Corporate Security Engineering Manager

Posted 2 Days Ago
Hiring Remotely in United States
Remote
210K-240K Annually
Senior level
Software • Defense
Building the future of the military staff.
The Role
Lead corporate security engineering to define secure-by-default baselines, oversee vulnerability management, drive automation to prevent configuration drift, govern SaaS security, mentor engineers, and ensure alignment with CMMC 2.0 and NIST 800-53 while improving audit readiness.
Summary Generated by Built In
About Onebrief

Onebrief is collaboration and AI-powered workflow software designed specifically for military staffs. By transforming this work, Onebrief makes the staff as a whole superhuman - meaning faster, smarter, and more efficient.

We take ownership, seek excellence, and play to win with the seriousness and camaraderie of an Olympic team. Onebrief operates as an all-remote company, though many of our employees work alongside our customers at military commands around the world.

Founded in 2019 by a group of experienced planners, today, Onebrief’s team spans veterans from all forces and global organizations, and technologists from leading-edge software companies. We’ve raised $320m+ from top-tier investors, including Battery Ventures, General Catalyst, Sapphire Ventures, Insight Partners, and Human Capital, and today, Onebrief is valued at $2.15B. With this continued growth, Onebrief is able to make an impact where it matters most.

About the Role

We're hiring a Corporate Security Engineering Manager to lead our Corporate Security Engineering team. This is a strategic role focused on the security posture of the Corporate IT environment.

You'll report to our Director of Corporate IT & Security and work closely with Corporate IT, GRC, and application owners to ensure the secure deployment of corporate SaaS and installed applications. This role blends hands-on security engineering leadership with program-level ownership of configuration standards, vulnerability management oversight, SaaS security governance, and control automation. You will balance day-to-day team leadership with long-term architectural improvements that strengthen compliance posture and reduce operational friction. You’ll help ensure the corporate environment is securely configured by default, continuously monitored for drift, and aligned to CMMC 2.0 and NIST 800-53 requirements—while driving measurable improvements in tooling coverage, enforcement consistency, and audit defensibility.

We’re looking for someone who is a steady, experienced security engineering leader who can build and run a high-performing continuous monitoring and configuration enforcement function—someone who brings structure to baseline management, drives automation to prevent drift, and ensures corporate systems and commercial infrastructure remain securely configured and audit-ready by default.

About You

You are an experienced security engineering leader who understands that durable security comes from enforceable baselines and thoughtful automation—not one-off fixes. You have led systems engineers before and know how to create clarity around ownership, configuration standards, and measurable outcomes. You are comfortable reviewing architectures, approving secure deployment patterns, and making risk-based decisions about technical controls.

You think in systems. You understand endpoint security, SaaS configuration management, identity hardening, Zero-Trust infrastructure, GRC, and vulnerability scanning as interconnected components of a cohesive enterprise security program. You know how to align technical control implementation with frameworks like CMMC 2.0 and NIST 800-53, and you ensure documentation and evidence are clean, defensible, and audit-ready.

You are structured, accountable, and automation-minded. You push for drift detection, configuration enforcement, and scalable solutions that reduce manual effort while improving coverage and reliability.

What You'll DoSet direction

Own the strategy and maturity roadmap for corporate security engineering, including baseline configuration standards, vulnerability management oversight, SaaS security governance, and automation priorities. Define what “secure by default” means across corporate systems and commercial infrastructure.

Support the team

Lead and develop the Vulnerability Management Specialist and System Security Engineers through coaching, structured feedback, and clear technical ownership boundaries. Remove blockers, clarify priorities, and ensure the team focuses on high-impact risk reduction work.

Raise the bar

Strengthen configuration enforcement, reduce security drift, and improve automation across endpoints, SaaS platforms, browsers, identity systems, and enterprise tooling. Ensure vulnerability management processes are consistent, measurable, and aligned to defined SLAs.

Collaborate cross-functionally

Partner with Security Operations, IT, Engineering, and Compliance to ensure corporate systems and commercial infrastructure are deployed securely and remain compliant with regulatory requirements. Provide technical control guidance during system rollouts and risk discussions.

Shape how we work

Establish structured workflows for baseline reviews, configuration drift monitoring, vulnerability remediation oversight, and POA&M tracking. Maintain documentation, control mappings, and evidence collection processes that improve audit readiness and operational clarity.

What We Look For
  • 6–10+ years of experience in security engineering, systems security, or enterprise security architecture

  • 2+ years leading engineers or technical security teams

  • Hands-on experience with endpoint security tooling (e.g., MDM platforms, browser enterprise management, secure web gateways such as Zscaler)

  • Strong experience implementing and enforcing configuration baselines aligned to NIST 800-53, CMMC 2.0, DISA STIGs, or similar frameworks

  • Experience overseeing or operating vulnerability management programs and defining remediation SLAs

  • Demonstrated experience driving automation to prevent configuration drift and improve control coverage

  • Strong understanding of SaaS security configuration, identity hardening, and enterprise access controls

  • Experience partnering with Compliance teams to provide audit evidence and defensible documentation

  • Proven ability to translate regulatory requirements into enforceable technical controls

  • Sound judgment, strong technical credibility, and the ability to balance enforcement with enablement

Security & Privacy Roles and Responsibilities

  • Act as the technical control owner for corporate security engineering functions.

