Senior Security Engineer owning identity, IT automation, and cloud security for Maze, a user research platform. Driving vulnerability management, compliance, and secure infrastructure at scale.
Responsibilities
Own identity and SSO in Google Workspace, including groups, SCIM provisioning, MFA, and access policies
Run the macOS fleet through Iru, including enrollment, configuration, patching, and compliance
Automate joiner, mover, and leaver flows from Rippling
Own SaaS licensing and application provisioning with lightweight support through automation and self-service
Own security controls across AWS, GitHub, Kubernetes, and the SaaS environment
Manage role-based access, IAM hygiene, cloud guardrails, network boundaries, and secrets management
Run vulnerability management from findings through remediation and verification with owners and SLAs
Run access reviews and generate audit evidence through Vanta
Contribute security perspectives to incidents and post-incident reviews
Use AI-assisted and agentic workflows to reduce manual work and investigate issues faster
Report to the Senior Manager, Platform Engineering and collaborate across Maze
Requirements
Strong software, infrastructure, or security engineering background
Comfortable using code and infrastructure as code to automate repetitive work
Experience owning identity, MDM, and joiner/leaver automation at a remote company
Experience securing a modern AWS or GCP environment and explaining IAM trade-offs
Experience running vulnerability management or access reviews in an externally audited environment
Experience with SOC 2 or ISO 27001 controls and converting controls into automated checks
Comfortable using modern AI tools and excited about AI-assisted development
Strong engineering fundamentals across IT and security
Benefits
Health insurance with international coverage, vision, and dental; 100% of the team member premium paid
Free access to proper mental health care, unlimited virtual therapy sessions, and 24/7 access to resources
Life and Disability Insurance; 100% of the team member premium paid
Flexible time off
Meaningful equity
Company retreats, fully paid for by Maze
New MacBook, paid for by Maze
Paid Family leave: 16 weeks for birth or adoptive parents
$500/month for dependent health insurance coverage, or flexible benefits spending if no dependents
$1,500 remote work setup fund
Flexible work schedule where you manage your own working hours
Monthly Bonus.ly points redeemable for gift cards and more
Virtual social engagements
SWAG
Open, transparent culture with virtual coffee chats and bi-weekly all-hands meetings
Application Security Researcher building autonomous application - security capabilities for OX Security. Researching attack paths, AI models, and detection engines from prototype through production.
Managing Norfolk County’s cybersecurity, disaster recovery, incident response, and security projects. Supervising IT security staff and protecting municipal systems, services, and information.
IT Security Officer overseeing information security for Desjardins’ property and casualty insurance sector. Managing risks, vulnerabilities, suppliers, complex projects, and executive security reporting.
Azure SA&A Specialist supporting Government of Canada security assessments, controls, evidence, and testing. PLATO delivers Indigenous - owned software testing and technology services across Canada.
Product Security Engineer securing WorkOS developer tools and APIs for enterprise authentication and identity. Leading secure design, offensive testing, tooling, and vulnerability remediation.
Product Security Lead securing Miovision’s intelligent transportation products, cloud services, and connected devices. Leading secure - by - design engineering and product risk management for safer smart transportation networks.