Remote Jobs RockRemote Jobs Rock

Senior Corporate Security Engineer

🕒 yesterday
Endpoint SecurityDevice ManagementIdentity And Access ManagementSIEM

📜 Description

  • Define and own security policies for endpoint protection and device management.
  • Administer identity and access management, ensuring secure and workable access for employees.
  • Operate SIEM and detection tools, investigating alerts and coordinating with external SOC.
  • Proactively harden the corporate security environment to reduce incidents.
  • Run security awareness programs to build a security-conscious culture.

🛠️ Requirements

  • 4+ years of experience in a corporate/enterprise security, security operations, or IT security engineering role.
  • Hands-on experience with endpoint security (EDR) across macOS and Windows; experience with device management (MDM) and managing Linux endpoints is a plus.
  • Strong working knowledge of identity and access management — SSO, MFA, and modern IAM platforms (e.g., Okta, Entra ID/Azure AD, Google Workspace) — and least-privilege access practices.
  • Experience operating a SIEM and detection tooling — writing and tuning rules, triaging alerts, and investigating suspicious activity. Experience with Splunk is preferred.
  • Practical incident response experience — investigation, containment, remediation, and root cause analysis — and comfort coordinating with an external SOC/MSSP.
  • Solid grasp of security fundamentals — network and host hardening, common attack techniques, and how to reduce attack surface.
  • Familiarity with compliance frameworks such as ISO 27001 and SOC 2, and experience operating or evidencing security controls.
  • Experience with vulnerability management and translating findings into concrete remediation.
  • A collaborative working style suited to a distributed team, with clear written communication and reliable handoffs across time zones.
  • Based in the United States, with the ability to provide security operations coverage during US business hours.
Full job description

Company Description

Mirantis, an IREN company, is the Kubernetes-native AI infrastructure company, enabling organizations to build and operate scalable, secure, and sovereign infrastructure for modern AI, machine learning, and data-intensive applications. By combining open source innovation with deep expertise in Kubernetes orchestration, Mirantis empowers platform engineering teams to deliver composable, production-ready developer platforms across any environment—on-premises, in the cloud, at the edge, or in sovereign data centers. As enterprises navigate the growing complexity of AI-driven workloads, Mirantis delivers the automation, GPU orchestration, and policy-driven control needed to manage infrastructure with confidence and agility. Committed to open standards and freedom from lock-in, Mirantis ensures that customers retain full control of their infrastructure strategy.  https://www.mirantis.com/

Job Description

About the Role

Mirantis is seeking a Corporate Security Engineer to join our security team, based remotely in the United States. We're adding this role to extend our security operations coverage beyond EU hours and to bring additional hands-on capacity to the team — improving how quickly we detect, triage, and respond to issues across the working day.

This is a broad, hands-on engineering role covering the core of corporate security: endpoint protection (EDR) and device management (MDM), identity and access (IAM/SSO, MFA), and the detection-and-response stack (SIEM, alerting, and coordination with our existing external SOC). You will be part of the team that responds when something happens, and you'll help harden the environment so that fewer things do. Alongside this, you'll support our compliance program — ISO 27001, SOC 2, and related efforts — by operating and evidencing the controls these systems enforce.

In this role, you will operate and improve the tooling that protects our workforce and corporate environment, take part in incident response, and partner closely with IT, Product Security, and Compliance. You'll join a distributed team, bring US-hours ownership to work that currently leans on EU coverage, and have real latitude to raise the bar on how corporate security runs day to day.

Key Responsibilities

Endpoint Security & Device Management: Define and own the security policies, hardening baselines, and compliance posture for our EDR and MDM stack across the fleet, and drive threat response on endpoints. Partner with IT, who handle day-to-day enrollment and administration, so that devices are consistently enrolled, compliant, and protected across operating systems.

Identity & Access Management: Administer and strengthen identity and access — IAM/SSO, MFA, provisioning/deprovisioning, and least-privilege access reviews. Partner with IT to keep the identity layer both secure and workable for employees.

Detection, Monitoring & Incident Response: Operate the SIEM and detection tooling — tuning rules, triaging alerts, and investigating suspicious activity — and coordinate with our existing external SOC on monitoring and escalations. Take an active part in incident response end to end: investigation, containment, remediation, and root cause analysis. Contribute to post-incident reviews and runbooks, and bring US-hours ownership to work that currently leans on EU coverage.

Security Tooling & Hardening: Operate, integrate, and improve the broader corporate security toolset. Proactively harden the environment — configuration baselines, access controls, and reducing attack surface — so that fewer incidents occur in the first place.

