security
Posted Jun 8Security Engineer, Corporate Security
at Notion
San Francisco, United StatesRemote
Requirements
- We're building one place where your knowledge, projects, meetings, and AI tools live side by side, so work is faster, clearer, and less fragmented.
- Each and every team of Notinos is working to set the standard for how humans work together in the AI era.
- From building a business’s system of record to making and managing AI agents to automating away the busy work, we care deeply about giving our customers more time for their life’s work.
- In today's world of endless apps and tabs, Notion provides one place for teams to get everything done, seamlessly connecting docs, notes, projects, calendar, and email—with AI built in to find answers and automate work.
- WHAT YOU'LL ACHIEVE: - Harden our identity and access management stack, including Okta and Google Workspace, with phishing-resistant MFA, strong SSO and SCIM lifecycles, and least-privilege access across SaaS.
- - Secure AI tool usage at the endpoint, including governance of large language models, AI agents, and model context protocol (MCP) integrations; detect and prevent unauthorized or risky AI service access and data exfiltration through AI-enabled tools.
- - Write code (Python, Terraform) to automate access reviews, onboarding and offboarding, configuration drift detection, and audit evidence collection.
- experience in corporate security, enterprise security, or IT security engineering at a cloud-native company. - Have working knowledge of a major identity provider (Okta, Entra, or Google Workspace) and the underlying protocols (SAML, OIDC, OAuth 2.0, SCIM). - Have hands-on
- - Write production-quality scripts and automation in Python or Bash, and have shipped Terraform or other infrastructure-as-code for security configuration.
- - Have working knowledge of at least one major cloud platform (AWS, GCP, or Azure) at the security configuration level.
- Experience at a fast-growing tech or AI company where the security program had to outpace headcount. - A background in IT engineering, SRE, or production engineering that transitioned into security engineering. -
- Experience building internal security tooling or workflows that improved employee or developer experience. - Contributions to the security community through open-source tools, blog posts, or conference talks.
Experience
- SKILLS YOU NEED TO BRING: - Have 5+ years of hands-on
Benefits
- Notion is committed to providing highly competitive cash compensation, equity, and benefits.
- The compensation offered for this role will be based on multiple factors such as location, the role’s scope and complexity, and the candidate’s
Additional details
- Millions of individuals, small teams, and large companies run their work on Notion.
- Notinos (our employees) are customer zero in bringing this future of work to life.
- We care about craft, building things that last, and the belief that great work is still fundamentally human.
- ABOUT US: Notion helps you build beautiful tools for your life’s work.
- Millions of users, from individuals to large organizations like Toyota, Figma, and OpenAI, love Notion for its flexibility and choose it because it helps them save time and money.
- In-person collaboration is essential to Notion's culture.
- We require all team members to work from our offices on Mondays, Tuesdays, and Thursdays, our designated Anchor Days.
- Certain teams or positions may require additional in-office workdays.
- ABOUT THE ROLE: Millions of people rely on Notion to do their most important work.
- This is a security engineering role focused on building scalable controls and automation across identity, endpoints, SaaS, and workforce infrastructure, not a traditional IT support or corporate engineering role.