Cybersecurity & IT Engineer

Posted 5 Days Ago
Be an Early Applicant
Redwood City, CA, USA
Hybrid
150K-185K Annually
Senior level
Software
The Role
Own identity, endpoint, network, and security engineering for a distributed robotics company operating in a CMMC 2.0 Level 2 environment. Responsibilities include securing Microsoft and Google environments, managing devices and networks, implementing zero-trust access, maintaining DNS and email authentication, conducting audits, developing NIST 800-171-aligned standards and incident response runbooks, establishing AI tooling guardrails, managing vendors, and handling hardware logistics.
Summary Generated by Built In

Company Overview

Compound Eye teaches machines to understand their surroundings in 3D and in real time using only passive sensors like cameras. Our VIDAS™ technology enables vehicles, drones, and other robots to determine their position and navigate their environment without LiDAR, radar, or GPS. Compound Eye has customers in both defense and commercial robotics and is backed by Khosla Ventures, RTX Ventures, and other leading investors. We operate as a CMMC 2.0 Level 2 environment supporting a team of 20 computer vision and machine learning engineers.

The Role

We're hiring a Cybersecurity & IT Engineer to report directly to the VP of Engineering. You will own the identity, endpoint, network, and security practice that supports our engineering team. You'll inherit a working stack with room to improve it.

This is a hands-on generalist role, not a ticket-queue role and not a compliance-paperwork role. You'll sit in engineering standups, find where access, identity, or network friction is slowing the team down, and have the autonomy to fix it. On a given week, you might harden conditional access policies in Entra, audit third-party OAuth grants in Google Workspace, get a remote engineer a working path to a Jetson AGX sitting on a lab VLAN, fix a DMARC alignment failure, and write the internal standard that keeps all three from breaking again.

A large part of the job is enabling engineers to build securely rather than telling them not to. Our engineers connect distributed equipment over Cloudflare tunnels and mesh VPN overlays, run agentic tooling like Claude Code against real codebases, and stand up their own lab environments. You'll define what safety looks like, make the safe path the easy path, and make it work for a mostly-remote team.

You won't own CMMC compliance and you are not expected to hold a certification yourself. But we're a CMMC 2.0 Level 2 environment, so every configuration decision you make needs to be NIST 800-171 aware. You'll be the person the contractor comes to for evidence and implementation detail. You'll partner with our DevOps Engineer, who owns AWS workloads, GPU compute, and the developer toolchain.

Key Responsibilities

  • Build our internal security standard on top of NIST 800-171: Hardening guides, onboarding/offboarding, access reviews, incident response runbooks

  • Run recurring access, logs, and configuration audits, and maintain evidence for our compliance contractor.

  • Own identity across Entra ID, Intune, Microsoft 365 (Defender, Purview, GCC High), and Google Workspace.

  • Own email authentication and DNS (SPF, DKIM, DMARC, MTA-STS) and manage zones/certificates across Cloudflare.

  • Secure engineer and lab access via Cloudflare Tunnel/Zero Trust Mesh, VPN jump hosts, and SSH certificate authorities.

  • Manage the device fleet (Windows, macOS, Linux, Android, iOS) and the physical network (firewalls, switches, VLANs, lab isolation).

  • Define AI tooling guardrails for Claude Code and other agentic workflows.

  • Keep documentation current and manage vendor relationships within budget.

  • Manage hardware logistics from our Redwood City office, including shipping, returns, and spare equipment storage.

To Thrive in This Role, You Have

  • 5+ years in IT, systems administration, or security engineering, including time owning broad scope on a small team.

  • Hands-on administration of both Microsoft 365 and Google Workspace.

  • Strong Linux administration, plus working competence with Windows and macOS.

  • Hands-on networking experience with firewalls, VPNs, managed switches, VLANs, routing.

  • Practical experience with zero-trust/overlay networking (Cloudflare Tunnel, WireGuard, Tailscale, or similar).

  • Ownership of DNS and email authentication for a production domain.

  • Familiarity with NIST 800-171 and CMMC 2.0 sufficient to avoid creating compliance debt. No certification required.

