Multiple employees collaborating on work
Atlassian Logo

Atlassian

Enterprise Security Engineer

Posted 14 Hours Ago
Be an Early Applicant
In-Office or Remote
Hiring Remotely in Sydney, New South Wales
Mid level
In-Office or Remote
Hiring Remotely in Sydney, New South Wales
Mid level
Implements and operates enterprise security controls across identity, endpoints, cloud, SaaS, networks, and data. Automates security workflows using scripts, APIs, infrastructure as code, and CI/CD checks. Maintains IAM, endpoint protection, DLP, device posture, and secure configuration baselines. Supports vendor risk reviews, insider-risk monitoring, physical access integrations, incident troubleshooting, on-call operations, documentation, and remediation of security gaps across corporate technology environments.
The summary above was generated by AI
The Enterprise Security Engineer is a hands-on engineer who implements, operates, and improves security controls across corporate architecture, SaaS platforms, cloud services, endpoints, identity, data, and workforce technologies. This role translates enterprise security strategy into practical, measurable controls and secure-by-default solutions that reduce risk without slowing the business.
The engineer partners with Enterprise IT, Corporate Engineering, SRE and Platform teams, Business Systems, Product Security, Legal, Privacy, and other stakeholders to deliver scalable security improvements across Atlassian's corporate environment. As part of Atlassian's "Customer Zero" initiative, the engineer helps validate and improve security capabilities internally before broader adoption.
Enterprise Security Engineering
  • Design, implement, operate, and maintain security controls across identity, endpoints, network, cloud (AWS/GCP), SaaS, and data-protection domains.
  • Remediate identified gaps in access controls, device posture, SaaS configurations, and sensitive data protections.
  • Assist with the rollout and adoption of secure baseline configurations and paved-path implementations across internal teams.
  • Participate in security reviews for new tools, internal workflows, and SaaS integrations under the guidance of senior engineers.
  • Support cyber-related physical security operations, including maintaining integrations between physical access-control systems and identity platforms, monitoring access lifecycles, and addressing facility-related cyber risks.

Identity, Access & Human Risk
  • Strengthen identity lifecycle management, privileged access, authentication, authorisation, and access reviews.
  • Help validate agentic identity, AI-native governance, data-protection, and access controls internally before broader release.
  • Monitor insider risk signals, anomalous access patterns, and policy violations to support triage and response.
  • Support the secure implementation of service accounts and automated bot credentials.

Cloud, SaaS & Endpoint Protection
  • Implement and monitor security guardrails and posture baselines across cloud environments (AWS/GCP) and SaaS suites (Google Workspace, Slack, Okta).
  • Maintain endpoint security agents, device compliance policies, and configuration baselines across macOS and Windows fleets.
  • Help implement and tune Data Loss Prevention (DLP) and data-classification controls to safeguard internal and customer information.

Automation & Operational Excellence
  • Build scripts, API integrations, and automations (e.g., Python, Bash, Go) to eliminate repetitive tasks and streamline security operations.
  • Maintain infrastructure-as-code and CI/CD security checks for enterprise tooling.
  • Track operational metrics, monitor control health, and contribute to standard operating procedures (SOPs) and runbooks.
  • Participate in on-call rotations, troubleshooting, and post-incident reviews (PIRs) for security tooling outages, pipeline failures, and platform availability issues.

SaaS Supply Chain & Third-Party Risk
  • Execute security evaluations and vendor risk reviews for new SaaS tooling and browser extensions against defined security criteria.
  • Track remediation of identified vendor vulnerabilities and configuration risks.

How You'll Measure Success (first 6-12 months)
  • Execution and Delivery: Successfully deliver scoped technical tasks, control deployments, and automation milestones on time with high code and configuration quality.
  • Operational Excellence: Triage and resolve security escalations, access tickets, and alert queues within established SLOs, actively reducing backlog and manual toil.
  • Automation and Tooling: Write reliable scripts and workflow automations that reduce manual operational effort and improve control reliability.
  • Security Hygiene & Remediation: Close identified posture gaps across SaaS, endpoints, or IAM systems, demonstrating measurable improvements in baseline compliance.
  • Collaboration & Learning: Partner effectively with senior engineers and cross-functional teams, actively expanding your technical depth across enterprise security domains.

