Enterprise Security Engineer

WeHireYou

San Mateo

On-site

PHP 1,000,000 - 1,400,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Medical, dental, and vision coverage
Generous time off

Job summary

Delight.ai is seeking an Enterprise Security Engineer to secure our global MacOS fleet, orchestrate IAM controls, and advance AI-assisted detection across a distributed workforce. You will collaborate with IT and Engineering to embed secure-by-default practices into daily development and operations.

The role emphasizes automation, scalable security controls, and proactive threat detection, with a focus on integrating security into fast-moving product delivery while enabling teams to move quickly.

Qualifications

  • 4+ years of hands-on enterprise security experience, with deep MacOS security across a fleet (EDR, NGAV, MDM).
  • Operational experience with VPN and ZTNA platforms, and working knowledge of modern email security (SPF, DKIM, DMARC).
  • Proven ability to secure SaaS platforms with preventive and detective controls, including DLP and logging pipelines.
  • Scripting proficiency in Python (strong preference), Bash, or a comparable language, used for automation, not just one-off fixes.

Responsibilities

  • Harden a global MacOS fleet using EDR, NGAV, and MDM, enforcing patching cadences and security baselines at scale.
  • Build and enforce IAM policies (SSO, MFA, SCIM, least-privilege), with automated provisioning and de-provisioning wherever possible.
  • Secure Google Workspace and the broader SaaS stack, implementing DLP controls and logging pipelines that surface real data exposure risk.
  • Administer and improve VPN and zero-trust remote access infrastructure for a distributed workforce.
  • Develop AI-assisted detection and response workflows, automating alert triage, incident timelines, and routine reporting.
  • Embed security into how Engineering and IT build and ship, not just how the company audits afterward.

Skills

Python scripting
Security automation
MacOS security

Tools

EDR
NGAV
MDM
VPN
ZTNA

Job description

Enterprise Security Engineer

Security isn't just a checkbox at Delight.ai. It's the foundation everything else is built on. If you believe security should accelerate how people work, not slow them down, keep reading.

The Company

Sendbird is on a mission to build the AI workforce of tomorrow. For over a decade, we built the infrastructure behind conversations—chat, voice, video, messaging APIs—and became the #1 CPaaS platform for in-app communications. 4,000+ brands trust us. 7 billion messages flow through our platform every month. 300 million monthly active users.

We powered conversations for DoorDash, Match Group, Noom, Yahoo Sports, Rakuten, and thousands of others. We were good at what we did. Really good.

We also saw it early: AI would fundamentally reshape how businesses talk to customers. The infrastructure we'd spent a decade building would become commoditized. The value would move up the stack—into intelligence, into experience, into outcomes.

We had a choice: protect what we built, or reinvent ourselves.

We chose reinvention.

In December 2024, we made the full strategic pivot to AI-first customer experience. By February 2025, we'd launched our AI agent for enterprise CX—built on a decade of conversation data, now with intelligence on top. And in November 2025, we rebranded to Delight.ai.

The name says it all. AI's real promise isn't efficiency or cost savings. It's giving customers back something they lost—the feeling of being truly understood and cared for. Not satisfied. Delighted.

The Product

Delight.ai is the AI concierge for customer experience. Most AI agents forget you the moment the conversation ends. Ours doesn't. Delight.ai builds memory over time, learns preferences, and connects context across every channel—chat, SMS, email, voice, WhatsApp—without losing the thread. We're building AI that makes customers feel understood, seen, and remembered.

Why Enterprise Security Engineer

We're building AI that handles real customer conversations at scale. That means identity systems, SaaS stacks, and endpoints that have to work, and stay secure, without getting in the way of the people building and shipping every day.

The threat landscape isn't standing still, and neither are we. This role exists because we need someone who thinks about security the way our engineers think about product: automate what's repetitive, build what's missing, and make the secure path the easy path.

The Role

You'll own enterprise security across endpoints, identity, cloud services, and SaaS applications for a globally distributed team. You'll work directly with IT and Engineering, and you'll use AI-powered tooling to move faster than any traditional security team. This role is for someone who scripts before they click, builds before they buy, and sees automation as a force multiplier, not a nice-to-have.

