Lead Security Engineer, Internal and IT
Artemis Security · New York, NY · 5 days ago
On-siteInformation Technology$180k–$230k/yrFull-time
Responsibilities
- Own Artemis's internal security posture end to end, including endpoint security, identity and access management, network security, email security, and cloud security for our corporate environment
- Design and run our identity strategy across SSO, MFA, conditional access, and privileged access management
- Build and operate our vulnerability management program, including patching, endpoint hardening, and continuous monitoring
- Lead incident response for internal security events, from detection and containment through investigation and post-incident review
- Drive our compliance and certification work (SOC 2 Type II, ISO 27001, and others as we grow), including scoping, evidence collection, and working with external auditors
- Build and run the security awareness program, including ongoing training, phishing simulations, and role-specific education
- Set and maintain security policies, standards, and internal documentation that scale with the company
- Own vendor risk and third-party security reviews for tools and partners we bring in
- Partner with product security and engineering leadership to keep internal and product security aligned
Qualifications
- 5+ years of hands-on experience in security engineering, IT security, or corporate security, with real ownership of internal security programs at a top-tier software/tech company
- Deep expertise in one or more of the following: identity and access management, endpoint security, cloud security (AWS/GCP/Azure), or SaaS security
- Strong understanding of modern attacker tradecraft — you know how real breaches happen, not just what the frameworks say
- Direct experience leading incident response for internal security events, from detection through post-mortem
- Familiarity with modern security tooling across EDR, SIEM, IAM, MDM, DLP, email security, and vulnerability management
- Strong systems thinking — you can balance security rigor with the reality of a fast-moving startup
- A clear communicator who can translate security tradeoffs to leadership and non-technical teams
- Comfort operating with autonomy in an early-stage environment and building programs from scratch, without a manager or team backing you up
Nice to Have
- Prior experience as the first or founding internal security hire at a startup
- Background as a practitioner in cybersecurity — SOC, threat detection, red team, or product security experience
- Relevant certifications (CISSP, OSCP, GCIA, GCIH, CISA, or equivalent)
- Experience with security operations tooling that Artemis itself sells (SIEM, XDR, detection & response platforms)
- Familiarity with regulated frameworks beyond SOC 2 and ISO (FedRAMP, HIPAA, PCI, GDPR)
Compensation
We offer a competitive compensation of $180,000-$230,000 per year, and a top-of-market equity component. A variety of factors are considered when determining the compensation, including a candidate’s professional experience. Final offer amounts may vary from the amounts listed.