Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Lead Corporate Security Engineer

Jobleads-US

About Suno

We're building the world's first creative entertainment platform, where the entire world can feel the joy and fulfillment of making music. Music is for everyone: Our users include everyone from grandmothers creating songs for their loved ones, to Grammy winners using Suno Studio, our power tool, to make the most popular hits in the world.

Building the future of entertainment requires ambition. The pace is fast, the problems are hard, and the work demands ownership and intensity. For the right people, it’s incredibly rewarding: a chance to shape a new medium, work with a small team that cares deeply about quality, make music, drink too much coffee, and build something that millions of people use to express themselves in ways that were never before possible.

Suno is the fastest growing consumer entertainment company and the leader in AI music. We are backed by leading investors including Bond Capital, Menlo Ventures, Lightspeed Venture Partners, IVP, Forerunner, Union Square Ventures, Alkeon, Quiet, Matrix Partners, Schroders Capital and, NVentures (venture arm of NVIDIA).

About the role

The Lead Corporate Security Engineer will be our domain expert for securing our Corporate IT environment. You’ll work closely with colleagues in IT, Business Systems, Security, and Engineering to ensure that our corporate systems are implemented and maintained securely. As a senior member of the team, your impact will be split between building your team, enabling others, and doing hands-on work to mature our systems, processes, and behaviors. You’ll be building from 0 → 1 in some places and 1 → 10 in others.

What we don't have yet is someone who owns corporate security as a domain — who decides what the bar is, sequences the work to get there, and sees the next problem before it becomes a fire drill.

That's this role. You'll own the corporate security domain end to end: identity and access governance, endpoint and vulnerability management, detection and response, third-party integration risk, vendor assessment, and SaaS posture. You'll set the standard, own the roadmap, and be accountable for the outcome. Our senior IT engineers run the platforms day to day and are your closest partners — you make their work better, not harder.

How this role works with IT

Ownership splits by layer, not by system. Our senior IT engineers own the run; you own the standard and the direction.

  • You own the corporate security roadmap. What we secure, in what order, to what bar. You bring it to IT leadership and the CISO aligned, not for arbitration

  • IT engineering owns platform operations. Okta, Lumos, Kandji, and the wider SaaS portfolio are administered and integrated by them. You define what those platforms must enforce

  • You raise the bar around you. You make your reasoning explicit so IT engineers make good security calls without you in the room, and you build the tooling and defaults that make the secure path the default path

  • You're accountable for the outcome, not just the proposal. You decide, you communicate the tradeoff, and you own what happens next

The people who do well here get their plans stronger by exposing them to the people who run the systems, and they carry the room without needing the org chart to settle it.

What you'll own

Identity and access governance

  • Own the access model at Suno: the RBAC and entitlement design, least-privilege defaults, and the governance layer in Lumos that enforces them

  • Set the standard for what access review, certification, and approval should look like here — then build toward it rather than importing someone else's framework

  • Drive access lifecycle automation so joiner/mover/leaver is correct by default and exceptions are visible

  • Get ahead of non-human identity: service accounts, agents, and automations are a growing share of what holds access at Suno, and we need a model for them before it's urgent

Endpoint security and vulnerability management

  • Own the security standard for our fleet: hardening baseline, compliance signals, device trust, and how endpoint posture feeds access decisions

  • Own third-party vulnerability management as a program — coverage, risk-based remediation SLAs, reporting, and the negotiation with teams whose tools are the problem

  • Partner with the IT engineer who owns Kandji so the standard becomes deployed policy without degrading how people work

Detection and response

  • Own CrowdStrike Falcon Complete and our outsourced SOC relationship: coverage, tuning, escalation quality, and vendor performance against what we actually need

  • Define what good detection looks like at Suno and hold the provider to it, rather than accepting their default view of our environment

  • Lead corporate security incidents to closure, including the executive communication, and make sure what we learn changes the system rather than just the ticket

Third-party and integration risk

  • Own how Suno evaluates third-party access: integration and OAuth review for Slack, Google Workspace and the rest of the portfolio, plus vendor security assessment at purchase and renewal

  • Define our risk appetite in practice, in partnership with the CISO, and make it legible enough that others apply it without you

  • Turn recurring decisions into policy, scope guidance, and tooling so the review queue shrinks as the company grows

SaaS security posture

  • Build and own the program: the bar for our SaaS applications, the assessment cadence, and the remediation that follows

  • Improve tenant-level configuration across the portfolio — SSO and SCIM coverage, MFA and session policy, admin role hygiene, OAuth grant and token management, data sharing defaults

