define authorization models for AI agents; Govern employee AI usage and secure data paths; Implement phishing-resistant MFA and continuous access evaluation; Monitor SaaS security posture and config drift; Manage endpoint trust via MDM/EDR; Build security controls and guardrails as code.

Seniority

Senior, hands-on IC

Sourced via ashby · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.