S

Staff Enterprise Security Engineer

Job Description - Staff Enterprise Security Engineer

Employee Applicant Privacy Notice


Who we are:



Shape a brighter financial future with us.


Together with our members, we’re changing the way people think about and interact with personal finance.


We’re a next-generation financial services company and national bank using innovative, mobile-first technology to help our millions of members reach their goals. The industry is going through an unprecedented transformation, and we’re at the forefront. We’re proud to come to work every day knowing that what we do has a direct impact on people’s lives, with our core values guiding us every step of the way. Join us to invest in yourself, your career, and the financial world.



The role


As a Staff Enterprise Security Engineer at SoFi, you will serve as the subject matter expert for Data Loss Prevention (DLP) while driving engineering across broader enterprise security domains—including email security, endpoint protection, network defense, and phishing simulation. Sitting within the Enterprise Security team, this role balances technical focus on data protection with hands-on architecture, operation, and automation of foundational IT and corporate security controls.


We seek security leaders who combine technical mastery in tool administration (e.g., Zscaler, Proofpoint, Sentra, CrowdStrike) with systems thinking to mitigate risk across diverse threat vectors. In this role, you will define risk mitigation strategies and build clear technical roadmaps—accelerating security delivery while maintaining safety, correctness, and data protection.


 


What you’ll do



  • Lead end-to-end delivery and architecture for enterprise security capabilities: enterprise zero-trust networks, endpoint security, and SaaS posture management.

  • Frame complex security challenges: clarify security requirements, threat models, failure modes, and success metrics while proposing clear architectural options and tradeoffs.

  • Design for scale and resilience: establish secure baseline configurations, automate security guardrails, and reduce systemic attack surfaces with minimal enterprise friction.

  • Collaborate with internal security teams to establish and maintain threat signaling to ensure that proper visibility and alerting is achieved across tooling.

  • Raise cybersecurity standards through design reviews, active mentorship of team members, and establishing enterprise security patterns and best practices.

  • Collaborate cross-functionally with IT, Infrastructure, Risk/Compliance, and Engineering teams to deliver secure member outcomes.


 


What you’ll need



  • Education & Minimum Experience Requirements: Bachelor’s Degree + 3–4 Years of Experience OR Master’s Degree + 2–3 Years of Experience in Cybersecurity, Computer Science, Information Technology, or a related field.

  • 3+ years of experience in cybersecurity with a focus on Data Loss Prevention (DLP).

  • Hands-on experience with cloud-based DLP solutions (e.g., Zscaler, Proofpoint, Sentra).

  • Experience administering and operating core enterprise security tools (EDR, email security gateways, and web proxies).

  • Experience with Infrastructure as Code (IaC) solutions such as Terraform, along with scripting languages (Python, Go, or PowerShell) for tooling and automation.

  • Experience with incident response, log analysis, threat detection, and digital forensics.

  • Experience collaborating with multiple lines of defense for issue analysis, evidence gathering and remediation.

  • Proven problem-solving skills with the ability to work independently and collaboratively in a fast-paced environment.

  • Solid written and verbal communication skills for technical documentation, cross-functional collaboration, and threat modeling.


 


Nice to have



  • Professional security certifications (e.g., CISSP, CCSP, CISM, or AWS Certified Security Specialty).

  • Experience with CI/CD security pipeline automation, SIEM detections, and SOAR playbooks.

  • Knowledge of financial compliance frameworks and regulatory environments (PCI-DSS, SOC1/SOC2, SOX, GLBA, NIST CSF, ISO 27001).

Original job Staff Enterprise Security Engineer posted on GrabJobs ©. To flag any issues with this job please use the Report Job button on GrabJobs.
Share Job
Share Job

Similar Staff Enterprise Security Engineer Jobs in the US

GrabJobs is the no1 job portal in the US, connecting you to thousands of jobs fast! Find the best jobs in the US, apply in 1 click and get a job today!

Mobile Apps

Copyright © 2026 Grabjobs Pte.Ltd. All Rights Reserved.