Notion is hiring a hands-on Corporate Security Engineer to own and scale identity, endpoint, and SaaS security controls that protect its workforce and corporate environment.
Responsibilities
- ▹Harden the identity and access management stack (Okta, Google Workspace) with phishing-resistant MFA, strong SSO/SCIM lifecycles, and least-privilege access across SaaS
- ▹Run the endpoint security program across a macOS-first fleet, including MDM, EDR, and configuration baselines, with coverage for Windows and ChromeOS
- ▹Secure AI tool usage at the endpoint: govern LLMs, AI agents, and MCP integrations; detect unauthorized or risky AI access and data exfiltration
- ▹Reduce SaaS risk at scale through SSPM tooling and custom automation, detecting risky OAuth grants, excessive permissions, shadow IT, and configuration drift
- ▹Write code (Python, Terraform) to automate access reviews, onboarding/offboarding, drift detection, and audit evidence collection
- ▹Partner with Detection & Response to ensure corporate systems produce the telemetry needed to detect identity, endpoint, and SaaS abuse
- ▹Support SOC 2, ISO 27001, and customer audits as a byproduct of good engineering
- ▹Support investigation and response for corporate security incidents including phishing, account compromise, lost devices, and BEC
Requirements
- ▹5+ years hands-on experience in corporate, enterprise, or IT security engineering at a cloud-native company
- ▹Working knowledge of a major identity provider (Okta, Entra, or Google Workspace) and underlying protocols (SAML, OIDC, OAuth 2.0, SCIM)
- ▹Hands-on experience operating endpoint management and detection tooling across macOS and enterprise environments
- ▹Production-quality scripting/automation in Python or Bash, and Terraform or other infrastructure-as-code experience
- ▹Familiarity with SaaS security risks (OAuth governance, audit logging, SSPM) and integrating a long tail of vendors
- ▹Working knowledge of at least one major cloud platform (AWS, GCP, or Azure) at the security configuration level
- ▹Clear written communication, effective cross-functional work with IT, Engineering, Legal, People, and GRC
Nice to have
- ▹Experience at a fast-growing tech or AI company where the security program had to outpace headcount
- ▹Background in IT engineering, SRE, or production engineering that transitioned into security engineering
- ▹Experience building internal security tooling or workflows that improved employee or developer experience
- ▹Contributions to the security community through open-source tools, blog posts, or conference talks
Soft skills
Rigorous, automation-first engineering mindsetCross-functional partnership with IT, Legal, People, GRCCalm, structured incident handling
What we offer
- ▹Highly competitive cash compensation, equity, and benefits
About the company
Notion is the collaborative AI workspace connecting docs, notes, projects, calendar and email with AI built in. Customers include large organizations like Toyota, Figma, and OpenAI.
Languages: Angol: Felsőfok
Similar jobs

Job
Security Engineer, Detection & Response
Sentry
+2
$155,000–$400,000/yr
gross
🔀 Hybrid
San Francisco
🗣️ EN

Job
Security Engineer, Application Security
Sentry
+4
$155,000–$400,000/yr
gross
🔀 Hybrid
San Francisco
🗣️ EN

Job
Security Engineer
Profound
ClickhouseCloudformation
+4
💰 Salary: not specified
🏢 On-site
New York
🗣️ EN

Job
Cyber Security - Manager (Engineering)
Riveron
Cloudformation
+7
$130,000–$180,000/yr
gross
🌍 Remote
United States - Remote
🗣️ EN

Job
Offensive Security Engineer
Palantir
+2
💰 Salary: not specified
🏢 On-site
New York
🗣️ EN

Job
Offensive Security Engineer
Palantir
+2
💰 Salary: not specified
🏢 On-site
Washington
🗣️ EN
