Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Lead Corporate Security Engineer

Jobleads-US

About Suno

We're building the world's first creative entertainment platform, where the entire world can feel the joy and fulfillment of making music. Music is for everyone: Our users include everyone from grandmothers creating songs for their loved ones, to Grammy winners using Suno Studio, our power tool, to make the most popular hits in the world.

Building the future of entertainment requires ambition. The pace is fast, the problems are hard, and the work demands ownership and intensity. For the right people, it’s incredibly rewarding: a chance to shape a new medium, work with a small team that cares deeply about quality, make music, drink too much coffee, and build something that millions of people use to express themselves in ways that were never before possible.

Suno is the fastest growing consumer entertainment company and the leader in AI music. We are backed by leading investors including Bond Capital, Menlo Ventures, Lightspeed Venture Partners, IVP, Forerunner, Union Square Ventures, Alkeon, Quiet, Matrix Partners, Schroders Capital and, NVentures (venture arm of NVIDIA).

About the role

The Lead Corporate Security Engineer will be our domain expert for securing our Corporate IT environment. You’ll work closely with colleagues in IT, Business Systems, Security, and Engineering to ensure that our corporate systems are implemented and maintained securely. As a senior member of the team, your impact will be split between building your team, enabling others, and doing hands-on work to mature our systems, processes, and behaviors. You’ll be building from 0 → 1 in some places and 1 → 10 in others.

What we don't have yet is someone who owns corporate security as a domain — who decides what the bar is, sequences the work to get there, and sees the next problem before it becomes a fire drill.

That's this role. You'll own the corporate security domain end to end: identity and access governance, endpoint and vulnerability management, detection and response, third-party integration risk, vendor assessment, and SaaS posture. You'll set the standard, own the roadmap, and be accountable for the outcome. Our senior IT engineers run the platforms day to day and are your closest partners — you make their work better, not harder.

How this role works with IT

Ownership splits by layer, not by system. Our senior IT engineers own the run; you own the standard and the direction.

  • You own the corporate security roadmap. What we secure, in what order, to what bar. You bring it to IT leadership and the CISO aligned, not for arbitration

  • IT engineering owns platform operations. Okta, Lumos, Kandji, and the wider SaaS portfolio are administered and integrated by them. You define what those platforms must enforce

  • You raise the bar around you. You make your reasoning explicit so IT engineers make good security calls without you in the room, and you build the tooling and defaults that make the secure path the default path

  • You're accountable for the outcome, not just the proposal. You decide, you communicate the tradeoff, and you own what happens next

The people who do well here get their plans stronger by exposing them to the people who run the systems, and they carry the room without needing the org chart to settle it.

What you'll own

Identity and access governance

  • Own the access model at Suno: the RBAC and entitlement design, least-privilege defaults, and the governance layer in Lumos that enforces them

  • Set the standard for what access review, certification, and approval should look like here — then build toward it rather than importing someone else's framework

  • Drive access lifecycle automation so joiner/mover/leaver is correct by default and exceptions are visible

  • Get ahead of non-human identity: service accounts, agents, and automations are a growing share of what holds access at Suno, and we need a model for them before it's urgent

Endpoint security and vulnerability management

  • Own the security standard for our fleet: hardening baseline, compliance signals, device trust, and how endpoint posture feeds access decisions

  • Own third-party vulnerability management as a program — coverage, risk-based remediation SLAs, reporting, and the negotiation with teams whose tools are the problem

  • Partner with the IT engineer who owns Kandji so the standard becomes deployed policy without degrading how people work

Detection and response

  • Own CrowdStrike Falcon Complete and our outsourced SOC relationship: coverage, tuning, escalation quality, and vendor performance against what we actually need

  • Define what good detection looks like at Suno and hold the provider to it, rather than accepting their default view of our environment

  • Lead corporate security incidents to closure, including the executive communication, and make sure what we learn changes the system rather than just the ticket

Third-party and integration risk

  • Own how Suno evaluates third-party access: integration and OAuth review for Slack, Google Workspace and the rest of the portfolio, plus vendor security assessment at purchase and renewal

  • Define our risk appetite in practice, in partnership with the CISO, and make it legible enough that others apply it without you

  • Turn recurring decisions into policy, scope guidance, and tooling so the review queue shrinks as the company grows

SaaS security posture

  • Build and own the program: the bar for our SaaS applications, the assessment cadence, and the remediation that follows

