Lead Security Engineer

NeurophosAustin, TX
Onsite

About The Position

Neurophos is seeking an experienced Security Lead to design, build, and defend the company's core cloud, network, and system infrastructure against external threats. This role involves owning the architectural integrity of the security posture, implementing zero-trust network boundaries, managing vulnerability and threat detection programs, and representing Neurophos's security posture. The position requires balancing deep technical execution with strategic governance to ensure infrastructure resilience against sophisticated adversaries and commercial customers. This is a lead role, intended to be the senior-most security voice from the outset and the future owner of the security function and its team.

Requirements

  • 8+ years in security engineering, infrastructure security, or cybersecurity leadership, including experience as the primary security owner at a company under 200 people.
  • Hands-on ownership of a SIEM/EDR stack end-to-end.
  • Demonstrated ownership of IAM/PAM architecture in a modern IdP (Okta or equivalent).
  • Direct experience leading at least one SOC 2 Type II audit cycle, including auditor-facing evidence delivery.
  • Direct experience running vendor security assessments and responding to customer/prospect security questionnaires or technical due diligence.
  • Working knowledge of export control frameworks (ITAR/EAR) as applied to technical data and access control.
  • Working proficiency in at least one major public cloud, ideally Azure.
  • Comfortable operating without an existing team, plus interest in hiring and developing a small security function over time.
  • Willingness to work across Sunnyvale and Austin as needed.

Nice To Haves

  • CISSP, CISM, CCSP, or OSCP
  • GRC automation platform experience (Vanta, Drata, or similar)
  • Experience securing semiconductor EDA/CAD workflows, Linux compute clusters, or physical R&D lab environments.

Responsibilities

  • Deploy zero-trust network access, secure cloud perimeters, and infrastructure access controls across cloud and physical lab/office environments.
  • Safeguard high-value engineering compute environments, CAD/EDA tools, and proprietary chip design repositories against external exfiltration and unauthorized access.
  • Implement robust Identity & Access Management policies, fine-grained Role-Based Access Control, Multi-Factor Authentication, and automated access review cycles.
  • Design and execute end-to-end vulnerability management processes, covering continuous asset scanning, prioritization, and coordinated remediation tracking with engineering teams.
  • Build, maintain, and test the incident response runbook; serve as the primary incident commander during security events, conducting forensic analysis and root-cause post-mortems.
  • Establish SIEM/EDR tooling, intrusion detection, and continuous logging across endpoints, servers, and cloud infrastructure to detect unauthorized access attempts in real time.
  • Lead technical defense discussions and security assessments with customers and investors.
  • Conduct vendor risk management assessments for third-party SaaS and infrastructure tools entering the company’s software stack.
  • Own the security compliance library, authoring and enforcing acceptable use, data classification, network segmentation, and disaster recovery policies.
  • Support the SOC 2 Type II certification program (utilizing platforms such as Vanta or Drata) in coordination with engineering, General Counsel, and external auditors.
  • Collaborate with the General Counsel to establish secure data handling, export control safeguards, and access controls.

Benefits

  • 100% coverage of base health plan premiums for you and your dependents, plus HSA contributions.
  • Unlimited PTO.
  • 401(k) matching
  • Stock option opportunities
  • Full suite of voluntary benefits, including Dental, Vision, Life, Hospital, Critical Illness, and Accident insurance.
  • Personalized Benefits: Choose the plans that fit your life and take the cash back for those that don’t.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service