Security Engineer, Corporate Security

Notion Labs
Dublin
Workplace: HybridFull timeFunction: CybersecurityExperience: 5+ yearsSkills: ["Communication","Cross-functional collaboration"]

Own and improve corporate security technical controls across identity, endpoints, SaaS, and workforce infrastructure. Harden identity and access management (Okta/Google Workspace) with phishing-resistant MFA, SSO/SCIM, and least-privilege access. Run a macOS-first endpoint security program, govern secure AI tool usage, and reduce SaaS risk via SSPM and automation. Partner with Detection & Response and support SOC 2 and ISO 27001 audits through strong engineering.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Notion Labs
Notion Labs
2 days ago

Security Engineer, Corporate Security

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 13 hours agoStatus: Live

Job Summary

Own and improve corporate security technical controls across identity, endpoints, SaaS, and workforce infrastructure. Harden identity and access management (Okta/Google Workspace) with phishing-resistant MFA, SSO/SCIM, and least-privilege access. Run a macOS-first endpoint security program, govern secure AI tool usage, and reduce SaaS risk via SSPM and automation. Partner with Detection & Response and support SOC 2 and ISO 27001 audits through strong engineering.
Location: Dublin
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Harden and evolve identity and access management controls, including MFA, SSO, SCIM lifecycles, and least-privilege SaaS access.
  • •Operate and improve endpoint security across a macOS-first fleet using MDM/EDR and configuration baselines, with coverage for Windows and ChromeOS.
  • •Secure AI tool usage at the endpoint by governing LLMs/AI agents/MCP integrations and preventing unauthorized or risky AI access and data exfiltration.
  • •Reduce SaaS risk at scale using SSPM tooling and custom automation to detect risky OAuth grants, excessive permissions, shadow IT, and configuration drift.
  • •Write code in Python and Terraform to automate access reviews, onboarding/offboarding, configuration drift detection, and audit evidence collection; partner with Detection & Response on telemetry and incident investigation/response.

Key Requirements

  • •5+ years of hands-on corporate/enterprise/IT security engineering experience at a cloud-native company.
  • •Working knowledge of a major identity provider (Okta, Entra, or Google Workspace) and protocols (SAML, OIDC, OAuth 2.0, SCIM).
  • •Hands-on experience operating endpoint management and detection tooling across macOS and enterprise environments.
  • •Production-quality scripting and automation in Python or Bash, with shipped Terraform or other infrastructure-as-code for security configuration.
  • •Familiarity with SaaS security risks (OAuth governance, audit logging, SSPM) and integrating long-tail vendors.
Experience:5+ years
Skills:CommunicationCross-functional collaboration
Tech Stack:OktaGoogle WorkspaceEntraSAMLOIDCOAuth 2.0SCIMMFASSOMacOSWindowsChromeOSMDMEDRPythonBashTerraformSSPMOAuthAudit logging

Company Brief

Notion Labs
Notion builds a customizable all-in-one workspace for notes, docs, databases, and collaboration, now adding AI-powered features and enterprise capabilities to serve teams and organizations worldwide.
Industry: Enterprise Software
Company Size: Large (251 to 1,000 employees)
Revenue: USD 500M to 1B
Growth: Scaleup
Valuation: Unicorn (USD 1B+)
Funding: Series C
Headquarters: San Francisco, United States
Founded: 2016
Glassdoor
Glassdoor: 4.5
WebsiteLinkedInGlassdoor