SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Cape is America's privacy-first mobile carrier founded in 2022, on a mission to make privacy a fundamental right rather than a luxury. The company has built its own network infrastructure from scratch to deliver privacy and security features unavailable from legacy carriers, serving consumers, businesses, and government agencies. Cape closed Series C funding in March 2026 and is scaling rapidly.
We seek an experienced Security Engineer to join our corporate security team as a strategic partner reducing risk across our corporate environment. You will design, implement, and maintain security controls covering employee-facing systems, internal infrastructure, and third-party risk while ensuring compliance with regulatory standards.
Key responsibilities include:
- Design and manage security controls and policies across corporate IT systems, protecting employee, customer, and business data confidentiality, integrity, and availability.
- Own identity and access management (IAM/SSO/MFA), endpoint security (EDR, MDM), and email/network security (phishing defense, DLP, firewalls, VPN).
- Conduct comprehensive security assessments of corporate systems and vendors to identify vulnerabilities and recommend mitigation strategies.
- Establish governance and monitoring for emerging employee tooling, managing data-handling, access, and third-party risks.
- Own the vulnerability management lifecycle: scanning, risk-based prioritization, remediation, patch SLAs, and closure tracking.
- Lead security awareness and phishing simulation programs to build organizational security culture.
- Assess and manage third-party/vendor security risk through questionnaires, contract reviews, and ongoing monitoring.
- Assist with penetration tests, red team exercises, and internal audits, ensuring effective remediation.
- Investigate security incidents and insider-threat concerns in partnership with HR, Legal, and IT.
- Mentor engineers and partners on secure practices, fostering continuous improvement.
- Collaborate with stakeholders to integrate security requirements into IT projects and business initiatives.
- Stay informed on emerging threats, vulnerabilities, and compliance mandates affecting corporate environments.
Preferred qualifications include a Bachelor's degree in Computer Science, Information Security, or related field (or equivalent experience); minimum 5 years in information security with meaningful corporate/IT security experience (identity, endpoint, network, GRC); deep understanding of enterprise identity providers, endpoint/EDR tooling, MDM platforms, and email security; knowledge of SOC 2 and ISO 27001; familiarity with government frameworks (FedRAMP, FISMA, NIST SP 800, CJIS); understanding of consumer privacy regulations (GDPR, CCPA); exposure to secure software development lifecycle practices; proficiency in scripting/automation (Python, shell); and knowledge of vendor risk management and network security.