The RoleWe're looking for a
Corporate IT Security Engineer to own Corridor's internal IT operations, security, and GRC programs. This is a highly hands-on role for someone who knows how to make things work - from laptops, networks, and authentication to endpoint security, access controls, and compliance. You'll keep our employees productive and our internal environment secure as we scale.
We're looking for a practical problem solver who is comfortable getting under a desk to troubleshoot a connection just as readily as they are configuring an identity provider or investigating a security issue.
What You'll Do- Own day-to-day corporate IT, including employee onboarding and offboarding, laptops and endpoints, networking, SaaS applications, identity and access management, authentication, and troubleshooting.
- Administer and secure our core corporate systems, including device management, SSO, MFA, endpoint security, networking, and access controls.
- Build and maintain practical security processes across the company, including asset management, access reviews, security policies, vulnerability management, incident response, and employee security practices.
- Own and develop Corridor's GRC and compliance programs, working toward relevant security certifications and customer security requirements.
- Partner with employees across the company to solve IT and security problems quickly while maintaining a high bar for security and usability.
- Evaluate and implement tools and automations that make IT and security more efficient, including leveraging AI where it can meaningfully improve internal operations.
- Build the systems and processes that allow Corridor's IT and security environment to scale without unnecessary complexity.
What You'll Bring- 2-6+ years of hands-on experience in corporate IT, IT security, systems administration, or a similar role; internships, campus IT, or early career experience with significant hands-on responsibility are highly relevant.
- Strong practical understanding of corporate IT environments: laptops, networking, identity, authentication, endpoints, SaaS administration, and hardware.
- Experience administering systems such as Google Workspace, Okta, Microsoft 365, Jamf, Intune, CrowdStrike, or similar tools.
- A security mindset and experience with access controls, endpoint security, vulnerability management, incident response, and security best practices.
- Exposure to GRC frameworks and compliance programs such as SOC 2, ISO 27001, or similar is a plus.
- You're comfortable troubleshooting physical and technical problems and figuring things out when there isn't an obvious answer.
- You're highly responsive, organized, and pragmatic, with a strong bias toward getting things working rather than over-engineering solutions.
- You don't need to be a software engineer - we care more about hands-on IT and security experience than computer science credentials.
- Interest in AI and using modern tools to automate and improve IT and security operations is highly desirable.
We're looking for someone open to working in a hybrid environment c.3 days per week in our South Beach, San Francisco office.