Jobs Companies Higgsfield IT Security Engineer (Almaty)

Über diese IT Security Engineer (Almaty) Stelle bei Higgsfield

Higgsfield · Vor Ort · Almaty, Kazakhstan

Why work at Higgsfield AI?

Higgsfield AI is the fastest-scaling generative AI company in history, hitting $500M in annual revenue run rate, 25M+ users worldwide, 6M+ generations per day, and powering 390 of Fortune 500 brands.

We're building at the absolute frontier of AI-powered video creation and next-generation creative tools. Joining Higgsfield means becoming part of a high-impact team shaping the future of AI-native experiences, at a company that isn't just moving fast, but rewriting what fast looks like.


About the role

We’re looking for an IT Security Engineer to own and strengthen the security of our corporate technology environment. This is a hands-on role spanning identity and access management, endpoint security, SaaS security, Zero Trust, security automation, and incident response.

You’ll work closely with Security, IT, Engineering, and business teams to build secure, scalable systems and automate the controls that protect our people, devices, applications, and data.

 

What You’ll Do

Identity & Access Management

  • Own and strengthen identity and access controls across our corporate environment, with a focus on Microsoft Entra ID.

  • Implement and maintain SSO/SAML, SCIM provisioning, MFA, Conditional Access, and RBAC.

  • Build and improve automated joiner, mover, and leaver (JML) workflows.

  • Regularly review permissions, privileged access, and authentication policies to reduce unnecessary access and security risk.

  • Help establish identity as the foundation of our Zero Trust security model.

Endpoint Security

  • Manage and improve endpoint security through Microsoft Intune/MDM, device compliance policies, and endpoint protection tooling.

  • Deploy and maintain EDR capabilities across the corporate fleet.

  • Establish and enforce security baselines for employee devices.

  • Investigate endpoint security events and remediate compromised or non-compliant devices.

SaaS & Corporate Application Security

  • Assess and improve the security posture of corporate SaaS applications.

  • Partner with application owners to implement appropriate authentication, authorization, provisioning, and data-access controls.

  • Identify shadow IT, excessive permissions, insecure configurations, and other SaaS-related risks.

  • Help establish scalable security standards for onboarding and managing new corporate applications.

Zero Trust & Corporate Access

  • Design and implement Zero Trust principles across identity, endpoints, applications, and corporate access.

  • Strengthen controls around privileged access, remote access, and access to sensitive systems.

  • Apply practical security controls that balance strong protection with employee productivity.

Security Automation

  • Automate repetitive security and IT workflows using scripts, APIs, and integrations.

  • Build tooling to automate access reviews, provisioning, compliance checks, alert enrichment, remediation, and other security processes.

  • Use scripting languages such as Python or JavaScript to improve security operations and reduce manual work.

  • Look for opportunities to turn manual security processes into scalable, reliable systems.

Detection & Incident Response

  • Monitor and investigate security alerts across identity, endpoint, and corporate systems.

  • Perform initial investigation and triage of suspicious activity and potential security incidents.

  • Support incident containment, remediation, and post-incident improvements.

  • Build lightweight detections and alerts for meaningful risks within the corporate environment.

What We’re Looking For

  • Strong hands-on experience with identity and access management, ideally within Microsoft Entra ID.

  • Experience implementing or managing SSO/SAML, SCIM, MFA, Conditional Access, RBAC, and JML workflows.

  • Experience with MDM and endpoint security, ideally Microsoft Intune and modern EDR tooling.

  • Understanding of SaaS and corporate application security.

  • Experience implementing or operating within a Zero Trust security model.

  • Ability to automate workflows using scripts and APIs, with experience in a language such as Python or JavaScript.

  • Working knowledge of security detection, investigation, and incident response.

  • Strong security judgment — you can distinguish theoretical risk from meaningful business risk and prioritize accordingly.

  • Comfortable operating independently in a fast-moving startup environment where priorities can change quickly.

  • Builder mindset: you look for ways to automate, simplify, and improve systems rather than relying on manual processes.

Nice to Have

  • Experience with reverse engineering, CTFs, security competitions, or similar hands-on security challenges.

  • Strong understanding of networking fundamentals, including VPNs, network segmentation, authentication protocols, and common lateral-movement techniques.

  • Experience securing rapidly scaling or highly technical organizations.

  • Experience working closely with engineering or product security teams.

  • Familiarity with cloud security concepts and modern security monitoring tools.

What we offer:

  • Competitive base salary in USD

  • Equity: participation in the company’s stock option program, giving you the opportunity to share in the company’s long-term growth.

  • On-site role in our Almaty office (we will relocate you from anywhere).

Bereit, sich bei Higgsfield zu bewerben?
Bei Higgsfield bewerben

Ähnliche Jobs

Higgsfield
Application Security Engineer
Higgsfield
⚡ Früh bewerben Almaty, Kazakhstan Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 3 Wo.
Higgsfield
Security Infrastructure Engineer (Almaty)
Higgsfield
⚡ Früh bewerben Almaty, Kazakhstan Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 3 Wo.
9W
Cloud Security Architect / Engineer
9th Way Insignia
⚡ Früh bewerben Washington, District of Columb... Vor Ort $98,135–$150,000
● Neu 👁 Gesehen ✓ Beworben vor 36 Min.
Hi Marley
Sr. Security Engineer (AI)
Hi Marley
⚡ Früh bewerben Hybrid - Boston, MA Hybrid
● Neu 👁 Gesehen ✓ Beworben vor 58 Min.
Anduril Industries
Senior Product Security Engineer
Anduril Industries
⚡ Früh bewerben Fort Collins, Colorado, United... Vor Ort $144,000–$191,000
● Neu 👁 Gesehen ✓ Beworben vor 1 Std.
Anduril Industries
Lead Security Engineer, GRC
Anduril Industries
⚡ Früh bewerben Costa Mesa, California, United... Vor Ort $166,000–$253,000
● Neu 👁 Gesehen ✓ Beworben vor 1 Std.
Anduril Industries
Lead Security Engineer, GRC
Anduril Industries
⚡ Früh bewerben Seattle, Washington, United St... Vor Ort $166,000–$253,000
● Neu 👁 Gesehen ✓ Beworben vor 1 Std.
Twilio
Staff Security Engineer
Twilio
⚡ Früh bewerben Remote - US · standortgebunden
● Neu 👁 Gesehen ✓ Beworben vor 2 Std.
Accenture Federal Services
Application Security Engineer
Accenture Federal Services
⚡ Früh bewerben Washington, DC Vor Ort $78,600–$160,200
● Neu 👁 Gesehen ✓ Beworben vor 3 Std.

Registrieren für Vorschläge, die auf die von Ihnen geöffneten Jobs und gespeicherten Suchen zugeschnitten sind.

Mehr Jobs bei Higgsfield

Alle Jobs bei Higgsfield ansehen →

Jetzt bewerben
🤖

Moment — langsam

JobsRadar wurde für echte Menschen gebaut, die eine schwere Zeit bei der Jobsuche haben — nicht für automatisierte Anfragen. Sie klicken viel zu schnell und sind jetzt vorübergehend blockiert.

Kommen Sie später wieder. Wenn Sie wirklich auf Jobsuche sind, stehen wir hinter Ihnen — verhalten Sie sich einfach wie ein Mensch.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Verschaffe dir einen Vorsprung bei der Jobsuche.

Tritt unserem Telegram-Kanal bei für das, was dir hilft, die Stelle zu bekommen — Gehaltsbenchmarks, den wöchentlichen Marktpuls und neue Feature-Drops. Kein Spam, nur Signal.

Dem Kanal beitreten — kostenlos