Corporate Security Engineer

Emploi pas sur LinkedIn

🕒 il y a 27 jours

🇺🇸 États-Unis – Télétravail

💵 $125 000 - $135 000 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Branch

Branch

501 - 1000 employés

Fondée en 2014

🔌 API

🤝 B2B

☁️ SaaS

💰 €282 000 000 Series F en 2022-02

API • B2B • SaaS

Branch est une entreprise spécialisée dans la croissance mobile qui fournit une plateforme de croissance complète conçue pour maximiser la valeur des stratégies numériques. Ses services se concentrent sur l'amélioration de l'engagement client, l'optimisation des performances publicitaires grâce à une attribution sophistiquée, et la garantie de la conformité avec les réglementations en matière de protection des données. Servant plus de 100 000 entreprises allant des startups aux marques du Fortune 500, Branch aide les entreprises à créer des expériences utilisateur fluides sur divers canaux, à stimuler les conversions et à atteindre une croissance significative des applications mobiles et des indicateurs d'engagement.

Description

• Own the day-to-day administration of CrowdStrike Falcon — prevention policies, detection tuning, custom IOAs, USB device control, and Real Time Response runbooks across the entire Branch endpoint fleet. • Operate and mature ThreatLocker — build and maintain application allowlisting, ringfencing, storage control, and elevation policies; reduce learning-mode exceptions over time and drive measurable hardening progress. • Administer Island Enterprise Browser — define and enforce browser-level policies for SaaS access, copy/paste, downloads, screenshot, and extension governance; align browser controls with insider risk and DLP objectives. • Drive endpoint hardening and configuration baselines for macOS and Windows. MDM (Jamf / Intune), patch SLAs, FileVault/BitLocker, and CIS-aligned benchmarks. • Maintain a defensible inventory of endpoints, agents, and coverage gaps, and drive remediation when devices fall out of compliance. • Own corporate-side incident response for endpoint, identity, email, and insider events — from initial triage through containment, eradication, recovery, and post-incident review. • Build and run Branch’s insider risk program — from defining risk indicators (data exfiltration, anomalous access, departing employee behavior) to building detections and response playbooks across endpoint, browser, and SaaS telemetry. • Operate Data Loss Prevention controls across Google Workspace (Drive, Gmail), Island Browser, and endpoint channels; investigate DLP events end-to-end, balancing user friction against data-protection outcomes. • Lead onboarding, offboarding, transitions security workflows in partnership with People Operations — enforce least-privilege access, data return at offboarding, and time-bounded monitoring of high-risk departures, ultimately skilling up our IAM team. • Triage and investigate insider risk cases with discretion, partnering with Legal, HR, and GRC on documentation, evidence handling, and outcomes; preserve chain-of-custody on every case. • Develop user-facing guidance and training that reduces accidental risk — phishing reporting, secure handling of customer data, and acceptable use of AI and SaaS tools. • Harden Google Workspace — admin role hygiene, context-aware access, OAuth third-party app governance, advanced phishing/malware protection, and audit logging into the SIEM. • Automate repetitive corporate security work using Python or Bash and orchestration platforms (e.g., Tines, Torq, XSOAR) — alert enrichment, user notifications, evidence collection, and offboarding checks. • Contribute to the corporate vulnerability management program for endpoints and SaaS — prioritization, SLA tracking, and cross-functional remediation. • Serve as a security consultant and escalation point for the broader business on secure configurations, patching, exception requests, and acceptable-use questions.

🎯 Exigences

• 3–5 years of experience in a corporate security, endpoint security, security operations, or insider risk role with increasing responsibility. • Hands-on experience with EDR — ideally CrowdStrike Falcon — including detection tuning, custom IOAs/IOCs, and Real Time Response investigations. • Working experience with application control or zero-trust endpoint tooling (ThreatLocker, Airlock, AppLocker, or equivalents) — you understand the operational reality of allowlisting at scale. • Familiarity with enterprise / managed browsers (Island, Talon, Chrome Enterprise) and the data-egress and SaaS access controls they enable; comfort designing browser policy is a strong plus. • Strong Google Workspace security background — admin console controls, context-aware access, OAuth governance, and DLP. • Demonstrated ability to investigate incidents end-to-end — phishing, malware, account compromise, DLP events, and insider risk cases — with disciplined documentation. • Solid fundamentals in identity and access management, endpoint hardening, MDM, logging, and SIEM-based detection. • Scripting proficiency in Python and/or Bash for automation and tooling; experience with security orchestration platforms (Tines, Torq, XSOAR) is a plus. • Strong written and verbal communication — able to explain endpoint and insider risk concepts to non-security partners in HR, Legal, and the executive team. • Strong ethics and discretion — this role regularly handles confidential personnel and investigative information. • Familiarity with security frameworks such as ISO 27001, SOC 2, PCI-DSS, NIST CSF, and CIS Benchmarks.

🏖️ Avantages

• Market-leading medical, dental, and vision insurance • Stock options • Free Premium-Tier Origin Financial Wellness subscription • Monthly home-office stipend • 401k (TransAmerica) • 12-weeks paid parental leave for birthing and non-birthing parents • Flexible time off + sick and safe time • 11 paid company holidays • Branch@Branch Same Day Pay Option

Postuler Maintenant

Emplois Similaires

🕒 il y a 28 jours

REE Medical

201 - 500

⚕️ Assurance santé

IT Security Manager leading security professionals to protect sensitive data and ensure compliance. Overseeing cybersecurity policies, incident response, and risk management frameworks.

🇺🇸 États-Unis – Télétravail

💵 $125 000 - $150 000 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 28 jours

Benchling

501 - 1000

☁️ SaaS

🧬 Biotechnologie

🤝 B2B

Enterprise Security Engineer at Benchling focusing on building a security program and implementing zero trust strategies for sensitive data protection.

🇺🇸 États-Unis – Télétravail

💵 $176 000 - $300 000 / an

💰 €100 000 000 Series F - Benchling en 2021-11

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 28 jours

Teledyne Technologies Incorporated

10 000+ employés

🚀 Aérospatiale

🔬 Science

Regional Sales Manager for Security driving sales across end users and partners in the West Region of the US. Collaborating internally to grow business in the thermal and sensing technologies market.

🇺🇸 États-Unis – Télétravail

💵 $103 900 - $138 500 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 28 jours

Gainwell Technologies

10 000+ employés

⚕️ Assurance santé

Senior Manager Security Compliance at Gainwell overseeing security compliance for state-based customers. Engaging with account teams and managing audit processes in a Healthcare environment.

🇺🇸 États-Unis – Télétravail

💵 $122 200 - $174 600 / an

💰 Grant en 2023-06

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 28 jours

CyberSheath

51 - 200

🔒 Cybersecurity

📋 Conformité

💳 Fintech

Cloud Security Engineer at CyberSheath providing expertise in cloud security and implementing security best practices. Work remotely while contributing to cybersecurity services for the Defense Industrial Base.

🇺🇸 États-Unis – Télétravail

💵 $85 000 - $100 000 / an

💰 Private Equity Round en 2021-12

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis