Senior Security Engineer - Enterprise Security

lambda

Manchester

Hybrid

GBP 70,000 - 120,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Health, dental, and vision coverage
Wellness and commuter stipends
401k Plan with company match
Flexible paid time off

Job summary

Lambda Security protects some of the world's most valuable digital assets: invaluable training data, model weights representing immense computational investments, and the sensitive inputs required to leverage best of breed AI models. We're responsible for securing every byte that powers breakthrough artificial intelligence.

Reporting to the CISO, you'll be a key member of the Enterprise Security team responsible for securing Lambda's SaaS applications, corporate IT infrastructure, identity and

Qualifications

  • 5+ years of dedicated security engineering experience focusing on enterprise or IAM infrastructure.
  • Proven experience designing and scaling IAM architectures (Okta, Entra ID, SAML/OIDC, SCIM, PAM).
  • Hands-on security of corporate SaaS apps and SSPM tools.
  • Strong programming/scripting (Python, Go, or PowerShell) for automations.
  • Solid understanding of Zero Trust, EDR, MDM, and secure networks.
  • Excellent communication and cross-functional collaboration skills.
  • Ability to balance strong security controls with productivity in fast-moving startups.

Responsibilities

  • Design, deploy, and maintain IAM architectures, SSO/IdP integrations, and PAM across corporate and SaaS ecosystems.
  • Automate JML workflows and lifecycle management enforcing least-privilege and zero-trust.
  • Build automated access certification and review tooling for governance and compliance.
  • Implement MFA standards, passwordless auth, and contextual access policies.

Skills

IAM architectures
SSO/IdP (Okta, Entra ID)
JML workflows
Zero Trust
MFA/passwordless
Automation (Python/Go)
SaaS security posture
Security governance
Stakeholder management

Tools

Okta
Entra ID
SAML/OIDC
SCIM
PAM
Jira
Google Workspace
MDM
EDR
VPN/SASE

Job description

Lambda, The Superintelligence Cloud, is a leader in AI cloud infrastructure serving tens of thousands of customers. Our customers range from AI researchers to enterprises and hyperscalers. Lambda's mission is to make compute as ubiquitous as electricity and give everyone the power of superintelligence. One person, one GPU.

If you'd like to build the world's best AI cloud, join us.

*Note: This position requires presence in our Bellevue, San Francisco, or San Jose office location 4 days per week; Lambda’s designated work from home day is currently Tuesday.

About the Role

Lambda Security protects some of the world's most valuable digital assets: invaluable training data, model weights representing immense computational investments, and the sensitive inputs required to leverage best of breed AI models. We're responsible for securing every byte that powers breakthrough artificial intelligence.

Reporting to the CISO, you'll be a key member of the Enterprise Security team responsible for securing Lambda's SaaS applications, corporate IT infrastructure, identity and access management (IAM), and endpoint ecosystems. Your work will focus on establishing secure-by-default configurations, automating access governance, and protecting corporate environments as Lambda scales rapidly.

You will directly impact the security posture of our enterprise operations by implementing robust Identity Governance and Administration (IGA), hardening corporate SaaS tools, automating joiner-mover-leaver (JML) workflows, and deploying zero-trust network access controls. Leveraging Lambda's hosted LLMs, you'll pioneer AI-driven enterprise security automation—such as intelligent access reviews, automated policy enforcement, and SaaS risk monitoring.

If you're excited about building enterprise security controls that balance strong protection with developer and employee productivity, we want to talk.

We value diverse backgrounds, experiences, and skills, and we are excited to hear from candidates who can bring unique perspectives to our team.

