IT Security Engineer (SF Bay Area) at Higgsfield
San Francisco, CA
$165,000–$230,000
Jul 22, 2026
San Francisco, CA
Jul 23, 2026
What this job asks for AI summary
This is a corporate security engineering role focused on the "people side" of security — managing endpoint fleets via MDM and EDR, administering corporate identity (SSO, MFA, conditional access), and overseeing SaaS access governance including joiner-mover-leaver processes. The role also covers phishing simulations, security awareness training, and feeding endpoint and identity signals into shared detection and response. It suits someone with hands-on fleet-scale MDM, EDR, and identity provider experience who can also automate routine tasks through scripting.
Senior level · San Francisco-Oakland-Berkeley, CA · Full-time
Pay in the description: $165,000–$230,000
“or” means any one of them counts — you don't need all of them.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Roughly 15 people in the San Francisco-Oakland-Berkeley, CA area plausibly meet what this posting asks for (information security analysts). range 6–20
Applicant volume Moderate — A normal amount of company. The rare requirements below are what will separate a shortlisted application from the rest.
Rare in this occupation — lead with these, and say what you built with them.
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $165,879 (middle half $117,529–$206,125). This posting is about at that midpoint.
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (7)
The role is titled without an explicit seniority level, but the scope — owning corporate security end-to-end at a fast-scaling company, including fleet MDM/EDR, corporate identity, SaaS governance, and phishing/awareness programs — supports a Senior classification.
Python, PowerShell, and Bash are listed as interchangeable scripting options under Requirements; Python is used as the primary name with the others as alternatives.
Entra ID (Microsoft Entra) is explicitly named as the corporate IdP alongside SSO/SAML/SCIM and MFA, all of which are hard-gated under Requirements.
EDR and XDR appear together in the responsibilities narrative ('Run EDR/XDR'); EDR is the primary named requirement with XDR as an alternative.
SOC 2 familiarity and high-growth startup experience are explicitly listed under 'Nice to have'.
Slack appears in the responsibilities narrative as part of the collaboration stack to be secured, not in a formal requirements section.
This is a hybrid role requiring three days per week in the San Francisco office; it is not fully remote.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.