Sobre el puesto

Company Description Mirantis, an IREN company, is the Kubernetes-native AI infrastructure company, enabling organizations to build and operate scalable, secure, and sovereign infrastructure for modern AI, machine learning, and data-intensive applications. By combining open source innovation with deep expertise in Kubernetes orchestration, Mirantis empowers platform engineering teams to deliver composable, production-ready developer platforms across any environment—on-premises, in the cloud, at the edge, or in sovereign data centers. As enterprises navigate the growing complexity of AI-driven workloads, Mirantis delivers the automation, GPU orchestration, and policy-driven control needed to manage infrastructure with confidence and agility. Committed to open standards and freedom from lock-in, Mirantis ensures that customers retain full control of their infrastructure strategy. https://www.mirantis.com/ Job Description About the Role Mirantis is seeking a Corporate Security Engineer to join our security team, based remotely in the United States. We're adding this role to extend our security operations coverage beyond EU hours and to bring additional hands-on capacity to the team — improving how quickly we detect, triage, and respond to issues across the working day. This is a broad, hands-on engineering role covering the core of corporate security: endpoint protection (EDR) and device management (MDM), identity and access (IAM/SSO, MFA), and the detection-and-response stack (SIEM, alerting, and coordination with our existing external SOC). You will be part of the team that responds when something happens, and you'll help harden the environment so that fewer things do. Alongside this, you'll support our compliance program — ISO 27001, SOC 2, and related efforts — by operating and evidencing the controls these systems enforce. In this role, you will operate and improve the tooling that protects our workforce and corporate environment, take part in incident response, and partner closely with IT, Product Security, and Compliance. You'll join a distributed team, bring US-hours ownership to work that currently leans on EU coverage, and have real latitude to raise the bar on how corporate security runs day to day. Key Responsibilities Endpoint Security & Device Management: Define and own the security policies, hardening baselines, and compliance posture for our EDR and MDM stack across the fleet, and drive threat response on endpoints. Partner with IT, who handle day-to-day enrollment and administration, so that devices are consistently enrolled, compliant, and protected across operating systems. Identity & Access Management: Administer and strengthen identity and access — IAM/SSO, MFA, provisioning/deprovisioning, and least-privilege access reviews. Partner with IT to keep the identity layer both secure and workable for employees. Detection, Monitoring & Incident Response: Operate the SIEM and detection tooling — tuning rules, triaging alerts, and investigating suspicious activity — and coordinate with our existing external SOC on monitoring and escalations. Take an active part in incident response end to end: investigation, containment, remediation, and root cause analysis. Contribute to post-incident reviews and runbooks, and bring US-hours ownership to work that currently leans on EU coverage. Security Tooling & Hardening: Operate, integrate, and improve the broader corporate security toolset. Proactively harden the environment — configuration baselines, access controls, and reducing attack surface — so that fewer incidents occur in the first place. Compliance Support: Support our compliance program (ISO 27001, SOC 2, and related efforts) by operating and evidencing the security controls these frameworks require. Partner with Compliance on audits, control mapping, and evidence collection. Vulnerability & Threat Management: Track and help remediate vulnerabilities across endpoints and corporate systems. Stay current on relevant threats and translate them into concrete improvements to our posture. Security Awareness & Phishing: Run and improve the security awareness program — training, phishing simulations, and employee-facing guidance. Help build a security-conscious culture and reduce the human attack surface across the company. Cross-Team Collaboration & Coverage: Work closely with IT, Product Security, and Compliance as part of a distributed team. Extend security operations coverage into US time zones and help ensure smooth handoffs with EU-based colleagues. Qualifications Qualifications - 4+ years of experience in a corporate/enterprise security, security operations, or IT security engineering role. - Hands-on experience with endpoint security (EDR) across macOS and Windows; experience with device management (MDM) and managing Linux endpoints is a plus. - Strong working knowledge of identity and access management — SSO, MFA, and modern IAM platforms (e.g., Okta, Entra ID/Azure AD, Google Workspace) — and least-privilege access practices. - Experience operating a SIEM and detection tooling — writing and tuning rules, triaging alerts, and investigating suspicious activity. Experience with Splunk is preferred. - Practical incident response experience — investigation, containment, remediation, and root cause analysis — and comfort coordinating with an external SOC/MSSP. - Solid grasp of security fundamentals — network and host hardening, common attack techniques, and how to reduce attack surface. - Familiarity with compliance frameworks such as ISO 27001 and SOC 2, and experience operating or evidencing security controls. - Experience with vulnerability management and translating findings into concrete remediation. - A collaborative working style suited to a distributed team, with clear written communication and reliable handoffs across time zones. - Based in the United States, with the ability to provide security operations coverage during US business hours. - Scripting/automation ability (Python, Bash, PowerShell) to streamline security operations is a strong plus; alternatively, a demonstrated ability and strong desire to pick these up quickly. - Experience running security awareness and phishing-simulation programs is a plus. - Relevant certifications (e.g., Security+, GIAC/GCIH/GCIA, CISSP, or vendor-specific EDR/SIEM/IAM certs) are a plus. - Exposure to cloud and SaaS security posture (AWS, Google Workspace, M365) is a plus. Additional Information What does Mirantis offer you? - Work with an established Silicon Valley leader in the cloud infrastructure industry; - Work with exceptionally passionate, talented and engaging colleagues, helping Fortune 500 and Global 2000 customers implement next-generation cloud technologies; - Be a part of cutting-edge, open-source innovation; - Thrive in the high-energy environment of a young company where openness, collaboration, risk-taking, and continuous growth are valued; - Professional development and training; - Attend conferences and working groups; - Company outings, happy hours, hackathons, and tech talks; - Receive a competitive compensation package with a strong benefits plan. We are a Leader for Container Management in G2 (#2 after AWS)!