514,690open jobs
17,495companies
76,717added this week
Browse all
Salary
$122k – $280k per year (Estimated)
Location
Remote/Hybrid (San Francisco, New York, United States, Toronto, Canada)
Seniority
Staff
Employment
Full-Time
Overview
Company
Impact
Profile match
Beacon Software is a dynamic investment firm dedicated to partnering with successful software businesses, preserving their legacy, and amplifying their growth potential. Unlike traditional private equity, Beacon commits to holding and nurturing acquired companies indefinitely, providing a stable environment that encourages innovation and expansion. Their flexible approach allows business owners to retain control or transition seamlessly as they enter new chapters. Beacon Software specializes in both SMB and enterprise software, offering a comprehensive platform that includes state-of-the-art technology, shared services, and access to top Silicon Valley talent. Their services encompass applied AI, marketing strategies, engineering support, and fintech solutions to empower companies in optimizing their operations and enhancing customer acquisition. With a focus on collaboration, Beacon fosters a network where knowledge and expertise are shared across diverse industries. Led by experienced entrepreneurs, Beacon Software is poised to unlock new opportunities for its partners, ensuring sustainable growth in a competitive market landscape.

Staff/Lead Enterprise Security Engineer

The role

You will be Beacon's first dedicated security engineer. You will set the strategy for enterprise security and build the program from the ground up.

At its core, the job is preventing, detecting, and responding to threats across Beacon's corporate and cloud environments and its portfolio companies, and owning the security stack that makes that possible. You will develop, maintain, and scale that stack across a complex multi-cloud, multi-SaaS environment, shape its architecture, and own the technical roadmap as Beacon grows.

We run lean, so automation is the point, not a nice-to-have. This role is proactive and engineering-driven, not alert-babysitting. You automate the repetitive work and keep tightening the playbooks and levers as new patterns and information emerge, so the systems get sharper over time instead of just louder. You experiment, iterate, and build creatively.

You will report to the VP of IT and Integration and work with everyone from Beacon engineering to portfolio company team members.

What Enterprise Security owns

This is the full remit of Enterprise Security at Beacon, and it is deliberately broad. It is more than one person does at once, and we know that. As the first member of the team, you start the program: you stand up the essentials, build the highest-leverage pieces first, and shape the rest into the roadmap. You are not expected to do all of it at once.

  • Own prevention, detection, and response across corporate and cloud: tune the detection stack, write detection logic, own triage, and get telemetry into the SIEM

  • Own the endpoint security stack (EDR, DLP, secure browser, hardening) and the technical roadmap for security tooling.

  • Lead incident response: own readiness (playbooks and tabletops) and drive the response when something fires, pulling in IT, engineering, and portfolio teams as needed.

  • Set and confirm the security standards for identity and access (MFA, SSO, SCIM lifecycle, least-privilege), and build the monitoring and reporting on top.

  • Run security across the portfolio: baseline audits at onboarding, ongoing monitoring, and SaaS risk at scale (SSPM, OAuth, shadow IT, drift).

  • Own the email security and phishing awareness program.

  • Run vendor security review for new tools.

What we are looking for

This role is built for a security manager or lead who has done this at a bigger company and wants to build it again from scratch, on their own terms: automation-first and AI-forward, at a company moving fast enough to keep it interesting. You trade a big team and inherited playbooks for a blank page and real ownership. We are also open to an exceptional senior IC ready to own a broad program end to end. In both cases:

  • Highly independent. You set priorities against a broad surface and a fast M&A cadence without being told what matters.

  • Confident and credible with people outside your team. You can represent security to portfolio founders and engineering leads and bring them along.

  • Deep, hands-on security engineering across endpoint, detection and response, identity, cloud, SaaS, and email, and the ability to build tooling and automation from scratch.

  • A high bar for the craft: threat modeling, secure design, detection quality, and IR rigor.

  • Comfortable in greenfield and ambiguity. You would rather define a program than inherit one.

Our Values at Beacon Software

  • Humility: We acknowledge that the path to getting to the right answer involves being wrong along the way. We have strong beliefs which are weakly held. We actively seek new ideas and believe we can learn from anyone at any time.

  • Honesty: We are truth seeking in our approach to business problems. Business is a repeat game and we believe that human relationships generate alpha. We understand that trust is earned over a lifetime and can be lost in an instant.

  • Hunger: We play to win. We hold ourselves to high standards and will not be outworked. We take pride in having a deep sense of responsibility to ourselves, each other, our partners, and our customers. We believe to whom much is given much is expected.

  • Horizon: We seek to build a generational software company. This will take decades. We manage our expectations and those of our partners to take advantage of the 8th wonder of the world - compounding growth.

How We Use AI in Our Hiring Process: To ensure transparency, we want candidates to know that Beacon Software uses Artificial Intelligence and AI-enabled tools to assist with screening, reviewing, organizing and highlighting profiles and applications that match the key requirements for each role.

AI does not make hiring decisions: Every application is reviewed by a member of our team, and all decisions throughout the process are made by humans. We use AI to support efficiency and consistency, not to replace human judgment. We are committed to a fair, thoughtful, and equitable experience for every candidate.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
514,690 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
San Francisco
$114k – $247k per year (Estimated) • In office • Full-Time • 15+ years exp • Bachelor's Degree • Alpharetta
DevOps
GCP
Azure
CI/CD
AWS
Cybersecurity
ISO 27001
NIST CSF
PCI DSS
GDPR
HIPAA
Least Privilege
Threat Modeling
Apply
$27k – $63k per year (Estimated) • In office • 5+ years exp • Bengaluru
Python
Go
JavaScript
TypeScript
SQL
Node JS
Databases
Apache Kafka
Frontend
Angular
React.js
DevOps
Terraform
CI/CD
AWS
Docker
Kubernetes
Cybersecurity
Least Privilege
Apply
$23k – $56k per year (Estimated) • In office • Full-Time • 15+ years exp • Chennai • Pune
SQL
AI/ML
Embeddings
DevOps
Terraform
GCP
Cilium
Azure
CI/CD
GitOps
ArgoCD
AWS
Docker
Kubernetes
GitHub
Cybersecurity
HashiCorp Vault
Threat Modeling
Fortify
Sonatype Nexus IQ
Kyverno
Apply
$66k – $170k per year (Estimated) • Remote • Full-Time • 3+ years exp • Australia
DevOps
Azure
Incident Management
IAM
Cybersecurity
Okta
CyberArk
Least Privilege
Apply
$46k – $72k per year • In office • Full-Time • Tokyo
Python
JavaScript
TypeScript
SQL
Node JS
Databases
Redis
AI/ML
LLM
Frontend
React.js
DevOps
Vercel
CI/CD
AWS
Kubernetes
AWS Lambda
Amazon S3
IAM
Amazon ECS
Cybersecurity
ISO 27001
Threat Modeling
Apply
Product Lead 7 days ago
$124k – $216k per year (Estimated) • In office • Full-Time • 4+ years exp • Master's Degree • Toronto
Management
Stripe
Apply
Product Lead 7 days ago
$178k – $311k per year (Estimated) • In office • Full-Time • 4+ years exp • Master's Degree • San Francisco
Management
Stripe
Apply
Product Lead 7 days ago
$169k – $307k per year (Estimated) • In office • Full-Time • 4+ years exp • Master's Degree • New York
Management
Stripe
Apply
$150k – $285k per year (Estimated) • Remote • Full-Time
Apply
$133k – $314k per year (Estimated) • In office • Full-Time • San Francisco
AI/ML
Claude
LLM
Management
Stripe
Apply
$106k – $130k per year • Remote/Hybrid • Full-Time • 5+ years exp • Bachelor's Degree • San Francisco • Chicago • Scottsdale
DevOps
GCP
Azure
CI/CD
AWS
Harbor
Platform Engineering
Incident Management
Apply
$186k – $345k per year (Estimated) • In office • Full-Time • 12+ years exp • Master's Degree • San Francisco
DevOps
Incident Management
Apply
$160k – $236k per year • Equity • Remote/Hybrid • Full-Time • 2+ years exp • Chicago • Austin • San Francisco
Apply
$63k – $122k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Chicago • San Francisco • Dallas • Boston • Philadelphia
Python
JavaScript
Java
TypeScript
SQL
C++
AI/ML
Prompt Engineering
Function Calling
AI Agents
LLM
Anthropic
Agentic Workflows
Tool Use
Frontend
Angular
React.js
DevOps
GCP
Azure
AWS
GitHub
Cybersecurity
Threat Modeling
Apply
In office • Full-Time • 12+ years exp • Associate's Degree • Atlanta • Milwaukee • Dallas • Columbus • Kirkland
Python
C++
AI/ML
Synthetic Data
Physical AI
Robotics
ROS
Gazebo
Isaac Sim
SLAM
Sensor Fusion
Motion Planning
Imitation Learning
Digital Twin
IoT
MQTT
OPC UA
Apply
See all jobs
This is one of many
514,690 more open roles from verified company boards, updated every day.