Jenzabar
Posted 2w ago

Enterprise Security Engineer

Jenzabar
United States or North America
$83k-$95k/yrRemoteFull Time
Responsibilities
  • designing infrastructure
  • implementing controls
  • maintaining systems
Requirements
  • 5+ years enterprise security engineering experience
  • Expertise in cloud security (Azure,GCP)
  • SIEM/XDR/EDR
  • Identity and access management
  • IaC and scripting (PowerShell/Python)
Technical tools mentioned
AzureGoogle Cloud Platform (GCP)AWSMicrosoft SentinelCrowdStrike FalconKusto Query Language (KQL)Falcon Query Language (FQL)Google Kubernetes Engine (GKE)Cloud SQLActive DirectoryAzure AD/Entra IDPowerShellPythonSIEMXDREDR

Job description

The Enterprise Security Engineer is responsible for designing, implementing, and maintaining secure enterprise infrastructure across both on-premises and cloud environments. This role establishes security architecture standards, governs identity and access management systems, and ensures segmentation between internal corporate systems and cloud platforms. The engineer will bring deep expertise in enterprise security technologies, cloud security (Azure, GCP), and modern detection/monitoring platforms such as Microsoft Sentinel and CrowdStrike premises and cloud environments.

ESSENTIAL TASKS

Enterprise Security Architecture:

  • Support the design and maintenance of secure network architectures through the provision of recommendations and best practices for segmentation, firewall policies, and access control standards across corporate back-office infrastructure
  • Establish and maintain enterprise security baselines, system hardening standards, and configuration management policies aligned to industry frameworks
  • Lead security architecture reviews for new and existing systems and provide guidance to engineering teams on secure design principles

Cloud Security (Azure & GCP):

  • Design, implement, and maintain cloud security controls in Azure, Google Cloud Platform (GCP), AWS including network security groups, service accounts, workload identity federation, logging, and cloud-native security tooling
  • Support secure integration and connectivity between on-premises environments and cloud-hosted applications and infrastructure
  • Apply cloud hardening standards, ensure proper encryption configurations, and enforce secure deployment patterns.
  • Contribute to cloud security initiatives by applying security best practices for Google Kubernetes Engine (GKE) and supporting the organization’s transition from Windows-based environments to modernized cloud-native deployments
  • Develop and implement secure configurations for Cloud SQL in alignment with evolving cloud database security standards

Security Infrastructure & Tooling:

  • Configure, maintain, and develop SIEM and security monitoring technologies including Microsoft Sentinel, CrowdStrike Falcon, and other endpoint, log analytics, or detection platforms
  • Develop and maintain detection rules, alert logic, and automated workflows to strengthen enterprise security posture
  • Manage PKI and security certificates, including lifecycle management, renewal processes, and deployment automation

Infrastructure Security:

  • Conduct infrastructure security assessments across servers, networks, applications, and cloud environments to identify vulnerabilities and misconfigurations.
  • Remediate or coordinate remediation of identified issues in collaboration with infrastructure, engineering, and cloud teams.
  • Design and implement secure data handling standards, encryption policies, and key management practices.

 AI Utilization:

  • Leverage AI-enabled tools and analytics to enhance decision-making, improve efficiency, and drive measurable business outcomes when appropriate.
  • Apply sound judgment and ethical standards when using AI, ensuring accuracy, data privacy, and responsible human-in-the-loop oversight.

PREFERRED SKILLS AND EXPERIENCE

  • 5+ years in enterprise security engineering, infrastructure security, or a systems engineering role with strong security responsibilities
  • Experience designing and securing corporate back office and hybrid cloud environments
  • Expertise with major cloud platforms, particularly Azure and Google Cloud Platform (GCP), and cloud-native security features
  • Hands-on experience with Microsoft Sentinel, CrowdStrike Falcon, or other SIEM/XDR/EDR technologies. Demonstrated fluency in Kusto Query Language (KQL) and Falcon Query Language (FQL)
  • Strong understanding of identity and access management, including Active Directory, Azure AD/Entra ID, IAM policies, SSO, MFA, and PAM solutions
  • Proficiency with infrastructure-as-code (IaC) tools and automation scripting using PowerShell or Python
  • Strong knowledge of networking, encryption, certificates, and security protocols
  • Excellent communication skills with the ability to work effectively across cross-functional teams

The pay range for this position is $83,000-$95,000/year; however, base pay offered may vary depending on job-related knowledge, geographic location, skills, and experience. This position is eligible for an annual bonus in addition to a full range of benefits. This information is provided per the relevant state and local pay transparency laws for the location in which this position will be performed.

Benefits

Medical Insurance, Life Insurance, Dental Insurance, Vision Insurance, PTO, Paid Parental Leave, Paid Holidays, Short Term Disability, Long Term Disability, 401K, Educational Assistance 

 

Jenzabar does not discriminate in employment opportunities or practices on the basis of race, color, sex, gender, gender identity, pregnancy, childbirth and related medical conditions, genetics, genetic markers and carrier status, creed, religion, national origin, ancestry, age, disability, medical condition, marital status, sexual orientation, military service, veteran status, or any other status protected by state and federal laws.

Please Note: Jenzabar does not sponsor applicants for work visas.

Electronic Monitoring Notice:

Job applicants are advised that Jenzabar reserves the right to monitor, access, review, and disclose electronic activity conducted on Company‑owned devices, networks, and systems, as well as activity involving Jenzabar applications or accounts accessed on personal devices. Monitoring may include email, messaging, internet usage, files, applications, and other electronic communications or data, and is performed for security, compliance, and operational purposes. 

