You and the process

With a person
Anna, in-house recruiter
9 years hiring engineers
30 minutes with a real recruiter
They read your CV with you, on a call, and say where the offers are being lost.
Didn’t find what you were looking for? Tell us what to build
Be the first to open itNo views yet
Flexport

Security Engineer, Corporate Security

  • Office
  • 3-6 years

Salary

$130,950 - 202,125/ year

AI summary

For members

The whole posting in a few lines. Sign up to read it here and on every role you open.

Sign Up to Read

Description

About Flexport:

At Flexport, we believe global trade can move the human race forward. That’s why it’s our mission to make global commerce so easy there will be more of it. We’re shaping the future of a $10T industry with solutions powered by innovative technology and exceptional people. Today, companies of all sizes—from emerging brands to Fortune 500s—use Flexport technology to move more than $19B of merchandise across 112 countries a year.

The recent global supply chain crisis has put Flexport center stage as we continue to play a pivotal role in how goods move around the world. We are proud to have the support of the best investors in the game who believe in our mission, solutions and people. Ready to tackle global challenges that impact business, society, and the environment? Come join us.

All security disciplines work under the umbrella of the combined PSI (Platform, Security & Infrastructure) team: we build the paved path and tooling that hundreds of engineers around the world rely on every day to ship. Corporate Security owns the estate everyone at Flexport actually touches — the laptops, the identity provider, the SaaS sprawl, the browser. Get it right and nobody notices. Get it wrong and it's the fastest way into everything else we're trying to protect.

This is a security engineering role, not an IT support role. You'll spend your time writing code and shipping automation, not administering a helpdesk queue or babysitting a ticket tray.

Responsibilities

  • Identity & access
  • Advance our identity posture: SSO coverage, phishing-resistant MFA rollout, SCIM lifecycle automation, and least-privilege access across the SaaS and cloud estate.
  • Build the detections and guardrails that catch account takeover, MFA fatigue attacks, and session token theft before they turn into incidents.
  • Endpoint & device lifecycle
  • Write and ship device policy as code — configuration profiles, remediation scripts, and enforcement rules across macOS and Windows — with staged rollout and rollback built in from day one.
  • Maintain and improve our EDR stack's detection and response coverage across the fleet.
  • SaaS posture
  • Reduce SaaS risk at scale through SSPM tooling and automation , including detection of risky OAuth grants, shadow IT, and configuration drift across our critical SaaS applications.
  • Own security configuration for the SaaS tools hundreds of Flexporters use daily (Google Workspace, Slack, and similar), and keep pace as we add AI agents and MCP integrations to that surface.
  • Automation & enablement
  • Automate the parts of corporate security that don't need a human — device provisioning, access reviews, vendor security questionnaires — so the team scales with headcount instead of straining against it.
  • Write runbooks and documentation that make the rest of the team more capable , and partner with IT and People teams to ship controls that don't create the friction that drives people to workarounds.
  • You should have
  • Typically 2–5 years of experience in corporate, enterprise, or IT security engineering — we care more about what you've shipped than the exact number. If you meet most of this, apply; we'd rather see your work than filter you out on a résumé line.
  • Hands-on experience with modern endpoint management and EDR tooling (Jamf, Kandji, Intune, CrowdStrike, SentinelOne, or similar).
  • Working knowledge of identity protocols (SAML, OIDC, SCIM) and a major identity provider (Okta, Entra, Google Workspace, or similar).
  • Comfort writing real code or scripts (Python, Go, or similar) to replace manual, ticket-driven work with automation.
  • Clear, practical communicator who can explain a control tradeoff to an engineer, a salesperson, and a VP without changing the facts.

Requirements

  • Experience with SSPM tooling and OAuth-grant governance.
  • Exposure to DLP or insider-risk tooling.
  • Familiarity with infrastructure-as-code (Terraform) for managing security configuration.
  • A point of view on how agentic AI tools and MCP integrations change what corporate security needs to watch for
  • Interest in growing into a broader corporate security or detection engineering scope over time.

Conditions

We're in the San Francisco office regularly to work through incidents and detection design in person.

We stay closely aligned with teammates on other continents via Slack, video, and async docs.

We have the latest hardware and software, including frontier AI models on day one.

We're agile, but not dogmatic. Teams decide how they work best.

Why this role is special

Broad, real ownership: at this level elsewhere you might own a slice of a control; here you'll own well-defined projects end to end, from design through rollout, with support scoping the ambiguous parts.

Every device policy or identity control you ship protects every Flexporter, immediately — no six-month rollout to a subset of customers.

You're part of PSI: security is treated as infrastructure to build, not policy to enforce, and platform and infrastructure engineers are a Slack message away.

The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations. Our salary ranges are determined by role, level, and location. Within the range displayed, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education and / or training. Base salary is just one part of our total rewards package at Flexport, which also includes bonus, equity, and comprehensive benefit offerings such as medical, dental, and flexible time off.

California Pay Range

$130,950 - $202,125 USD

Washington Pay Range

$147,000 - $183,750 USD

Colorado Pay Range

$130,950 - $163,688 USD

New York City Pay Range

$147,000 - $183,750 USD

Illinois Pay Range

$130,950 - $163,688 USD

Commitment to Equal Opportunity

Where you’d work

From the office

About the company

Flexport

  • Industry: Logistics

Office in United States

Also hiring in San Francisco, United States, Chicago, United States, Amsterdam, Netherlands and 1 more place

1 of their 14 open roles is remote

Your chances

Worth a look before you spend an evening tailoring a CV for it.

  • 21 checks run
  • 2 red flags

Still hiring?

14 checks

1 red flag

How crowded?

7 checks

1 red flag

Fits Me

How well does this role fit you?

Answer a few questions or drop your CV, and every role gets a fit score with the reasons, this one first.

  • Your field
  • Level
  • Stack
  • Work model
  • Salary floor
  • Must-haves
Details11 facts · Role, Location, Compensation, Company
Tech stack
  • Python
  • Go
  • Terraform
Equity
Equity offered
Industry
Logistics
Specialty
Security
Region
United States
Pay period
Annual
Show 5 more factsShow less

Role

Category
DevOps & Infrastructure
Specialty
Security
Experience
5+ years
Tech stack
  • Python
  • Go
  • Terraform

Location

Work model
Office
Region
United States
Office
  • United States

Compensation

Salary
$130,950 - 202,125 / year
Pay period
Annual
Equity
Equity offered

Company

Industry
Logistics

Something wrong with this vacancy?

Similar vacancies

  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Security Engineer, New Grad

    Salary by agreement

    • Office · Dublin
    • Junior
  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Senior Security Operations Analyst

    Salary by agreement

    • Hybrid · Wellington, Auckland
    • Senior
  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Platform Security Engineer

    £90,000 - 160,000 / year

    • Hybrid · London
    • Mid-Level
  • Early Window: Be the first to open itNo views yetCloses in
    Company hidden

    Security Engineer

    $275,000 - 345,000 / year

    • Office · London

Share this vacancy

What's wrong with it?

The employer never sees who reported.

Reason