Senior Security Engineer, Enterprise Security

CoreWeave

Sunnyvale (CA)

On-site

USD 190,000 - 260,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

CoreWeave is seeking a Senior Security Engineer, Enterprise Security, to design and ship security controls across identity, device, and SaaS security. You’ll lead initiatives with IT Engineering and Network teams to implement zero trust, phishing-resistant MFA, and scalable access controls.

You’ll blend hands-on coding, architecture, and program ownership to turn high-level objectives into concrete designs, automation, and measurable risk reduction.

Qualifications

  • Experience designing and shipping identity and access controls in a cloud-native environment.
  • Strong understanding of zero trust principles and MFA implementations.
  • Experience working with IdPs (Okta, Entra) and SCIM provisioning.

Responsibilities

  • Design, implement, and operate workforce identity solutions (SSO, MFA, lifecycle automation) using IdPs.
  • Develop phishing-resistant MFA for high-value accounts and critical paths.
  • Define RBAC/IAM patterns for enterprise applications.
  • Deploy zero trust controls combining identity, device posture, and network context.
  • Integrate mTLS and policy-based access with internal services.
  • Automate access requests, approvals, and reviews with self-service workflows.
  • Collaborate with security operations to improve visibility and detections.

Skills

Identity & access management
Zero trust
MFA
RBAC/IAM
SaaS security
Endpoint security
Automation & integrations
Policy & governance
SIEM

Education

Bachelor's degree in a relevant field

Tools

Okta/Entra
SCIM
mTLS
SAML
SIEM

Job description

CoreWeave is The Essential Cloud for AI™. Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables innovators to build and scale AI with confidence. Trusted by leading AI labs, startups, and global enterprises, CoreWeave combines superior infrastructure performance with deep technical expertise to accelerate breakthroughs and turn compute into capability. Founded in 2017, CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at www.coreweave.com.

What You’ll Do

The Enterprise Security team at CoreWeave is responsible for securing how our people work every day—identity, endpoints, networks, and SaaS—so the company can move fast without compromising safety.

This team owns the controls, guardrails, and automation that keep our workforce, contractors, and critical business applications protected in a modern, cloud-native environment.

If you’re excited about zero trust, phishing-resistant MFA, and building secure‑by‑default experiences that actually make people more productive, this is the team to join.

About The Role

As a Senior Security Engineer, Enterprise Security, you’ll design and ship the security controls that underpin CoreWeave’s workforce and enterprise stack. You’ll lead initiatives across identity, access management, device and endpoint security, and SaaS security—partnering closely with IT Engineering, Endpoint, Network, and other security teams.

Your day-to-day will blend hands‑on engineering (writing code, building integrations, tuning controls) with architecture and program ownership (setting standards, defining patterns, and driving adoption across teams). You’ll be responsible for turning high‑level objectives—like “implement zero trust for workforce access” or “deploy phishing‑resistant MFA at scale”—into concrete designs, automation, and measurable risk reduction.

