> Markdown version of [/jobs/ext/2704346-enterprise-security-engineer](https://www.wearedevelopers.com/jobs/ext/2704346-enterprise-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Enterprise Security Engineer - **Company:** DOORDASH, INC. - **Location:** New York, NY, United States (Remote available) - **Experience:** Experienced - **Salary:** $130,600.0 - $192,000.0 - **Contract:** Temporary contract - **Skills:** Microsoft Windows, Access Network, Artificial Intelligence, Amazon Web Services, Proxy Servers, Apple Mac Systems, ARM Architecture, JIRA, Software as a Service, Cloud Computing Security, Cyber Security, Information Leak Prevention, Linux, Information Security Management, Python (Programming Language), OAuth, Open Source Technology, Openid Connect, Zero Trust Network Access, Security Assertion Markup Language (SAML), Cloud Platform System, Okta, Information Technology, Github Enterprise, Gsuite, Terraform - **Published:** September 4, 2026 - **Apply:** https://startup.jobs/enterprise-security-engineer-doordash-usa-8072473 ## About the Role * You have 2-5 years of experience in security engineering, enterprise security, IT security, or a related field. * You have hands-on experience administering identity providers (e.g., Okta) and Google Workspace, and working knowledge of modern authentication standards (SAML, OAuth 2.0, OpenID Connect, FIDO2/WebAuthn). * You have practical experience operating EDR/XDR platforms and securing macOS, Windows, and Linux endpoints through mobile device management (MDM). * You have hands-on experience with at least one major cloud platform (e.g., AWS, GCP). * You can write production-quality automation scripts (e.g., Python, Go) and communicate clearly in writing., * Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or equivalent practical experience. * Hands-on experience with one or more of: Tailscale, Google IAP, GitHub enterprise controls, Palo Alto Cortex, Chrome Enterprise. * Experience with SaaS Security Posture Management (SSPM), CASB, or OAuth-scope governance. * Experience operating DLP controls, particularly native DLP capabilities in major SaaS platforms. * Experience with Infrastructure-as-code (e.g. Terraform) applied to security tooling. * Experience supporting ISO 27001 or SOC 2 audits. * Contributions to the security community (blog posts, conference talks, bug bounty, open source). * Relevant certifications (e.g. CISSP Associate, GIAC)., * You've taken ownership of the day-to-day operation of at least one EntSec tool (e.g. Cortex policy tuning, Tailscale ACL maintenance, or GitHub user-centric controls). * You've shipped at least one AI-assisted automation that eliminates a recurring ticket category in the Jira support queue. * You've completed an exception-handling review of endpoint posture policies and surfaced any drift or gaps. ## Description As an Enterprise Security Engineer, you'll help implement and operate the security controls that protect our workforce, endpoints, and corporate software environment across DoorDash, Wolt, and Deliveroo. You'll spend your time tuning the tools that keep employees secure, building automation that removes repetitive work, and partnering with teams across the company to make the secure path the easy one. It's an exciting time to join as we mature security across three global brands and lean into AI-assisted ways of working. You will report into the US Enterprise Security Team Lead on our Enterprise Security team in our Global Information Security organization., * Implement and tune core security controls that protect employees across three global brands such as phishing-resistant multi-factor authentication, conditional access, device trust, and software-as-a-service (SaaS) posture management. * Operate the day-to-day security stack, spanning endpoint detection and response (EDR), zero-trust network access, identity-aware proxies, browser security, and data loss prevention (DLP). * Use AI-assisted coding tools to automate security workflows, incident response, and compliance evidence collection, verifying the output before it ships. * Address modern SaaS risk such as shadow IT, OAuth token sprawl, and high-risk application reviews, partnering with IT and third-party risk teams. * Help teams adopt secure-by-default baselines so that security supports their work rather than blocking it., We're committed to growing and empowering a more inclusive community within our company, industry, and cities. That's why we hire and cultivate diverse teams of people from all backgrounds, experiences, and perspectives. We believe that true innovation happens when everyone has room at the table and the tools, resources, and opportunity to excel. Statement of Non-Discrimination: In keeping with our beliefs and goals, no employee or applicant will face discrimination or harassment based on: race, color, ancestry, national origin, religion, age, gender, marital/domestic partner status, sexual orientation, gender identity or expression, disability status, or veteran status. Above and beyond discrimination and harassment based on "protected categories," we also strive to prevent other subtler forms of inappropriate behavior (i.e., stereotyping) from ever gaining a foothold in our office. Whether blatant or hidden, barriers to success have no place at DoorDash. We value a diverse workforce - people who identify as women, non-binary or gender non-conforming, LGBTQIA+, American Indian or Native Alaskan, Black or African American, Hispanic or Latinx, Native Hawaiian or Other Pacific Islander, differently-abled, caretakers and parents, and veterans are strongly encouraged to apply. Thank you to the Level Playing Field Institute for this statement of non-discrimination. Pursuant to the San Francisco Fair Chance Ordinance, Los Angeles Fair Chance Initiative for Hiring Ordinance, and any other state or local hiring regulations, we will consider for employment any qualified applicant, including those with arrest and conviction records, in a manner consistent with the applicable regulation. If you need any accommodations, please inform your recruiting contact upon initial connection. Notice to Applicants for Jobs Located in NYC or Remote Jobs Associated With Office in NYC Only We used Covey as part of our hiring and/or promotional process for jobs in NYC and certain features may qualify it as an AEDT in NYC. As part of the hiring and/or promotion process, we provided Covey with job requirements and candidate submitted applications. We began using Covey Scout for Inbound from August 21, 2023, through December 21, 2023. We resumed using Covey Scout for Inbound again on June 29, 2024, and ceased using Covey Scout for Inbound on April 30, 2026. ## Related Videos - [Improving quality with Agentic AI with Rovo Dev and Xray](https://www.wearedevelopers.com/videos/2005-improving-quality-with-agentic-ai-with-rovo-dev-and-xray) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Collaboration Quantified: Lessons from Open Source Developer Networks](https://www.wearedevelopers.com/videos/1422-collaboration-quantified-lessons-from-open-source-developer-networks) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)