> Markdown version of [/jobs/ext/2716919-pave-s-corporate-security-engineer](https://www.wearedevelopers.com/jobs/ext/2716919-pave-s-corporate-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Pave's Corporate Security Engineer - **Company:** TROVE INFORMATION TECHNOLOGIES, INC. - **Location:** United States - **Experience:** Expert - **Salary:** $220,000.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Software as a Service, Cloud Computing Security, Cyber Security, Identity and Access Management, Networking Basics, Role-Based Access Control, Security Information and Event Management, Okta, Gsuite - **Published:** September 4, 2026 - **Apply:** https://startup.jobs/enterprise-security-engineer-pave-3-9638596 ## About the Role * 5+ years of hands-on corporate/enterprise security or IT security engineering experience at a multi-office company * Okta (or equivalent IdP) administration at the design level - you've built an access model, not just operated one * Experience operating within SOC 2 and/or ISO 27001: controls you owned passed audits * Hands-on MDM/EDR and Google Workspace-class SaaS estate administration as a primary owner * A track record of shipped automations with concrete before/after impact * Demonstrated, specific use of AI tooling in your own workflows * Previous management experience (nice to have) * Came up through IT/helpdesk into security (or similar path), so you have empathy for the people you're supporting and first hand experience with the toil you're here to automate away * Experience with Okta, GCP, Iru, Sentinel one, Claude code, and or similar tools * Vendor security review / third-party risk experience (nice to have) * Background at a 150-500 person B2B SaaS company handling sensitive data (nice to have) * Networking fundamentals ## Description Security at Pave protects the world's largest real-time compensation dataset and the company that runs on it. The team is small, senior, and AI pilled: everyone builds, everyone automates, and everyone flexes across domains. As Pave's Corporate Security Engineer, you'll own the corporate side of that mission: identity and access management, endpoint protection, SaaS security, and the corporate compliance operations behind our SOC 2 Type II and ISO 27001 programs, with an explicit charter to aggressively automate all the things., * Own Okta and Pave's access-management model: role/group architecture, lifecycle automation, SSO/SCIM, and the exception process * Keep the RBAC model current and consistently enforced, with automation that prevents drift Compliance Operations * Own the SOC 2 Type II and ISO 27001 controls that touch corporate IT, end to end * Automate evidence collection and user access reviews Endpoint & SaaS Security * Own endpoint protection (MDM/EDR) across a five-location, ~175-person company * Run SaaS vendor security reviews and build shadow-IT visibility; feed IT-controlled data sources into our SIEM Automation & AI * Engineer away manual IT toil - laptop setup, onboarding/offboarding provisioning, access requests - using APIs, workflow tooling, and AI agents * Build governance for employee-built internal apps: publish detection, automated review checks, sane sharing models Partnership * Design the systems that Pave's helpdesk (in G&A) operates day to day; be the design counterpart that makes that team stronger and more self-sufficient ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Less Is More: How Lagom and Agile Can Create Harmonious Workflows](https://www.wearedevelopers.com/videos/1993-less-is-more-how-lagom-and-agile-can-create-harmonious-workflows) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Security Basics for Vibe Coders](https://www.wearedevelopers.com/magazine/598-security-basics-for-vibe-coders)