notion
Security Engineer, Corporate Security
San Francisco, California (Remote)fulltimemid
About this role
Notion seeks an experienced Security Engineer to build and maintain technical controls protecting the company's workforce, endpoints, and corporate infrastructure. You'll design scalable security automation across identity management, endpoint protection, SaaS governance, and AI tool usage while partnering with IT and Detection teams.
What you'll do
- Strengthen identity and access management systems using Okta and Google Workspace with MFA, SSO, and least-privilege access
- Manage endpoint security program across macOS, Windows, and ChromeOS including MDM, EDR, and configuration baselines
- Implement AI tool governance at the endpoint level to prevent unauthorized access and data exfiltration through AI services
- Reduce SaaS risks through SSPM tooling and custom automation to detect risky permissions and shadow IT
- Write Python and Terraform code to automate access reviews, onboarding/offboarding, and configuration drift detection
- Support compliance audits (SOC 2, ISO 27001) and investigate corporate security incidents with Detection & Response team
What they're looking for
- 5+ years corporate or enterprise security engineering experience
- Hands-on expertise with identity providers (Okta, Entra, Google Workspace) and protocols (SAML, OIDC, OAuth 2.0, SCIM)
- Endpoint management and EDR tooling across macOS and enterprise environments
- Production-quality Python/Bash scripting and Terraform infrastructure-as-code
- SaaS security risks and OAuth governance knowledge
- Cloud platform security configuration (AWS, GCP, or Azure)
- Clear written communication and cross-functional collaboration
- AI security and governance understanding
Benefits
- In-person collaboration culture with Anchor Days (Monday, Tuesday, Thursday)
- Work at a company trusted by millions including Toyota, Figma, and OpenAI
- Opportunity to influence security standards in the AI era
- Technical role with direct impact on company infrastructure
Opens the official application on the employer’s site. No login required.