  • Ensure protection of the confidentiality, integrity, and availability of corporate systems and infrastructure through enforced configuration standards and control automation.

  • Ensure security configurations and vulnerability remediation activities support regulatory and privacy commitments, including CMMC 2.0 and NIST 800-53.

  • Ensure configuration data, vulnerability data, and remediation evidence are accurate, access-controlled, and retained in accordance with policy.

  • Enforce secure-by-default deployment patterns and monitor for configuration drift across enterprise systems.

  • Participate in risk evaluation and risk acceptance discussions, escalating unresolved technical risks to the Director of Corporate Security & IT.

  • Ensure engineering staff follow established change management, documentation, and evidence preservation standards.


Notice to Third Party Recruitment Agencies

Please note that Onebrief does not accept unsolicited resumes from recruiters or employment agencies. In the absence of an executed Recruitment Services Agreement, there will be no obligation to any referral compensation or recruiter fee. In the event a recruiter or agency submits a resume or candidate without an agreement Onebrief explicitly reserves the right to pursue and hire those candidate(s) without any financial obligation to the recruiter or agency. Any unsolicited resumes, including those submitted to hiring managers, shall be deemed the property of Onebrief.

Top Skills

Browser Enterprise Management
Cmmc 2.0
Disa Stigs
Grc
Identity And Access Management (Iam)
Mdm Platforms
Nist 800-53
Saas Configuration Management
Secure Web Gateway
Vulnerability Management Tools
Vulnerability Scanners
Zero-Trust Infrastructure
Zscaler
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
350 Employees
Year Founded: 2019

What We Do

Before Onebrief, military planning and collaboration was slow, inefficient, and resource-intensive. Building slides with no version control as partners collaborated would have staffs spend weeks or months on a single product or document.

With Onebrief, these workflows are now simple and collaboration between large commands is efficient. Staff optimization is the key to building a more resilient, more effective military. Today Onebrief users report at least 2x time savings - and growing.

Onebrief is a first of its kind software for the military. While many others have tried to build a solution for this problem, Onebrief’s “card” structure for reusing data and enabling real time updates is what makes this possible. Core features and attributes that make this platform powerful include:
- Global Collaboration
- Real-Time Updates
- AI Automation
- Interoperability + Integrations
- Deployable across Secret and Top Secret Networks

Mission Driven

Onebrief is composed of professionals from backgrounds of all kinds - spanning veterans across forces and organizations, and technologists from leading-edge software giants.

Onebrief is more than just a software platform; it's a mission-driven company dedicated to improving the efficiency and effectiveness of military planning. By joining the team, you'll contribute to solutions that directly support national security and the work of service members.

Your work directly addresses critical challenges that military planners and operators face daily. Every line of code and every design decision contributes to real-world outcomes.

The software was designed and built by a team of experienced planners - lending a nuanced perspective on the challenges our partners face. Our team embeds alongside users - from
the Pentagon to the Indo-Pacific - to build a platform that meets their unique needs.

Rapid, Strategic Growth

Our users love the platform and growth is scaling, most recently reporting operational usage growth at a 19,600% annualized rate. Stronger utilization is underway and we’re at an exciting period of advancement.

As a rapidly growing organization, you'll directly influence its direction and long-term success. Over the past year we’ve seen exciting growth metrics:

First, our headcount has grown 150% YoY to keep pace with our product advancement and customer growth.

Our funding has skyrocketed, most recently raising our Series C, led by top-tier venture investors who have deep expertise in defense tech.

Why Work With Us

Impactful Transformation

At Onebrief, we believe optimizing the military staff is the most impactful thing - on a per-dollar basis - in defense tech right now. This has the potential to save the department of defense billions of dollars and save users countless hours. It’s a longstanding problem that we’re uniquely positioned to solve.

Gallery

Gallery
Gallery
Gallery

Onebrief Offices

Remote Workspace

Employees work remotely.

We’re a fully remote organization - and believe it makes us a more powerful team. We bring together incredible professionals without the constraints of time zones or personal circumstances.

Typical time on-site:
United States

Similar Jobs

Remote
United States
350 Employees
205K-230K Annually

Onebrief Logo Onebrief

Operations Manager

Software • Defense
Remote
United States
350 Employees
210K-240K Annually

Onebrief Logo Onebrief

Compliance Analyst

Software • Defense
Remote
United States
350 Employees
180K-210K Annually
Remote
United States
350 Employees
205K-255K Annually

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account