Sr. Corporate Security Engineer
Listed on 2026-10-08
-
IT/Tech
Cybersecurity
For more than a decade, Cockroach Labs has built database technology trusted to power some of the world's most mission-critical applications. Now, as AI transforms how software is created and operated, the infrastructure behind it has to keep pace. Cockroach Continuum is built to meet this moment, bringing individual databases together into one fleet designed for agentic applications, where AI agents help teams provision, scale, and optimize workloads at machine speed.
At Cockroach Labs, you'll solve problems that didn't exist five years ago alongside people who believe the simplest solutions often require the most sophisticated thinking. Your work will run in production at some of the most innovative companies in the world. The people who thrive here are the ones who want to own that opportunity.
The RoleCockroach Labs is looking for a Senior Corporate Security Engineer to help protect our endpoints, cloud platforms, internal applications, and enterprise SaaS environment.
This is a hands‑on, cross‑functional role with a particular focus on AI governance, data protection, and corporate security operations. You’ll help shape how Cockroach Labs securely adopts AI tools and agents, strengthen our DLP and SaaS security controls, and lead security initiatives from design through implementation.
We’re looking for a well‑rounded security engineer who can balance strong security practices with the needs of the business. You should be comfortable working across IT and security systems, partnering with teams throughout the company, and navigating emerging risks in a rapidly changing AI landscape. This role offers the opportunity to take meaningful ownership of our corporate security program while working on a wide range of high‑impact projects.
To be eligible for this role, you must be based in the NYC area.
You Will- Help build and manage our AI governance program, including security controls for AI tools, agents, MCP connections, and data flows.
- Develop and secure internal applications hosted on GCP, including our internal LLM gateway.
- Design and maintain DLP, data classification, and governance controls that protect sensitive data while enabling the business.
- Administer and optimize CASB and SaaS security controls across cloud applications.
- Assess security risks for internal applications, AI use cases, and third‑party tools.
- Monitor and respond to security alerts and incidents across email, endpoints, SaaS applications, and cloud environments.
- Identify and reduce risks related to Shadow IT, Shadow AI, and SaaS sprawl.
- Build automations that improve security visibility, response, and operational efficiency.
- Partner with IT, Legal, Compliance, and Security teams on access management, endpoint security, regulatory requirements, and third‑party risk.
- Lead corporate security projects from design through implementation.
- 5+ years of experience in corporate security, security operations, IT security, or a related field.
- Experience owning a security program, major initiative, or complex cross‑functional project.
- Hands‑on experience with DLP, CASB, or SaaS security tools, including creating and tuning policies.
- Experience securing cloud‑hosted applications and corporate IT environments.
- A strong understanding of identity and access management, endpoints, email, file‑sharing systems, networks, and enterprise SaaS applications.
- Familiarity with the security and data risks associated with AI tools, applications, agents, and integrations.
- Experience conducting risk assessments, gap assessments, or threat modeling.
- Strong project management, communication, and cross‑functional collaboration skills.
- Experience building AI governance controls or securing AI applications and agents.
- Experience with Netskope,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).