Key Skills and Experience
  • 3-5+ years of experience in cybersecurity, security engineering, cloud security, systems engineering, or enterprise technology.
  • Experience implementing, operating, and maintaining security controls across identity, endpoint, SaaS, cloud, network, and data protection domains.
  • Hands-on experience with IAM, directory services, SSO/MFA, and access governance (e.g., Okta, Google Workspace, Azure AD / Entra ID).
  • Practical experience securing cloud environments (AWS or GCP) and enterprise SaaS collaboration suites (e.g., Google Workspace, Slack).
  • Experience automating security tasks and operational workflows using scripting (e.g., Python, Bash, Go), REST APIs, and CI/CD pipelines.
  • Working knowledge of endpoint security architectures, device posture management (MDM), and data protection / DLP controls across macOS and Windows.
  • Understanding of SaaS vendor risk assessments, third-party integration risks, and secure baseline standards.
  • Foundational awareness of cyber-related physical access-control systems and their integration with enterprise identity lifecycles.
  • Strong troubleshooting and communication skills, with the ability to write clear runbooks and technical documentation, and collaborate effectively across engineering and operations teams.
HQ

Atlassian San Francisco, California, USA Office

Atlassian believes the future of work is distributed and offers our people the flexibility to help them do what’s important to them. And with few exceptions, we hire people anywhere we have a legal entity as long as they have eligible work rights and sufficient team time zone overlap.

Atlassian Mountain View, California, USA Office

301 E Evelyn Ave., Mountain View, CA, United States, 94041

Similar Jobs at Atlassian

14 Hours Ago
In-Office or Remote
Mid level
Mid level
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Implements, operates, and improves enterprise security controls across identity, endpoints, cloud, SaaS, networks, and data. Builds automation using scripts, APIs, infrastructure-as-code, and CI/CD security checks. Supports IAM, endpoint protection, DLP, vendor risk assessments, physical access integrations, incident troubleshooting, and security operations. Partners with engineering, IT, legal, privacy, and business teams to deploy secure baselines, remediate risks, monitor control health, and improve enterprise security capabilities.
Top Skills: AWSAzure AdBashCi/CdDlpEntra IdGCPGoGoogle WorkspaceIammacOSMdmMfaOktaPythonRest ApisSaaSSlackSsoWindows
14 Hours Ago
In-Office or Remote
Mid level
Mid level
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Implements, operates, and improves enterprise security controls across identity, endpoints, cloud, SaaS, networks, and data. Builds automation using scripts, APIs, infrastructure-as-code, and CI/CD security checks. Supports IAM, endpoint protection, DLP, vendor risk assessments, physical access integrations, incident troubleshooting, and security operations. Partners with engineering, IT, legal, privacy, and business teams to deploy secure baselines, remediate risks, monitor control health, and improve enterprise security capabilities.
Top Skills: AWSAzure AdBashCi/CdDlpEntra IdGCPGoGoogle WorkspaceIammacOSMdmMfaOktaPythonRest ApisSaaSSlackSsoWindows
3 Days Ago
In-Office or Remote
Senior level
Senior level
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Lead regional security incident response for high-severity enterprise incidents, directing investigations, communications, coordination, and remediation. Build incident response tools, systems, playbooks, and programs; conduct exercises and post-incident reviews; mentor team members; collaborate across security teams; engage law enforcement and industry bodies; and produce threat intelligence. The role requires expertise across multiple security domains, cloud and network technologies, scripting, and incident response leadership.
Top Skills: FirewallsGCPGoIntrusion Detection Systems (Ids)Network ProtocolsPython

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account