Onebrief

Corporate Security Systems Engineer

Onebrief

full-time

Posted on:

Location Type: Remote

Location: United States

Visit company website

Explore more

AI Apply
Apply

Salary

💰 $180,000 - $200,000 per year

About the role

  • Implement and maintain enterprise security tooling and approved configuration baselines across endpoints, browsers, SaaS platforms, and identity systems, aligned with CMMC 2.0, NIST 800-53, and internal standards.
  • Partner with Corporate Security Engineering leadership and Vulnerability Management to ensure configuration controls and remediation efforts are aligned, measurable, and enforceable.
  • Continuously improve security configurations by reducing drift, expanding automation, and strengthening documentation and evidence collection to support audit readiness.
  • Collaborate with Corporate IT, Security Operations, and application owners to securely deploy systems and SaaS platforms, providing guidance during rollouts and participating in security reviews.
  • Maintain structured processes for baseline updates, configuration reviews, drift detection, and control validation, ensuring changes are documented, approved, and traceable to compliance requirements.
  • Implement and enforce technical controls that protect the confidentiality, integrity, and availability of corporate systems while meeting regulatory and privacy commitments.
  • Ensure configuration data, drift findings, and remediation evidence are accurate, access-controlled, and retained in accordance with policy.
  • Support compliance assessments by providing defensible artifacts and escalate identified control gaps or systemic risks to Security Engineering leadership.

Requirements

  • 4–8+ years of experience in security engineering, systems engineering, or enterprise IT security
  • Hands-on experience with enterprise security tooling (e.g., Zscaler, MDM platforms, browser enterprise management, EDR, SIEM)
  • Experience implementing and maintaining configuration baselines aligned to NIST 800-53, CMMC 2.0, DISA STIGs, or similar frameworks
  • Familiarity with SaaS security configuration and identity/access management controls
  • Experience with raw API-based integrations and no-code automation platforms (Tines, Okta Workflows)
  • Demonstrated experience automating configuration enforcement and reducing manual security tasks
  • Strong understanding of change management and documentation practices
  • Ability to translate compliance requirements into technical control implementations
  • Strong communication skills and ability to work across technical and non-technical teams
  • Bonus: Experience in regulated or DoD-adjacent environments
Benefits
  • Equity: Share in the company's success.
  • Flexible Work Environment: Remote-first organization with flexible work hours and unlimited PTO.
  • Comprehensive Health Coverage: Health, dental, vision, and life insurance.
  • Retirement Plan: 401(k) plan with company match to secure your future.
  • Parental Leave: 8 weeks at 100% regardless of state.
  • Company Retreats: Annual company summit trips.
  • Home Office Budget: $1,000 per year for home office improvements.
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills & Tools
security engineeringsystems engineeringenterprise IT securityconfiguration baselinesNIST 800-53CMMC 2.0SaaS security configurationAPI-based integrationsautomationchange management
Soft Skills
communicationcollaborationdocumentationproblem-solvingcross-functional teamwork