Endpoint Security Engineer

Schmidt Entities· San Francisco, CA· lever· veröffentlicht 17.07.2026
Muss:AISecurity

About the Role  Hillspire is seeking an experienced Endpoint & SaaS Security Engineer to help build one of the industry's most advanced modern security programs. This role is responsible for protecting endpoints and the SaaS platforms running on them, while helping mature Hillspire's Zero Trust security architecture with a strong emphasis on device security posture, insider threat prevention, automation, and AI.  The ideal candidate is equally comfortable investigating security alerts, engineering new security controls, building automation, and leveraging AI to improve operational efficiency. This is a hands-on engineering role with significant ownership and the opportunity to shape the future of endpoint, SaaS, and AI security across the organization.  This position is based full-time in our San Francisco headquarters in the Embarcadero and is offered as a contract-to-hire opportunity.

What You'll Do Endpoint Security Engineering

Own the health, configuration, and continuous improvement of Hillspire's endpoint security platform.

Administer Sophos Endpoint Protection, XDR, and MDR capabilities across all corporate devices.

Ensure 100% endpoint visibility and security coverage.

Investigate and remediate compromised, vulnerable, or non-compliant endpoints.

Develop endpoint security baselines aligned with Zero Trust principles.

Improve device security posture through vulnerability management, compliance monitoring, and hardening.

Build controls that reduce insider threats and prevent lateral movement.

SaaS Security

Develop and mature Hillspire's SaaS Security program by:

Maintaining visibility into SaaS applications

Identifying Shadow IT and unauthorized SaaS usage

Governing BYOD, BYO-SaaS, and BYO-AI risks

Monitoring SaaS security posture

Improving SaaS authentication and identity controls

Partnering with business teams to securely onboard new SaaS platforms

Supporting vendor security reviews and third-party risk assessments

AI Security & Automation

Help shape Hillspire's next-generation AI security program by:

Building Retrieval-Augmented Generation (RAG) solutions for security operations

Developing automation that continuously scans Hillspire's security posture

Using AI to improve incident response, investigations, and operational efficiency

Helping secure the organization's adoption of Generative AI technologies

Security Engineering & Operations

Monitor, investigate, and respond to security alerts.

Develop detection logic for insider threats.

Build automated remediation workflows.

Improve endpoint telemetry and visibility.

Enhance Zero Trust controls across users, devices, and applications.

Develop documentation, playbooks, and operational procedures.

Required Qualifications 5+ years of cybersecurity engineering experience

Strong experience securing Windows and macOS endpoints

Experience working with Managed Detection & Response (MDR)

Experience implementing Zero Trust security principles

Knowledge of insider threat detection techniques

Experience with SaaS security

Understanding of Shadow IT and SaaS governance

Experience supporting BYOD environments

Preferred Qualifications Experience with two or more of:

Sophos Central

Splunk Enterprise Security

CrowdStrike

Okta

Google Workspace security

CASB or SSPM platforms

Threat Intelligence Platforms

NIST Cybersecurity Framework

CISA Zero Trust Architecture

AI Native Mindset We are looking for engineers who embrace AI as a force multiplier. Ideal candidates will implement solutions that rely on:

Prompt engineering using leading AI platforms

Building AI-assisted workflows

Experimenting with AI agents

Creating MCP servers

Developing automation using modern AI frameworks

Previous production AI experience is beneficial but not required. We value curiosity and a willingness to learn.

Growth Opportunities Hillspire is heavily investing in AI and next-generation cybersecurity capabilities. Upon hiring, this engineer will receive company-sponsored training in:

Advanced Splunk engineering

AI Advanced training

Why Join Hillspire? You'll join a small, highly technical security team with the opportunity to build—not just maintain—security capabilities. You'll have access to cutting-edge AI platforms, best-in-class enterprise security tooling such as Wiz, Splunk, Palo Alto, and the freedom to engineer innovative solutions that improve the organization's security posture.

If you're passionate about endpoint security, SaaS security, Zero Trust, AI, automation, and building the future of cybersecurity, we'd love to hear from you.

This is an exempt position.