Enterprise Security Engineer

SendbirdSan Mateo, CA
20hHybrid

About The Position

Security isn't just a checkbox at Delight.ai. It's the foundation everything else is built on. If you believe security should accelerate how people work, not slow them down, keep reading. The Company Sendbird is on a mission to build the AI workforce of tomorrow. For over a decade, we built the infrastructure behind conversations—chat, voice, video, messaging APIs—and became the #1 CPaaS platform for in-app communications. 4,000+ brands trust us. 7 billion messages flow through our platform every month. 300 million monthly active users. We powered conversations for DoorDash, Match Group, Noom, Yahoo Sports, Rakuten, and thousands of others. We were good at what we did. Really good. We also saw it early: AI would fundamentally reshape how businesses talk to customers. The infrastructure we'd spent a decade building would become commoditized. The value would move up the stack—into intelligence, into experience, into outcomes. We had a choice: protect what we built, or reinvent ourselves. We chose reinvention. In December 2024, we made the full strategic pivot to AI-first customer experience. By February 2025, we'd launched our AI agent for enterprise CX—built on a decade of conversation data, now with intelligence on top. And in November 2025, we rebranded to Delight.ai. The name says it all. AI's real promise isn't efficiency or cost savings. It's giving customers back something they lost—the feeling of being truly understood and cared for. Not satisfied. Delighted. The Product Delight.ai is the AI concierge for customer experience. Most AI agents forget you the moment the conversation ends. Ours doesn't. Delight.ai builds memory over time, learns preferences, and connects context across every channel—chat, SMS, email, voice, WhatsApp—without losing the thread. We're building AI that makes customers feel understood, seen, and remembered. Why Enterprise Security Engineer We're building AI that handles real customer conversations at scale. That means identity systems, SaaS stacks, and endpoints that have to work, and stay secure, without getting in the way of the people building and shipping every day. The threat landscape isn't standing still, and neither are we. This role exists because we need someone who thinks about security the way our engineers think about product: automate what's repetitive, build what's missing, and make the secure path the easy path. The Role You'll own enterprise security across endpoints, identity, cloud services, and SaaS applications for a globally distributed team. You'll work directly with IT and Engineering, and you'll use AI-powered tooling to move faster than any traditional security team. This role is for someone who scripts before they click, builds before they buy, and sees automation as a force multiplier, not a nice-to-have. You might be this person if: You automate repetitive security tasks before they become recurring headaches, and you reach for Python or Bash as naturally as you reach for a runbook. You treat SaaS sprawl as an engineering problem, not an audit problem, and you build controls that scale without constant manual oversight. You think about attacker techniques (MITRE ATT&CK is a starting point, not a ceiling) and design detections that actually catch things. You've built or used AI-assisted workflows to speed up threat detection, alert triage, or security reporting, and you're always looking for more places to apply them. You hold the "secure by default" bar without being the team that slows everyone else down. You can explain risk trade-offs clearly to engineers and business stakeholders, not just security people. You're never satisfied with "we have a tool for that" if the tool isn't actually being used well.

Requirements

  • 4+ years of hands-on enterprise security experience, with real depth in endpoint security across a MacOS-heavy fleet (EDR, NGAV, MDM).
  • Operational experience with VPN and ZTNA platforms, and working knowledge of modern email security (SPF, DKIM, DMARC).
  • Proven ability to secure SaaS platforms with preventive and detective controls, including DLP and logging pipelines.
  • Scripting proficiency in Python (strong preference), Bash, or a comparable language, used for automation, not just one-off fixes.

Nice To Haves

  • Experience owning a risk-based security roadmap, including prioritization frameworks that tie security investment to actual business exposure.
  • Deep familiarity with adversary tactics via MITRE ATT&CK, with hands-on experience designing detection and response strategies around those techniques.

Responsibilities

  • Harden a global MacOS fleet using EDR, NGAV, and MDM, enforcing patching cadences and security baselines at scale.
  • Build and enforce IAM policies (SSO, MFA, SCIM, least-privilege), with automated provisioning and de-provisioning wherever possible.
  • Secure Google Workspace and the broader SaaS stack, implementing DLP controls and logging pipelines that surface real data exposure risk.
  • Administer and improve VPN and zero-trust remote access infrastructure for a distributed workforce.
  • Develop AI-assisted detection and response workflows, automating alert triage, incident timelines, and routine reporting.
  • Embed security into how Engineering and IT build and ship, not just how the company audits afterward.
  • Monitor the threat landscape, translate attacker techniques into actionable detections, and stay ahead of what's actually being used against companies like ours.
  • Build internal security tooling and dashboards where off-the-shelf falls short, using automation pipelines to close the gaps.

Benefits

  • Medical, dental, and vision coverage, on us. Sendbird covers 100% of the premium for our employees and roughly 80% for their dependents.
  • Generous time off. 20 days PTO, 13 company holidays, 7 sick days, 2 rest & rejuvenation days, 1 volunteer day, and your birthday off.
  • $3,500 annual "Be Your Best Self" boost. Spend it on anything that helps you grow. Gym memberships, therapy, books, courses, massages, and more.
  • Parental leave for all new parents. Time to be present for the moments that matter most.
  • 401(k) from day one. Auto-enrollment, flexible contributions, and access to Vanguard's investment platform.
  • HSA & FSA options. Pre-tax accounts to cover healthcare, dependent care, and commuter expenses.
  • Life & disability coverage, fully paid. Life insurance and AD&D at 2x your salary, plus short- and long-term disability at no cost to you.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service