Enterprise Security Engineer

Insight Global
San Francisco, CA, United States
15 days ago
Apply on jobs.insightglobal.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$108,160.0 - $135,200.0
Working hours
Regular working hours

Tech stack

Microsoft Windows Apple Mac Systems Build Automation Software as a Service Cloud Computing Security Cyber Security Linux Multi-Factor Authentication Identity and Access Management Python (Programming Language) OAuth Zero Trust Network Access
+8 more
Systems Integration Scripting Okta Microsoft InTune Casper Suite Gsuite CIS Benchmarks Security Orchestration, Automation & Response

Job description

Insight Global is seeking an Enterprise Security Engineer to support the client’s Cybersecurity organization. This individual will serve as a senior technical resource responsible for securing the client’s corporate environment, including endpoint security, device management, SaaS security, browser security, Google Workspace security, and enterprise identity integrations.

This role is focused on everything non-product and non-infrastructure security. The ideal candidate has deep experience hardening macOS environments, securing large SaaS ecosystems, implementing enterprise security controls, and partnering closely with IT and Engineering organizations. The team is specifically looking for someone capable of assessing the existing environment, identifying risk, making architecture recommendations, and directly implementing security improvements.

DAY-TO-DAY

  • Assess and harden macOS and Windows endpoints
  • Improve EDR deployment and endpoint security controls
  • Secure Google Workspace and SaaS environments
  • Conduct configuration reviews of business-critical applications
  • Review OAuth permissions and application integrations
  • Establish SaaS hardening standards
  • Implement CIS Benchmark recommendations
  • Build automation to support enterprise security initiatives
  • Partner closely with IAM, IT, Infrastructure, and Engineering teams

Requirements

  • 5-12 years of Enterprise Security, Corporate Security, or Security Engineering experience
  • Deep hands-on experience securing macOS environments at scale
  • Strong experience with EDR platforms (CrowdStrike highly preferred)
  • Experience with MDM solutions such as Jamf or Intune
  • Experience implementing CIS Benchmarks and endpoint hardening standards
  • Experience securing Google Workspace environments
  • SaaS Security experience including application hardening and configuration reviews
  • Experience reviewing OAuth grants, third-party application permissions, and integrations
  • Experience with SSO, MFA, conditional access, and Zero Trust principles
  • Strong scripting/automation skills (Python preferred)

Tech Stack

  • CrowdStrike
  • Jamf
  • Intune
  • Google Workspace
  • Okta
  • Chrome Enterprise
  • macOS
  • Windows
  • SaaS Security Platforms

Nice to Have Skills & Experience

Nice to Have Skills & Experience

  • SSPM platforms
  • CASB solutions
  • DLP technologies
  • Security Automation
  • Linux endpoint governance experience

Looking for:

  • macOS hardening experience
  • CrowdStrike / Endpoint Security ownership
  • SaaS Security and Google Workspace security experience

Benefits & conditions

Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.insightglobal.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all