Cross-functional leadership

  • Work with IT, Security, Engineering, AI Enablement, and Legal to shape how Suno builds and buys, early enough to matter

  • Influence the scope of what comes next: how our future GRC function plugs in, what we automate versus staff, where the next investment goes

  • Mentor and raise the technical bar for people around you, including IT engineers who aren't security specialists

What success looks like

  • First 90 days: you've formed your own view of our security posture, built working relationships with the IT engineers and the SOC, and told us the three things we're wrong about

  • First 6 months: a corporate security roadmap exists that IT and the CISO are aligned behind, with the sequencing and the tradeoffs made explicit; the highest-risk items are already moving

  • First year: entitlement sprawl and vulnerability backlog are measurably down, detection reflects our real risks, third-party review is fast enough that nobody routes around it, and the standard holds because it's built into tooling and shared judgment rather than into you

What you'll bring

  • ~8+ years in corporate/enterprise security or security engineering, including having owned identity, endpoint, or SaaS security as a domain rather than as a set of tickets

  • Deep hands-on expertise with a modern IdP (Okta preferred) and with IGA or access-governance tooling (Lumos, Veza, ConductorOne, Opal, or similar)

  • You've designed an entitlement or RBAC model across a large SaaS portfolio and lived with the consequences long enough to know what breaks

  • Endpoint security depth in a macOS-primary fleet: MDM-delivered hardening, compliance and device trust, third-party patch and vulnerability management at scale

  • Real EDR depth — CrowdStrike preferred — and experience holding a managed detection provider or outsourced SOC to a standard you defined rather than accepting theirs

  • Strong command of OAuth, SAML, OIDC, and SCIM, and of the risk model behind third-party integrations

  • A track record of setting a security standard that other people applied without you enforcing it — written policy, tooling, defaults, or all three

  • Experience influencing engineering and business teams who don't report to you, early enough in their process to change the outcome

  • Automation fluency: Python or TypeScript, REST APIs, and a habit of building integrations and internal tooling as a normal part of the job

  • Excellent writing and judgment under ambiguity. You can hold a position with an executive and change it when the evidence says to

  • A calibrated sense of risk. You know which risks to block on, which to document, and how to tell the difference in public

Helpful, not required: detection engineering, insider risk or DLP programs, zero-trust network access, SOC 2 or ISO program ownership, just-in-time access patterns or identity-as-code, securing AI agent and non-human identity access, prior experience as the first or second security hire at a fast-growing company.

Suno is proud to be an Equal Opportunity Employer. We consider qualified applicants without regard to race, color, ancestry, religion, sex, national origin, sexual orientation, gender identity, age, marital or family status, disability, genetic information, veteran status, or any other legally protected basis under provincial, federal, state, and local laws, regulations, or ordinances. We will also consider qualified applicants with criminal histories in a manner consistent with the requirements of state and local laws, including the Massachusetts Fair Chance in Employment Act, NYC Fair Chance Act, LA City Fair Chance Ordinance, and San Francisco Fair Chance Ordinance.

#J-18808-Ljbffr Jobleads-US
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Lead Corporate Security Engineer in Boston, MA vacancy
  • $143.7k - $194.4k

    The Corporate Services Security (CPSS) Finance and Communication Security Team is responsible for securing...  ...at scale by partnering with senior engineers on the team. You will partner closely...  ...: Own security of your services. Lead on call rotations, drive root cause analysis... 
    Suggested
    Internship
    Flexible hours

    Amazon

    Boston, MA
    1 day ago
  • $125k - $205k

     ...engagement, and revenue. Trusted by leading enterprise brands including...  ...more at later.com.Senior Security EngineerAbout this position:...  ...looking for a Senior Security Engineer to strengthen Later's company...  ...improvements across our corporate systems and business operations... 
    Suggested
    Permanent employment
    Local area
    Remote work

    Later

    Boston, MA
    4 days ago
  • $121k - $226k

     ...continue to grow, we’re looking for a Senior Security Engineer II. Hi Marley is building an AI-native...  ...across the internal environment. Lead threat modeling for new AI capabilities...  .... Partner with AI Operations and Corporate IT to embed security into the internal... 
    Suggested
    Work at office
    Flexible hours
    3 days per week

    Hi Marley

    Boston, MA
    2 days ago
  •  ...Suno seeks a Lead Corporate Security Engineer to own and mature Suno’s corporate security posture. You’ll lead identity and access governance, endpoint hardening, vulnerability management, and third‑party risk, partnering with IT and engineering to raise the security... 
    Suggested

    Jobleads-US

    Boston, MA
    2 days ago
  •  ...Verily in Boston, MA is seeking a Senior Product Security Engineer onsite to strengthen Information Security and Privacy Risk Management. The role focuses on vulnerability management, regulatory readiness for FedRAMP, and coordinating remediation with system owners.... 
    Suggested

    Jobleads-US

    Boston, MA
    2 days ago
  •  ...STATE STREET CORPORATION is seeking a Product Security Engineer/Architect – Email Security to lead the enterprise email security strategy, architecture, and roadmap. You will partner with the Email Platform team and Cyber Defense Center to strengthen defenses against phishing... 

