{"version":"0.1","company":{"name":"YubHub","url":"https://yubhub.co","jobsUrl":"https://yubhub.co/jobs/skill/oauth-token-sprawl"},"x-facet":{"type":"skill","slug":"oauth-token-sprawl","display":"Oauth Token Sprawl","count":1},"x-feed-size-limit":100,"x-feed-sort":"enriched_at desc","x-feed-notice":"This feed contains at most 100 jobs (the most recently enriched). For the full corpus, use the paginated /stats/by-facet endpoint or /search.","x-generator":"yubhub-xml-generator","x-rights":"Free to redistribute with attribution: \"Data by YubHub (https://yubhub.co)\"","x-schema":"Each entry in `jobs` follows https://schema.org/JobPosting. YubHub-native raw fields carry `x-` prefix.","jobs":[{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_9057e192-450"},"title":"Security Engineer Lead, Corporate Security","description":"<p>We&#39;re looking for a Security Engineering Lead to own and drive Anthropic&#39;s Corporate Security program. This is a player-coach Tech Lead Manager (TLM) role: you&#39;ll be both the most senior technical individual contributor on corporate security and the people leader for a lean, high-impact team of Security Engineers.</p>\n<p>You will set the technical direction, write code and ship tooling alongside your team, and build the culture and processes that allow the team to scale.</p>\n<p>Corporate Security at Anthropic encompasses everything that protects our people, endpoints, networks, SaaS ecosystem, and corporate data,the full surface area outside of production infrastructure.</p>\n<p>The scope is broad and the team is deliberately small, which means you&#39;ll need deep technical skills across multiple domains, strong judgment about where to invest, and a bias toward automation and engineering-driven solutions over manual process.</p>\n<p>You&#39;ll report into Security leadership and partner closely with IT, Infrastructure Security, Detection &amp; Response, and GRC teams.</p>\n<p>This role is high-visibility and high-autonomy: you&#39;ll be expected to define the roadmap, make architectural decisions, and represent Corporate Security across the company.</p>\n<p><strong>Responsibilities:</strong></p>\n<p><strong>Technical Leadership &amp; Hands-on Engineering</strong></p>\n<ul>\n<li>Own the security architecture, tooling, and controls for Anthropic&#39;s corporate environment end-to-end, including endpoint fleets (macOS, Windows, ChromeOS), campus and office networks, SaaS applications, mobile devices</li>\n</ul>\n<ul>\n<li>Design, build, and ship security automation, integrations, and internal tooling,including leveraging Claude and LLMs to accelerate security workflows</li>\n</ul>\n<ul>\n<li>Define and enforce security baselines, hardening standards, and configuration policies across all corporate platforms</li>\n</ul>\n<ul>\n<li>Define what it means to operate safely in an environment where AI agents act more like humans than actual humans</li>\n</ul>\n<ul>\n<li>Evaluate, select, deploy, and operate corporate security tools (EDR/XDR, MDM, ZTNA, CASB/SSPM, email security, DLP, browser security, etc.)</li>\n</ul>\n<ul>\n<li>Drive vulnerability management for corporate assets, including patch orchestration, risk-based prioritization, and exception management</li>\n</ul>\n<ul>\n<li>Lead security reviews of new SaaS adoptions, corporate infrastructure changes, and IT projects</li>\n</ul>\n<p><strong>People Leadership &amp; Team Building</strong></p>\n<ul>\n<li>Manage, mentor, and grow a purposefully lean team of Security Engineers; set clear expectations, run effective 1:1s, and create an environment where engineers do the best work of their careers</li>\n</ul>\n<ul>\n<li>Hire and build the team as scope expands,own the hiring bar and pipeline for Corporate Security Engineering roles</li>\n</ul>\n<ul>\n<li>Balance your own IC contributions with the team’s needs; know when to go deep on a problem yourself and when to delegate and coach</li>\n</ul>\n<ul>\n<li>Foster a culture of operational excellence, blameless incident review, and continuous improvement</li>\n</ul>\n<p><strong>Strategy &amp; Cross-Functional Partnership</strong></p>\n<ul>\n<li>Define and own the Corporate Security roadmap, aligning investments to Anthropic’s risk profile and growth trajectory</li>\n</ul>\n<ul>\n<li>Partner with IT Operations to ensure security is embedded in endpoint provisioning, network design, and SaaS lifecycle management</li>\n</ul>\n<ul>\n<li>Collaborate with Detection &amp; Response on telemetry coverage, detection engineering, and incident handling for corporate-sourced events</li>\n</ul>\n<ul>\n<li>Partner with Infrastructure and Security Engineering teams to ensure security standards are consistent across all of Anthropic</li>\n</ul>\n<ul>\n<li>Communicate security posture, risks, and investment needs to Security leadership and cross-functional stakeholders clearly and persuasively</li>\n</ul>\n<p><strong>Requirements</strong></p>\n<ul>\n<li>8+ years of Security Engineering experience in a corporate/enterprise security domain (endpoint security, network security, SaaS