Senior Security Engineer, Enterprise Security

Discord Discord · Consumer · San Francisco, CA · Security Engineering

Senior Enterprise Security Engineer responsible for implementing and maintaining Discord’s enterprise environment with a focus on security and privacy. This role involves designing and implementing security measures, managing security tools, establishing security standards, developing security awareness training, and enforcing IT and security policies. The engineer will build secure environments using 'secure by design' and 'zero-trust' principles.

What you'd actually do

  1. Design and implement security measures to protect company data from unauthorized access, disclosure, and misuse.
  2. Partner closely with the Detection & Response team to maintain full visibility into enterprise access, networks, and devices.
  3. Deploy and manage security tools across Discord's corporate infrastructure.
  4. Establish security standards that provide strong protection while enabling smooth workflows.
  5. Develop and deliver security awareness training for employees.

Skills

Required

  • 3+ years of experience in an Enterprise Security role as a senior individual contributor or lead.
  • 3+ years of experience programming in at least one general purpose programming language (e.g., Python, Go, Rust).
  • Experience securing, monitoring, and managing Identity and Access Management systems (we use Okta, Kolide, Teleport, and Cloudflare Access).
  • Deep understanding of data security in enterprise environments.
  • Experience working in “zero-trust” network architecture environments.
  • Experience deploying and managing Mobile Device Management, Endpoint Detection and Response, and device trust tooling.
  • Knowledge and practical application of IT security best practices.

Nice to have

  • Experience working with SIEMs (we use Panther)
  • Hands on experience with Google Cloud.
  • Hands on experience with Cloudflare.
  • Hands-on experience managing a primarily macOS and ChromeOS environment with a smaller Windows footprint. We used Jamf & Intune for our endpoint management and Crowdstrike & Jamf for endpoint detections and response (EDR).

What the JD emphasized

  • security
  • privacy
  • data protection
  • zero-trust