Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.
CoreWeave is seeking a Senior Security Engineer, Enterprise Security, to design and ship security controls underpinning our workforce and enterprise stack in a fast-growing cloud environment.
You will lead identity, access management, device and SaaS security initiatives, blend hands-on engineering with architecture, and translate objectives like zero trust and phishing-resistant MFA into concrete designs, automation, and measurable risk reduction.
If you’re excited about zero trust, phishing-resistant MFA, and building secure-by-default experiences that actually make people more productive, this is the team to joinDemonstrated experience designing and rolling out MFA, ideally including phishing-resistant approaches (FIDO2/WebAuthn, hardware security keys, device-bound authenticators, step-up authentication)Exposure to SIEM/detection ecosystems (e.g., Elastic) and experience collaborating with detection & response teams on identity/endpoint/SaaS detectionsDeep familiarity with SAML, OAuth 2.0/OIDC, and SCIM, including real-world experience integrating these protocols with third-party SaaS and internal appsStrong, practical understanding of modern IAM concepts: SSO, federation, RBAC/ABAC, JIT access, least privilege, and separation of dutiesExperience designing and deploying zero trust or context-aware access controls (e.g., device trust, network segmentation, mTLS, ZTNA) in hybrid or remote-friendly environmentsFamiliarity with MDM and endpoint security tooling (e.g., Jamf, Intune, EDR platforms) and how they tie into identity and access decisionsA track record of owning cross-functional projects from design through adoption, with an emphasis on measurable risk reduction and user experienceProficiency in at least one modern scripting or programming language (e.g., Python, Go) used to build automations, integrations, or internal toolingExperience securing and integrating business-critical SaaS (e.g., Google Workspace, Microsoft 365, Slack, Atlassian, HRIS, ticketing) including SCIM provisioning, access reviews, and audit log ingestion5+ years of experience in enterprise security, identity and access management, or closely related security engineering rolesHands-on experience implementing and operating SSO and workforce identity with platforms such as Okta, Entra ID, or equivalent IdPsExperience working in high-growth or hyperscale environments where security must keep pace with rapid headcount and tooling expansionHands-on experience with zero trust network access or secure access products (e.g., ZTNA, secure web gateways, or identity-aware proxies)Experience with SaaS security posture management (SSPM), CASB, DLP, or insider risk tooling focused on collaboration platforms and data accessFamiliarity with enterprise security standards and frameworks (e.g., SOC 2, ISO 27001, NIST 800-53) and mapping enterprise controls to these requirementsExperience building or contributing to internal security tooling (e.g., access review automation, JML workflows, policy-as-code)Participation in security communities, standards groups, or open-source contributions in IAM, zero trust, or enterprise security