About Jenzabar

Provides enterprise software and enrollment services for higher education.

Year founded
1998
Employees
581
Organization type
Private
Latest investment
Raised $36.10M Funding Round (2021) — led by Alpridge Capital
Subsidiaries
Headquarters
US

Similar jobs

Enterprise Security Engineer roles
1w
Save
Mark Applied
Hide
Enterprise Security Engineer II
Georgia, United States
$114k-$121k/yr RemoteFull Time
Box
BoxNYSE: BOX: Provides cloud-based content management and secure file sharing services.
3+ YOEBachelor's or master's degree or equivalent experience; 3+ years in enterprise, cloud, or security engineering; security systems, cloud environments, automation, monitoring, and incident response experience.
Okta, Microsoft Entra ID, Google Workspace, Splunk, Elastic, Microsoft Sentinel, Chronicle, AWS, GCP, Azure, Python, PowerShell, Go
1w
Save
Mark Applied
Hide
Enterprise Security Engineer
Pittsburgh or New York City
$127k-$160k/yr OnsiteFull Time
Gecko Robotics
Gecko Robotics: Manufacturer of wall-climbing robots for industrial infrastructure inspection.
3+ YOERequires 3+ years in hands-on security engineering, endpoint and EDR administration, IAM, SaaS/OAuth governance, sensitive-data protection, systems configuration, troubleshooting, and cross-functional communication.
Okta, OneLogin, Active Directory, Jamf, Microsoft Intune, NinjaOne, CrowdStrike, Trend Micro, SentinelOne, Claude, ChatGPT, Cursor, Grok, FedRAMP, CMMC, NIST 800-171, NIST 800-53, CUI, SOC 2 Type II, ISO 27001, ISO 42001, Microsoft Defender, Python, PowerShell, Bash
2w
Save
Mark Applied
Hide
Principal Enterprise Security Engineer
Seattle, Washington, United States
$185k-$289k/yr RemoteFull Time
Atlassian
AtlassianNASDAQ: TEAM: Develops software for team collaboration and project management.
10+ YOE10+ years in cybersecurity with 5+ years in principal/lead architecture; deep cloud security, identity, endpoint, data protection, network segmentation and zero trust expertise; excellent communication.
AWS, GCP, Google Workspace, Slack, Okta, IaC, CI/CD
2w
Save
Mark Applied
Hide
Enterprise Security Engineer
United States
$131k-$192k/yr RemoteFull Time
DoorDash
DoorDashNYSE: DASH: Local food delivery and on-demand logistics platform.
2+ YOERequires 2–5 years in security engineering or related work; Okta, Google Workspace, authentication, endpoint, cloud, and automation experience. Python or Go required; bachelor's degree and certifications preferred.
Okta, Google Workspace, SAML, OAuth 2.0, OpenID Connect, FIDO2/WebAuthn, EDR, XDR, macOS, Windows, Linux, MDM, AWS, GCP, Python, Go, Tailscale, Google IAP, GitHub Enterprise, Palo Alto Cortex, Chrome Enterprise, SSPM, CASB, DLP, Terraform, Jira, Covey
2w
Save
Mark Applied
Hide
Senior Enterprise Security Engineer
United States
$179k-$273k/yr RemoteFull Time
Thumbtack
Thumbtack: Online marketplace connecting homeowners with local service providers.
6+ YOERequires 6+ years in security engineering or related fields, AI threat modeling, enterprise security expertise, cloud security experience with AWS or GCP, architecture reviews, and strong communication and mentoring skills.
MCP, SSO, OAuth/OIDC, SAML, SCIM, AWS, GCP, Claude Enterprise, Claude.ai, Claude Code, Cowork, Claude Desktop, Ask Thumbtack, OpenAI Enterprise ChatGPT, Codex, Cursor, Gemini Enterprise, Granola, Coda AI, Zoom AI Companion, Linear
2w
Save
Mark Applied
Hide
Senior Enterprise Security Engineer
San Francisco, California, United States
$175k-$240k/yr HybridFull Time
Faire
Faire: Online wholesale marketplace connecting independent retailers with unique brands.
5+ YOE5+ years enterprise security experience; hands-on in endpoint, network, data, security operations or AI governance; policy and audit experience (ISO 27001, SOX, SOC 2); strong communication and programming skills (Python,Ruby,Go).
Python, Ruby, Go
3w
Save
Mark Applied
Hide
Enterprise Security Engineer
United States
RemoteFull Time
TRM Labs
TRM Labs: A technology that provides AI-powered intelligence solutions to help agencies and businesses investigate and disrupt crime.
Design and implement identity, endpoint, and SaaS security controls, automate controls and workflows, codify security-as-code, and participate in on-call rotation; strong IAM and endpoint experience required.
Entra ID, Google Workspace, n8n, SlackOps, Bash, PowerShell, Python, Terraform, Claude Code, MCP, LLM, Defender, Sentinel
3w
Save
Mark Applied
Hide
Staff/Lead Enterprise Security Engineer
San Francisco, California, United States
OnsiteFull Time
SnailWorks
SnailWorks: SnailWorks provides mail tracking and delivery intelligence software for marketers.
Build and run enterprise security program across endpoint, detection/response, identity, cloud and SaaS; automation-first security engineering, incident response, and vendor/SaaS risk management.
SIEM, EDR, DLP, SSO, SCIM, MFA, SSPM, OAuth, AI