368,530open jobs
9,432companies
50,439added this week
Browse all
Salary
$72k – $163k per year (Estimated)
Location
In office
Seniority
Junior · 2+ years exp
Overview
Company
Impact
Profile match
Flexport is a digital freight forwarder managing ocean, air and ground shipments. Its software gives shippers real-time visibility into containers, customs status and landed cost. The company combines a licensed brokerage with a technology platform.

About Flexport: 

At Flexport, we believe global trade can move the human race forward. That’s why it’s our mission to make global commerce so easy there will be more of it. We’re shaping the future of a $10T industry with solutions powered by innovative technology and exceptional people. Today, companies of all sizes-from emerging brands to Fortune 500s-use Flexport technology to move more than $19B of merchandise across 112 countries a year. 

The recent global supply chain crisis has put Flexport center stage as we continue to play a pivotal role in how goods move around the world. We are proud to have the support of the best investors in the game who believe in our mission, solutions and people. Ready to tackle global challenges that impact business, society, and the environment? Come join us.

What you'll do

  • Identity & access
    • Advance our identity posture: SSO coverage, phishing-resistant MFA rollout, SCIM lifecycle automation, and least-privilege access across the SaaS and cloud estate.
    • Build the detections and guardrails that catch account takeover, MFA fatigue attacks, and session token theft before they turn into incidents.
  • Endpoint & device lifecycle
    • Write and ship device policy as code - configuration profiles, remediation scripts, and enforcement rules across macOS and Windows - with staged rollout and rollback built in from day one.
    • Maintain and improve our EDR stack's detection and response coverage across the fleet.
  • SaaS posture
    • Reduce SaaS risk at scale through SSPM tooling and automation, including detection of risky OAuth grants, shadow IT, and configuration drift across our critical SaaS applications.
    • Own security configuration for the SaaS tools hundreds of Flexporters use daily (Google Workspace, Slack, and similar), and keep pace as we add AI agents and MCP integrations to that surface.
  • Automation & enablement
    • Automate the parts of corporate security that don't need a human - device provisioning, access reviews, vendor security questionnaires - so the team scales with headcount instead of straining against it.
    • Write runbooks and documentation that make the rest of the team more capable, and partner with IT and People teams to ship controls that don't create the friction that drives people to workarounds.

You should have

  • Typically 2-5 years of experience in corporate, enterprise, or IT security engineering - we care more about what you've shipped than the exact number. If you meet most of this, apply; we'd rather see your work than filter you out on a résumé line.
  • Hands-on experience with modern endpoint management and EDR tooling (Jamf, Kandji, Intune, CrowdStrike, SentinelOne, or similar).
  • Working knowledge of identity protocols (SAML, OIDC, SCIM) and a major identity provider (Okta, Entra, Google Workspace, or similar).
  • Comfort writing real code or scripts (Python, Go, or similar) to replace manual, ticket-driven work with automation.
  • Clear, practical communicator who can explain a control tradeoff to an engineer, a salesperson, and a VP without changing the facts.

Nice to have

  • Experience with SSPM tooling and OAuth-grant governance.
  • Exposure to DLP or insider-risk tooling.
  • Familiarity with infrastructure-as-code (Terraform) for managing security configuration.
  • A point of view on how agentic AI tools and MCP integrations change what corporate security needs to watch for
  • Interest in growing into a broader corporate security or detection engineering scope over time.

How we work

  • We're in the San Francisco office regularly to work through incidents and detection design in person.
  • We stay closely aligned with teammates on other continents via Slack, video, and async docs.
  • We have the latest hardware and software, including frontier AI models on day one.
  • We're agile, but not dogmatic. Teams decide how they work best.

Why this role is special

  • Broad, real ownership: at this level elsewhere you might own a slice of a control; here you'll own well-defined projects end to end, from design through rollout, with support scoping the ambiguous parts.
  • Every device policy or identity control you ship protects every Flexporter, immediately - no six-month rollout to a subset of customers.
  • You're part of PSI: security is treated as infrastructure to build, not policy to enforce, and platform and infrastructure engineers are a Slack message away.

