About the company
Databricks is hiring an L6 Staff Enterprise Security Engineer to expand Enterprise Security coverage across a rapidly evolving enterprise and product environment.
Responsibilities
- Secure enterprise applications, cross-system integrations, data flows, and emerging AI-adjacent use cases.
- Partner with the Data team on corporate production development within the Databricks platform through security reviews of implementation designs, hardening, configuration oversight, and broader enterprise data-security discussions.
- Address modern access patterns such as MCP, integration, and trust boundary security, security automation, and broader security engineering support.
- Identify risk, define practical security requirements, and improve security outcomes through strong technical judgment, hands-on engineering, and cross-functional partnership.
- Assess new technologies, integrations, and workflows with an emphasis on secure design, authentication and authorization, data handling, logging, third-party connectivity, API and token security, and operational resilience.
- Build automation and agent capabilities, including SSPM-style controls and Security AI Personas.
Requirements
- 8+ years of experience in security engineering, enterprise security, application security, cloud security, or a related field.
- Experience conducting security design or architecture reviews for product features, enterprise applications, SaaS platforms, integrations, or internally developed systems.
- Hands-on familiarity with the Databricks platform or comparable data/AI platforms (Unity Catalog, workspace governance, service principals, data access patterns).
- Strong understanding of authentication, authorization, SSO, federation, SCIM, API security, token handling, secrets management, and least privilege design.
- Experience assessing data flows, third-party integrations, trust boundaries, logging and monitoring, and security controls across interconnected systems.
- Proven track record building security automation in production: monitoring, posture checks, review workflows, or tooling (Python, SQL, Terraform, or similar).
- Ability to evaluate risk in modern enterprise environments, including automation platforms, AI-adjacent workflows, and emerging integration patterns such as MCP.
- Strong written and verbal communication skills.
- Experience driving security outcomes through engineering judgment, influence, and scalable process improvement.
- Familiarity with cloud platforms, enterprise identity systems, and core control domains such as audit logging, encryption, access control, data retention, and incident response.
Conditions
- Pay range transparency: expected base salary range for non-commissionable roles. Actual compensation packages are based on several factors unique to each candidate.