Senior Corporate Security Engineer

Mirantis•Remote, USA
•Remote

About The Position

Mirantis is seeking a Corporate Security Engineer to join our security team, based remotely in the United States. This role is intended to extend our security operations coverage beyond EU hours and to bring additional hands-on capacity to the team, improving the speed of detection, triage, and response to issues throughout the working day. This is a broad, hands-on engineering role covering core corporate security functions: endpoint protection (EDR) and device management (MDM), identity and access (IAM/SSO, MFA), and the detection-and-response stack (SIEM, alerting, and coordination with our external SOC). The engineer will be part of the team that responds to incidents and will also contribute to hardening the environment to prevent them. Additionally, the role supports the compliance program (ISO 27001, SOC 2, and related efforts) by operating and evidencing the controls these systems enforce. The engineer will operate and improve the tooling that protects our workforce and corporate environment, participate in incident response, and collaborate with IT, Product Security, and Compliance. This position offers the opportunity to join a distributed team, provide US-hours ownership, and significantly influence the day-to-day operations of corporate security.

Requirements

  • 4+ years of experience in a corporate/enterprise security, security operations, or IT security engineering role.
  • Hands-on experience with endpoint security (EDR) across macOS and Windows.
  • Strong working knowledge of identity and access management (SSO, MFA, and modern IAM platforms like Okta, Entra ID/Azure AD, Google Workspace) and least-privilege access practices.
  • Experience operating a SIEM and detection tooling (writing/tuning rules, triaging alerts, investigating suspicious activity).
  • Practical incident response experience (investigation, containment, remediation, root cause analysis) and comfort coordinating with an external SOC/MSSP.
  • Solid grasp of security fundamentals (network and host hardening, common attack techniques, reducing attack surface).
  • Familiarity with compliance frameworks such as ISO 27001 and SOC 2, and experience operating or evidencing security controls.
  • Experience with vulnerability management and translating findings into concrete remediation.
  • A collaborative working style suited to a distributed team, with clear written communication and reliable handoffs across time zones.
  • Based in the United States, with the ability to provide security operations coverage during US business hours.

Nice To Haves

  • Experience with device management (MDM) and managing Linux endpoints.
  • Experience with Splunk.
  • Scripting/automation ability (Python, Bash, PowerShell) to streamline security operations, or a demonstrated ability and strong desire to pick these up quickly.
  • Experience running security awareness and phishing-simulation programs.
  • Relevant certifications (e.g., Security+, GIAC/GCIH/GCIA, CISSP, or vendor-specific EDR/SIEM/IAM certs).
  • Exposure to cloud and SaaS security posture (AWS, Google Workspace, M365).

Responsibilities

  • Define and own security policies, hardening baselines, and compliance posture for EDR and MDM across the fleet, and drive threat response on endpoints. Partner with IT for device enrollment and administration.
  • Administer and strengthen identity and access management, including SSO, MFA, provisioning/deprovisioning, and least-privilege access reviews. Partner with IT to ensure a secure and functional identity layer.
  • Operate SIEM and detection tooling, tune rules, triage alerts, and investigate suspicious activity. Coordinate with the external SOC on monitoring and escalations. Participate in end-to-end incident response: investigation, containment, remediation, and root cause analysis. Contribute to post-incident reviews and runbooks, and provide US-hours ownership.
  • Operate, integrate, and improve the corporate security toolset. Proactively harden the environment through configuration baselines, access controls, and reducing attack surface.
  • Support the compliance program (ISO 27001, SOC 2) by operating and evidencing security controls. Partner with Compliance on audits, control mapping, and evidence collection.
  • Track and help remediate vulnerabilities across endpoints and corporate systems. Stay current on threats and translate them into concrete improvements.
  • Run and improve the security awareness program, including training, phishing simulations, and employee guidance. Foster a security-conscious culture.
  • Collaborate closely with IT, Product Security, and Compliance as part of a distributed team. Extend security operations coverage into US business hours and ensure smooth handoffs with EU colleagues.

Benefits

  • Professional development and training
  • Attend conferences and working groups
  • Company outings, happy hours, hackathons, and tech talks
  • Competitive compensation package with a strong benefits plan
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service