via Greenhouse · 14 September 2026 ·5 days ago

Enterprise Engineer

physicsx
New York
This listing is from Greenhouse
View original listing ↗

<div class="content-intro"><h2>About us</h2>
<div>PhysicsX is a deep-tech company with roots in numerical physics and Formula One, dedicated to accelerating hardware innovation at the speed of software.</div>
<div>We are building an AI-driven simulation software stack for engineering and manufacturing across advanced industries. By enabling high-fidelity, multi-physics simulation through AI inference across the entire engineering lifecycle, PhysicsX unlocks new levels of optimization and automation in design, manufacturing, and operations — empowering engineers to push the boundaries of possibility. Our customers include leading innovators in Aerospace &amp; Defense, Materials, Energy, Semiconductors, and Automotive.</div></div><p>The Role</p>
<p>Who we’re looking for </p>
<ul>
<li>Someone who has designed and owned enterprise identity (Entra ID/Azure AD) at a company of meaningful size, not just administered an existing tenant.</li>
<li>A person who treats zero trust as an architecture to build, not a buzzword to reference. Conditional access, device trust and posture validation, and least privilege as defaults.</li>
<li>Someone who's comfortable owning MDM (Intune, Jamf, or similar) end-to-end: enrollment, compliance policy, patching, and lifecycle, across a mixed-OS fleet.</li>
<li>A collaborative operator who partners well with security, platform engineering, and the wider business.</li>
<li>Hands-on experience deploying and operating a SASE platform (e.g., Cloudflare One, Zscaler) in production, including policy design, not just administration of an existing setup.</li>
</ul>
<p>What you will do</p>
<ul>
<li>Own and evolve our Microsoft Entra ID environment: identity architecture, conditional access policies, MFA, PIM, SSO/SCIM integrations, and hybrid identity where relevant.</li>
<li>Manage enterprise infrastructure as code in Terraform (identity, networking, and security tooling), so that configuration is versioned, reviewable, and repeatable.</li>
<li>Design and implement zero trust network access, replacing legacy VPN patterns with modern SASE-based access control.</li>
<li>Own MDM strategy and operations across the device fleet (macOS/Windows/Linux/Mobile): enrolment, compliance baselines, patch management, and endpoint security posture.</li>
<li>Partner with the platform/DevOps team to keep enterprise IT and cloud (AWS, GCP, Azure) security postures are aligned and consistent.</li>
<li>Lead access reviews, least-privilege enforcement, and identity governance work to support audits and compliance requirements (e.g., SOC 2, ISO 27001).</li>
</ul>
<p>What you bring to the table</p>
<ul>
<li>5 - 10 years of experience in enterprise IT, security engineering, or identity/infrastructure roles, with deep, hands-on ownership of Microsoft Entra ID/Azure AD in production.</li>
<li>Deep Conditional Access policy design experience, not just enabling MFA, but building risk based, device aware access rules.</li>
<li>Experience with Entra ID Governance: Access Reviews, Identity Protection, Privileged Identity Management (PIM) at scale.</li>
<li>SSO/SAML/OIDC federation and SCIM provisioning across a meaningful number of enterprise apps.</li>
<li>Endpoint security tooling experience: EDR platforms (CrowdStrike, Defender for Endpoint, or similar)</li>
<li>Scripting and automation ability (PowerShell, Python, or Microsoft Graph API) to automate identity and device workflows.</li>
<li>Experience with hybrid identity (Entra Connect or on prem AD sync).</li>
<li>Familiarity with compliance frameworks such as SOC 2, ISO 27001, and FedRAMP, able to translate control requirements into actual technical implementation (access reviews, logging, encryption, change management), not just pass an audit checklist.</li>
</ul>
<p>Nice to have skills</p>
<ul>
<li>Experience with Cloud IAM and security architecture, AWS IAM Security Center, Google Workforce Identity Federation, and how it interacts with enterprise identity (Entra) via federation.</li>
<li>Compliance automation experience (Vanta, Drata)</li>
<li>Experience with Cloudflare Zero Trust.</li>
<li>Exposure to SIEM/EDR/XDR tooling and correlating identity signals with broader security monitoring.</li>
<li>Background at an AI or high-growth SaaS company.</li>
<li>Experience supporting UK/EU data protection requirements (e.g., GDPR) from an identity and access standpoint.</li>
<li>Certifications (good to have, not required)
<ul>
<li>Microsoft Certified: SC-300</li>
<li>Microsoft Certified: SC-100</li>
<li>Microsoft Certified: MD-102</li>
<li>CompTIA Security+</li>
<li>Certifications from your SASE vendor of choice (e.g., Cloudflare Certified, Zscaler Certified)</li>
