Onebrief Logo

Onebrief

Corporate Security Systems Engineer

Posted 2 Days Ago
Remote
Hiring Remotely in United States
Senior level
Remote
Hiring Remotely in United States
Senior level
As a Corporate Security Systems Engineer, you will implement and maintain security tools and controls, improve configurations, collaborate with teams, and support compliance assessments.
The summary above was generated by AI
About Onebrief

Onebrief is collaboration and AI-powered workflow software designed specifically for military staffs. By transforming this work, Onebrief makes the staff as a whole superhuman - meaning faster, smarter, and more efficient.

We take ownership, seek excellence, and play to win with the seriousness and camaraderie of an Olympic team. Onebrief operates as an all-remote company, though many of our employees work alongside our customers at military commands around the world.

Founded in 2019 by a group of experienced planners, today, Onebrief’s team spans veterans from all forces and global organizations, and technologists from leading-edge software companies. We’ve raised $320m+ from top-tier investors, including Battery Ventures, General Catalyst, Sapphire Ventures, Insight Partners, and Human Capital, and today, Onebrief is valued at $2.15B. With this continued growth, Onebrief is able to make an impact where it matters most.

About You

You're a detail-oriented security engineer who understands that strong security comes from disciplined configuration management and consistent enforcement. You're comfortable deploying and managing enterprise security tools, and you know how to translate regulatory requirements into practical technical controls.

You think in terms of baselines and drift. You understand that endpoint hardening, SaaS configuration security, identity controls, browser management, MDM, and Zero Trust are interconnected components of enterprise defense. You're structured in your documentation, disciplined in change management, and motivated by reducing systemic risk through automation.

You work well across teams—partnering with IT, Security Operations, GRC, and application owners to ensure systems are deployed securely and remain compliant over time.

What You'll Do
  • Implement and maintain enterprise security tooling and approved configuration baselines across endpoints, browsers, SaaS platforms, and identity systems, aligned with CMMC 2.0, NIST 800-53, and internal standards.

  • Partner with Corporate Security Engineering leadership and Vulnerability Management to ensure configuration controls and remediation efforts are aligned, measurable, and enforceable.

  • Continuously improve security configurations by reducing drift, expanding automation, and strengthening documentation and evidence collection to support audit readiness.

  • Collaborate with Corporate IT, Security Operations, and application owners to securely deploy systems and SaaS platforms, providing guidance during rollouts and participating in security reviews.

  • Maintain structured processes for baseline updates, configuration reviews, drift detection, and control validation, ensuring changes are documented, approved, and traceable to compliance requirements.

  • Implement and enforce technical controls that protect the confidentiality, integrity, and availability of corporate systems while meeting regulatory and privacy commitments.

  • Ensure configuration data, drift findings, and remediation evidence are accurate, access-controlled, and retained in accordance with policy.

  • Support compliance assessments by providing defensible artifacts and escalate identified control gaps or systemic risks to Security Engineering leadership.

What We Look For
  • 4–8+ years of experience in security engineering, systems engineering, or enterprise IT security

  • Hands-on experience with enterprise security tooling (e.g., Zscaler, MDM platforms, browser enterprise management, EDR, SIEM)

  • Experience implementing and maintaining configuration baselines aligned to NIST 800-53, CMMC 2.0, DISA STIGs, or similar frameworks

  • Familiarity with SaaS security configuration and identity/access management controls

  • Experience with raw API-based integrations and no-code automation platforms (Tines, Okta Workflows)

  • Demonstrated experience automating configuration enforcement and reducing manual security tasks

  • Strong understanding of change management and documentation practices

  • Ability to translate compliance requirements into technical control implementations

  • Strong communication skills and ability to work across technical and non-technical teams

  • Bonus: Experience in regulated or DoD-adjacent environments


Notice to Third Party Recruitment Agencies

Please note that Onebrief does not accept unsolicited resumes from recruiters or employment agencies. In the absence of an executed Recruitment Services Agreement, there will be no obligation to any referral compensation or recruiter fee. In the event a recruiter or agency submits a resume or candidate without an agreement Onebrief explicitly reserves the right to pursue and hire those candidate(s) without any financial obligation to the recruiter or agency. Any unsolicited resumes, including those submitted to hiring managers, shall be deemed the property of Onebrief.

Top Skills

Browser Enterprise Management
Cmmc 2.0
Configuration Baselines
Disa Stigs
Edr
Mdm Platforms
Nist 800-53
Okta Workflows
SaaS
SIEM
Tines
Zscaler

Similar Jobs at Onebrief

3 Hours Ago
Remote
Senior level
Senior level
Software • Defense
As a Senior Software Engineer, you'll implement collaboration features, support team architecture, work across tech stacks, and improve developer experience.
Top Skills: AWSCi/CdKubernetesNode.jsPostgresReactRedisTypescript
3 Hours Ago
Remote
Expert/Leader
Expert/Leader
Software • Defense
The Staff Software Engineer will lead full-stack initiatives, improve system quality, drive technical direction, and mentor peers in a collaborative environment.
Top Skills: AWSCi/CdKubernetesNode.jsPostgresReactRedisTypescript
Yesterday
Remote
Senior level
Senior level
Software • Defense
The Technical Program Manager leads governance, risk, and compliance efforts, develops project plans, coordinates cross-functional teams, and drives compliance implementation.
Top Skills: AWSCi/CdCloud GovernanceComplianceCybersecurityDevsecopsEmassNist Rmf

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account