Higgsfield AI Logo

Higgsfield AI

IT Security Engineer

Posted 21 Days Ago
Remote or Hybrid
Hiring Remotely in CA, USA
165K-250K Annually
Entry level
Remote or Hybrid
Hiring Remotely in CA, USA
165K-250K Annually
Entry level
Own and improve corporate security across identity and access management, endpoint protection, SaaS applications, Zero Trust, automation, detection, and incident response. Implement Entra ID controls, SSO, SCIM, MFA, RBAC, JML workflows, Intune policies, EDR, and security baselines. Automate security processes with Python or JavaScript, investigate alerts, remediate incidents, and partner with IT, Security, Engineering, and business teams in a fast-moving startup environment.
The summary above was generated by AI
Why work at Higgsfield AI?

Higgsfield AI is the fastest-scaling generative AI company in history, hitting $500M in annual revenue run rate, 25M+ users worldwide, 6M+ generations per day, and powering 390 of Fortune 500 brands.

We're building at the absolute frontier of AI-powered video creation and next-generation creative tools. Joining Higgsfield means becoming part of a high-impact team shaping the future of AI-native experiences, at a company that isn't just moving fast, but rewriting what fast looks like.


About the role

We’re looking for an IT Security Engineer to own and strengthen the security of our corporate technology environment. This is a hands-on role spanning identity and access management, endpoint security, SaaS security, Zero Trust, security automation, and incident response.

You’ll work closely with Security, IT, Engineering, and business teams to build secure, scalable systems and automate the controls that protect our people, devices, applications, and data.

What You’ll DoIdentity & Access Management
  • Own and strengthen identity and access controls across our corporate environment, with a focus on Microsoft Entra ID.

  • Implement and maintain SSO/SAML, SCIM provisioning, MFA, Conditional Access, and RBAC.

  • Build and improve automated joiner, mover, and leaver (JML) workflows.

  • Regularly review permissions, privileged access, and authentication policies to reduce unnecessary access and security risk.

  • Help establish identity as the foundation of our Zero Trust security model.

Endpoint Security
  • Manage and improve endpoint security through Microsoft Intune/MDM, device compliance policies, and endpoint protection tooling.

  • Deploy and maintain EDR capabilities across the corporate fleet.

  • Establish and enforce security baselines for employee devices.

  • Investigate endpoint security events and remediate compromised or non-compliant devices.

SaaS & Corporate Application Security
  • Assess and improve the security posture of corporate SaaS applications.

  • Partner with application owners to implement appropriate authentication, authorization, provisioning, and data-access controls.

  • Identify shadow IT, excessive permissions, insecure configurations, and other SaaS-related risks.

  • Help establish scalable security standards for onboarding and managing new corporate applications.

Zero Trust & Corporate Access
  • Design and implement Zero Trust principles across identity, endpoints, applications, and corporate access.

  • Strengthen controls around privileged access, remote access, and access to sensitive systems.

  • Apply practical security controls that balance strong protection with employee productivity.

Security Automation
  • Automate repetitive security and IT workflows using scripts, APIs, and integrations.

  • Build tooling to automate access reviews, provisioning, compliance checks, alert enrichment, remediation, and other security processes.

  • Use scripting languages such as Python or JavaScript to improve security operations and reduce manual work.

  • Look for opportunities to turn manual security processes into scalable, reliable systems.

Detection & Incident Response
  • Monitor and investigate security alerts across identity, endpoint, and corporate systems.

  • Perform initial investigation and triage of suspicious activity and potential security incidents.

  • Support incident containment, remediation, and post-incident improvements.

  • Build lightweight detections and alerts for meaningful risks within the corporate environment.

What We’re Looking For
  • Strong hands-on experience with identity and access management, ideally within Microsoft Entra ID.

  • Experience implementing or managing SSO/SAML, SCIM, MFA, Conditional Access, RBAC, and JML workflows.

  • Experience with MDM and endpoint security, ideally Microsoft Intune and modern EDR tooling.

  • Understanding of SaaS and corporate application security.

  • Experience implementing or operating within a Zero Trust security model.

  • Ability to automate workflows using scripts and APIs, with experience in a language such as Python or JavaScript.

  • Working knowledge of security detection, investigation, and incident response.