  • Improve tenant-level configuration across the portfolio — SSO and SCIM coverage, MFA and session policy, admin role hygiene, OAuth grant and token management, data sharing defaults

Cross-functional leadership

  • Work with IT, Security, Engineering, AI Enablement, and Legal to shape how Suno builds and buys, early enough to matter

  • Influence the scope of what comes next: how our future GRC function plugs in, what we automate versus staff, where the next investment goes

  • Mentor and raise the technical bar for people around you, including IT engineers who aren't security specialists

What success looks like

  • First 90 days: you've formed your own view of our security posture, built working relationships with the IT engineers and the SOC, and told us the three things we're wrong about

  • First 6 months: a corporate security roadmap exists that IT and the CISO are aligned behind, with the sequencing and the tradeoffs made explicit; the highest-risk items are already moving

  • First year: entitlement sprawl and vulnerability backlog are measurably down, detection reflects our real risks, third-party review is fast enough that nobody routes around it, and the standard holds because it's built into tooling and shared judgment rather than into you

What you'll bring

  • ~8+ years in corporate/enterprise security or security engineering, including having owned identity, endpoint, or SaaS security as a domain rather than as a set of tickets

  • Deep hands-on expertise with a modern IdP (Okta preferred) and with IGA or access-governance tooling (Lumos, Veza, ConductorOne, Opal, or similar)

  • You've designed an entitlement or RBAC model across a large SaaS portfolio and lived with the consequences long enough to know what breaks

  • Endpoint security depth in a macOS-primary fleet: MDM-delivered hardening, compliance and device trust, third-party patch and vulnerability management at scale

  • Real EDR depth — CrowdStrike preferred — and experience holding a managed detection provider or outsourced SOC to a standard you defined rather than accepting theirs

  • Strong command of OAuth, SAML, OIDC, and SCIM, and of the risk model behind third-party integrations

  • A track record of setting a security standard that other people applied without you enforcing it — written policy, tooling, defaults, or all three

  • Experience influencing engineering and business teams who don't report to you, early enough in their process to change the outcome

  • Automation fluency: Python or TypeScript, REST APIs, and a habit of building integrations and internal tooling as a normal part of the job

  • Excellent writing and judgment under ambiguity. You can hold a position with an executive and change it when the evidence says to

  • A calibrated sense of risk. You know which risks to block on, which to document, and how to tell the difference in public

Helpful, not required: detection engineering, insider risk or DLP programs, zero-trust network access, SOC 2 or ISO program ownership, just-in-time access patterns or identity-as-code, securing AI agent and non-human identity access, prior experience as the first or second security hire at a fast-growing company.

Suno is proud to be an Equal Opportunity Employer. We consider qualified applicants without regard to race, color, ancestry, religion, sex, national origin, sexual orientation, gender identity, age, marital or family status, disability, genetic information, veteran status, or any other legally protected basis under provincial, federal, state, and local laws, regulations, or ordinances. We will also consider qualified applicants with criminal histories in a manner consistent with the requirements of state and local laws, including the Massachusetts Fair Chance in Employment Act, NYC Fair Chance Act, LA City Fair Chance Ordinance, and San Francisco Fair Chance Ordinance.

#J-18808-Ljbffr Jobleads-US
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Lead Corporate Security Engineer in Kentucky vacancy
  • $10 per hour

     ...our critical SaaS applications. Own security configuration for the SaaS tools hundreds...  ...& enablement Automate the parts of corporate security that don't need a human —...  ...corporate, enterprise, or IT security engineering — we care more about what you've shipped... 
    Suggested
    Work at office
    Immediate start
    Flexible hours

    Flexport

    Eastern, KY
    18 hours ago
  •  ...interesting and motivating to work on. Engineers lead product teams and make product decisions...  ...for We are looking for an expert security generalist (in EU/UK) to assist with all...  ...relationship. While this is not a Corporate security (MDM, endpoint, device trust)... 
    Suggested
    Remote work
    Flexible hours
    Night shift

    Jobgether SRL

    Eastern, KY
    18 hours ago
  • $163k - $220k

     ...decision-making through our leading AI-infused scenario planning...  ...Our Winning Culture is the engine that drives our teams of innovators...  ...’s next - together! As a Security Engineer III embedded within...  ...vulnerabilities. Office & Corporate Network Security: Design,... 
    Suggested
    Work at office

    Anaplan

    Eastern, KY
    18 hours ago
  •  ...TRM Labs is seeking a Senior Cloud Security Engineer to mature our cloud infrastructure and security systems at scale. You will design strategy and implement best practices to help build a safer financial system. You will provide technical guidance on architecture and... 
    Suggested

