CareerMoonshot

Staff Security Engineer - Enterprise & Third Party Risk Management

LinkedIn · San Francisco Bay Area

📍 Mountain View, CA, usvia smartrecruitersPosted 2026-08-25
Apply on company site ↗
Career Moonshot pulls this listing straight from the employer's hiring system — no recruiter middleman, no reposts. Applying takes you directly to LinkedIn.
LinkedIn is the world's largest professional network, built to create economic opportunity for every member of the global workforce. Our products help people make powerful connections, discover exciting opportunities, build necessary skills, and gain valuable insights every day. We're also committed to providing transformational opportunities for our own employees by investing in their growth. We aspire to create a culture that's built on trust, care, inclusion, and fun – where everyone can succeed. Join us to transform the way the world works. At LinkedIn, our approach to flexible work is centered on trust and optimized for culture, connection, clarity, and the evolving needs of our business. The work location of this role is hybrid, meaning it will be performed both from home and from a LinkedIn office on select days, as determined by the business needs of the team. This role will be hybrid in LinkedIn’s Mountain View office location. About the Team LinkedIn's members entrust us with their information every day and we take their security seriously. Our core value of putting our members first powers all the decisions we make, including how we manage and protect the data of our members and customers. Information Security at LinkedIn is dedicated to protecting and securing business-critical member data and company assets. Our core mission is to empower LinkedIn to create a secure and thriving platform for every member of the global workforce.  LinkedIn’s Enterprise & Third-Party Security team is dedicated to protecting our data, systems, and global members by managing security and privacy risks throughout our external ecosystem. We collaborate across the organization to evaluate the security maturity of our partners and suppliers, identifying systemic threats and providing the technical guidance necessary for the secure integration of external services. Our mission is to leverage security engineering, advanced risk analytics, and automation to provide continuous assurance and visibility throughout the third-party lifecycle. We are committed to building scalable, high-impact solutions that mitigate vulnerabilities and ensure all external engagements align with LinkedIn’s rigorous security, privacy, and regulatory standards.  About the Role As a Staff Security Engineer focused on Third-Party Technology Security (TPS), you will strengthen LinkedIn's security posture by identifying and mitigating security risks introduced by third-party technologies, services, platforms, and integrations.You will be a foundational technical leader driving enterprise security initiatives responsible for evolving the TPS program beyond traditional security governance, risk and compliance programs to an engineering driven program that designs, automates, and scales the controls, workflows and tooling that protect LinkedIn and our customers. The ideal candidate is equally comfortable shaping policy and shipping modern tooling using Python, Claude, and other agentic coding platforms to replace manual GRC work with scalable, code defined workflows. They will partner with enterprise innovation, GRC, procurement, legal, and technical security teams to ensure that third party vendors including complex SaaS/AI tools meet our security standards. You serve as the subject  matter expert in transforming security risk management from a compliance oriented function into a security engineering discipline. Responsibilities: Establish a foundational framework for third party security (TPS) assessment to automate and integrate security requirements seamlessly into the broader enterprise security ecosystem Lead and mature the TPS including the design, implementation, and continuous improvement of processes, controls, and operational workflows Architect AI drive automation to accelerate vendor on boarding velocity and implement a centralized data engine that provides executive level visibility and granular risk metrics across LI Build and maintain automation that replaces manual GRC tasks like intake, triage, evidence collection, control validation, tracking, escalation, and reporting using either Python or agentic coding tools  Design and operate workflow orchestration and integrations across systems like ticketing, GRC platforms, vendor management tools, identity provides and cloud control planes  Translate ambiguous business requirements into practical, scalable security solutions and decision frameworks Identify opportunities to automate manual processes across the program and prototype solutions yourself rather than waiting on an engineering backlog Drive program operational excellence by establishing repeatable processes, service level expectations, metrics, and reporting for third party security risk management Manage complex escalations, act as technical lead for escalations, evaluating edge case architectures and designing technical roadmaps for high risk vendors to ensure they meet LinkedIn’s security standards Act as lead incident commander within LinkedIn in the event of data security breach of third party and drive successful resolution  Partner with other teams in InfoSec to conduct holistic reviews and engineer “paved path” blueprints for common high risk third party scenarios Conduct threat modeling on high risk integrations and partner with Security SMEs for deeper diligence  Act as trusted advisor and SME on third party security risk management, helping stakeholders make informed risk based decisions  Provide foundational technical leadership and mentorship to security engineers, driving strategic direction and high impact risk reduction initiatives across the org Basic Qualifications BA/BS degree in Computer Science, Cybersecurity, Information Security, or related technical field, or equivalent technical experience 5+ years of experience leading technical security reviews and risk assessments for third-party technologies, SaaS platforms, cloud services, APIs, enterpri

More San Francisco Bay Area jobs

San Francisco Bay Area jobs · Browse all locations