Security Engineer, Corporate Security
About the role
Corporate Security protects the environment Anthropic's people work in every day: their laptops and phones, their identities, the tools they collaborate in and the company data that flows through all of it. Everything that makes Claude what it is sits behind that environment. We keep company access on devices we manage, make those devices hard to compromise and right-size what any one of them can reach, while caring a great deal about the day-to-day experience of the people using them. The company is growing quickly and this team is growing with it, so we treat the work as an engineering discipline: controls as code and automation over queues, built to scale with headcount rather than strain against it.
As a Security Engineer here you'll drive significant parts of that work end to end. You'll set technical direction and turn it into shipped tooling. When a control collides with someone's workflow, you'll find the path that keeps them moving without giving up the protection. You'll be handed problems rather than task lists and you'll find as many yourself: threat-modeling the environment to surface what matters, fixing it and bringing the evidence that shapes what the team prioritizes next. This is a senior, hands-on individual contributor role.
Key responsibilities
Drive endpoint hardening across macOS, Windows, Linux, and ChromeOS, including device management configuration, application allowlisting, patching, and browser policy, favoring controls that are versioned, reviewable, and repeatable over one-off configuration
Extend device-trust and zero-trust access controls so company systems are reached from managed devices bound to the right person and carrying the right level of access, treating the experience of fellow employees as a design constraint rather than an afterthought
Build the automation and integrations that let the team scale with the company: joiner/mover/leaver automation across identity and device management, exception and expiry workflows, posture-driven policy, and Claude-assisted triage of review queues
Lead SaaS and identity governance, including third-party OAuth grants, delegated admin access, chat-platform apps, browser extensions, and software security reviews, turning recurring decisions into policy and tooling
Partner across the wider Security team, IT, and Engineering on telemetry, detections, and shared standards, and help define how a company that increasingly runs on AI agents does so securely and at scale
Minimum qualifications
Hands-on endpoint security engineering on macOS, Windows, Linux, or ChromeOS, such as MDM and declarative device management profile engineering, application allowlisting or binary authorization, system extensions and endpoint security frameworks, or their platform equivalents
Proficiency in Python and scripting languages generally; you architect and build integrations, automation, and internal tooling as a normal part of the job, and can write a detection when the work calls for it
Working depth in identity and access management, SaaS security, and zero-trust access
Threat-modeling judgment that finds the problems worth solving and the ability to scope them, define "done," and drive them to completion
Care for Anthropic's mission and the part corporate security plays in it
Preferred qualifications
Experience defining the scope and choosing the tooling for a security program rather than inheriting it
Experience shipping an enforcement change to a large user population: using data to find what will break before it does, staging the rollout, building the alternative path for affected workflows, and moving people onto it ahead of enforcement
Endpoint depth across more than one of macOS, Windows, Linux, and ChromeOS, with the judgment to harden for the threats that matter rather than to a checklist
Mobile security across managed and BYOD contexts, including protecting people and devices in higher-risk settings such as international travel
Experience bringing security governance to a modern SaaS environment, including third-party integrations, delegated access, and the long tail of internally built and AI-generated apps, in a way that speeds decisions up rather than slowing them down
Configuration-as-code, infrastructure-as-code, and CI/CD applied to corporate infrastructure
LLM-assisted security tooling you built that materially changed what a team could cover, and the judgment to know which work to hand to a model, which to keep, and how to combine the two
A track record of getting security controls adopted across an organization through influence and partnership rather than authority
Deadline to apply: None. Applications will be received on a rolling basis.
The annual compensation range for this role is listed below.
For sales roles, the range provided is the role’s On Target Earnings ("OTE") range, meaning that the range includes both the sales commissions/sales bonuses target and annual base salary for the role.
Annual Salary:
$320,000—$405,000 USD