    Jobleads-US

    Boston, MA
    2 days ago
  • $25 - $50 per hour

     ...Role Overview TSA is accepting applications for Lead and Supervisory Transportation Security Officers at airports in San Mateo. These roles are ideal for individuals looking to step into leadership positions within airport security operations. TSA provides training... 
    Shift work
    Night shift
    Weekend work

    TSA Hiring Hub

    Boston, MA
    13 days ago
  •  ...to these requirements.   What you’ll need to succeed as a Lead Scientist, Data Science at XPO Minimum qualifications: ~ Bachelor...  ...’s degree in Computer Science, Statistics, Mathematics, Engineering, Economics, or any related quantitative discipline ~ A Master... 
    Relocation package

    XPO

    Boston, MA
    4 days ago
  • $120k - $202.5k

    Who we are looking for We are seeking a Product Security Engineer / Architect - Email Security reporting into the Defensive Engineering leadership team within Global Cyber Security (GCS). You will lead the strategy, architecture, and engineering of enterprise email security... 
    Full time
    Temporary work
    Work at office
    Flexible hours

    State Street Bank

    Boston, MA
    3 days ago
  • $105.4k - $207.8k

     ...with confidence, and proactively manage to secure success. Recruiting for this role ends on...  ...26. Work you'll do As a Managed Services Engineer III on the Cyber Operate Offering team,...  ...possess these skills: Proven ability to lead and coordinate a team of analysts across... 
    Local area
    Visa sponsorship
    Shift work
    Rotating shift

    Deloitte

    Boston, MA
    1 day ago
  • $145.9k - $234.2k

    The Role: As a Cybersecurity Engineer, you will help design, implement, and mature Moderna’s approach to API security across modern applications, platform services, and AI-enabled...  ...in 2010, we have aspired to build the leading mRNA technology platform, the infrastructure... 
    Permanent employment
    Full time
    Work at office
    Work from home

    Moderna Therapeutics

    Cambridge, MA
    4 days ago
  • $110k - $315k

    Job OverviewWe are seeking a hands-on Network Security Engineer with deep experience in NexGen firewalls such as Palo Alto Networks, Checkpoint and Fortinet technologies to help operate, secure, and continuously improve Arrowstreet’s network security environment. This role... 
    Full time
    Local area
    Remote work

    Arrowstreet Capital

    Boston, MA
    1 day ago
  • $150k - $200k

    DescriptionKforce's is partnering with a highly respected global investment organization in Boston, MA that is seeking a hands-on Senior Security Engineer to join a small, high-impact engineering team focused on building and deploying enterprise security solutions across cloud,... 

    KForce

    Boston, MA
    1 day ago
  • $210k - $234k

     ...agents to deliver exceptional service to seller and buyer clients.Engineering @ CompassCompass has built the first modern end-to-end real...  ...and the operating platform that will transform real estate.Security @ CompassWe are hands-on security engineers helping to build secure... 
    Minimum wage
    Flexible hours

    Compass

    Boston, MA
    3 days ago
  • $117.6k - $176.4k

     ...As a Senior Security Engineer at EnergySage, you will play a pivotal role in fortifying our application security through both hands-on technical...  ...and elevate critical issues. Training and Development: Lead and deliver training sessions to elevate the security... 
    Full time
    Temporary work
    Flexible hours

    Schneider Electric

    Boston, MA
    2 days ago
  • $176k - $196k

     ...exceptional service to seller and buyer clients. Senior Security Engineer, Cloud Security Security @ Compass We are hands-on...  ...work with teams to remediate and protect our products. You will lead our effort to build security as a service to drive safe-by-... 
    Minimum wage
    Flexible hours

    COMPASS Inc

    Boston, MA
    1 day ago
  • $120k - $202.5k

    Who we are looking forWe are looking for a Senior Staff SaaS Security Engineer reporting within the Defensive Engineering leadership team in Global Cyber Security (GCS). You will lead the deployment, integration, and operationalization of SaaS security platforms and controls... 
    Full time
    Temporary work
    Flexible hours

