The opportunity
Corporate Security protects the environment Anthropic's people work in every day: their laptops and phones, their identities, the tools they collaborate in and the company data that flows through all of it. Everything that makes Claude what it is sits behind that environment.
What you'll do
Drive endpoint hardening across macOS, Windows, Linux, and ChromeOS,: including device management configuration, application allowlisting, patching, and browser policy, favoring controls that are versioned, reviewable, and repeatable over one-off configuration
Extend device-trust and zero-trust access controls so company systems are: reached from managed devices bound to the right person and carrying the right level of access, treating the experience of fellow employees as a design constraint rather than an afterthought
Build the automation and integrations that let the team scale with the: company: joiner/mover/leaver automation across identity and device management, exception and expiry workflows, posture-driven policy, and Claude-assisted triage of review queues
Lead SaaS and identity governance, including third-party OAuth grants,: delegated admin access, chat-platform apps, browser extensions, and software security reviews, turning recurring decisions into policy and tooling
Partner across the wider Security team, IT, and Engineering on telemetry,: detections, and shared standards, and help define how a company that increasingly runs on AI agents does so securely and at scale
Hands-on endpoint security engineering on macOS, Windows, Linux, or ChromeOS,: such as MDM and declarative device management profile engineering, application allowlisting or binary authorization, system extensions and endpoint security frameworks, or their platform equivalents
What they're looking for
- Experience defining the scope and choosing the tooling for a security program rather than inheriting it
- Experience shipping an enforcement change to a large user population: using data to find what will break before it does, staging the rollout, building the alternative path for affected workflows, and moving people onto it ahead of enforcement
- Endpoint depth across more than one of macOS, Windows, Linux, and ChromeOS,: with the judgment to harden for the threats that matter rather than to a checklist
- Mobile security across managed and BYOD contexts, including protecting people: and devices in higher-risk settings such as international travel
- Experience bringing security governance to a modern SaaS environment,: including third-party integrations, delegated access, and the long tail of internally built and AI-generated apps, in a way that speeds decisions up rather than slowing them down
- Configuration-as-code, infrastructure-as-code, and CI/CD applied to corporate infrastructure
- LLM-assisted security tooling you built that materially changed what a team: could cover, and the judgment to know which work to hand to a model, which to keep, and how to combine the two
- A track record of getting security controls adopted across an organization: through influence and partnership rather than authority