> Markdown version of [/jobs/ext/2618363-enterprise-security-engineer](https://www.wearedevelopers.com/jobs/ext/2618363-enterprise-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Enterprise Security Engineer - **Company:** Gecko Robotics - **Location:** Pittsburgh, PA, United States (Remote available) - **Experience:** Experienced - **Salary:** $127,000.0 - $160,000.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Artificial Intelligence, Systems Engineering, Bash Shell, Software as a Service, Cloud Computing, Cyber Security, System Configuration, Cursor (Graphical User Interface Elements), Gecko (Software), Identity and Access Management, Python (Programming Language), OAuth, Windows PowerShell, Cloud Services, Systems Integration, Workflow Management Systems, EndPointSecurity, Scripting, Okta, Software Security, Microsoft InTune, Casper Suite, GPT, SentinelOne Expertise - **Published:** August 6, 2026 - **Apply:** https://www.juju.com/job/00000000gm4y2h ## About the Role Experience with every technology or framework is not required. Relevant technologies include: + Identity management (e.g., Okta, Onelogin, Active Directory) + MDM systems (e.g., Jamf, Intune, NinjaOne) + EDR/MDR tools (e.g., CrowdStrike, TrendMicro, SentinelOne) + AI management (e.g., Claude, ChatGPT, Cursor, Grok), + 3+ years of experience in Enterprise Security Engineering, Security Engineering, IT Security, or a related hands-on security engineering role. + Hands-on experience administering endpoint management and endpoint detection and response (EDR) solutions in production environments. + Experience administering or securing identity and access management (IAM) platforms, including SSO, MFA, or lifecycle management + Experience evaluating, governing, or administering SaaS applications, OAuth integrations, and enterprise security controls. + Experience working with regulated, customer-protected, or other sensitive data (e.g., CUI, HIPAA, PCI, SOC 2). + Strong systems configuration, troubleshooting, workflow design, and operational ownership skills. + Demonstrated ability to balance security and compliance requirements with business needs and user experience. + Excellent written and verbal communication skills, with the ability to partner effectively across Security, IT, Engineering, Compliance, Legal, and other cross-functional teams. Preferred Skills + Experience governing AI tools or other rapidly adopted workplace technology. + Experience in government, defense, critical infrastructure, or another highly regulated industry, including familiarity with CUI, CMMC, FedRAMP, NIST, SOC 2, or ISO 27001. + Experience administering CrowdStrike Falcon, Microsoft Defender, SentinelOne, or another enterprise EDR platform. + Experience administering Okta, Microsoft Intune, Jamf, or comparable identity and endpoint management platforms. + Experience with DLP, CASB, browser security, or SaaS/OAuth governance technologies. + Experience automating security or IT workflows using Python, PowerShell, Bash, or similar scripting languages. + Experience working on a small, high-growth, or startup team where security processes, tooling, and ownership were built from the ground up. ## Description Gecko is seeking an Enterprise Security Engineer to help build and operate the shared systems that protect our people, devices, applications, and sensitive data. You will sit within InfoSec Engineering and partner closely with IT Engineering. Your primary focus will be workforce endpoint and device security, identity security, SaaS and OAuth governance, enterprise detections, and the protection of regulated data. Our goal is to eliminate friction: solve shared security and technology problems so everyone else can focus on their unique roles. Security and compliance should create trustworthy paths for the company to move faster and remain in compliance, not unnecessary barriers that teams must work around. Responsible use of AI tools is an important example. Gecko should be able to benefit fully from emerging technology without misusing sensitive data or creating unacceptable security, privacy, contractual, or compliance risk. This role will help establish the systems, guardrails, and guidance that make responsible adoption possible. What You Will Do + Build, configure, and operate endpoint-management, device-compliance, browser-security, and endpoint detection and response controls; harden workforce devices and shared enterprise systems. + Own and improve identity security-including Okta policies, MFA, Conditional Access, and lifecycle controls-and establish practical governance for SaaS applications, OAuth access, browser extensions, AI tools, and other third-party technology. + Create clear, usable paths that let employees adopt approved AI tooling and other technology while protecting regulated and sensitive data and meeting security, privacy, contractual, and compliance obligations. + Translate requirements into effective configurations and workflows, partnering closely with IT Engineering to solve shared problems, reduce recurring friction, and make controls easy to operate. + Build and tune enterprise detections; evaluate alerts and control gaps; lead corporate-side incident response; make proportionate risk decisions and coordinate remediation with the teams that own the affected systems. + Partner with Product Security, Cloud Infrastructure, IT, and Facilities when enterprise-security concerns intersect with applications, cloud services, engineering systems, or physical security. + Establish and maintain governance for the adoption and use of AI tools and other rapidly emerging workplace technologies, ensuring security, privacy, and compliance requirements are met. + Travel up to 20% to Gecko offices and other locations as needed to support enterprise security initiatives, physical security projects, incident response, and cross-functional collaboration. ## Related Videos - [ Evaluating AI models for code comprehension](https://www.wearedevelopers.com/videos/1462-evaluating-ai-models-for-code-comprehension) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Streaming AI Responses in Real-Time with SSE in Next.js & NestJS](https://www.wearedevelopers.com/videos/1630-streaming-ai-responses-in-real-time-with-sse-in-next-js-nestjs) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Dev Digest 129 - Now that's what I call private data!](https://www.wearedevelopers.com/magazine/468-dev-digest-129-now-that-s-what-i-call-private-data) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)