Senior Enterprise Security Engineer

Abridge Abridge · Vertical AI · San Francisco, CA · Builder

Senior Enterprise Security Engineer to build and operate enterprise security controls protecting identities, endpoints, and corporate infrastructure at an AI-in-healthcare company. Focuses on IAM, endpoint security, SaaS security, automation, and network security, with a specific responsibility to support the security of corporate AI adoption.

What you'd actually do

  1. Implement and Operate Identity and Access Management: Design, deploy, and manage IAM and Zero Trust access controls—including SSO, MFA, authentication protocols, access lifecycle management, and identity governance—across cloud and SaaS environments. Ensure every identity is accounted for and every access decision is defensible.
  2. Secure the Endpoint Fleet: Engineer and operate endpoint detection and response (EDR), device management (MDM), and endpoint compliance tooling, ensuring every device connecting to Abridge systems meets security standards across macOS, Windows, and Linux.
  3. Drive SaaS and Third-Party Security: Build and operate programs for SaaS security posture management, shadow IT discovery, and third-party risk assessment to maintain control as the SaaS footprint grows.
  4. Automate and Scale: Build production-grade automation for access reviews, onboarding/offboarding workflows, policy enforcement, and security operations—turning manual processes into reliable, code-driven systems.
  5. Engineer Corporate Network Security: Design and maintain secure corporate network architectures, including VPN, ZTNA, network segmentation, and Wi-Fi security, ensuring robust protection for both on-premises and remote work environments.

Skills

Required

  • 7+ years in enterprise security, identity security, corporate security, or adjacent security engineering domains
  • hands-on implementation and operational ownership
  • Strong hands-on depth in identity and access management, including SSO, OAuth/OIDC, SCIM, authentication protocols, access lifecycle management, and identity governance
  • Experience designing and operating endpoint security programs at scale, including EDR, MDM, device compliance, and fleet management across macOS, Windows, and Linux
  • Deep familiarity with securing cloud-native environments (GCP or AWS) and managing the security posture of a large, evolving SaaS estate
  • Strong scripting and automation skills (Python, Go, or similar)
  • Demonstrated ability to partner with IT, HR, Legal, and Compliance
  • Strong communicator

Nice to have

  • infrastructure-as-code is a plus

What the JD emphasized

  • building out security from the ground up
  • first engineers on the Abridge Security team
  • greenfield opportunity to architect the way forward
  • building 0 → 1