Gong.io

Senior Corporate Security Engineer

Gong.io San Francisco, California, United States · $134K–$205K/yr

Software Development · 1,001-5,000 employees

5 h ago
Remote security Senior (5-10 yrs) Full-time United States
Log in to apply, save this posting, or score it against your profile with AI.

About the role

You will design, implement, and scale security controls across endpoints, identity, SaaS, and collaboration platforms for a global workforce. Additionally, you will build automation and reusable engineering patterns to enhance the scalability and effectiveness of the corporate security program.

What they look for

Endpoint security Identity security SaaS security Zero-trust access Data protection Automation EDR/XDR Cloud security posture management WAF KQL SQL SPL MITRE ATT&CK Identity-first security Vulnerability management Collaboration security

Requirements

The role requires at least 5 years of experience in security engineering, specifically in areas like detection, SIEM, or platform engineering. Candidates must demonstrate proficiency with EDR/XDR tools, zero-trust architectures, and building data ingestion pipelines using CI/CD methodologies.

Benefits

Medical insurance Dental insurance Vision insurance Wellbeing fund Mental health benefits 401(k) program Education and learning stipend Flexible vacation time Paid parental leave Company-wide recharge days Work from home stipend

Full description

Gong harnesses the power of AI to transform how revenue teams win. The Gong Revenue AI Operating System unifies data, insights, and workflows into a single, trusted system that observes, guides, and acts alongside the world’s most successful revenue teams. Powered by the Gong Revenue Graph, AI-powered intelligence, specialized agents, and trusted applications, Gong helps more than 5,000 companies around the world deeply understand their teams and customers, automate critical sales workflows, and close more deals with less effort. For more information, visit www.gong.io.

At Gong, you will join a company built on innovative products, ambitious goals, and passionate people. We are shaping the future of revenue intelligence and we want people who are excited to build what comes next. You will work with a team that dreams big, moves fast, and cares deeply about the craft and about each other. Here, transparency and trust are core to how we operate, and every person has the opportunity to make a visible impact. If you want to grow, stretch, and do work that truly matters, Gong is the place to do the best work of your career.

We’re looking for a Senior Corporate Security Engineer to help secure the systems, identities, devices, and collaboration platforms that power how Gong employees work every day.

This is a hands-on senior engineering role within Corporate Security Engineering, part of Gong’s Cyber Defense organization. You’ll help design, implement, and scale security controls across endpoint, identity, SaaS, email, collaboration, zero-trust access, and data protection for a global, distributed workforce.

This role is a strong fit for someone who combines deep technical judgment with a builder mindset, strong cross-functional partnership, and a pragmatic approach to reducing risk without slowing the business down.

YOU'LL OWN:

  • Key parts of Gong’s corporate security engineering roadmap across endpoint, identity, SaaS, email, collaboration, access, and data protection.
  • Endpoint security engineering across a global macOS, Windows, and Linux fleet, including EDR coverage, health, hardening baselines, and containment readiness in close partnership with IT and DRE.
  • Identity and access security initiatives, including SSO, phishing-resistant MFA, passwordless adoption, conditional access, device trust, PAM, joiner-mover-leaver controls, and service-account hygiene.
  • Email and collaboration security controls across email, Slack, Drive, and related business platforms.
  • SaaS security posture management, shadow SaaS discovery, and third-party or OAuth governance.
  • Zero-trust and corporate network security initiatives for a globally distributed workforce.
  • Data protection and insider-risk capabilities across endpoint, email, browser, and SaaS channels.
  • Corporate vulnerability and baseline management programs in partnership with IT.
  • Security guardrails for employee use of AI tools, with an enablement-first mindset.
  • Automation, integrations, and reusable engineering patterns that make the security program more scalable and effective.

YOU'LL SOLVE:

  • Building strong preventive controls without creating unnecessary friction for employees.
  • Designing scalable protections for endpoints, identity, SaaS, and collaboration systems used across a global workforce.
  • Governing OAuth access, shadow IT, and employee AI-tool adoption in ways that enable the business safely.
  • Improving data protection across the paths most relevant to Gong’s most sensitive assets, including customer conversation data, revenue data, source code, and AI or ML assets.
  • Reducing manual work by engineering durable automation, workflows, and operational guardrails.
  • Partnering closely with IT, DRE, People, Legal, GRC, Procurement, and engineering teams to implement controls that stick.
  • Raising the consistency, reliability, and maintainability of the corporate security environment over time.

YOU'LL IMPACT:

  • Strengthening Gong’s security posture across endpoints, identity, SaaS, email, collaboration, and access.
  • Helping Gong move faster with AI tooling, distributed work, and SaaS adoption because the right guardrails exist.
  • Creating engineering leverage through reusable frameworks, integrations, and standards that make the whole function stronger.
  • Helping define what great corporate security engineering looks like inside an AI-native company.