    Jobleads-US

    Kentucky
    1 day ago
  •  ...Florida Blue Group seeks a Principal Cybersecurity Architect – AI & Agentic Systems to lead enterprise AI security strategy, ensuring PHI remains within HIPAA boundaries and governance is integrated across the SDLC. The role emphasizes secure adoption of AI, including... 
    Suggested

    Jobleads-US

    Kentucky
    1 day ago
  • $300k - $320k

     ...whole. Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems. About the Team The Security Engineering team's mission is to safeguard our AI systems and... 
    Visa sponsorship

    EngineersOfAI

    Eastern, KY
    1 day ago
  • $25 - $50 per hour

     ...Role Overview TSA is accepting applications for Lead and Supervisory Transportation Security Officers at airports in San Mateo. These roles are ideal for individuals looking to step into leadership positions within airport security operations. TSA provides training... 
    Shift work
    Night shift
    Weekend work

    TSA Hiring Hub

    Paducah, KY
    13 days ago
  • $159.3k - $202.4k

     ...Security Engineer II, Amazon Stores Security Healthcare Job ID: 10565802 | Amazon.com Services LLC Amazon Healthcare Security's (HealthSec...  ...Amazon One Medical's network infrastructure. As a team lead you will assess security risks, develop mitigation strategies... 
    Flexible hours

    Jobleads-US

    Kentucky
    2 days ago
  •  ...Maven Clinic is seeking a Staff Software Engineer focused on product security to design and scale secure, cloud-native systems across HIPAA/SOC 2/ISO...  ...drive secure-by-default patterns with engineering teams. Lead threat modeling, security architecture reviews, and... 
    Remote job

    Jobleads-US

    Kentucky
    1 day ago
  • Company DescriptionArvato is an innovative and leading global 3PL service provider in supply chain management and e-commerce. With...  ...DescriptionWe are looking for an experienced and knowledgeable System Security Engineer to join our team! As a System Security Engineer, you will be... 
    Work at office
    Local area
    Flexible hours

    Bertelsmann

    Louisville, KY
    16 hours ago
  •  ...Amazon Stores Security Healthcare is seeking a Security Engineer II to protect One Medical’s network infrastructure. You will lead security investigations, assess risks, and implement controls across evolving systems, working with security engineers and product teams.... 

    Jobleads-US

    Kentucky
    2 days ago
  •  ...and Access Management (IAM) team is dedicated to ensuring the secure and efficient management of user identities, access privileges,...  ...the Role As an Identity and Access Management (IAM) Security Engineer, you will play a crucial role in designing, implementing, and scaling... 
    Local area

    Cloudflare Inc

    Eastern, KY
    3 days ago
  •  ...Description The Security Engineer is responsible for protecting the organization’s information systems, infrastructure, networks, cloud...  ...Infrastructure & Engineering organization. This position leads day-to-day security operations across infrastructure security... 
    Work experience placement

    SentriLock

    Eastern, KY
    2 days ago
  •  ...Offchain, we aren’t just building products: we’re leading a movement. As pioneers in blockchain scalability and security, we're at the forefront of transforming how...  ...seamlessly. The Role As a Security Engineer at Offchain, you will play a key role in defining... 
    Work at office
    Remote work
    Home office

    Arbitrum Inc

    Eastern, KY
    1 day ago
  • $97.9k - $153.8k

     ...Anywhere This is a remote position. Position Title: IT Security Engineer Base Salary: $97,900 to $153,800 annually DOE Benefits:...  ...risk identification and mitigation planning and execution. · Leads vulnerability management efforts and actively participates in... 
    Self employment
    Work at office
    Local area
    Remote work
    Flexible hours

    Jobgether SRL

    Eastern, KY
    18 hours ago
  • $138.68k - $182.3k

     ...operate complex technology ecosystems. We build shared platforms, engineering foundations, and reusable services that enable mission teams...  ...that enable teams across Medicare and Medicaid to deliver secure, resilient digital experiences. We're a remote-first team... 
    Contract work
    Immediate start
    Remote work

    Corbalt

    Eastern, KY
    18 hours ago
  •  ...Role summary Jito is seeking a Senior Security Engineer to join their growing security team. This role involves a broad scope of operational...  ...privacy, and programmable blockspace), JitoSOL (the leading liquid staking token on Solana), and JTX (trading built directly... 
    Remote work

