Endpoint Security Engineer

jobsSan Francisco, CA
$200,000 - $225,000Onsite

About The Position

Hillspire is seeking an experienced Endpoint & SaaS Security Engineer to help build one of the industry's most advanced modern security programs. This role is responsible for protecting endpoints and the SaaS platforms running on them, while helping mature Hillspire's Zero Trust security architecture with a strong emphasis on device security posture, insider threat prevention, automation, and AI. The ideal candidate is equally comfortable investigating security alerts, engineering new security controls, building automation, and leveraging AI to improve operational efficiency. This is a hands-on engineering role with significant ownership and the opportunity to shape the future of endpoint, SaaS, and AI security across the organization. This position is based full-time in our San Francisco headquarters in the Embarcadero and is offered as a contract-to-hire opportunity.

Requirements

  • 5+ years of cybersecurity engineering experience
  • Strong experience securing Windows and macOS endpoints
  • Experience working with Managed Detection & Response (MDR)
  • Experience implementing Zero Trust security principles
  • Knowledge of insider threat detection techniques
  • Experience with SaaS security
  • Understanding of Shadow IT and SaaS governance
  • Experience supporting BYOD environments
  • Prompt engineering using leading AI platforms
  • Building AI-assisted workflows
  • Experimenting with AI agents
  • Creating MCP servers
  • Developing automation using modern AI frameworks

Nice To Haves

  • Experience with two or more of: Sophos Central, Splunk Enterprise Security, CrowdStrike, Okta, Google Workspace security, CASB or SSPM platforms, Threat Intelligence Platforms, NIST Cybersecurity Framework, CISA Zero Trust Architecture
  • Previous production AI experience is beneficial but not required. We value curiosity and a willingness to learn.

Responsibilities

  • Own the health, configuration, and continuous improvement of Hillspire's endpoint security platform.
  • Administer Sophos Endpoint Protection, XDR, and MDR capabilities across all corporate devices.
  • Ensure 100% endpoint visibility and security coverage.
  • Investigate and remediate compromised, vulnerable, or non-compliant endpoints.
  • Develop endpoint security baselines aligned with Zero Trust principles.
  • Improve device security posture through vulnerability management, compliance monitoring, and hardening.
  • Build controls that reduce insider threats and prevent lateral movement.
  • Develop and mature Hillspire's SaaS Security program by maintaining visibility into SaaS applications, identifying Shadow IT and unauthorized SaaS usage, governing BYOD, BYO-SaaS, and BYO-AI risks, monitoring SaaS security posture, improving SaaS authentication and identity controls, partnering with business teams to securely onboard new SaaS platforms, and supporting vendor security reviews and third-party risk assessments.
  • Help shape Hillspire's next-generation AI security program by building Retrieval-Augmented Generation (RAG) solutions for security operations, developing automation that continuously scans Hillspire's security posture, using AI to improve incident response, investigations, and operational efficiency, and helping secure the organization's adoption of Generative AI technologies.
  • Monitor, investigate, and respond to security alerts.
  • Develop detection logic for insider threats.
  • Build automated remediation workflows.
  • Improve endpoint telemetry and visibility.
  • Enhance Zero Trust controls across users, devices, and applications.
  • Develop documentation, playbooks, and operational procedures.

Benefits

  • Company-sponsored training in Advanced Splunk engineering
  • Company-sponsored training in AI Advanced training
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service