security, identity, or a combination)</li>\n</ul>\n<ul>\n<li>2+ years of experience managing or tech-leading a team of engineers, with a demonstrated track record of developing talent and shipping results through others</li>\n</ul>\n<ul>\n<li>Are a strong engineer who still writes code regularly,you can prototype a tool, write a detection, build an integration, or debug a complex configuration issue</li>\n</ul>\n<ul>\n<li>Have deep experience with macOS fleet security (this is our primary platform) and solid working knowledge of Windows and ChromeOS security</li>\n</ul>\n<ul>\n<li>Have hands-on experience deploying and operating EDR/XDR, MDM, ZTNA/zero trust, and identity security solutions at scale</li>\n</ul>\n<ul>\n<li>Understand modern SaaS security challenges: shadow IT, OAuth token sprawl, data exfiltration paths, SaaS-to-SaaS integrations, and SSPM/CASB tooling</li>\n</ul>\n<ul>\n<li>Can work independently with high autonomy, manage ambiguity, and make sound risk-based prioritization decisions in a fast-paced environment</li>\n</ul>\n<ul>\n<li>Have excellent communication skills and can translate complex security topics into clear recommendations for technical and non-technical audiences</li>\n</ul>\n<p><strong>Strong Candidates May Have</strong></p>\n<ul>\n<li>Securing corporate environments at high-growth AI, cloud, or developer-tools companies</li>\n</ul>\n<ul>\n<li>Maturing a Corporate Security function from early stage, including defining scope, selecting the initial toolset, and hiring the founding team</li>\n</ul>\n<ul>\n<li>Advanced macOS security (system extensions, endpoint security framework, MDM profile engineering, Declarative Device Management)</li>\n</ul>\n<ul>\n<li>Network security architecture for hybrid/multi-office environments, including SD-WAN, ZTNA, DNS security, and network segmentation</li>\n</ul>\n<ul>\n<li>Browser security and isolation technologies (e.g., Island, Talon/Palo Alto, Chrome Enterprise)</li>\n</ul>\n<ul>\n<li>Proficiency in Python, Go, or similar languages for building security tooling and automation</li>\n</ul>\n<ul>\n<li>Experience leveraging LLMs/AI to augment security operations, build investigative tooling, or automate policy enforcement</li>\n</ul>\n<ul>\n<li>Familiarity with IaC (Terraform), CI/CD pipelines, and DevSecOps practices as they apply to corporate infrastructure management</li>\n</ul>\n<ul>\n<li>Mobile security for iOS/Android in a BYOD and corporate-managed device environment</li>\n</ul>\n<ul>\n<li>Data Loss Prevention (DLP) program design and implementation across endpoints, email, SaaS, and cloud storage</li>\n</ul>\n<p><strong>Logistics</strong></p>\n<ul>\n<li>Minimum education: Bachelor’s degree or an equivalent combination of education, training, and/or experience</li>\n</ul>\n<ul>\n<li>Required field of study: A field relevant to the role as demonstrated through coursework, training, or professional experience</li>\n</ul>\n<ul>\n<li>Minimum years of experience: Years of experience required will correlate with the internal job level requirements for the position</li>\n</ul>\n<ul>\n<li>Location-based hybrid policy: Currently, we expect all staff to be in one of our offices at least 25% of the time. However, some roles may require more time in our offices.</li>\n</ul>\n<ul>\n<li>Visa sponsorship: We do sponsor visas! However, we aren&#39;t able to successfully sponsor visas for every role and every candidate. But if we make you an offer, we will make every reasonable effort to get you a visa, and we retain an immigration lawyer to help with this.</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_9057e192-450","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Anthropic","sameAs":"https://www.anthropic.co/","logo":"https://logos.yubhub.co/anthropic.co.png"},"x-apply-url":"https://job-boards.greenhouse.io/anthropic/jobs/5135098008","x-work-arrangement":"hybrid","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":"$320,000-$405,000 USD","x-skills-required":["macOS fleet security","Windows and ChromeOS security","EDR/XDR","MDM","ZTNA/zero trust","identity security solutions","SaaS security challenges","shadow IT","OAuth token sprawl","data exfiltration paths","SaaS-to-SaaS integrations","SSPM/CASB tooling"],"x-skills-preferred":["Python","Go","LLMs/AI","IaC (Terraform)","CI/CD pipelines","DevSecOps practices","mobile security","Data Loss Prevention (DLP)"],"datePosted":"2026-04-18T15:46:05.148Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"San Francisco, CA | New York City, NY"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"macOS fleet security, Windows and ChromeOS security, EDR/XDR, MDM, ZTNA/zero trust, identity security solutions, SaaS security challenges, shadow IT, OAuth token sprawl, data exfiltration paths, SaaS-to-SaaS integrations, SSPM/CASB tooling, Python, Go, LLMs/AI, IaC (Terraform), CI/CD pipelines, DevSecOps practices, mobile security, Data Loss Prevention (DLP)","baseSalary":{"@type":"MonetaryAmount","currency":"USD","value":{"@type":"QuantitativeValue","minValue":320000,"maxValue":405000,"unitText":"YEAR"}}}]}