What You’ll Do
Identity & Access Governance:
  • Design, deploy, and maintain Identity and Access Management (IAM) architectures, SSO/IdP integrations (Okta, Entra ID), and Privileged Access Management (PAM) across corporate and SaaS ecosystems
  • Automate Joiner-Mover-Leaver (JML) workflows and lifecycle management to enforce least-privilege access and zero-trust principles across all internal tooling
  • Build automated access certification and review tooling to streamline compliance and governance controls
  • Implement strong multi-factor authentication (MFA) standards, passwordless solutions, and contextual access policies
SaaS Security & Corporate Infrastructure:
  • Establish SaaS Security Posture Management (SSPM) and conduct security posture reviews for corporate SaaS applications (Google Workspace, Slack, GitHub, Jira, Salesforce)
  • Define and enforce baseline security configurations, patch management policies, and MDM/EDR security controls across corporate endpoints (macOS, Windows, Linux)
  • Partner with IT Infrastructure and Operations teams to architect Zero Trust Network Access (ZTNA), VPN/SASE solutions, and secure remote worker access frameworks
Automation & Strategic Innovation:
  • Develop custom security automation tools and scripts in Python or Go to eliminate manual IT/Enterprise security toil
  • Pioneer AI-powered enterprise security workflows leveraging Lambda’s hosted LLMs to automate third-party risk analysis, access request approvals, and anomaly detection in corporate logs
  • Assess third-party vendor risks and build automated tooling to evaluate SaaS vendor security postures
Governance & Cross-Functional Alignment:
  • Collaborate with IT, Legal, HR, and Compliance teams to ensure corporate systems align with frameworks such as SOC 2, ISO 27001, and HIPAA
  • Establish internal security documentation, end-user security awareness guidelines, and self-service security options for employees
  • Define strategic roadmap initiatives for corporate security, driving measurable security posture improvements across all business units
What We Think a Candidate Needs to Demonstrate to Succeed
  • 5+ years of dedicated security engineering experience, with a focus on enterprise security, corporate security, or IAM infrastructure
  • Proven experience designing and scaling Identity & Access Management architectures (e.g., Okta, Entra ID, SAML/OIDC, SCIM, PAM)
  • Hands‑on technical expertise in securing corporate SaaS applications and managing SaaS Security Posture Management (SSPM) tools
  • Strong programming and scripting capabilities (Python, Go, or PowerShell) to build automations for identity lifecycles and security operations
  • Solid understanding of Zero Trust architecture, Endpoint Detection & Response (EDR), Mobile Device Management (MDM), and corporate network security
  • Strong communication and stakeholder management skills, with a track record of partnering effectively with IT, Legal, and HR
  • Ability to balance robust enterprise security controls with employee experience and productivity
  • Thrives in fast‑moving, high‑growth startup environments where building scalable structure is required
Nice to Have
  • Excitement about leveraging our direct access to state-of-the-art LLMs to revolutionize enterprise security—imagine AI-assisted access reviews, automated SaaS risk assessments, and intelligent policy generation.
  • Experience building enterprise security and IAM programs at high-growth tech companies or cloud providers
  • Familiarity with compliance frameworks (SOC 2, ISO 27001, FedRAMP, HIPAA) and audit preparation
  • Experience implementing Infrastructure as Code (Terraform) for managing enterprise identity and SaaS configurations
  • Deep technical background allowing hands‑on contribution when needed
  • Experience with both build and buy decisions for security tooling
  • Experience driving or providing significant evidence for compliance audits, such as SOC 2, ISO 27001, PCI-DSS, HIPAA/HITECH, or FedRAMP.
Salary Range Information

The annual salary range for this position has been set based on market data and other factors. However, a salary higher or lower than this range may be appropriate for a candidate whose qualifications differ meaningfully from those listed in the job description.

About Lambda
  • Founded in 2012, with 500+ employees, and growing fast
  • Our investors notably include TWG Global, US Innovative Technology Fund (USIT), Andra Capital, SGW, Andrej Karpathy, ARK Invest, Fincadia Advisors, G Squared, In-Q-Tel (IQT), KHK & Partners, NVIDIA, Pegatron, Supermicro, Wistron, Wiwynn, Gradient Ventures, Mercato Partners, SVB, 1517, and Crescent Cove
  • We have research papers accepted at top machine learning and graphics conferences, including NeurIPS, ICCV, SIGGRAPH, and TOG
  • Our values are publicly available: https://lambda.ai/careers
  • We offer generous cash & equity compensation
  • Health, dental, and vision coverage for you and your dependents
  • Wellness and commuter stipends for select roles
  • 401k Plan with 2% company match (USA employees)
  • Flexible paid time off plan that we all actually use
Equal Opportunity Employer

Lambda is an Equal Opportunity employer. Applicants are considered without regard to race, color, religion, creed, national origin, age, sex, gender, marital status, sexual orientation and identity, genetic information, veteran status, citizenship, or any other factors prohibited by local, state, or federal law.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Technical Accounting/SEC Reporting Lead
Technical Accounting/SEC Reporting Lead

lambda • Manchester

On-site
GBP 91,000 - 143,000
Health, dental, and vision coverage
401k Plan with 2% company match (USA)
Flexible paid time off
+2
Staff HPC Systems Architect
Staff HPC Systems Architect

lambda • Manchester

On-site
GBP 110,000 - 170,000
Health, dental, and vision coverage
Wellness and commuter stipends
401k Plan with company match
Staff Software Engineer - Compute
Staff Software Engineer - Compute

lambda • Manchester

On-site
GBP 120,000 - 180,000
Wellness stipend
Commuter stipend
401k plan
Technical Product Marketing Manager - Public Cloud
Technical Product Marketing Manager - Public Cloud

lambda • Manchester

On-site
GBP 113,000 - 143,000
Staff HPC Network Architect
Staff HPC Network Architect

lambda • Manchester

Hybrid
GBP 106,000 - 159,000
Cash & equity compensation
Health, dental, vision coverage
Wellness and commuter stipends
+1
Senior Accountant - Fixed Assets
Senior Accountant - Fixed Assets

lambda • Manchester

On-site
GBP 91,000 - 121,000
Health, dental, and vision coverage
401k Plan with company match
Flexible paid time off
Senior Security Engineer: IAM, ZTNA & AI Automation
Senior Security Engineer: IAM, ZTNA & AI Automation

lambda • Manchester

Hybrid
GBP 70,000 - 120,000
Health, dental, and vision coverage
Wellness and commuter stipends
401k Plan with company match
+1
Staff IT Systems Engineer, Identity
Staff IT Systems Engineer, Identity

Lilasciences • Cambridge

On-site
GBP 122,000 - 149,000
Staff Software Security Engineer
Staff Software Security Engineer

United States Digital Space LLC • Greater London

Hybrid
GBP 255,000 - 325,000
Equity donation matching
Generous vacation and parental leave
Flexible working hours
+1
Senior Security Engineer (AI Safety), London, Lausanne
Senior Security Engineer (AI Safety), London, Lausanne

Isomorphic Labs • Greater London

On-site
GBP 70,000 - 90,000