Sobre esta vaga de Lead Security & IT Engineer na Anodize
Lead Security & IT Engineer
Summary
We’re a well-funded, stealth startup building a new end-to-end personal computing platform.
As our Lead Security & IT Engineer, your responsibility is to build a high-performance, automated, and seamless corporate environment. You will have complete ownership of both our internal security posture and corporate infrastructure, across our custom silicon design environment, internal infrastructure, and employee endpoints. Your goal is to keep us secure by default through automation, code, and zero-trust principles, rather than manual policies and ticket queues.
Additionally, you will have the opportunity to act as an internal security consultant for our product team, helping them design our products to be manageable by modern enterprise IT organizations.
Responsibilities
- Automate Corporate IT: Treat IT like an engineering discipline. Build and scale our identity provider, SaaS toolchain, and lifecycle workflows through zero-touch automation. No manual ticket queues.
- Secure Silicon & Vendor IP Infra: Design and enforce network isolation and strict access controls for our cloud-based silicon design environment. Protect highly confidential, encrypted third-party IP during the design and tape-out phases.
- Secure the Fleet: Build and secure our internal fleet (Windows/macOS/Linux) using light-touch, high-efficacy tools that keep our company secure without killing battery life.
- Consult on Product MDM: Act as a technical advisor to our product team. Help them build native, secure enterprise management and MDM enrollment features into our commercial device, drawing from your hands-on experience as an IT customer.
Minimum Requirements
- 6+ years of experience spanning Infrastructure Security, DevSecOps, or Systems Engineering, ideally in fast-paced startup or high-growth tech environments.
- IaC & Automation First: Strong scripting or software development skills and hands-on experience using Infrastructure as Code (IaC) to build and manage security and IT infrastructure programmatically.
- Enterprise Identity & Zero Trust: Experience architecting enterprise Identity Providers, strict least-privilege access controls, and Zero Trust network architectures.
- Cloud & Network Security: Proven track record securing public cloud environments, with expertise in network segmentation, VPC isolation, egress control, and robust encryption standards.
- Fleet Management & Endpoint Security: Hands-on experience administering multi-OS environments (macOS, Linux, Windows) using modern MDM and EDR solutions to enforce security without sacrificing engineering velocity.
Preferred Qualifications
- Experience securing cloud-based silicon design (EDA) environments, high-performance computing (HPC) workloads, or high-value third-party IP during chip development cycles.
- Familiarity with enterprise device enrollment standards and hardware-level security concepts.