Huntress is a fully remote cybersecurity company dedicated to providing enterprise-grade security solutions. As a Senior Corporate Security Engineer, you will ensure the scalability, resilience, and security of technology solutions, while embedding security best practices into IT operations and mentoring peers on security fundamentals.
Responsibilities:
- Proactive Security Process Design: Build on and establish new security processes in partnership with the IT Solutions Engineering team. You will lead the shift from reactive measures to proactive defense, identifying potential risks in our workflows and designing scalable, secure-by-default processes that prevent issues before they arise
- Workstation Security Design: Design and verify security configurations for our workstation fleet (Windows and macOS) and mobile devices. Collaborate with IT Systems Engineers to ensure Intune policies are effective without disrupting the user experience or business workflows
- Email Security Defense: Manage and refine our email security systems to protect against phishing, spam, and malware. You will tune policies, manage quarantine flows, and maintain authentication standards (SPF, DKIM, DMARC) to ensure our communications remain secure and reliable
- Identity & Access Defense: Act as the subject matter expert for Entra ID. Design conditional access policies, enforce MFA standards, and ensure 'least privilege' access is maintained across our identity infrastructure
- Secure SaaS Implementation: Lead the security review process for new and existing SaaS applications. Partner with Business Systems Analysts to establish baselines for third-party integrations and help the team understand how to configure tools securely by default
- Education & Partnership: Actively mentor and educate all of IT and business system support teams on security best practices. Create documentation and run knowledge-sharing sessions to help your peers spot risks and make secure decisions autonomously
- Incident Escalation (IT Systems): Act as the primary technical escalation point for the internal CIRT regarding IT-managed assets. You will partner with the team to investigate potential compromises on employee workstations, analyze Entra ID sign-in logs, and resolve security incidents on SaaS accounts
- Vulnerability Remediation: Collaborate with Automation and Systems Engineers to prioritize patching utilizing a risk-based approach. You will help the team understand the severity of vulnerabilities and assist in testing remediation paths
Requirements:
- Bachelor's degree in Computer Science, Information Technology, or relevant security certifications (CISSP, GIAC, etc.), or equivalent practical experience
- 5+ years of experience in Information Security or IT Engineering with a strong focus on securing a fully remote workforce and system hardening
- Deep expertise in Microsoft Intune for configuration management and security baselines
- Proficiency in Entra ID (Azure AD) security, including Conditional Access, Identity Protection, and OIDC/SAML integrations
- Experience securing SaaS ecosystems (Google Workspace, Slack, Salesforce, etc.)
- You thrive in a fully remote environment and recognize that organization is key to success
- A proven ability to explain complex security concepts to technical peers in IT
- Experience taking a security project, such as rolling out a new control or hardening a system, from design to full deployment
- Collaborative Mindset: You thrive in a cross-functional environment. You know how to work with Automation Engineers and Business Analysts to build solutions that are both secure and efficient
- Communication & Mentorship: You enjoy teaching others and enabling teams to be self-sufficient in security matters