Responsibilities
- Design, build, and operate the security controls for Atlan’s corporate environment: macOS fleet, SaaS applications, corporate identities (Okta/Google Workspace), email, endpoints, and network edge
- Evaluate, select, deploy, and operate the corporate security stack: EDR/XDR, MDM, ZTNA, CASB/SSPM, email security, DLP, browser security. You will own vendor selection, PoCs, deployment, tuning, and lifecycle management
- Define and enforce security baselines, hardening standards, and configuration policies across all corporate platforms
- Drive vulnerability management for corporate assets: patch orchestration, risk-based prioritization, exception tracking, and SLA enforcement
- Build security automation and internal tooling. We expect you to use LLMs (Claude, custom agents) to accelerate security workflows
- Lead security reviews of new SaaS adoptions, corporate infrastructure changes, and IT projects
- Define what it means to operate safely in an environment where AI agents act autonomously across corporate systems
- Own the Corporate Security roadmap. Align investments to Atlan’s risk register, compliance calendar, and growth trajectory
- Provide technical direction and security guidance to IT Operations on endpoint provisioning, network design, SaaS lifecycle management, and access controls
- Partner with Detection & Response on telemetry coverage, detection engineering, and incident handling for corporate-sourced events
- Collaborate with Infrastructure Security and AppSec teams to ensure security standards are consistent across corporate and production environments
- Support compliance programs (ISO 27001, ISO 42001, SOC 2, HIPAA, GDPR) by ensuring corporate security controls satisfy audit evidence requirements
- Communicate security posture, risks, and investment needs to Security leadership and cross-functional stakeholders clearly and persuasively
Requirements
- 5+ years of hands-on Security Engineering experience in corporate/enterprise security (endpoint, network, SaaS, identity, or a combination)
- Have built or significantly matured a corporate security program before: selected the tooling, defined the architecture, shipped the controls. Not just operated what someone else built
- Strong engineer who still writes code regularly. You can prototype a tool, write a detection, build an integration, script an API, or debug a complex configuration issue
- Deep experience with macOS fleet security (this is our primary endpoint platform)
- Hands-on experience deploying and operating EDR/XDR, MDM, ZTNA/zero trust, and identity security solutions at scale
- Understand modern SaaS security challenges: shadow IT, OAuth token sprawl, data exfiltration paths, SaaS-to-SaaS integrations, and CASB/SSPM tooling
- Can work independently with high autonomy, manage ambiguity, and make sound risk-based prioritization decisions without waiting for direction
- Excellent communication skills: can translate complex security topics into clear recommendations for both engineering teams and business stakeholders
- Experience supporting ISO 27001, SOC 2, or equivalent compliance frameworks from the corporate security controls side
Nice to Have
- Experience securing corporate environments at high-growth SaaS, AI, cloud, or developer-tools companies
- Advanced macOS security: system extensions, Endpoint Security framework, MDM profile engineering, Declarative Device Management
- Network security architecture for distributed/remote-first environments: SD-WAN, ZTNA, DNS security, network segmentation
- Browser security and isolation technologies (Island, Talon/Palo Alto, Chrome Enterprise)
- Proficiency in Python, Go, or similar languages for building security tooling and automation
- Experience leveraging LLMs/AI to augment security operations, build investigative tooling, or automate policy enforcement
- Familiarity with IaC (Terraform), CI/CD pipelines, and DevSecOps practices as they apply to corporate infrastructure
- Mobile security for iOS/Android in a BYOD environment
- Data Loss Prevention (DLP) program design and implementation across endpoints, email, SaaS, and cloud storage
- Exposure to ISO 42001 (AI Management Systems) controls
Benefits
- Competitive Compensation: We benchmark at the top of the market and keep compensation simple: strong base salary, performance‑based variable pay, and impact‑driven equity (for most roles), so your total rewards grow in step with the value you create over time.
- AI Native Culture: Atlan is where AI-native builders come to build the systems the future of work will run on. AI isn’t an add-on, it’s woven into how we build, think, and work every day, empowering every Atlanian to move faster and create a bigger impact.
- Health & Wellness: From Day‑1 health, dental, vision, and mental health to flexible health stipends, we design benefits offerings that lead in each country we're in.
- Flexible Time Off & Leave Policies: We trust you to own your energy: flexible time off and modern leave so you can unplug properly, support yourself and your loved ones, and come back ready to drive an impact.
- Accelerated Growth & Learning: Develop at an uncommon velocity through cutting-edge tech, complex implementations, and an experienced team that values mastery.
- Global, Remote-First, High-Trust: Work from anywhere with a diverse team across 15+ countries, in a trust-first, async environment that gives you true flexibility and ownership over how you work.