Staff/Lead Enterprise Security Engineer
Staff/Lead Enterprise Security Engineer
The role
You will be Beacon's first dedicated security engineer. You will set the strategy for enterprise security and build the program from the ground up. This is a deeply hands-on seat, not a CISO or SOC-analyst seat and not IT support.
At its core, the job is preventing, detecting, and responding to threats across Beacon's corporate and cloud environments and its portfolio companies, and owning the security stack that makes that possible. You will develop, maintain, and scale that stack across a complex multi-cloud, multi-SaaS environment, shape its architecture, and own the technical roadmap as Beacon grows.
We run lean, so automation is the point, not a nice-to-have. This role is proactive and engineering-driven, not alert-babysitting. You automate the repetitive work and keep tightening the playbooks and levers as new patterns and information emerge, so the system gets sharper over time instead of just louder.
You will report to the VP of IT and Integration and work with everyone from Beacon engineering to portfolio company team members.
What Enterprise Security owns
This is the full remit of Enterprise Security at Beacon, and it is deliberately broad. It is more than one person does at once, and we know that. As the first member of the team, you start the program: you stand up the essentials, build the highest-leverage pieces first, and shape the rest into the roadmap. You are not expected to do all of it at once.
Own prevention, detection, and response across corporate and cloud: tune the detection stack, write detection logic, own triage, and get telemetry into the SIEM
Own the endpoint security stack (EDR, DLP, secure browser, hardening) and the technical roadmap for security tooling.
Lead incident response: own readiness (playbooks and tabletops) and drive the response when something fires, pulling in IT, engineering, and portfolio teams as needed.
Set and confirm the security standards for identity and access (MFA, SSO, SCIM lifecycle, least-privilege), and build the monitoring and reporting on top.
Run security across the portfolio: baseline audits at onboarding, ongoing monitoring, and SaaS risk at scale (SSPM, OAuth, shadow IT, drift).
Own the email security and phishing awareness program.
Run vendor security review for new tools.
What we are looking for
This role is built for a security manager or lead who has done this at a bigger company and wants to build it again from scratch, on their own terms: automation-first and AI-forward, at a company moving fast enough to keep it interesting. You trade a big team and inherited playbooks for a blank page and real ownership. We are also open to an exceptional senior IC ready to own a broad program end to end. In both cases:
Highly independent. You set priorities against a broad surface and a fast M&A cadence without being told what matters.
Confident and credible with people outside your team. You can represent security to portfolio founders and engineering leads and bring them along.
Deep, hands-on security engineering across endpoint, detection and response, identity, cloud, SaaS, and email, and the ability to build tooling and automation from scratch.
A high bar for the craft: threat modeling, secure design, detection quality, and IR rigor.
Comfortable in greenfield and ambiguity. You would rather define a program than inherit one.
Our Values at Beacon Software
Humility: We acknowledge that the path to getting to the right answer involves being wrong along the way. We have strong beliefs which are weakly held. We actively seek new ideas and believe we can learn from anyone at any time.
Honesty: We are truth seeking in our approach to business problems. Business is a repeat game and we believe that human relationships generate alpha. We understand that trust is earned over a lifetime and can be lost in an instant.
Hunger: We play to win. We hold ourselves to high standards and will not be outworked. We take pride in having a deep sense of responsibility to ourselves, each other, our partners, and our customers. We believe to whom much is given much is expected.
Horizon: We seek to build a generational software company. This will take decades. We manage our expectations and those of our partners to take advantage of the 8th wonder of the world - compounding growth.
How We Use AI in Our Hiring Process: To ensure transparency, we want candidates to know that Beacon Software uses Artificial Intelligence and AI-enabled tools to assist with screening, reviewing, organizing and highlighting profiles and applications that match the key requirements for each role.
AI does not make hiring decisions: Every application is reviewed by a member of our team, and all decisions throughout the process are made by humans. We use AI to support efficiency and consistency, not to replace human judgment. We are committed to a fair, thoughtful, and equitable experience for every candidate.