Compliance Support: Support our compliance program (ISO 27001, SOC 2, and related efforts) by operating and evidencing the security controls these frameworks require. Partner with Compliance on audits, control mapping, and evidence collection.

Vulnerability & Threat Management: Track and help remediate vulnerabilities across endpoints and corporate systems. Stay current on relevant threats and translate them into concrete improvements to our posture.

Security Awareness & Phishing: Run and improve the security awareness program — training, phishing simulations, and employee-facing guidance. Help build a security-conscious culture and reduce the human attack surface across the company.

Cross-Team Collaboration & Coverage: Work closely with IT, Product Security, and Compliance as part of a distributed team. Extend security operations coverage into US time zones and help ensure smooth handoffs with EU-based colleagues.

 

Qualifications

Qualifications

  • 4+ years of experience in a corporate/enterprise security, security operations, or IT security engineering role.
  • Hands-on experience with endpoint security (EDR) across macOS and Windows; experience with device management (MDM) and managing Linux endpoints is a plus.
  • Strong working knowledge of identity and access management — SSO, MFA, and modern IAM platforms (e.g., Okta, Entra ID/Azure AD, Google Workspace) — and least-privilege access practices.

  • Experience operating a SIEM and detection tooling — writing and tuning rules, triaging alerts, and investigating suspicious activity. Experience with Splunk is preferred.

  • Practical incident response experience — investigation, containment, remediation, and root cause analysis — and comfort coordinating with an external SOC/MSSP.

  • Solid grasp of security fundamentals — network and host hardening, common attack techniques, and how to reduce attack surface.

  • Familiarity with compliance frameworks such as ISO 27001 and SOC 2, and experience operating or evidencing security controls.

  • Experience with vulnerability management and translating findings into concrete remediation.

  • A collaborative working style suited to a distributed team, with clear written communication and reliable handoffs across time zones.

  • Based in the United States, with the ability to provide security operations coverage during US business hours.

  • Scripting/automation ability (Python, Bash, PowerShell) to streamline security operations is a strong plus; alternatively, a demonstrated ability and strong desire to pick these up quickly.

  • Experience running security awareness and phishing-simulation programs is a plus.

  • Relevant certifications (e.g., Security+, GIAC/GCIH/GCIA, CISSP, or vendor-specific EDR/SIEM/IAM certs) are a plus.

  • Exposure to cloud and SaaS security posture (AWS, Google Workspace, M365) is a plus.

Additional Information

What does Mirantis offer you?

  • Work with an established Silicon Valley leader in the cloud infrastructure industry;
  • Work with exceptionally passionate, talented and engaging colleagues, helping Fortune 500 and Global 2000 customers implement next-generation cloud technologies;
  • Be a part of cutting-edge, open-source innovation;
  • Thrive in the high-energy environment of a young company where openness, collaboration, risk-taking, and continuous growth are valued;
  • Professional development and training;
  • Attend conferences and working groups;
  • Company outings, happy hours, hackathons, and tech talks;
  • Receive a competitive compensation package with a strong benefits plan.

We are a Leader for Container Management in G2 (#2 after AWS)!

Social-Discovery-Ventures

Infrastructure Security Engineer

🕒 16 days ago
Social-Discovery-Ventures👥 501 - 1000 employees🏢 Computer Software

As an Infrastructure Security Engineer, you will design and maintain security architectures, manage vulnerabilities, and coordinate incident responses to enhance the organization's security posture.

Cloudflare Zero TrustVulnerability ManagementEndpoint ProtectionNetwork Segmentation
Bancorbras

ANALISTA DE SEGURANÇA (PURPLE TEAM - OFENSIVA E DEFENSIVA)

🕒 5 days ago
Bancorbras👥 501 - 1000 employees🏢 Leisure, Travel & Tourism

The role involves conducting penetration tests, identifying and mitigating vulnerabilities, and integrating security practices into development pipelines to enhance overall system resilience.

PentestingVulnerability AnalysisSecurity FrameworksMITRE ATT&CK
Harness

Security Engineer – Cloud & Infrastructure Security

🕒 5 days ago
Harness👥 1001 - 5000 employees🏢 Computer Software

As a Security Engineer, you will design and implement security controls to protect cloud infrastructure and applications while collaborating with various teams to enhance security measures.

Security EngineeringCloud InfrastructureIdentity And Access Management (iam)Network Security

Trusted by Remote Workers