SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
TRM Labs is seeking an Enterprise Security Engineer to design, build, and scale security infrastructure across the organization's corporate environment. You will work at the intersection of IT and security engineering, building secure-by-default systems and automating controls to enable the company to move fast without taking unnecessary risk.
Key responsibilities include:
- Engineer secure-by-default endpoint baselines for macOS and Windows, including encryption, firewall, application controls, device compliance, and configuration standards using tools like Intune.
- Automate and scale identity and access controls in Entra ID and Google Workspace, including SSO, SCIM, conditional access, privileged access workflows, access reviews, and joiner/mover/leaver automation.
- Codify security controls as infrastructure-as-code (Terraform, configuration profiles, policy-as-code) with peer review, change history, testing, and rollback capabilities.
- Build and maintain automations and integrations using n8n, SlackOps, APIs, and scripts to reduce manual access grants and eliminate repetitive workflows.
- Apply AI tooling (Claude Code, agentic workflows, MCP integrations, LLM-backed automations) to accelerate engineering work and help secure enterprise AI adoption across the company.
- Harden SaaS and collaboration platforms by reducing unmanaged apps and enforcing strong authentication, least privilege, sharing controls, and data protection guardrails.
- Improve visibility and detection by ensuring comprehensive logging from endpoints, identity systems, and key SaaS applications (Defender/Sentinel and vendor logs).
- Drive vulnerability and configuration drift reduction through measurable targets, remediation pipelines, and actionable reporting for leadership.
- Partner with compliance and risk teams to operationalize requirements without creating brittle, manual processes.
- Participate in on-call rotation (approximately every 3 weeks) for identity, endpoint security, and critical enterprise systems.
Required qualifications:
- Demonstrated experience engineering and scaling endpoint security controls for macOS and Windows.
- Strong IAM foundation with hands-on experience in Entra ID (conditional access, SSO, access governance) and Google Workspace/Microsoft 365 administration.
- Proven ability to automate operational workflows using Bash, PowerShell, Python, or similar languages.
- Fluency with AI-assisted engineering tools; you actively use coding agents and LLMs to build, review, and investigate faster.
- Strong troubleshooting and systems thinking across identity, endpoint, network controls, and SaaS integrations.
- Ability to balance security and usability using risk-based approaches and communicate tradeoffs to technical and non-technical stakeholders.
Desirable qualifications:
- Working knowledge of Infrastructure-as-Code or configuration-as-code (Terraform preferred).
- Security incident response and countermeasures experience.
- Security Operations Center experience.
- Experience securing or governing enterprise AI adoption, including AI usage policies, DLP for AI tools, and agent/MCP access scoping.
TRM Labs operates at high velocity with a mission-driven culture focused on building a safer world. The role requires comfort with ambiguity, high ownership, adaptability, and the ability to thrive in a fast-paced, intense environment where priorities evolve quickly and complex problems are solved collaboratively.