Security Engineer, Corporate
Secure Lovable's corporate environment across identity, endpoints, SaaS, email, and workplace AI tools by implementing scalable controls, managing phishing and awareness programs, partnering on insider and account-takeover detection, and developing versioned, tested, and deployed security policies.
Responsibilities
- Own security for the corporate environment across identity, endpoints, SaaS, email, and AI tools.
- Roll out and maintain passkeys, device trust, conditional access, DLP, and SSPM controls.
- Run phishing, awareness, and tabletop programs.
- Partner with IT and Detection & Response on insider and account-takeover risk detection.
- Make the secure path the default path.
Requirements
- 5+ years of experience in corporate, enterprise, or endpoint security at a fast-growing technology company.
- Expertise in identity systems including Google Workspace, Okta, Entra, SSO, SCIM, and conditional access.
- Expertise in MDM systems including Jamf, Kandji, and Intune.
- Expertise in SaaS security posture management.
- Ability to write Python, Bash, or Go.
- Experience with phishing, social engineering, insider risk, and AI-related security threats.
- Pragmatic understanding of security controls and user experience.
- Experience securing workplace AI tools is a bonus.