Partner 20, Staff Engineer, Enterprise Security

Andreessen Horowitz•San Francisco, CA
•Hybrid

About The Position

Andreessen Horowitz (a16z) is seeking a Staff Engineer to own enterprise security, focusing on insider risk, data protection, SaaS security, and the secure adoption of AI across the firm. This is a program-ownership role where you will define the strategy for protecting sensitive data, select and implement tooling, write policies with IT, and ensure their effective implementation. The role involves addressing real-world threats such as social engineering, data exfiltration, and actors targeting venture capital firms, while also enabling the safe and rapid adoption of AI tools. Your work will be crucial in protecting the firm, its Limited Partners (LPs), and its portfolio companies. You will collaborate closely with the Head of Cybersecurity, Security Engineering, IT, Legal, and Compliance teams. This position requires an in-office presence two days a week (Tuesday and Thursday) in the San Francisco, CA office, with occasional days in the Menlo Park, CA office.

Requirements

  • 7+ years of experience in security engineering or enterprise security roles.
  • Deep expertise across Identity and Access Management, authentication and authorization, DLP and insider risk tooling, SaaS security posture management, and endpoint management.
  • A track record of owning security programs like DLP, insider risk, or SaaS security end to end: setting strategy, selecting vendors, driving implementation across teams you don't control, and being accountable for the outcome.
  • Hands-on experience securing AI tools and agentic systems in an enterprise environment, including data flow controls, model and tool access governance, and evaluating AI vendors.
  • Experience with modern enterprise infrastructure and SaaS ecosystems, including Google Workspace, Okta, MDM solutions, SSPM, zero trust architecture, and cloud-native environments.
  • Experience running third-party and vendor security assessments at scale.
  • Experience translating technical risk into language non-technical stakeholders can act on.
  • Low ego, high empathy, and the capacity to collaborate effectively with diverse teams.

Responsibilities

  • Own the firm's insider risk and data protection program end to end, including selecting and implementing our next DLP platform and pioneering AI-augmented DLP with LLM-based investigative tooling and automated analysis.
  • Drive secure AI adoption across the firm: Secure the AI tools and agents the firm uses, define guardrails for agentic systems acting on firm data, and build the governance that lets a16z adopt AI quickly without exposing sensitive information.
  • Own SaaS security posture across the firm's vendors: A prioritized vendor inventory, SSPM, secure configuration baselines, and monitoring for risky changes.
  • Set authentication and authorization policy with IT, including Okta, device trust, MFA enforcement, and access reviews, and drive it through to enforcement.
  • Manage EDR across the fleet, covering deployment, coverage, and rulesets on macOS, Windows, and iOS, and work with IT on MDM policies.
  • Own security through the joiner, mover, and leaver lifecycle, with particular depth on offboarding: Access revocation, data holds, and exfiltration checks.
  • Run and improve the firm's vendor security due diligence process so new tools get a consistent, fast, risk-based review.
  • Monitor, investigate, and respond to data exfiltration and insider risk events, partnering with Incident Response and Legal.
  • Participate in the Security team’s oncall rotation.

Benefits

  • health insurance
  • dental insurance
  • vision insurance
  • disability insurance
  • life insurance
  • 401K plan
  • vacation
  • sick leave
  • a16z carry program
  • various discretionary bonus programs
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service