  • Strong security judgment — you can distinguish theoretical risk from meaningful business risk and prioritize accordingly.

  • Comfortable operating independently in a fast-moving startup environment where priorities can change quickly.

  • Builder mindset: you look for ways to automate, simplify, and improve systems rather than relying on manual processes.

Nice to Have
  • Experience with reverse engineering, CTFs, security competitions, or similar hands-on security challenges.

  • Strong understanding of networking fundamentals, including VPNs, network segmentation, authentication protocols, and common lateral-movement techniques.

  • Experience securing rapidly scaling or highly technical organizations.

  • Experience working closely with engineering or product security teams.

  • Familiarity with cloud security concepts and modern security monitoring tools.

Compensation & Benefits

• We offer a competitive and thoughtfully structured compensation package designed to align with impact, experience, and long-term growth.

Base Salary: The anticipated salary range for this role is $165 - $250k, depending on experience, skills, scope, and location.

Equity: In addition to cash compensation, employees are eligible to participate in the company’s stock option program and share in Higgsfield’s long-term growth. •

Benefits: We offer a comprehensive benefits package designed to support employees professionally and personally

• The opportunity to work on ambitious AI products alongside a highly experienced, fast-moving, and international team.

• Significant ownership, direct impact, and opportunities for professional growth as the company scales.

 

This is a hybrid role based in the San Francisco Bay Area. Team members are expected to work from our San Francisco office three full days per week, with the remaining days worked remotely and are expected to be available during agreed working hours and to maintain sufficient overlap with the relevant team’s time zone. We value in-person collaboration, active communication, responsiveness, and close partnership across teams.

Higgsfield AI is an equal opportunity employer. We are committed to building a diverse and inclusive team and do not discriminate on the basis of race, color, religion, sex, gender identity or expression, sexual orientation, national origin, age, disability, veteran status, or any other protected characteristic.

 

Similar Jobs

31 Minutes Ago
Remote or Hybrid
CA, USA
264K-395K Annually
Expert/Leader
264K-395K Annually
Expert/Leader
Blockchain • Fintech • Mobile • Payments • Software • Financial Services
Staff Android Software Engineer responsible for owning Cash App’s foundational Android platform, including architecture, shared libraries, infrastructure, developer tooling, observability, performance, and experimentation systems. The role drives AI-native engineering practices, leads cross-organizational technical initiatives, establishes standards, mentors engineers, and partners across mobile, web, backend, product, and design teams. Requires deep Android expertise and organizational-level impact.
Top Skills: A/B TestingAndroidArtifactoryBuildkiteCi/CdClaude CodeCodexCustom Gradle PluginsDeep LinkingDependency InjectionFeature FlaggingGooseGradleJetpack ComposeKochikuKotlinKotlin MultiplatformMobile Application Performance ProfilingMoleculePaparazziSqldelightStructured ConcurrencyWireWorkmanager
40 Minutes Ago
In-Office or Remote
United States
158K-238K Annually
Senior level
158K-238K Annually
Senior level
Artificial Intelligence • Productivity • Software • Automation
Develop enterprise customers’ automation strategies, identify and deploy high-value AI-enabled use cases, quantify ROI, and drive adoption, renewal, and expansion. Build executive and stakeholder relationships, advise on governance and scalable orchestration, coordinate internal and customer teams, interpret usage data, and create repeatable methodologies and playbooks for Zapier’s enterprise customer success program.
Top Skills: AIAutomationData ScienceRevopsSlackZapier
41 Minutes Ago
Remote or Hybrid
90K-135K Annually
Entry level
90K-135K Annually
Entry level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Manages strategic relationships with cybersecurity services retainer customers, helping them improve preparedness and optimize service investments. Responsibilities include customer success planning, account reviews, service scoping, coordination with Sales and Delivery, documentation, account expansion, and program improvement. The role requires cybersecurity services knowledge, incident response awareness, strong project coordination, senior-level relationship management, communication, workload management, and the ability to use AI technologies to improve business outcomes.
Top Skills: Ai TechnologiesCrowdstrikeCybersecurityIncident ResponseSecurity Frameworks

What you need to know about the NYC Tech Scene

As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

Key Facts About NYC Tech

  • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
  • Key Industries: Artificial intelligence, Fintech
  • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
  • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account