An application made for this job — a tailored resume and cover letter that speak straight to the posting.
Envoy seeks a Staff Security Engineer to own and evolve Security Operations and Threat Detection across infrastructure, applications, and endpoints. You will define detection strategy, improve SIEM, and drive automated controls in a proactive, engineering-led security function.
The role emphasizes building reliable, measurable detection capabilities, shifting from reactive posture to engineered security. On-site at SF HQ four days a week.
Envoy protects the places the world relies on most by unifying people, spaces, and communications in one secure, integrated workplace management platform and ecosystem. More than 16,000 workplaces around the world trust Envoy to run secure, compliant, and connected operations across every location.
From manufacturing sites and data centers to life sciences labs, healthcare facilities, and corporate headquarters, Envoy unifies visitor management, risk assessment, mailroom management, digital signage software, resource booking, and emergency management into one integrated platform.
With deep integrations across access control, identity, compliance screening, and collaboration tools—including LenelS2, Brivo, Genetec, Honeywell, Cisco Meraki, Okta, Microsoft Azure, Microsoft Teams, Slack, ServiceNow, DocuSign, Avigilon Alta, and Descartes Visual Compliance—Envoy helps organizations reduce risk, stay audit-ready, and operate with clarity at scale.
Learn more at envoy.com
This is an L5 opportunity. Successful candidates typically come from staff or principal-level roles and are recognized for establishing technical direction, leading large-scale initiatives, and shaping engineering strategy across organizations.
We are building a proactive, engineering-led security function focused on threat detection, visibility, and automation.
We are looking for a Staff Security Engineer to own and evolve our Security Operations and Threat Detection capabilities. This role is responsible for defining how we detect, monitor, and respond to threats across our infrastructure, applications, and endpoints.
Today, much of our security posture is reactive. This role will lead the shift toward a system where detection is reliable, measurable, and engineered, not improvised.
You will work across Infrastructure, Platform, and Workplace teams to ensure we have full visibility into our environment and can confidently answer: "If we had a security incident, how quickly would we know?"
This on-site position requires 4 days a week (Monday through Thursday) in our San Francisco HQ office.
By applying for this position, you acknowledge that you have fully read and understand the job requirements and received the Envoy Privacy Notice for applicants, which is linked here. Completing this application requires you to provide personal data, such as your name and contact information, which is mandatory for Envoy to process your application. Envoy is an EEO Employer and does not discriminate on the basis of any characteristic protected by local, state or federal law.