Juniper Square is a company focused on unlocking the potential of private markets through technology. They are seeking a Senior Corporate Security Engineer to improve security tools and processes, identify threats, and build a security team to reduce information security risk across the company.
Responsibilities:
- Develop, train and monitor best security practices including application, infrastructure, and endpoint security, vulnerability management, system configuration, and monitoring
- Build and monitor security tools - EDR, SIEM, DLP, CASB, ZTNA
- Identify and drive remediation of high-impact vulnerabilities across the corporate attack surface
- Define and enforce secure configuration baselines across macOS, Windows, Linux, and mobile device fleets
- Partner with IT to build security into device provisioning, identity lifecycle, and offboarding workflows
- Conduct threat hunting exercises to identify new risks
- Incident detection and response - from triage through containment, eradication, forensics, and post-mortem
- Conduct security reviews for new corporate tooling, vendor integrations, and IT infrastructure changes
- Establish metrics and reporting that reflect real security posture
- Assist with security and compliance audits
Requirements:
- Bachelor's degree, preferably in a technology related field, or equivalent work experience
- 6+ years of IT security experience with at least 3 years as a security engineer
- Security certification (CISSP, CISM, OSCP or similar)
- Strong understanding of all aspects of security best practices, policies, and procedures
- Deep expertise in endpoint security: EDR, SEIM, OS hardening, detection engineering, forensic investigation on macOS, Windows, and/or Linux
- Strong identity security background: Active Directory, Entra ID / Azure AD, Okta, PAM solutions, MFA enforcement, and attack patterns
- Proven incident response leadership — you have led investigations end-to-end, not just escalated them
- Ability to write detection logic, scripts, or automation (Python, Bash, PowerShell, or similar)
- Strong knowledge of AWS, GCP, Azure infrastructure and security
- Strong knowledge of security and compliance frameworks like SOC2 and ISO
- Proven experience in malware analysis and packet-level analysis
- Experience securing a high-growth or distributed workforce environment
- Ability to be on-call
- Background in red team or adversarial simulation is a plus