YOU ARE:

  • A senior technical security builder who enjoys planning, designing, and implementing security programs at scale.
  • Experienced in corporate security engineering, enterprise security engineering, or similarly hands-on defensive roles in modern SaaS or cloud environments.
  • Strong in several of the following areas: endpoint security, identity security, PAM, email security, collaboration security, SSPM, ZTNA, DLP, insider risk, and corporate vulnerability management.
  • Proven in designing and implementing programs, not just administering tools.
  • An engineer at heart, with experience building automation, APIs, workflows, integrations, and scalable operational practices.
  • Comfortable partnering closely with IT and other business stakeholders to ship secure solutions that employees will actually adopt.
  • Pragmatic, collaborative, and able to balance strong controls with usability, speed, and enablement.
  • A mentor who raises technical standards, establishes durable engineering norms, and helps others grow.
  • Excited to help shape how a modern corporate security program should work in an AI-native company.

Required Qualification:

  • 5+ years of experience in any of the following areas:
  • Security Data Pipeline Engineering
  • Detection Engineering
  • SIEM Engineering
  • Cyber Intelligence and Threat Hunting
  • Security Platform Engineering
  • Proficiency with EDR/XDR (CrowdStrike, SentinelOne, MS Defender), Cloud Security Posture Management (Wiz, Prisma Cloud, Orca), and WAFs (Cloudflare, Akamai).
  • Proficiency in deploying and maintaining Zero Trust security platforms and controls
  • Experience building data ingestion pipelines using CI/CD methodologies.
  • Proven experience building, testing, and tuning custom detection logic and familiarity with Query Languages (KQL, SQL, SPL) for automation needs.
  • Familiarity with attack frameworks (MITRE ATT&CK) and mitigation strategies.
  • Strong analytical and problem-solving skills.
  • Excellent communication and teamwork abilities.

Preferred Qualifications:

  • Experience securing AI tool usage in the enterprise, including data-flow restrictions, sanctioned-tool models, OAuth governance, and telemetry hooks for downstream detection.
  • Experience in a high-growth, global SaaS company with a distributed workforce.
  • Strong knowledge of identity-first security architectures and zero-trust access models.
  • Experience building KPI-driven programs around coverage, adoption, SLA performance, and control effectiveness.
  • Familiarity with adjacent detection and response workflows so preventive controls and response actions reinforce each other.

Scope clarity:

  • This role is part of Cyber Defense and is focused on the corporate environment.
  • Corporate Security Engineering owns endpoint security, identity security, email and collaboration security, SaaS posture, zero trust access, DLP and insider-risk tooling, corporate vulnerability management, and employee AI-tool security.
  • This role is not the primary owner for CI/CD security, supply-chain controls, infrastructure-as-code guardrails, product application security, product pentesting, or cloud infrastructure provisioning and reliability.

Why Gong Security:

At Gong, security is expected to enable the business, not just protect it. We look for people who can solve hard problems, partner effectively across the company, and build durable solutions that help the organization move faster and safer.

You’ll join a team that values ownership, strong technical craft, practical problem solving, and visible impact. If you want to help define modern corporate security in an AI-native company, this is a chance to do meaningful work at real scale.

PERKS & BENEFITS

  • We offer Gongsters a variety of medical, dental, and vision plans, designed to fit you and your family’s needs.
  • Wellbeing Fund - flexible wellness stipend to support a healthy lifestyle.
  • Mental Health benefits with covered therapy and coaching.
  • 401(k) program to help you invest in your future.
  • Education & learning stipend for personal growth and development.
  • Flexible vacation time to promote a healthy work-life blend.
  • Paid parental leave to support you and your family.
  • Company-wide recharge days each quarter.
  • Work from home stipend to help you succeed in a remote environment.

The annual salary hiring range for this position is $134,000 - $205,000 USD.

Compensation is based on factors unique to each candidate, including, but not limited to, job-related skills, qualification, education, experience, and location. At Gong, we have a location-based compensation structure, which means there may be a different range for candidates in other locations. The total compensation package for this position, in addition to base compensation, may include incentive compensation, bonus, equity, and benefits. Some of our sales compensation programs also offer the potential to achieve above targeted earnings for those who exceed their sales targets.

We are always looking for outstanding Gongsters! So if this sounds like something that interests you regardless of compensation, please reach out. We may have more roles for you to consider and would love to connect.

We have noticed a rise in recruiting impersonations across the industry, where scammers attempt to access candidates' personal and financial information through fake interviews and offers. All Gong recruiting email communications will always come from the @gong.io domain. Any outreach claiming to be from Gong via other sources should be ignored.

Gong is an equal-opportunity employer. We believe that diversity is integral to our success, and do not discriminate based on race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability, military status, genetic information, or any other basis protected by applicable law.

To review Gong's privacy policy, visit https://www.gong.io/gong-io-job-candidates-privacy-notice/ for more details.

#LI-SM1

Similar roles