This role will evolve as priorities change, but the outcomes below reflect what success typically looks like in the first six months.
A successful Corporate Systems Security Engineer will:
•
Become a trusted technical owner for key components of Onebrief’s corporate security stack, with clear understanding of their architecture, configuration, integrations, and security posture.
•
Reduce configuration drift across corporate endpoints, SaaS applications, identity systems, and security tooling through measurable baselines and automated enforcement.
•
Improve the reliability and coverage of security telemetry by integrating critical corporate systems with centralized monitoring and addressing meaningful visibility gaps.
•
Replace recurring manual security and compliance processes with automation that improves control consistency and produces reliable, reusable evidence.
•
Identify and remediate systemic security weaknesses rather than treating individual findings as isolated configuration issues.
•
Improve Onebrief’s ability to demonstrate that corporate security controls are continuously operating as intended, reducing the effort required to prepare for audits and assessments.
Tools, Systems & Technologies
The specific technology stack will continue to evolve. Relevant areas include:
Endpoint & Detection: EDR (crowdstrike), vulnerability management, SIEM (splunk), endpoint telemetry
Device Management: MDM (Workspace One), application deployment, configuration profiles, endpoint baselines
Identity & Access: Identity providers (Okta), SSO, MFA, lifecycle management, conditional access
Network & Zero Trust: Zero Trust access platforms (Zscaler), secure web gateways, browser security, network security controls
SaaS Security: Enterprise SaaS administration, configuration management, logging, access controls, API integrations
Automation: REST APIs, webhooks, no-code/low-code security automation, infrastructure-as-code, configuration management
Security & Compliance: CMMC 2.0, NIST 800-53, security baselines, continuous control validation, audit evidence
Notice to Third Party Recruitment Agencies
Please note that Onebrief does not accept unsolicited resumes from recruiters or employment agencies. In the absence of an executed Recruitment Services Agreement, there will be no obligation to any referral compensation or recruiter fee. In the event a recruiter or agency submits a resume or candidate without an agreement Onebrief explicitly reserves the right to pursue and hire those candidate(s) without any financial obligation to the recruiter or agency. Any unsolicited resumes, including those submitted to hiring managers, shall be deemed the property of Onebrief.