Назад
Company hidden
17 часов назад

Security Automation Engineer (Python/PowerShell)

140 000 - 160 000$
Формат работы
hybrid
Тип работы
fulltime
Английский
b2
Страна
UK/US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Automation Engineer (Python/PowerShell): Automating security, compliance, identity, endpoint, and IT operations across Entra ID, Intune, macOS, and Windows with an accent on evidence collection, offboarding, monitoring, and system reconciliation. Focus on building production-grade services and LLM agents, hardening endpoints, remediating vulnerabilities, and managing SOC 2 Type II controls.

Location: Seattle, WA; based in the Seattle office 4 days per week

Salary: $140,000–$160,000 per year, with potential bonuses and other incentives.

Company

hirify.global is a connected commerce platform that provides brands with market insights, revenue metrics, behavioral analysis, and autonomous functionality.

What you will do

  • Own most of the SOC 2 Type II controls in Vanta and coordinate control ownership across Engineering, HR, Finance, and Legal.
  • Drive endpoint vulnerability remediation, conduct access reviews and risk assessments, coordinate penetration testing, and manage identity and endpoint security incidents.
  • Extend evidence collection, employee offboarding, certificate and secret monitoring, asset reconciliation, ticket triage, and documentation retrieval through automation.
  • Build reliable production services with scoped service identities, idempotent execution, structured logging, and failure alerting.
  • Administer Microsoft Entra ID, including conditional access, authentication methods, groups, roles, SAML/SCIM integrations, Graph API, and application registrations.
  • Administer Microsoft Intune across macOS and Windows, strengthen endpoint security, and federate applications so account disabling revokes access consistently.

Requirements

  • Production-quality Python or PowerShell development skills and the ability to read the other language.
  • Deep hands-on identity administration experience with Entra ID or Azure AD, including conditional access, authentication methods, SAML/SCIM, and Graph API.
  • Fleet-scale endpoint management experience with Intune or Jamf, including profiles, compliance policies, application packaging, and enrollment.
  • Hands-on ownership of SOC 2, ISO 27001, or a similar compliance framework.
  • Experience building dependable scheduled jobs, API integrations, least-privilege service identities, and operational alerting.
  • Ability to work from the Seattle office 4 days per week; parts of the role are physical and cannot be performed remotely. A relevant bachelor's degree or equivalent education, certifications, and experience is required.

Nice to have

  • Production experience with LLM agents and tool use, including Claude Code, MCP servers, or an agent framework.
  • macOS security expertise, including endpoint detection, privilege management, and unified logging.
  • Hands-on networking experience with VLANs, dual-WAN failover, Meraki, or UniFi.
  • Experience automating ITSM platforms through their APIs.
  • Incident investigation experience involving sign-in forensics, audit logs, mailbox rules, or OAuth grant abuse.

Culture & Benefits

  • Medical, dental, and vision coverage with HSA company matching and FSA options.
  • Fertility benefits, company-paid life insurance, and paid parental leave for all parents.
  • 401(k) with company match.
  • 20 days of PTO plus 9 company holidays.
  • Summer Fridays, regular in-office social events, catered lunches, and a stocked kitchen.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →