412,150open jobs
14,278companies
71,227added this week
Browse all
Salary
$265k – $300k per year
Location
In office (San Francisco)
Seniority
Staff · 10+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Envoy makes workplace software for visitor sign-in, desk and room booking and deliveries. It began with an iPad kiosk that replaced the paper visitor book and grew into a hybrid-office platform used to manage who is in a building on any day. Thousands of companies use it across their offices worldwide.

Envoy protects the places the world relies on most by unifying people, spaces, and communications in one secure, integrated workplace management platform and ecosystem. More than 16,000 workplaces around the world trust Envoy to run secure, compliant, and connected operations across every location.

From manufacturing sites and data centers to life sciences labs, healthcare facilities, and corporate headquarters, Envoy unifies visitor management, risk assessment, mailroom management, digital signage software, resource booking, and emergency management into one integrated platform.

With deep integrations across access control, identity, compliance screening, and collaboration tools-including LenelS2, Brivo, Genetec, Honeywell, Cisco Meraki, Okta, Microsoft Azure, Microsoft Teams, Slack, ServiceNow, DocuSign, Avigilon Alta, and Descartes Visual Compliance-Envoy helps organizations reduce risk, stay audit-ready, and operate with clarity at scale.

Learn more at envoy.com

This is an L5 opportunity. Successful candidates typically come from staff or principal-level roles and are recognized for establishing technical direction, leading large-scale initiatives, and shaping engineering strategy across organizations.

About the role

We are building a proactive, engineering-led security function focused on threat detection, visibility, and automation.

We are looking for a Staff Security Engineer to own and evolve our Security Operations and Threat Detection capabilities. This role is responsible for defining how we detect, monitor, and respond to threats across our infrastructure, applications, and endpoints.

Today, much of our security posture is reactive. This role will lead the shift toward a system where detection is reliable, measurable, and engineered, not improvised.

You will work across Infrastructure, Platform, and Workplace teams to ensure we have full visibility into our environment and can confidently answer: “If we had a security incident, how quickly would we know?”

This on-site position requires 4 days a week (Monday through Thursday) in our San Francisco HQ office.

You will

  • Own the design and evolution of our threat detection and security operations capability

  • Define detection strategy across cloud infrastructure, applications, and endpoints

  • Establish and improve our SIEM and monitoring architecture, including signal quality, coverage, and scalability

  • Design and implement detection-as-code practices, setting standards for how detection logic is built, tested, and maintained

  • Drive visibility across all critical assets, ensuring endpoints, services, and identities are consistently monitored

  • Take ownership of endpoint security monitoring (e.g., SentinelOne), including integration into centralized detection workflows

  • Lead the design and rollout of automated security controls, including secrets rotation for high-risk systems

  • Define alerting strategy, including severity models, escalation paths, and on-call expectations

  • Lead investigations into complex or ambiguous security signals, setting the standard for root cause analysis and response

  • Partner with engineering teams to improve instrumentation and ensure systems emit high-quality security signals

  • Define and track key metrics such as Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR), and drive measurable improvements

  • Mentor and guide other engineers, raising the overall capability of the team in detection and security operations

You have

  • 10+ years of experience in Security Engineering, SRE, or Infrastructure Engineering with a strong security focus

  • Proven experience designing or significantly improving security monitoring, detection, or SIEM systems

  • Strong understanding of cloud environments (ideally AWS), including IAM, networking, and logging at scale

  • Experience working with endpoint detection and response tools such as SentinelOne or similar

  • Deep experience working with logs, events, and telemetry to build meaningful, high-signal detections

  • Strong programming or scripting skills (Python, Go, or similar), with a focus on automation and system design

  • A strong understanding of attacker behavior and the ability to translate threats into detection strategies

  • Experience defining alerting models and reducing noise while maintaining strong coverage

  • Ability to operate in ambiguous environments and define structure where none exists

  • Strong cross-functional communication skills, with the ability to influence engineering and leadership

  • A pragmatic, outcome-oriented mindset focused on reducing real risk and improving operational effectiveness

