Jobs Companies Figure Security Engineer, Enterprise Security

Über diese Security Engineer, Enterprise Security Stelle bei Figure

Figure · Vor Ort · San Jose, CA

Figure is an AI Robotics company developing a general purpose humanoid. Our humanoid robot is designed for commercial tasks and the home. We are based in San Jose, CA and require 5 days/week in-office collaboration. It's time to build!

We are looking for a Corporate Security Engineer to join the Security & Privacy team at Figure. Corporate Security owns the environment Figure's people work in: computers, identities, collaboration tools, and the company data flowing through all of it. The design and software behind our humanoid sit inside that environment. We keep access to managed devices, make them hard to compromise, and right-size what each can reach, without getting in the way of the people using them.

We are an engineering team. Controls ship as code, changes are versioned and reviewed, and posture is measured rather than asserted. This is a senior, hands-on individual contributor role. Nobody arrives deep in all of it; we want real depth in one of endpoint engineering, identity and access, or application access design, working knowledge of the rest, and room to build depth here.

Responsibilities

Endpoints and access

  • Build the endpoint hardening controls across macOS, Windows, Linux, and ChromeOS. Our fleet runs on FleetDM, an osquery-based MDM managed through GitOps: you author the control, you write the query proving it landed, and you ship both in a merge request for review.
  • Bind data access to a healthy managed device and the person it was issued to: phishing-resistant factors, session lifetimes, and device posture checks.
  • Bring AI assistants and coding agents under enterprise management: configuration and permissions delivered and verified like any other endpoint control.

Applications and third parties

  • Design application authentication, RBAC, and access lifecycle from first principles: identify what an application exposes, threat model it, propose control requirements, and guide owners to implement them.
  • Contribute what each engagement teaches to the team's default deployment playbooks: authentication, logging, and network placement.
  • Run security review and governance for SaaS and third parties: vendor assessments, OAuth grants, connector integrations, browser extensions, and data movement through the browser.

Visibility and measurement

  • Build the inventories this work depends on: application discovery, application posture management, grant tracking. Feed vulnerability management and build the controls that close what it finds.
  • Threat model the corporate attack surface as a repeatable practice and feed the results into what the team works on next. Partner with Detection and Response on telemetry and with IT on rollout.
  • Use AI where it earns its place: prepping access reviews, first-pass triage, and analysis that gets a human to a decision faster.

Requirements

  • Software engineering discipline in Python, Bash, PowerShell, or similar: integrations and internal tooling as normal work
  • Configuration-as-code and CI/CD applied to corporate infrastructure
  • Threat-modeling judgment that separates the problems worth solving from the ones existing controls already cover, and drives the former to completion
  • 6+ years in corporate or enterprise security engineering
  • Bachelor's in Computer Science, Engineering, or Information Systems, or equivalent experience

Depth required in at least one of the below, knowledge of the others

  • Endpoint security on at least two of macOS, Windows, Linux, and ChromeOS: MDM profile engineering, application allowlisting, endpoint security frameworks, and the OS internals behind them. Preferred: fleet-wide osquery telemetry, certificate-based device identity in production, a phased enforcement change shipped with a recovery plan, and devices that live off the corporate network.
  • Identity and access: IAM, SaaS security, and zero trust from fundamentals rather than vendor docs, and being able to explain a SAML, OIDC, or SCIM integration for a developer who has never built one. Preferred: mTLS, 802.1X, SSH certificate authorities, and DKIM, DMARC, and SPF in production.
  • Application access design: threat modeling what an application exposes, specifying authentication and authorization for the team building it, and designing the provisioning and revocation behind it. Preferred: securing agentic or LLM-integrated systems, including permission models, credential isolation, and egress control.

The US base salary range for this full-time position is between $150,000 - $250,000 annually.

The pay offered for this position may vary based on several individual factors, including job-related knowledge, skills, and experience. The total compensation package may also include additional components/benefits depending on the specific role. This information will be shared if an employment offer is extended.

Bereit, sich bei Figure zu bewerben?
Bei Figure bewerben

Wie sich dieses Gehalt für Security Engineer vergleicht

Diese Stelle zahlt $200,000/yrunter der üblichen Spanne für Security Engineer Stellen.

$200,000 dem Median $225,000 $278,000

Übliche Spanne $202,750–$250,000/yr, aus 11 vergleichbaren Security Engineer Anzeigen auf JobsRadar (Vergütung auf USD hochgerechnet). Gehaltseinblicke für Security Engineer ansehen →

Ähnliche Jobs

Figure
Security Engineer - Infrastructure Security
Figure
⚡ Früh bewerben San Jose, CA Vor Ort $150,000–$250,000
● Neu 👁 Gesehen ✓ Beworben vor 15 Std.
MS
Senior FPGA Engineer, Networking & Security
Muon Space
⚡ Früh bewerben San Jose, CA Hybrid $213,000–$237,000
● Neu 👁 Gesehen ✓ Beworben vor 1 Tg.
MS
Senior Security Engineer
Muon Space
⚡ Früh bewerben San Jose, CA Hybrid $193,000–$218,000
● Neu 👁 Gesehen ✓ Beworben vor 1 Tg.
MS
Senior Network Security Engineer
Muon Space
⚡ Früh bewerben San Jose, CA Vor Ort $193,000–$218,000
● Neu 👁 Gesehen ✓ Beworben vor 1 Tg.
Veeam Software
Staff AI Security Engineer
Veeam Software
⚡ Früh bewerben San Jose, CA, USA Vor Ort $293,100–$544,200
● Neu 👁 Gesehen ✓ Beworben vor 3 Tg.
Veeam Software
Security Engineer III
Veeam Software
⚡ Früh bewerben San Jose, CA, USA Vor Ort $208,500–$347,500
● Neu 👁 Gesehen ✓ Beworben vor 3 Tg.
Zoom
Security DevOps Engineer
Zoom
⚡ Früh bewerben San Jose (CA) Vor Ort $186,000–$186,000
● Neu 👁 Gesehen ✓ Beworben vor 3 Wo.
Capital One
Lead Software Engineer, Full Stack, Endpoint Security
Capital One
⚡ Früh bewerben McLean, VA Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 4 Wo.
Figure
Security Engineer, Application Security
Figure
⚡ Früh bewerben San Jose, CA Vor Ort $150,000–$350,000
● Neu 👁 Gesehen ✓ Beworben vor 1 Mon.

Registrieren für Vorschläge, die auf die von Ihnen geöffneten Jobs und gespeicherten Suchen zugeschnitten sind.

Mehr Jobs bei Figure

Alle Jobs bei Figure ansehen →

Jetzt bewerben
🤖

Moment — langsam

JobsRadar wurde für echte Menschen gebaut, die eine schwere Zeit bei der Jobsuche haben — nicht für automatisierte Anfragen. Sie klicken viel zu schnell und sind jetzt vorübergehend blockiert.

Kommen Sie später wieder. Wenn Sie wirklich auf Jobsuche sind, stehen wir hinter Ihnen — verhalten Sie sich einfach wie ein Mensch.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Verschaffe dir einen Vorsprung bei der Jobsuche.

Tritt unserem Telegram-Kanal bei für das, was dir hilft, die Stelle zu bekommen — Gehaltsbenchmarks, den wöchentlichen Marktpuls und neue Feature-Drops. Kein Spam, nur Signal.

Dem Kanal beitreten — kostenlos