HimalayasHimalayas logo
Truffle Security Co.TC

Senior IT Engineer

Truffle Security Co. specializes in open-source security software, particularly known for developing TruffleHog, which detects and remediates leaked keys and credentials.

Truffle Security Co.

Employee count: 11-50

Salary: 123k-170k USD

United States only

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

About us

Truffle Security is a cybersecurity company on a mission to make secrets easier to detect, verify, and remediate across modern software environments. Built on the popular open-source TruffleHog™ secrets scanning platform, the company's enterprise solution gives security and engineering teams everything they need to find exposed credentials, understand which ones are active, and act on them with confidence.

With support for 800+ credential types, Truffle Security continuously monitors non-human identities (NHIs) and their associated secrets across code repositories, SaaS applications, wikis, and cloud systems. It goes beyond detection by verifying which secrets are live, analyzing their scope of access, and streamlining remediation through automated workflows and lifecycle management so teams can prioritize what to revoke and confirm it's done without manual follow-up.

Trusted by organizations including NVIDIA, Chick-fil-A, and OpenAI, Truffle Security helps security and engineering teams stay ahead of secrets risk.

About the role

We’re hiring a Senior IT Engineer to own and scale Truffle’s corporate IT and security infrastructure with a security-first mindset. This is a high-impact, hands-on role responsible for ensuring our systems, endpoints, identity platforms, and employee tooling remain secure, reliable, and scalable as the company grows.

You’ll serve as the primary IT owner for the organization, partnering closely with internal teams to deliver an exceptional employee experience while maintaining a strong security and compliance posture. This role is ideal for someone who thrives in a fast-moving startup environment, enjoys building automation-first systems, and has deep experience managing Apple/macOS environments. Your work will directly impact our ability to operate efficiently while maintaining a strong security posture.

What you'll be working on

Corporate IT & Endpoint Management

  • Own and manage Truffle’s corporate IT infrastructure, including identity systems, endpoints, SaaS applications, and access controls
  • Administer and scale a primarily macOS-based environment across the company
  • Manage Apple device lifecycle operations, including provisioning, deployment, maintenance, and decommissioning
  • Own and optimize Apple MDM infrastructure (currently Kandji)
  • Troubleshoot complex endpoint and employee IT issues and serve as the primary escalation point for internal support

Identity & Access Management

  • Manage identity provider (IdP) infrastructure and corporate authentication systems
  • Administer Okta integrations, Device trust, SSO policies, MFA, and access provisioning workflows
  • Maintain secure access lifecycle management across onboarding, offboarding, and role changes
  • Partner with Rippling and other business systems to improve automation and employee provisioning workflows

Automation & IT Operations

  • Build and improve automation across IT operations and employee lifecycle management
  • Continue evolving existing onboarding/offboarding automation workflows
  • Evaluate, implement, and optimize modern IT and security tooling
  • Create and maintain clear documentation, operational runbooks, and scalable internal processes
  • Provide responsive, service-oriented support to employees across the company and help foster a secure, productive work environment

Security & Compliance

  • Support and coordinate SOC 2 compliance activities and audit readiness efforts
  • Contribute to corporate security initiatives, including policy management, security best practices, and risk reduction efforts
  • Partner cross-functionally to strengthen Truffle’s overall security posture
  • Assist with light corporate security responsibilities and operational security tasks

What we're looking for

  • 5+ years of experience in IT engineering, systems administration, or corporate IT infrastructure roles
  • Strong experience managing macOS environments at scale
  • Hands-on experience with Apple MDM platforms such as Kandji, Jamf, or similar tools
  • Experience managing identity and access platforms such as Okta, Google Workspace, or Azure AD
  • Experience supporting SaaS application management, SSO, and access provisioning workflows
  • Strong troubleshooting skills across endpoints, identity systems, and corporate tooling
  • Familiarity with SOC 2 or similar compliance/security frameworks
  • Strong communication and people skills with a customer-service mindset for internal employee support
  • Ability to operate independently as a highly autonomous, team-of-one IT function

Bonus points

  • Experience building automation-heavy IT environments
  • Exposure to EDR, device compliance, and endpoint security tooling
  • Experience managing direct Apple Business/enterprise procurement workflows
  • Prior experience balancing IT operations with light security/compliance ownership.

Salary Range: The target base salary range for this position is between $123,000-$170,000 for candidates in the United States. Starting salary will vary based on job-related skills, knowledge, and experience. Leveling will be determined during the interview process. You may also be offered a bonus, stock options, and benefits. These salary ranges are subject to change, and we encourage candidates outside of this salary range to apply.