By applying for this position, you acknowledge that you have fully read and understand the job requirements and received the Envoy Privacy Notice for applicants, which is linked here. Completing this application requires you to provide personal data, such as your name and contact information, which is mandatory for Envoy to process your application. Envoy is an EEO Employer and does not discriminate on the basis of any characteristic protected by local, state or federal law.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
412,150 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
San Francisco
In office • 8+ years exp • Bachelor's Degree
Python
Go
JavaScript
TypeScript
AI/ML
Copilot
Claude
ChatGPT
Prompt Engineering
RAG
DevOps
GCP
Azure
CI/CD
AWS
GitHub
Apply
DevOps Engineer 1 hour ago
$17k – $49k per year (Estimated) • In office • Full-Time • 3+ years exp • Chennai
Python
Bash
Databases
Apache Kafka
Kafka
DevOps
Rest API
CI/CD
AWS
Apply
In office • 7+ years exp • Bachelor's Degree
Databases
Databricks
AI/ML
Model Context Protocol
AI Agents
LLM
LLM Guardrails
DevOps
Azure
AWS
Platform Engineering
Cybersecurity
Crowdstrike
Wiz
Apply
$27k – $63k per year (Estimated) • In office • Full-Time • Ufa
Python
JavaScript
TypeScript
SQL
Node JS
Python
Flask
FastAPI
Django
Databases
MySQL
PostgreSQL
Weaviate
Chroma
pgvector
Pinecone
Qdrant
AI/ML
ChatGPT
Fine-tuning
Embeddings
Prompt Engineering
Function Calling
AI Agents
LLM
RAG
Reranking
Hybrid Search
OpenAI
Anthropic
Human-in-the-Loop
Structured Outputs
LLM Guardrails
Tool Use
DevOps
Rest API
Azure
CI/CD
Git
Docker
Kubernetes
Apply
$25k – $64k per year (Estimated) • In office • Full-Time • 6+ years exp • Bachelor's Degree • Hyderabad
Python
Go
Java
SQL
Ruby
AI/ML
AI Agents
Agentforce
Mobile
JUnit
DevOps
GitHub Actions
New Relic
CircleCI
Dynatrace
Heroku
CI/CD
Jenkins
Git
AWS
Docker
Nginx
AppDynamics
GitHub
QA
Selenium
JMeter
Gatling
Apply
Product Designer 10 days ago
$210k – $230k per year • In office • Full-Time • 8+ years exp • Bachelor's Degree • San Francisco
DevOps
Azure
GitHub
Cybersecurity
Okta
Design
Figma
Management
Slack
ServiceNow
Microsoft Teams
Apply
Inbound BDR 12 days ago
$62k – $69k per year • Remote/Hybrid • Full-Time • 1+ year exp • Denver
DevOps
Azure
Cybersecurity
Okta
Management
Slack
ServiceNow
Microsoft Teams
Apply
$178k – $194k per year • Remote/Hybrid • Full-Time • New York
Python
JavaScript
SQL
Ruby
Ruby
Ruby on Rails
DevOps
Envoy
Azure
Kubernetes
Cybersecurity
Okta
GDPR
Management
Slack
ServiceNow
Microsoft Teams
Apply
$108k – $119k per year • In office • Full-Time • 3+ years exp • London
DevOps
Azure
Cybersecurity
Okta
Management
Slack
ServiceNow
Microsoft Teams
Apply
$25k – $100k per year • In office • Full-Time • 3+ years exp • Denver
DevOps
Azure
Cybersecurity
Okta
Management
Slack
ServiceNow
Microsoft Teams
Marketing
Salesforce
Apply
$60k – $100k per year • In office • Full-Time • 3+ years exp • San Francisco
Apply
$77k – $173k per year (Estimated) • In office • Full-Time • 3+ years exp • San Francisco
Apply
$140k – $210k per year • Equity • In office • Full-Time • 4+ years exp • San Francisco
Python
Go
TypeScript
DevOps
GCP
CI/CD
Kubernetes
Management
Stripe
Apply
$200k – $250k per year • Equity 1–2% • In office • Full-Time • 3+ years exp • San Francisco
Apply
$160k – $250k per year • Equity 1–2% • In office • Full-Time • 3+ years exp • San Francisco
Python
AI/ML
PyTorch
DevOps
AWS
Apply
See all jobs
This is one of many
412,150 more open roles from verified company boards, updated every day.