<li>CCNA</li>
</ul>
</li>
</ul>
<p><strong><br>What we offer</strong></p>
<p><strong>Build what actually matters</strong></p>
<p>Help shape an AI-native engineering company at a formative stage, tackling problems that genuinely matter for industry and society. This is work with real-world impact - and something you can be proud to stand behind.</p>
<p><strong>Learn alongside exceptional people</strong></p>
<p>Work with a high-caliber, collaborative team of engineers, scientists, and operators who care deeply about doing great work, and about helping each other get better. We come from diverse backgrounds, but we share a commitment to operating at the highest level and addressing some of the most complex challenges out there. If you’re ambitious, thoughtful, and driven by impact, you’ll feel at home.</p>
<p><strong>Influence over hierarchy</strong></p>
<p>We operate with a flat structure: good ideas win - wherever they come from. Questioning assumptions and challenging the status quo isn’t just welcomed, it’s expected.</p>
<p><strong>Sustainable pace, long-term ambition</strong></p>
<p>Building meaningful technology is a marathon, not a sprint. We believe in balancing focused, ambitious work with a life beyond it. Our hybrid model blends time together in our New York office with work-from-home days, giving you the flexibility to work sustainably while staying connected in person.</p>
<p><strong>And it doesn’t stop there …</strong></p>
<p>🚀 <strong>Equity options</strong> - share meaningfully in the company you’re helping to build.</p>
<p>💰 <strong>5% contribution to</strong><span class="Apple-converted-space"> </span><strong>401(k)</strong><span class="Apple-converted-space"> </span>- build long-term security with a strong retirement plan.</p>
<p>🍽️ <strong>Free team lunch 1x/week</strong><span class="Apple-converted-space"> </span>- good food, great company, and space to connect.</p>
<p>🏥 <strong>Private health insurance</strong> – comprehensive cover for you, offering total peace of mind.</p>
<p>👶 <strong>Enhanced parental leave</strong> – 3 months full pay paternity and 6 months full pay maternity leave, to provide extra flexibility during the moments that matter most.</p>
<p><strong>☀️ 20 days of Annual Leave (+ Public Holidays)</strong><span class="Apple-converted-space"> </span>- because taking time to rest matters.</p>
<p>📈 <strong>Personal development</strong> – dedicated support for learning, development, and leveling up over time.</p>
<p>💪 <strong>Gympass / Wellhub (subsidized)</strong> – for you and up to 3 family members, supporting both physical and mental wellbeing.</p>
<p>💳 <strong>Flexible Spending Account (FSA)</strong> – set aside pre-tax dollars for eligible healthcare expenses.</p>
<p><em>🔎 Watch this space, we’re continuing to build this as we grow…</em></p><div class="content-conclusion"><div> </div>
<div>We value diversity and are committed to equal employment opportunity regardless of sex, race, religion, ethnicity, nationality, disability, age, sexual orientation or gender identity. We strongly encourage individuals from groups traditionally underrepresented in tech to apply. To help make a change, we sponsor bright women from disadvantaged backgrounds through their university degrees in science and mathematics. </div>
<div> </div>
<div>We collect diversity and inclusion data solely for the purpose of monitoring the effectiveness of our equal opportunities policies and ensuring compliance with UK employment and equality legislation. This information is confidential, used only in aggregate form, and will not influence the outcome of your application. </div>
<div>
<div class="body body__secondary">
<div id="question_7460024101-description" class="question-description"></div>
</div>
</div>
<div>
<div class="select"> </div>
</div></div>

The market for this type of role

Similar openings
64
Engineering roles in New York
Full-time
80%
of Engineering roles in the UK
Remote possible
8%
of Engineering roles
physicsx

7 open positions · London, New York, Singapore

📊 Engineering · the UK
6,544
active jobs
11.9%
Remote
Ø 2d
avg. online
Top skills in demand
ExcelERPISOPythonAWSCI/CDSQLAzureAgileLean

Frequently asked questions

How many Engineering jobs are available in New York?
Currently 64 Engineering roles in New York on AlmostHired, across 21 different companies. Our data is updated daily.
Do Engineering roles offer remote work?
8% of Engineering roles in the UK allow remote work, either partial or full. To filter specifically for remote positions, use AlmostHired.
How do I know if I match this role?
Upload your CV — our AI compares your profile to the job requirements and gives you a precise match score, with matching and missing skills.