    Socket

    Eastern, KY
    18 hours ago
  •  ...Our hedge fund client is seeking an experienced Senior Security Engineer to join their New York office. In this role, you will lead the firm's cybersecurity efforts, focusing on security monitoring, incident response, threat detection, and vulnerability management. Working... 
    Work at office

    Koitecc Solutions

    Eastern, KY
    18 hours ago
  •  ...Security is a core part of the Medplum platform. We build open source healthcare infrastructure...  ...to large enterprises. As a Security Engineer at Medplum, you will work across our...  ...record (EHR) platform, trusted by leading digital health and life sciences companies... 
    Flexible hours

    Medplum

    Eastern, KY
    18 hours ago
  •  ...Cisco’s Splunk Enterprise Security team builds software and cloud capabilities to help customers gain actionable security insights...  ...support enterprise deployments. As a Principal Software Engineer, you will lead architecture, development, and delivery of secure cloud product... 

    Jobleads-US

    Kentucky
    3 days ago
  • $174.25k - $205k

     ....S., Australia, and France. About The Role As a Senior Security Engineer at Jasper, you'll be the first true generalist on our Security...  ...anywhere in the US. What you will do at Jasper Lead the security design, implementation, and controls for Jasper’... 
    Local area
    Remote work
    Worldwide
    Home office
    Flexible hours
    Shift work

    AI Chopping Block

    Eastern, KY
    18 hours ago
  •  ...Koniag Government Services company, is seeking an experienced Security Engineer to support enterprise cybersecurity operations and IT...  ...Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities... 
    Local area
    Remote work
    Flexible hours

    Koniag Services, Inc.

    Eastern, KY
    18 hours ago
  • $300k - $400k

     ...Member of Technical Staff, Security Engineer About Fleet Fleet studies how environments produce intelligence...  ...role across Fleet’s cloud infrastructure and corporate systems. You’ll investigate alerts and security reports, lead the response when something matters, ship the... 
    Full time

    Fleet AI, Inc.

    Eastern, KY
    2 days ago
  •  ...Position Summary Base-2 Solutions is seeking a Senior Security Engineer to serve as the technical lead for day-to-day security activities supporting enterprise and isolated environments. This hands‑on technical lead will provide technical leadership and oversight for... 
    Work experience placement

    RPMGlobal

    Eastern, KY
    3 days ago
  • $160k - $180k

     ...and next-generation manufacturing. We are a team of builders, engineers, and operators who believe nuclear energy should be fast to deploy...  ...digital tools that power Valar's operations. The team ensures secure, reliable, and scalable technology solutions that support every... 
    Permanent employment
    Remote work

    Blackwing

    Eastern, KY
    18 hours ago
  •  ...quality. Hands-on experience to leverage AI tools (industry-leading LLMs) to increase productivity, automate routine tasks, and...  ...create world-class products. The Role: We're looking for a Security Engineer to join our AI Platform Security team. It is a high-ownership... 
    Work at office
    Local area
    Shift work
    3 days per week

    ThoughtSpot

    Eastern, KY
    1 day ago
  •  ...Security is at the foundation of Zizy’s mission to ensure that artificial general intelligence benefits all of humanity. The Security...  ...a robust security culture. About the Role As a Software Engineer focused on Security Partnerships on the Security Platform and Products... 

    Zizy Inc.

    Eastern, KY
    18 hours ago
  •  ...provenance, consent, licensing and payment history associated with data records can be verified. We are looking for a hands-on Security Engineer to own and strengthen security across PIP Labs’ cloud environment, endpoints and internal systems, while also supporting... 

    The DATA Foundation

    Eastern, KY
    18 hours ago
  •  ...cost savings through unmatched efficiency. As a leading venture-backed SaaS company founded by seasoned GovCon...  ...You'll be the technical backbone of our security program. This is a hands-on role owning the engineering side of security across the whole platform: vulnerability... 
    Remote work
    Flexible hours

    Procurement Sciences Inc

    Eastern, KY
    18 hours ago
  •  ...GuidePoint Security provides trusted cybersecurity expertise, solutions...  ...risk. Endpoint Security Engineer General Description We...  ...agencies rely on to lead their cybersecurity efforts and...  ...and 75% of family plans ~12 corporate holidays and a Flexible Time... 
    Permanent employment
    Interim role
    Casual work
    Remote work
    Flexible hours

    Socket

    Eastern, KY
    18 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Lead Corporate Security Engineer. Be the first to apply!