Senior Security Engineer
Job description
About the role
Atlan seeks a Senior Security Engineer to lead corporate security initiatives. This is a highly autonomous individual contributor position focused on protecting Atlan's internal environment, including personnel, devices, networks, SaaS applications, and corporate data. You will be instrumental in shaping the security posture for a company serving regulated enterprises. You will own the design and execution of security programs that enable a high-trust, AI-native culture. Your work will directly influence the security strategy for a globally distributed, remote-first workforce. You will leverage deep expertise to translate complex business risks into clear, actionable recommendations for leadership. This role requires a proactive mindset to identify gaps and drive the implementation of robust controls independently. You will collaborate closely with engineering and business teams to embed security into fast-paced development workflows. Ultimately, you will ensure the integrity, confidentiality, and availability of critical corporate assets.
Key facts
What you'll do
- Conduct in-depth risk assessments to identify threats to corporate infrastructure, endpoints, and data, and define mitigation strategies.
- Architect, implement, and manage a mature corporate security program encompassing endpoint, network, identity, and SaaS security domains.
- Evaluate, select, and oversee a diverse portfolio of security tooling, including EDR/XDR, MDM, ZTNA, CASB, and email security gateways.
- Develop and maintain comprehensive security policies, standards, and procedures to ensure alignment with industry best practices and regulatory requirements.
- Drive the implementation and automation of security controls using infrastructure as code principles to ensure consistency and scalability.
- Lead security investigations into complex incidents, utilizing advanced detection engineering skills and scripting proficiency.
- Partner with leadership to articulate the security posture, forecast investment needs, and justify strategic security initiatives.
- Design and execute security validation exercises, such as red team assessments and configuration reviews, to measure program effectiveness.
- Collaborate with HR and IT to secure the employee lifecycle, from onboarding offboarding to managing access for global personnel.
- Mentor junior team members and foster a culture of security excellence across the organization through knowledge sharing and documentation.
- Partner with procurement and legal teams to ensure third-party vendors meet the organization's security standards.
- Continuously monitor the threat landscape to identify emerging risks and recommend enhancements to the security architecture.
- Own the security configuration and optimization of cloud identities, SaaS applications, and zero trust network access solutions.
- Define data loss prevention strategies and oversee the deployment of DLP controls across endpoints, email, and web channels.
Requirements
- 5+ years of hands-on Security Engineering experience in corporate or enterprise security, covering endpoint, network, SaaS, or identity.
- Proven experience building or significantly maturing a corporate security program, including tooling selection, architecture definition, and control implementation.
- Strong engineering skills, regularly writing code for prototyping tools, developing detections, building integrations, scripting APIs, or debugging complex configurations.
- Deep experience with macOS fleet security, as it is the primary endpoint platform.
- Hands-on experience deploying and operating EDR/XDR, MDM, ZTNA/zero trust, and identity security solutions at scale.
- Understanding of modern SaaS security challenges, such as shadow IT, OAuth token sprawl, data exfiltration, SaaS-to-SaaS integrations, and CASB/SSPM tooling.
- Ability to work independently with high autonomy, manage ambiguity, and make sound risk-based prioritization decisions.
- Excellent communication skills, capable of translating complex security topics into clear recommendations for both technical and business stakeholders.
- Experience supporting ISO 27001, SOC 2, or similar compliance frameworks from the corporate security controls perspective.
Nice to have
- Experience securing corporate environments at high-growth SaaS, AI, cloud, or developer-tools companies.
- Advanced macOS security knowledge, including system extensions, Endpoint Security framework, MDM profile engineering, and Declarative Device Management.
- Network security architecture experience for distributed/remote-first environments, including SD-WAN, ZTNA, DNS security, and network segmentation.
- Familiarity with browser security and isolation technologies (e.g., Island, Talon/Palo Alto, Chrome Enterprise).
- Proficiency in Python, Go, or similar languages for building security tooling and automation.
- Experience leveraging LLMs/AI to enhance security operations, build investigative tools, or automate policy enforcement.
- Familiarity with Infrastructure as Code (Terraform), CI/CD pipelines, and DevSecOps practices for corporate infrastructure.
- Mobile security experience for iOS/Android in a BYOD environment.
- Data Loss Prevention (DLP) program design and implementation across endpoints, email, SaaS, and cloud storage.
- Exposure to ISO 42001 (AI Management Systems) controls.
Practical notes
a remote-first role within a global team across 15+ countries. Benefits include comprehensive health, dental, vision, and mental health coverage from day one, flexible health stipends, and flexible time off. Atlan fosters an AI-native culture where AI is integrated into daily work. The company offers accelerated growth opportunities and a high-trust, async work environment. Atlan is an Equal Opportunity Employer. Be aware of recruitment fraud; Atlan only posts jobs on its official careers page and never asks for payment during hiring.