In This Role, You Will
Engineer modern identity and access controls
  • Design, implement, and operate workforce identity solutions (e.g., Okta/Entra and other IdPs) including SSO, MFA, conditional access, and lifecycle automation via SCIM.
  • Develop and roll out phishing‑resistant MFA for high‑value accounts and critical access paths (e.g., FIDO2/WebAuthn, hardware keys, device‑bound authenticators).
  • Define and maintain RBAC/IAM patterns for enterprise applications (role models, groups, entitlements, JIT access, and approvals).
Implement zero trust for workforce and enterprise access
  • Design and deploy controls that combine user identity, device posture, network context, and application sensitivity to enforce least‑privilege access.
  • Partner with Network and Infrastructure teams to integrate mTLS, service identity, and policy‑based access into internal services and admin interfaces.
  • Help transition from legacy perimeter models to zero trust network access (ZTNA) patterns for employees, contractors, and third parties.
Secure SaaS and collaboration platforms
  • Evaluate, onboard, and harden SaaS applications (Google Workspace, Microsoft 365, Slack, HRIS, ticketing, and other business apps) to align with enterprise security policies.
  • Implement and tune controls such as SCIM provisioning, data access policies, DLP, sharing controls, and audit logging across the SaaS estate.
  • Partner with business and IT owners to ensure new SaaS applications meet baseline security standards before adoption.
Harden endpoints and the extended workforce
  • Collaborate with Endpoint/IT teams to define and enforce baseline configurations for laptops, workstations, and other managed devices via MDM and EDR.
  • Design secure patterns for contractor and vendor access, including device requirements, identity separation, and time‑bound access.
  • Support investigations and incident response related to identity, endpoint, and SaaS domains.
Automate and instrument everything you can
  • Build automation and self‑service experiences for access requests, approvals, access reviews, and break‑glass workflows.
  • Develop integrations between IdPs, HRIS, ticketing, and other systems to minimize manual toil and reduce identity‑related error rates.
  • Define and instrument metrics for enterprise security (e.g., MFA coverage, zero trust policy enforcement, joiner/mover/leaver SLA adherence, SaaS posture).
Partner on detection, response, and governance
  • Work with Security Operations and SIEM teams to ensure robust visibility into identity, device, and SaaS activity, and to build high‑signal detections.
  • Contribute to policies, standards, and reference architectures that encode enterprise security expectations.
  • Author clear documentation and runbooks that make it easy for teams to consume and operate the controls
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer — Enterprise Zero-Trust & IAM
Senior Security Engineer — Enterprise Zero-Trust & IAM

CoreWeave • Sunnyvale (CA)

On-site
USD 190,000 - 260,000
Senior Engineering Manager, Security Products
Senior Engineering Manager, Security Products

Coreweave • Sunnyvale (CA)

On-site
USD 207,000 - 275,000
Health insurance
Life Insurance
Disability insurance
+7
Senior Technical Program Manager - Security Programs
Senior Technical Program Manager - Security Programs

CoreWeave • Sunnyvale (CA)

On-site
USD 157,000 - 210,000
Medical, dental, and vision insurance
Discretionary bonus
Equity awards
+6
Senior Technical Program Manager - Security Programs
Senior Technical Program Manager - Security Programs

CoreWeave • Bellevue (WA)

On-site
USD 157,000 - 210,000
Medical, dental, and vision insurance
401(k) with employer match
Paid Parental Leave
+2
Senior Security Engineer II, Cloud Security
Senior Security Engineer II, Cloud Security

CoreWeave • New York (NY)

On-site
USD 165,000 - 242,000
Medical, dental, and vision insurance
401(k) with a generous employer match
Tuition Reimbursement
+3
Senior Security Engineer II, Cloud Security
Senior Security Engineer II, Cloud Security

CoreWeave • Livingston (NJ)

On-site
USD 165,000 - 242,000
Health Insurance
Dental & Vision
401(k) Matching
+1
Senior Security Engineer, PKI & Secrets
Senior Security Engineer, PKI & Secrets

Coreweave • Livingston (NJ)

On-site
USD 165,000 - 242,000
Medical, dental, and vision insurance
Tuition reimbursement
Paid parental leave
Senior Network Security Engineer, Operational Technology
Senior Network Security Engineer, Operational Technology

Coreweave • Livingston (NJ)

On-site
USD 164,000 - 242,000
Medical, dental, and vision insurance
401(k) with company match
Paid parental leave
+5
Senior Data Center Security Business Operations Program Manager
Senior Data Center Security Business Operations Program Manager

CoreWeave • Sunnyvale (CA)

On-site
USD 143,000 - 210,000
Medical, dental, and vision insurance
Company‑paid Life Insurance
Flexible PTO
+2
Senior Software Engineer, IAM
Senior Software Engineer, IAM

CoreWeave • Sunnyvale (CA)

On-site
USD 165,000 - 242,000
Medical, dental, and vision insurance
401(k) with match
Equity awards