SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior Security Engineer (Remote, EU/CET)

Maze - Remote - Remote - posted 2026-09-23

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Maze is a Series B user research platform helping companies build better products faster by making user insights accessible at the speed of product development. The platform serves 100,000+ brands across 4,000 companies including Uber, Amazon, Atlassian, and Anthropic. You will join as Senior Security Engineer, owning two closely connected areas: the corporate IT foundation that every Maze employee relies on, and the security controls that keep the cloud, code, and SaaS environment secure and auditable. Identity, devices, and access sit at the intersection of IT and security—you'll own that space end-to-end. Your role is deliberately structured as an engineering role: you own the budget and tooling to automate the IT layer, keeping the helpdesk scope small so most of your time goes to corporate security engineering. Key responsibilities include: - Own identity and SSO in Google Workspace (groups, SCIM provisioning, MFA, access policies) - Run the macOS fleet through Iru (enrollment, configuration, patching, compliance) - Automate joiner, mover, and leaver flows from Rippling for day-one provisioning and rapid offboarding - Own SaaS licensing and app provisioning with lightweight internal support through automation - Own security controls across AWS, GitHub, Kubernetes, and SaaS environment (RBAC, IAM hygiene, cloud guardrails, network boundaries, secrets management) - Run vulnerability management end-to-end (Intruder, Socket, pentests through remediation with clear owners and SLAs) - Run regular access reviews and generate audit evidence through Vanta - Bring security perspective to incidents and post-incident reviews - Use AI-assisted and agentic workflows to reduce manual work You will report to the Senior Manager, Platform Engineering and work closely with teams across Maze. You will NOT own application code review, threat modeling, sales questionnaires, or customer-facing security work. Tech stack: Google Workspace, Rippling, Iru (macOS), AWS, GCP, Kubernetes, Terraform, Docker, Vanta, Intruder, Socket, Datadog Security, Cloudflare Zero Trust, GitHub Actions, TypeScript, Node.js, React. Maze is a global remote company with <150 team members, backed by Felicis, Emergence, and Amplify. The company is disrupting the user research market and has achieved product-market fit with 6.5M questions answered last fiscal year supporting 25K decisions. REQUIREMENTS: - Strong software, infrastructure, or security engineering background; comfortable using code and infrastructure-as-code to automate repetitive work - Owned identity, MDM, and joiner/leaver automation at a remote company; can speak to automation impact - Secured a modern AWS or GCP environment; can explain IAM trade-offs - Run vulnerability management or access reviews in an environment with external audits - Experience with SOC 2 or ISO 27001 controls; know how to turn a control into an automated check - Care about employee experience; comfortable saying no when needed while providing context and better paths forward - Excited about AI-assisted development; actively use modern AI tools in your work Note: You don't need experience with every technology in the stack. Strong fundamentals and an engineering approach to both IT and security are prioritized.

Similar roles