Senior Software Engineer, Corporate Security

depthfirst Inc.

San Francisco (CA)

On-site

USD 150,000 - 210,000

Full time

8 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Health, vision, and dental insurance
Office lunch and dinner (SF office)
Equity and growth opportunities

Job summary

depthfirst is building security AI to protect our software. As one of our first security engineers, you will own corporate security, protect identities, devices, and enterprise apps, and build tooling and automation to scale security by default.

You will strengthen workforce identity and access management with Okta and SSO, enforce least privilege, and automate provisioning and removal. You will also secure endpoints via MDM and EDR, and set safe configurations for core apps.

Qualifications

  • Experience building reliable internal tools, API integrations, and automation to solve security or infrastructure problems.
  • Hands-on experience with Okta or similar identity platforms, including SSO, MFA, access policies, and identity lifecycle management; familiarity with SAML, OIDC, and SCIM.
  • Experience securing employee devices through MDM, including configuration enforcement, disk encryption, patch management, and policies that use device security posture to control access.
  • Familiarity with EDR platforms, including deploying and maintaining coverage, investigating endpoint activity, and supporting containment and remediation.
  • Experience securing enterprise SaaS applications and an understanding of the risks introduced by OAuth integrations, excessive permissions, external sharing, and AI tools with access to company data.
  • Strong written and verbal communication skills, with the ability to explain complex security issues to both technical and non-technical audiences.

Responsibilities

  • Shape our corporate security foundations as one of our first security engineers, protecting the devices, identities, and applications our team relies on every day.
  • Strengthen workforce identity and access management through Okta and SSO, including phishing-resistant authentication, least privilege, and automated access provisioning and removal.
  • Build and maintain endpoint security controls through mobile device management (MDM) and endpoint detection and response (EDR), improving device configurations, patching, and visibility across our fleet.
  • Establish secure configurations for enterprise applications such as Google Workspace, Claude Cowork, and Codex, with appropriate controls for administrative access, data sharing, and integrations.
  • Write and maintain software, integrations, and automation that enforce security policies, identify configuration gaps, and reduce manual work across identity, device, and application management.

Skills

Security engineering
Internal tooling
Communication

Tools

Okta
SSO
MFA
SAML
OIDC
SCIM
MDM
EDR
OAuth

Job description

About depthfirst

We believe that software is the foundation of modern civilization. Yet vulnerabilities threaten its integrity, security, and resilience. We are on a mission to secure the world's software.

depthfirst is building intelligence to detect and remediate critical software vulnerabilities. We are training and scaling security AI agents to discover zero-day vulnerabilities across large customer codebases and popular open source software.

Our founding team brings deep expertise in data, infrastructure, security and AI, with leaders from DeepMind, Databricks, Square, and Faire. We're looking for thoughtful, driven people excited to work at the intersection of AI, Security, and Infrastructure.

About This Role

As one of our first security engineers, you'll own corporate security at depthfirst, protecting the identities, devices, and applications our team relies on every day. You'll build the tooling, integrations, and automation that keep workforce access, endpoints, and enterprise apps secure by default as we grow.

You're excited about this role because you will...
  • Shape our corporate security foundations as one of our first security engineers, protecting the devices, identities, and applications our team relies on every day.

  • Strengthen workforce identity and access management through Okta and SSO, including phishing-resistant authentication, least privilege, and automated access provisioning and removal.

  • Build and maintain endpoint security controls through mobile device management (MDM) and endpoint detection and response (EDR), improving device configurations, patching, and visibility across our fleet.

  • Establish secure configurations for enterprise applications such as Google Workspace, Claude Cowork, and Codex, with appropriate controls for administrative access, data sharing, and integrations.

  • Write and maintain software, integrations, and automation that enforce security policies, identify configuration gaps, and reduce manual work across identity, device, and application management.

Qualifications
  • Strong software engineering skills and experience building reliable internal tools, API integrations, and automation to solve security or infrastructure problems.

  • Hands-on experience with Okta or similar identity platforms, including SSO, MFA, access policies, and identity lifecycle management; familiarity with SAML, OIDC, and SCIM.

  • Experience securing employee devices through MDM, including configuration enforcement, disk encryption, patch management, and policies that use device security posture to control access.

  • Familiarity with EDR platforms, including deploying and maintaining coverage, investigating endpoint activity, and supporting containment and remediation.

  • Experience securing enterprise SaaS applications and an understanding of the risks introduced by OAuth integrations, excessive permissions, external sharing, and AI tools with access to company data.

  • Strong written and verbal communication skills, with the ability to explain complex security issues to both technical and non-technical audiences.

Bonus Points For
  • Experience at a high-growth startup or early-stage company

  • Familiarity with security, infrastructure, or developer tooling markets

What We Offer
  • Competitive salary with meaningful equity

  • Health, vision, and dental insurance

  • Office lunch and dinner (SF office)

  • Ownership and significant room to grow as the company scales

depthfirst is an equal opportunity employer and does not discriminate on the basis of race, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition, or any other basis protected by law.

To all recruitment agencies: depthfirst does not accept agency resumes. Please do not forward resumes to depthfirst employees. depthfirst is not responsible for any fees related to unsolicited resumes and will not pay fees to any third-party agency or company that does not have a signed agreement with the Company.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Software Engineer, Corporate Security
Senior Software Engineer, Corporate Security

DepthFirst • San Francisco (CA)

On-site
USD 150,000 - 210,000
Competitive salary
Equity
Health insurance
+2
Senior Software Security Engineer, Infrastructure & Identity
Senior Software Security Engineer, Infrastructure & Identity

DepthFirst • San Francisco (CA)

On-site
USD 180,000 - 280,000
Health, vision, and dental insurance
Office lunch and dinner (SF office)
Equity ownership and growth potential
Senior Software Security Engineer, Infrastructure & Identity
Senior Software Security Engineer, Infrastructure & Identity

depthfirst Inc. • San Francisco (CA)

On-site
USD 140,000 - 210,000
Health insurance
Vision and dental insurance
Office lunch and dinner (SF office)
+1
Security Product Engineer
Security Product Engineer

depthfirst Inc. • San Francisco (CA), Northern (KY)

On-site
USD 140,000 - 180,000
Equity
Health insurance
Office meals
+2
Forward-Deployed Security Engineer
Forward-Deployed Security Engineer

depthfirst Inc. • San Francisco (CA), Northern (KY)

On-site
USD 150,000 - 190,000
Competitive salary & equity
Health, vision, and dental insurance
Office meals in SF
Enterprise Security AI Engineer (Field Deployment)
Enterprise Security AI Engineer (Field Deployment)

depthfirst • San Francisco (CA)

On-site
Confidential
Forward-Deployed Security Engineer
Forward-Deployed Security Engineer

depthfirst • San Francisco (CA)

On-site
USD 110,000 - 150,000
Competitive salary with meaningful equity
Health, vision, and dental insurance
Office lunch and dinner
Product Manager
Product Manager

depthfirst • San Francisco (CA)

On-site
USD 140,000 - 190,000
Competitive salary with meaningfulequ
Health, vision, and dental insurance
Office lunch and dinner (SF office)
+2
Solutions Engineer
Solutions Engineer

depthfirst Inc. • San Francisco (CA), Northern (KY)

On-site
USD 140,000 - 190,000
Competitive salary with equity
Health, vision, and dental insurance
Early GTM team impact
+1
Product Manager
Product Manager

DepthFirst AI, Inc. • San Francisco (CA)

On-site
USD 150,000 - 210,000
Competitive salary with meaningful EQU
Health, vision, and dental insurance
Office lunch and dinner (when working从
+2