    State Street Bank

    Boston, MA
    2 days ago
  • $121.6k - $194.5k

     ...The Role As a Cybersecurity Engineer, you will help design, implement, and mature Moderna’s approach to API security across modern applications, platform services, and AI...  ...founding in 2010, we have aspired to build the leading mRNA technology platform, the... 
    Permanent employment
    Work at office
    Local area
    Work from home

    Moderna

    Cambridge, MA
    1 day ago
  • $120k - $202.5k

     ...Who we are looking for We are seeking a Product Security Engineer / Architect – Email Security reporting into the Defensive Engineering...  ...enterprise email security strategy, architecture, and roadmap. Lead the evaluation, implementation, and continuous improvement of... 
    Temporary work
    Flexible hours

    Jobleads-US

    Boston, MA
    2 days ago
  • $150k - $190k

    DescriptionKforce's client in Boston, MA is seeking a Product Security Engineer.Summary:We're partnering with a highly respected global organization that is investing heavily in modern application security, cloud technologies, and secure software development practices.... 

    KForce

    Boston, MA
    4 days ago
  • $107.5k - $204.5k

     ...and transferable U.S. government issued security clearance is required prior to start date...  ...complex problems. With our three market leading businesses, world-class operations and...  ...technically challenging.The Product Cybersecurity Engineering DoD East Florida team is hiring a... 
    Temporary work
    Work experience placement
    Work at office
    Remote work
    Relocation package
    Flexible hours

    Raytheon

    Boston, MA
    4 days ago
  • $198k - $368k

     ...and others. If you're as passionate about your future as we are, join our team.KPMG is currently seeking a Director, Global Security Engineering Lead to join our Global Digital Group which is part of KPMG International.Responsibilities:Own the engineering architecture,... 
    H1b
    Local area

    KPMG

    Boston, MA
    2 days ago
  •  ...cyber threats, with a hybrid schedule in Boston (60% on-site). You'll work on detection engineering, ML-enabled tooling, and incident response alongside engineers and security professionals. Candidates are pursuing a Bachelor's in Cybersecurity or CS, with programming... 
    Summer work
    Internship

    Jobleads-US

    Boston, MA
    2 days ago
  • $99k - $120k

     ...Job Description At Flywire, we are looking for a Security Engineer II to join our global Security Engineering team. In this role...  ...penetration testing. Incident Response & Threat Detection: Lead technical containment, forensic collection, and rapid threat... 
    Full time
    Local area
    Immediate start

    Flywire

    Boston, MA
    5 days ago
  • $99k - $120k

     ...make them unshakeable, this role is built for you. As a Security Engineer II on our Active Operational Offensive track , you’ll sit at...  ...security operations, building the technical depth needed to lead independent engagements over time. Key Responsibilities &... 
    Full time
    Local area
    Immediate start

    Flywire

    Boston, MA
    25 days ago
  • $18 - $32 per hour

     ...Lab Associates. Functions as a Lab Associate as needed Takes lead role in ensuring department workflow is of a high quality Implement...  ...inventory. Works with Building Services and Purchasing to secure supplies and equipment necessary to operations May handle scheduling... 
    Hourly pay
    Minimum wage
    Full time
    Temporary work
    Work experience placement
    Local area
    Monday to Friday
    Flexible hours

    Optum

    Medford, MA
    23 hours ago
  •  ...One year of Clinical Dietetics experience preferred. The Encompass Health Way We proudly set the standard in care by leading with empathy, doing what's right, focusing on the positive, and standing stronger together. Encompass Health is a trusted leader in... 
    Full time
    Part time
    Flexible hours

    Encompass Health Rehabilitation Hospital of New England

    Medford, MA
    11 hours ago
  • $149k - $235k

     ...data stores such as MongoDB. We're looking for a Senior Cloud Security Engineer II to join our Security Engineering function as a senior...  ...the standards and reference patterns other engineers build on, lead cross-team security initiatives end to end, take on the ambiguous... 
    Full time
    Work at office
    Flexible hours

    Braze

    Boston, MA
    1 day ago
  • $57 - $64 per hour

    DescriptionKforce has a client in Boston, MA that is seeking an Information Security Engineer.Responsibilities:* Evaluate technology and security operations to identify system needs, risks, and improvement opportunities* Gather and translate business requirements into clear... 

    KForce

    Boston, MA
    2 days ago
  • $46k - $101.2k

     ...Team Lead, Accounts Payable Catapult is building the future of sports performance technology, with a mission to Unleash the Potential...  ...details and the regular supplier payment batches, including the secure loading of payments to the bank Maintaining working... 
    Full time
    Work at office

    Catapult Sports

    Boston, MA
    a month ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Lead Corporate Security Engineer. Be the first to apply!