  • A track record of writing security practices that engineers actually adopt.

  • Comfortable working independently and partnering with engineering teams without close oversight.

Work Environment

  • Primarily hybrid from our Redwood City, CA office: typically 1–3 days per week on-site, with more days during build-outs and quarterly company on-sites.

  • Less than 10% domestic travel, occasional and infrequent.

  • Able to lift and carry equipment up to 40 lbs and do occasional on-site physical work (cabling, racking); reasonable accommodations available upon request.

Compensation & Benefits

  • Base salary: $150k-185k, depending on experience.

  • Strong Incentive Stock Options (ISO)

  • Medical, dental, and vision insurance

  • Annual home office stipend

  • Employer-paid long-term disability, short-term disability, and life insurance

  • 401(k) with employer match after 6 months

  • Flexible PTO and 8 holidays + 2 week winter break

  • Paid family leave

  • Quarterly onsites in San Francisco

We're looking for a great engineer to join our US team of twenty-five. Our mission is to teach machines to see. Our culture is based on transparency, mutual respect, mutual accountability, and valuing great ideas no matter where they come from. We already have revenue and our Series A round was led by a tier-one VC. We are a remote-first company with employees across the United States. We had remote employees long before the pandemic and our team is now distributed across multiple states. We offer competitive benefits including comprehensive health care plans, 401k with matching, flexible schedules, and discretionary PTO.

Compound Eye is committed to building a diverse and inclusive work environment. We understand that no candidate is perfectly qualified for any job and experience comes in different forms. We encourage you to apply if you see yourself being successful in this position.

Compound Eye is an Equal Opportunity Employer and a VEVRAA Federal Contractor. We do not discriminate based on race, color, religion, sex, national origin, disability, or protected veteran status. This position requires access to technology controlled under the International Traffic in Arms Regulations (ITAR). Applicants must be a U.S. person as defined under ITAR (U.S. citizen, lawful permanent resident, asylee, or refugee) or qualify for a license exception.

Compound Eye Applicant and Worker Privacy Notice

Skills Required

  • 5+ years of experience in IT, systems administration, or security engineering, including broad ownership on a small team
  • Hands-on administration of Microsoft 365 and Google Workspace
  • Strong Linux administration skills and working competence with Windows and macOS
  • Hands-on networking experience with firewalls, VPNs, managed switches, VLANs, and routing
  • Practical experience with zero-trust or overlay networking such as Cloudflare Tunnel, WireGuard, or Tailscale
  • Ownership experience for DNS and email authentication, including SPF, DKIM, or DMARC, for a production domain
  • Familiarity with NIST 800-171 and CMMC 2.0
  • Experience writing security practices that engineers adopt
  • Ability to work independently and partner with engineering teams without close oversight
  • Ability to lift and carry equipment up to 40 pounds and perform occasional physical onsite work
  • Must be a U.S. person under ITAR requirements or qualify for a license exception
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Redwood, CA
19 Employees
Year Founded: 2015

What We Do

Compound Eye enables machines to understand their surroundings in 3D and in real time, using only passive sensors like cameras. Our technology gathers far more information about the environment than active sensors like lidar, for a fraction of the cost. Our mission is to bring superhuman senses to existing vehicles and to enable mass production of fully autonomous cars and other robots.

Similar Jobs

Capital One Logo Capital One

Artificial Intelligence Engineer

Fintech • Machine Learning • Payments • Software • Financial Services
Remote or Hybrid
5 Locations
55000 Employees
286K-392K Annually

Optum Logo Optum

LVN or LPN, Case Manager - Remote

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office or Remote
Cypress, CA, USA
160000 Employees
20-36 Hourly

Optum Logo Optum

Senior Rebate Audit Analyst

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office
Irvine, CA, USA
160000 Employees
60K-107K Annually

Micron Technology Logo Micron Technology

Data Scientist

Artificial Intelligence • Hardware • Information Technology • Machine Learning
In-Office
3 Locations
45000 Employees
119K-286K Annually

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account