How we support our team

  • Fully remote within the U.S. – We believe opportunity shouldn’t be limited by geography. Our remote-first approach lets us hire the best people across the United States and empowers them to do their best work from wherever they are.
  • A culture of mentorship, equity, and psychological safety – We’re committed to fostering an environment where you can thrive, learn, and feel valued.
  • Competitive salary & meaningful equity – Be rewarded for your contributions with a strong compensation package and a stake in our shared success.
  • Flexible paid time off – We operate with a high level of autonomy and trust, giving you the flexibility to take time off as needed—no strict limits, just the expectation that you’re meeting your commitments and getting your work done.
  • 14 paid holidays – Including Thanksgiving, Winter Break, and "Truffle Holidays" when the entire company takes a well-deserved day off together.
  • Comprehensive health benefits – Medical, dental, and vision coverage with 80% of premiums covered for you and your dependents.
  • Remote work stipend – Get set up for success with an $800 new hire stipend and $100/month to keep your workspace comfortable.
  • Health & wellness stipend$1,200/year to support your physical, mental, and emotional well-being— we believe that feeling good helps you do great work.
  • Learning & development stipend$2,000/year to invest in your growth, whether it’s courses, certifications, or industry conferences.
  • 401(k) match – We match 100% of the first 6% of your contributions on every paycheck, helping you build financial security for the future.
  • 100% remote + company off-sites – Twice a year, we come together in amazing locations like Hawaii, Cabo, and the Rocky Mountains to collaborate and connect.

We’re looking for folks who are interested in being part of the journey to make the internet more secure. The internet is for all, and we believe that diverse experiences and people from all walks of life can contribute to this mission. That said, if what we’re doing resonates with your values, we’d love to have you apply even if you don’t check all of the boxes or match the job description to a tee.

Truffle strives to promote an equitable, inclusive, and psychologically-safe workplace for all who are interested in working with us. All job applicants will be considered throughout the employment process without regard to race, color, ethnicity, religion, sex, sexual orientation, gender perception/identity, age, pregnancy or parental status, disability status, or any other basis prohibited by law. If you are an individual with disabilities and reasonable accommodation is needed throughout the interview process, or to perform essential job functions, please let your recruiter know.

Lastly, we ask that all applicants consider the opportunity to answer a few voluntary demographic questions on the job application. This helps us track the inclusivity of our recruiting initiatives. Answering these questions is entirely optional and your answers will not be shared with the hiring team and will not impact the hiring decision.

Note: Our organization participates in the US federal E-Verify program. We will provide the Social Security Administration, and if necessary, the Department of Homeland Security, with information from each new employee’s Form I-9 to confirm work authorization. We do not use this information to pre-screen job applicants.

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Salary

Salary: 123k-170k USD

Experience

5 years minimum

Location requirements

Hiring timezones

United States +/- 0 hours

About Truffle Security Co.

Learn more about Truffle Security Co. and their company culture.

View company profile

Truffle Security is dedicated to securing sensitive data, specifically through the development of TruffleHog, an open-source security scanning engine designed to detect and remediate leaked keys and credentials. In today's digital landscape, where API keys and sensitive credentials are consistently at risk of exposure, Truffle Security provides crucial solutions that help businesses safeguard their information from unauthorized access and potential breaches. Our customers face the challenge of managing security in an era where millions of secrets are inadvertently leaked daily from various sources, including source code repositories, chat systems, and support tickets.

Understanding these vulnerabilities, Truffle Security focuses on building robust, intelligent software that automates the detection of these leaked secrets with precision. TruffleHog not only scans for sensitive information but also integrates deeply within existing workflows, allowing developers and security teams to collaborate effectively on remediation processes. Harnessing the power of community-driven development, TruffleHog leads the way in enhancing security practices across organizations by reinforcing the importance of proactive measures. By continuously updating and evolving our technology to combat emerging threats, Truffle Security is committed to making the world a safer place, allowing businesses to thrive without the fears associated with data breaches.

Claim this profileTruffle Security Co. logoTC

Truffle Security Co.

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

5 remote jobs at Truffle Security Co.

Explore the variety of open remote roles at Truffle Security Co., offering flexible work options across multiple disciplines and skill levels.

View all jobs at Truffle Security Co.

Remote companies like Truffle Security Co.

Find your next opportunity by exploring profiles of companies that are similar to Truffle Security Co.. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan