SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Anthropic is seeking a Senior Security Engineer to drive corporate security initiatives protecting the company's infrastructure, devices, and data. This is a hands-on individual contributor role focused on endpoint hardening, zero-trust access controls, and identity governance at scale.
Key responsibilities include:
• Drive endpoint hardening across macOS, Windows, Linux, and ChromeOS through device management configuration, application allowlisting, patching, and browser policy—favoring versioned, reviewable, repeatable controls over ad-hoc configurations.
• Extend device-trust and zero-trust access controls to ensure company systems are accessed only from managed devices bound to the correct user with appropriate access levels, treating employee experience as a core design constraint.
• Build automation and integrations enabling the team to scale with company growth: joiner/mover/leaver workflows, exception and expiry management, posture-driven policy, and AI-assisted triage of review queues.
• Lead SaaS and identity governance, including third-party OAuth grants, delegated admin access, chat-platform apps, browser extensions, and software security reviews, converting recurring decisions into policy and tooling.
• Partner across Security, IT, and Engineering on telemetry, detections, and shared standards, helping define secure practices for AI-agent-driven operations at scale.
Required qualifications:
• Hands-on endpoint security engineering experience with MDM, declarative device management, application allowlisting, binary authorization, system extensions, or equivalent platform-specific expertise.
• Proficiency in Python and scripting languages; ability to architect and build integrations, automation, internal tooling, and detections as needed.
• Working knowledge of identity and access management, SaaS security, and zero-trust architecture.
• Strong threat-modeling judgment to identify high-impact problems, scope them effectively, define success criteria, and drive completion.
Preferred qualifications include experience defining security program scope and tooling, shipping enforcement changes to large user populations, multi-platform endpoint expertise, mobile security in managed and BYOD contexts, modern SaaS governance, infrastructure-as-code practices, LLM-assisted security tooling, and a track record of driving adoption through influence and partnership.