The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations. Our salary ranges are determined by role, level, and location. Within the range displayed, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education and / or training. Base salary is just one part of our total rewards package at Flexport, which also includes bonus, equity, and comprehensive benefit offerings such as medical, dental, and flexible time off. 

California Pay Range

$165,375—$202,125 USD

Washington Pay Range

$147,000—$183,750 USD

Colorado Pay Range

$130,950—$163,688 USD

New York City Pay Range

$147,000—$183,750 USD

Illinois Pay Range

$130,950—$163,688 USD

Commitment to Equal Opportunity

At Flexport, our ability to fulfill our mission of making global commerce easy and accessible relies on having a diverse, dedicated and engaged workforce. All qualified applicants will receive consideration for employment regardless of race, color, religion, sex, national origin, age, physical and mental disability, health status, marital and family status, sexual orientation, gender identity and expression, military and veteran status, and any other characteristic protected by applicable law.

Global Data Privacy Notice for Job Candidates and Applicants

Depending on your location, the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA) may regulate the way we manage the data of job applicants. By submitting your application, you are agreeing to our use and processing of your data as required. Please see our Privacy Notice available at  www.flexport.com/privacy  for additional information.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,530 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
up to $12k per year • Remote/Hybrid • Full-Time • 6+ years exp • Bachelor's Degree • United States • United Kingdom
AI/ML
AI Agents
Function Calling
Human-in-the-Loop
LLM Guardrails
Apply
$220k – $350k per year • Remote/Hybrid • Full-Time • 15+ years exp • New York • Princeton
AI/ML
AI Agents
LLM Guardrails
Model Context Protocol
DevOps
Azure
Azure DevOps
CI/CD
GitHub
Platform Engineering
Design
Figma
Management
Jira
QA
Playwright
Apply
up to $12k per year • Remote/Hybrid • Full-Time • 6+ years exp • Master's Degree • United States • United Kingdom
AI/ML
A2A
AI Agents
Model Context Protocol
Apply
$187k – $378k per year (Estimated) • Remote/Hybrid • Full-Time • 6+ years exp
Python
AI/ML
AI Agents
Edge AI
Embeddings
LLM
NumPy
Pandas
Spark
Analytics
A/B Testing
Apply
$35k per year • In office • Internship • Bachelor's Degree • Freiburg im Breisgau
C++
Java
Node JS
Python
C#
JavaScript
C#
.NET
AI/ML
AI Agents
DevOps
CI/CD
GitLab
Apply
$83k – $188k per year (Estimated) • In office • 2+ years exp • San Francisco
Python
AI/ML
AI Agents
LLM Guardrails
Model Context Protocol
DevOps
Terraform
Cybersecurity
Crowdstrike
GDPR
Least Privilege
Okta
SentinelOne
Management
Google Workspace
Slack
Apply
$91k – $216k per year (Estimated) • In office • Full-Time • 10+ years exp • Amsterdam
Java
JavaScript
Java
Gradle
Frontend
npm
pnpm
DevOps
ArgoCD
AWS
Bazel
CI/CD
Datadog
GitHub Actions
GitOps
Helm
JFrog Artifactory
Kubernetes
SRE
Terraform
GitHub
IAM
Cybersecurity
GDPR
Apply
$110k – $221k per year (Estimated) • In office • 5+ years exp
Python
AI/ML
LLM
DevOps
CI/CD
Kubernetes
Splunk
Cybersecurity
GDPR
Management
Slack
Apply
$128k – $256k per year (Estimated) • In office • 5+ years exp • San Francisco
Python
AI/ML
LLM
DevOps
CI/CD
Kubernetes
Splunk
Cybersecurity
GDPR
Management
Slack
Apply
In office • 5+ years exp • Shanghai
Cybersecurity
GDPR
Apply
See all jobs
This is one of many
368,530 more open roles from verified company boards, updated every day.