You might be this person if:
  • You automate repetitive security tasks before they become recurring headaches, and you reach for Python or Bash as naturally as you reach for a runbook.
  • You treat SaaS sprawl as an engineering problem, not an audit problem, and you build controls that scale without constant manual oversight.
  • You think about attacker techniques (MITRE ATT&CK is a starting point, not a ceiling) and design detections that actually catch things.
  • You've built or used AI-assisted workflows to speed up threat detection, alert triage, or security reporting, and you're always looking for more places to apply them.
  • You hold the "secure by default" bar without being the team that slows everyone else down.
  • You can explain risk trade-offs clearly to engineers and business stakeholders, not just security people.
  • You're never satisfied with "we have a tool for that" if the tool isn't actually being used well.
You need to have:
  • 4+ years of hands-on enterprise security experience, with real depth in endpoint security across a MacOS-heavy fleet (EDR, NGAV, MDM).
  • Operational experience with VPN and ZTNA platforms, and working knowledge of modern email security (SPF, DKIM, DMARC).
  • Proven ability to secure SaaS platforms with preventive and detective controls, including DLP and logging pipelines.
  • Scripting proficiency in Python (strong preference), Bash, or a comparable language, used for automation, not just one-off fixes.
What you'll actually do:
  • Harden a global MacOS fleet using EDR, NGAV, and MDM, enforcing patching cadences and security baselines at scale.
  • Build and enforce IAM policies (SSO, MFA, SCIM, least-privilege), with automated provisioning and de-provisioning wherever possible.
  • Secure Google Workspace and the broader SaaS stack, implementing DLP controls and logging pipelines that surface real data exposure risk.
  • Administer and improve VPN and zero-trust remote access infrastructure for a distributed workforce.
  • Develop AI-assisted detection and response workflows, automating alert triage, incident timelines, and routine reporting.
  • Embed security into how Engineering and IT build and ship, not just how the company audits afterward.
  • Monitor the threat landscape, translate attacker techniques into actionable detections, and stay ahead of what's actually being used against companies like ours.
  • Build internal security tooling and dashboards where off-the-shelf falls short, using automation pipelines to close the gaps.
Added Value:
  • Experience owning a risk-based security roadmap, including prioritization frameworks that tie security investment to actual business exposure.
  • Deep familiarity with adversary tactics via MITRE ATT&CK, with hands-on experience designing detection and response strategies around those techniques.
What we offer:

We take care of the people who build the future. Here's some of what you can expect when you join Sendbird:

  • Medical, dental, and vision coverage, on us. Sendbird covers 100% of the premium for our employees and roughly 80% for their dependents.
  • Generous time off. 20...
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Head of Information Security
Head of Information Security

WeHireYou • San Mateo

Remote
PHP 3,000,000 - 6,000,000
AI-First Full Stack Marketer
AI-First Full Stack Marketer

WeHireYou • San Mateo

Remote
PHP 3,766,000 - 5,650,000
20 days PTO
Medical & vision coverage
Parental leave
+1
Head of Marketing Operations (Director)
Head of Marketing Operations (Director)

WeHireYou • San Mateo

On-site
PHP 11,299,000 - 15,066,000
Medical and dental coverage
Generous time off
Relocation assistance
Permanent WFH: Security Developer - Full Stack
Permanent WFH: Security Developer - Full Stack

Nowcom Global Services, LLC • Pasig

On-site
PHP 900,000 - 1,800,000
Permanent Work From Home
Full-Time Positions
Competitive Salary
+9
Security Operations Lead
Security Operations Lead

Fireworks • San Mateo

On-site
PHP 1,800,000 - 3,200,000
Product Security Engineer – Build Secure, Scalable Cloud
Product Security Engineer – Build Secure, Scalable Cloud

GoMining • España

On-site
USD 120,000 - 180,000
Professional growth support
Remote or hybrid format
Flexible hours
+2
Senior Cyber Security Analyst - APAC
Senior Cyber Security Analyst - APAC

Imachines • Manila

Remote
PHP 5,964,000 - 8,475,000
Fully remote position
Flexible working hours
Global team collaboration
+2
Security Operations Engineer | Hybrid
Security Operations Engineer | Hybrid

Cloudstaff Philippines Inc. • Philippines

On-site
PHP 800,000 - 1,000,000
Comprehensive health and life ins.
Leave credits
Hybrid/Office perks
+5
Security Analyst New India
Security Analyst New India

BloomReach Inc. • Hinoba-an

On-site
PHP 600,000 - 1,000,000
Flexible working hours
Remote-friendly
Stock options
+3
Automation QA
Automation QA

EviSmart™ • Taguig

On-site
PHP 600,000 - 1,200,000
HMO coverage
13th month pay
All government-mandated benefits