Enterprise Security Engineer

OpenAI OpenAI · AI Frontier · Seattle, WA · IT

This role focuses on implementing and managing the security of internal information systems and infrastructure within OpenAI's IT team. Responsibilities include developing security measures, monitoring systems for threats, enforcing policies, hardening infrastructure (AzureAD, GSuite, Github, SaaS), advising employees on security best practices, devising sharing controls (DLP), employing "secure by default" and "zero trust" models, remediating vulnerabilities, and using AI-driven models for security tasks like detection, response, and data classification. The role also involves contributing to security roadmaps and educating employees.

What you'd actually do

  1. Develop and implement security measures to protect our company's information assets against unauthorized access, disclosure, or misuse.
  2. Monitor internal and external systems for security threats and respond to alerts.
  3. Contribute to and enforce our company's IT and Security policies and procedures.
  4. Work closely with our IT department to harden our infrastructure using best practices in AzureAD, GSuite, Github, and other SaaS tooling.
  5. Devise novel sharing controls and associated monitoring to protect company data, including intelligent groups management, Data Loss Prevention (DLP) and other security controls as appropriate.

Skills

Required

  • Experience in protecting and managing macOS fleets.
  • Experience deploying and managing endpoint security solutions (e.g. management frameworks, EDR tools).
  • Experience with public cloud service providers (e.g. Amazon AWS, Microsoft Azure).
  • Experience with identity and access management frameworks and protocols, including SAML, OAUTH, and SCIM.
  • Experience with e-mail security protocols (e.g. SPF, DKIM, DMARC) and controls.
  • Intermediate or advanced proficiency with a scripting language (e.g. Python, Bash, or similar).
  • Knowledge of modern adversary tactics, techniques, and procedures.
  • Ability to empathize and collaborate with colleagues, independently manage and run projects, and prioritize efforts for risk reduction.

What the JD emphasized

  • security of OpenAI's internal information systems’ infrastructure and processes
  • security threats
  • security policies
  • security controls
  • data security
  • security posture
  • security
  • security