> Markdown version of [/jobs/ext/2650602-enterprise-security-engineer](https://www.wearedevelopers.com/jobs/ext/2650602-enterprise-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Enterprise Security Engineer - **Company:** Insight Global - **Location:** San Francisco, CA, United States - **Experience:** Expert - **Salary:** $108,160.0 - $135,200.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Apple Mac Systems, Build Automation, Software as a Service, Cloud Computing Security, Cyber Security, Linux, Multi-Factor Authentication, Identity and Access Management, Python (Programming Language), OAuth, Zero Trust Network Access, Systems Integration, Scripting, Okta, Microsoft InTune, Casper Suite, Gsuite, CIS Benchmarks, Security Orchestration, Automation & Response - **Published:** August 18, 2026 - **Apply:** https://jobs.insightglobal.com/jobs/find_a_job/california/san-francisco/enterprise-security-engineer/job-565187/ ## About the Role * 5-12 years of Enterprise Security, Corporate Security, or Security Engineering experience * Deep hands-on experience securing macOS environments at scale * Strong experience with EDR platforms (CrowdStrike highly preferred) * Experience with MDM solutions such as Jamf or Intune * Experience implementing CIS Benchmarks and endpoint hardening standards * Experience securing Google Workspace environments * SaaS Security experience including application hardening and configuration reviews * Experience reviewing OAuth grants, third-party application permissions, and integrations * Experience with SSO, MFA, conditional access, and Zero Trust principles * Strong scripting/automation skills (Python preferred) Tech Stack * CrowdStrike * Jamf * Intune * Google Workspace * Okta * Chrome Enterprise * macOS * Windows * SaaS Security Platforms Nice to Have Skills & Experience Nice to Have Skills & Experience * SSPM platforms * CASB solutions * DLP technologies * Security Automation * Linux endpoint governance experience Looking for: * macOS hardening experience * CrowdStrike / Endpoint Security ownership * SaaS Security and Google Workspace security experience ## Description Insight Global is seeking an Enterprise Security Engineer to support the client's Cybersecurity organization. This individual will serve as a senior technical resource responsible for securing the client's corporate environment, including endpoint security, device management, SaaS security, browser security, Google Workspace security, and enterprise identity integrations. This role is focused on everything non-product and non-infrastructure security. The ideal candidate has deep experience hardening macOS environments, securing large SaaS ecosystems, implementing enterprise security controls, and partnering closely with IT and Engineering organizations. The team is specifically looking for someone capable of assessing the existing environment, identifying risk, making architecture recommendations, and directly implementing security improvements. DAY-TO-DAY * Assess and harden macOS and Windows endpoints * Improve EDR deployment and endpoint security controls * Secure Google Workspace and SaaS environments * Conduct configuration reviews of business-critical applications * Review OAuth permissions and application integrations * Establish SaaS hardening standards * Implement CIS Benchmark recommendations * Build automation to support enterprise security initiatives * Partner closely with IAM, IT, Infrastructure, and Engineering teams ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [The Developer Workstation Blind Spot: Why Your Security Stack Can't See What Matters Most](https://www.wearedevelopers.com/videos/100254-the-developer-workstation-blind-spot-why-your-security-stack-can-t-see-what-matters-most) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)