Workforce Security Engineer Austin, TX

Future Secure AI Pty

Austin (TX)

On-site

USD 120,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Flexible work environment
Competitive salary
Growth trajectory
State‑of‑the‑art technology
World‑class leadership
Diversity and creativity

Job summary

Future Secure AI Pty in Austin, TX is hiring a Workforce Security Engineer to design and build phishing‑resistant authentication, strengthen admin access, and automate joiner/mover/leaver workflows. You will own a security domain early on and help harden the endpoint estate and workplace stack.

You will manage IdP (Entra/Azure AD), MDM (Intune) and EDR, while integrating and governing AI tooling access for the workforce.

Qualifications

  • 5+ years in identity/IAM or security engineering.
  • Hands-on IAM depth: enterprise IdP (Entra/Azure AD) and SAML/OIDC/OAuth, MFA and Conditional Access.
  • Endpoint management across macOS and Windows (Intune, Jamf).

Responsibilities

  • Harden IdP (Microsoft Entra) with phishing‑resistant authentication and admin‑account protections.
  • Drive SSO enforcement across SaaS and automate joiner/mover/leaver lifecycle (HRIS→IdP).
  • Manage workforce secrets (e.g., 1Password) and build automation for identities.
  • Own MDM (Intune) and EDR, device posture, patch management, and offboarding recovery.
  • Harden workplace stack (M365) and email security, DLP, CASB, and SaaS posture.
  • Govern AI tooling access for workforce and build controls for access into customer environments.
  • Participate in incident response and on‑call rotation.

Skills

IAM depth
Automation scripting
Endpoint management
M365 security
On‑call incident response

Tools

Intune
Jamf
Azure AD/Entra
Microsoft Defender/Defender for Endpoint

Job description

About the Role

We are hiring a Workforce Security Engineer to secure how our people work: their identities, their devices, and the SaaS and collaboration stack they use every day. Identity is the active front line. You'll design and build phishing‑resistant authentication, tighten admin access, automate the joiner/mover/leaver lifecycle, and harden the endpoint and workplace estate. Security is core to the product and the company, and we are engineering‑led: we buy managed protection where it makes sense and spend headcount on engineers who automate and extend the stack. You'll be one of the first hires on this team, owning a domain rather than a slice of someone else’s.

Responsibilities
  • Harden our IdP (Microsoft Entra) with phishing‑resistant authentication, Conditional Access, privileged‑access tiering (PIM), and admin‑account protections
  • Drive SSO enforcement across SaaS and automate the joiner/mover/leaver lifecycle (HRIS‑to‑IdP)
  • Manage workforce secrets (e.g., 1Password) and build contingent‑worker and non‑human identity models
  • Own MDM (e.g., Intune), EDR (e.g., CrowdStrike Falcon), device posture (e.g., Fleet), endpoint hardening, vulnerability and patch management, and reliable device lock/recovery at offboarding
  • Harden the workplace stack (e.g., M365) and email security (e.g., Microsoft Defender), data‑loss prevention, and SaaS posture/CASB and connectivity (e.g., Cloudflare One)
  • Govern AI tooling access for the workforce
  • Build the controls and automation that govern workforce access into customer environments
  • Participate in the shared incident‑response and on‑call rotation
Minimum Qualifications
  • 5+ years in identity/IAM, corporate/workforce security, or security engineering
  • Hands‑on IAM depth: an enterprise IdP (Entra/Azure AD or equivalent) and the auth protocols (SAML, OIDC, OAuth), including MFA and Conditional Access
  • Endpoint management experience (Intune, Jamf, or equivalent) across macOS and Windows
  • Scripting/automation skills (e.g., Python, PowerShell) to replace manual identity and endpoint toil
  • Working knowledge of M365 / workplace SaaS security
Preferred Qualifications
  • Identity‑lifecycle/IGA automation and SCIM provisioning
  • DLP, CASB, and SaaS posture management
  • Zero‑trust / device‑trust‑at‑authentication models
  • Experience securing AI tool usage and LLM gateways for a workforce
Why Join Us?
  • A high‑performance culture
  • State‑of‑the‑art technology
  • Experience world‑class leadership
  • Scale of impact and purpose
  • A competitive salary and a huge growth trajectory
  • Work with the best in the industry
  • Flexible work environment
  • Diversity and creativity

As set forth in Future Secure AI’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Zero-Trust Workforce Security Engineer
Zero-Trust Workforce Security Engineer

Future Secure AI Pty • Austin (TX)

On-site
USD 120,000 - 180,000
Flexible work environment
Competitive salary
Growth trajectory
+3
Sr Security Engineer
Sr Security Engineer

Adobe • Seattle (WA)

On-site
USD 120,000 - 160,000
Platform Security Engineer Austin, TX
Platform Security Engineer Austin, TX

Future Secure AI Pty • Austin (TX)

On-site
USD 120,000 - 160,000
Flexible work environment
Competitive salary
High-performance culture
+1
Security Engineer
Security Engineer

Juicebox • San Francisco (CA)

On-site
USD 120,000 - 160,000
Principal Cybersecurity Engineer
Principal Cybersecurity Engineer

HR Tech Job • Reston (VA)

Hybrid
USD 184,000 - 278,000
Hybrid/flex schedule
Identity Security Engineer
Identity Security Engineer

ECS • Washington

Hybrid
USD 120,000 - 130,000
Senior Security Engineer - IAM
Senior Security Engineer - IAM

TENEX.AI • Sarasota (FL)

On-site
USD 140,000 - 210,000
Competitive salary
Benefits package
Growth opportunities
Senior Security Engineer - IAM
Senior Security Engineer - IAM

TENEX.AI • United States

On-site
USD 140,000 - 220,000
Staff Security Engineer
Staff Security Engineer

Topaz Labs • Emeryville (CA)

On-site
USD 130,000 - 160,000
100% covered medical/dental/vision
15 days annual PTO
401k matching
Entra ID Team Lead
Entra ID Team Lead

Tata Consultancy Services • Chicago (IL)

On-site
USD 120,000 - 130,000
Discretionary incentive
Medical coverage
Parental leaves
+5