Lead Corporate Security Engineer
Suno is an AI-powered music-creation platform that enables users to generate, edit, and share original songs.
Funding history
About Suno
Suno Inc. operates a consumer AI music platform and browser-based generative audio workstation, Suno Studio, with music models and creation tools available across web and mobile.
Skills
Candidate Availability
Required and preferred rules are kept separate and reflect the wording in the original posting.
About the Role
You will own the corporate security domain end to end, setting security standards, priorities, and roadmaps. You will lead identity and access governance, endpoint and vulnerability management, detection and response, third-party risk reviews, and SaaS security posture. You will partner with IT and other stakeholders, build secure defaults and automation, lead incidents to closure, and mentor colleagues.
Requirements
- 8+ years of corporate or enterprise security or security engineering experience
- Hands-on expertise with a modern identity provider, preferably Okta
- Experience with IGA or access-governance tooling such as Lumos, Veza, ConductorOne, or Opal
- Experience designing entitlement or RBAC models across a large SaaS portfolio
- Endpoint security experience for a macOS-primary fleet
- EDR experience, preferably CrowdStrike, and experience managing an outsourced SOC
- Knowledge of OAuth, SAML, OIDC, SCIM, and third-party integration risk
- Experience setting security standards through policy, tooling, or defaults
- Experience influencing engineering and business teams
- Python or TypeScript, REST API, automation, integration, and internal tooling experience
- Excellent writing and judgment under ambiguity
Responsibilities
- Own the corporate security roadmap and security standards
- Design and govern RBAC, entitlements, access reviews, and access lifecycle automation
- Define endpoint hardening, device trust, vulnerability management, and remediation standards
- Manage CrowdStrike Falcon Complete and the outsourced SOC relationship
- Lead corporate security incidents, executive communications, and corrective actions
- Evaluate third-party access, integrations, OAuth risks, and vendor security assessments
- Build and operate the SaaS security posture program
- Partner with IT, Security, Engineering, AI Enablement, and Legal
- Mentor IT engineers and raise the technical security bar
Benefits
- Equity
