1

Security Phishing Engineer Jobs (NOW HIRING)

Manager, Enterprise Security

San Francisco, CA ยท On-site

$184K - $230K/yr

Direct the delivery of Security Awareness Training programs and security phishing campaigns to ... engineers, with a demonstrated ability to provide leadership, guidance, and motivation. * Strong ...

Senior Security Engineer

Framingham, MA ยท On-site

$117K - $161K/yr

This role handles the security work that arrives every day - reported phishing, email and data loss ... This is a hands-on engineering role, not a governance or audit role, and not a role that supervises ...

Senior Security Engineer

Framingham, MA ยท Hybrid

$117K - $161K/yr

This role handles the security work that arrives every day -- reported phishing, email and data ... This is a hands-on engineering role, not a governance or audit role, and not a role that supervises ...

Requirement - Security Engineer Location- Charlotte, NC (CIC) Contract W2 Look for security ... Investigate phishing, malware delivery, and email-based attacks, including analysis of headers ...

Senior Security Engineer

Framingham, MA ยท Hybrid

$117K - $161K/yr

This role handles the security work that arrives every day - reported phishing, email and data loss ... This is a hands-on engineering role, not a governance or audit role, and not a role that supervises ...

... exposure, and phishing defense * Establish a scalable Corporate Security operating model ... Corporate Security Engineering * Incident Response Optimization * Vulnerability Lifecycle ...

Exchange and eDiscovery Engineer

Ashburn, VA ยท Remote

$85K - $120K/yr

About the Role Vamonos IT is seeking an experienced Exchange and eDiscovery Engineer, responsible ... Outlook, Email Security (Phishing, Malware, SPAM), Microsoft Teams (including voice ...

As a Security Engineer III embedded within the Security Operations team, you will design, build ... Maintain and tune anti-spam, anti-phishing, and sandboxing configurations, and ensure strong ...

Security Engineer

Austin, TX ยท On-site

$100K - $160K/yr

Enhance enterprise email security to protect against phishing, malware, and business email compromise. * Collaborate with infrastructure and cloud engineering teams to implement security controls ...

About the Role Vamonos IT is seeking an experienced Exchange and eDiscovery Engineer, responsible ... Outlook, Email Security (Phishing, Malware, SPAM), Microsoft Teams (including voice ...

Digital Forensics SME

Rockville, MD ยท On-site

$140K - $184K/yr

... reverse engineering. * Support cyber threat intelligence production, mobile device security investigations, and email/phishing analysis. * Collect, preserve, and analyze digital evidence in ...

Conduct or coordinate security testing activities, including vulnerability scanning, phishing ... Partner with Engineering, Infrastructure, and Technology teams to integrate security considerations ...

New

Showing results 41-60

Security Phishing Engineer information

See salary details

$61.5K

$152.8K

$205.5K

How much do security phishing engineer jobs pay per year?

As of Sep 10, 2026, the average yearly pay for security phishing engineer in the United States is $152,773.00, according to ZipRecruiter salary data. Most workers in this role earn between $143,000.00 and $158,500.00 per year, depending on experience, location, and employer.

What is a security phishing engineer?

Security Phishing Engineers are cybersecurity professionals who specialize in designing and executing simulated phishing attacks within an organization. Their main goal is to test and improve employees' awareness and response to phishing threats by mimicking real-world cyberattack scenarios. Through these controlled exercises, they help organizations identify vulnerabilities and educate staff on how to recognize and avoid malicious phishing attempts. This role is crucial for strengthening an organization's overall security posture.

What are the key skills and qualifications needed to thrive as a security phishing engineer, and why are they important?

To thrive as a Security Phishing Engineer, you need expertise in cybersecurity principles, threat analysis, and social engineering tactics, often backed by a degree in computer science or a related field. Familiarity with phishing simulation platforms, incident response tools, and certifications such as CEH or CISSP are commonly required. Strong analytical thinking, attention to detail, and effective communication skills are vital for identifying threats and educating teams. These competencies are crucial for proactively defending organizations against phishing attacks and fostering a culture of cybersecurity awareness.

How does a security phishing engineer typically collaborate with other departments to improve organizational security awareness?

A Security Phishing Engineer works closely with IT, Human Resources, and Compliance teams to design and execute simulated phishing campaigns and training initiatives. They coordinate with these departments to ensure that training materials are relevant, accessible, and tailored to the unique needs of various employee groups. Regular debrief sessions and data sharing help identify trends and areas for improvement, fostering a proactive security culture across the organization. Effective collaboration also ensures that feedback from different departments is incorporated into future security awareness strategies.

What is the difference between Security Phishing Engineer vs Security Analyst?

AspectSecurity Phishing EngineerSecurity Analyst
CertificationsCertified Ethical Hacker (CEH), CompTIA Security+CompTIA Security+, CISSP
Work EnvironmentFocus on phishing detection, email security, and user trainingBroader security monitoring, incident response, and risk assessment
Industry UsageTech companies, financial institutions, cybersecurity firmsAll industries, including government, healthcare, and finance

While both roles involve cybersecurity, a Security Phishing Engineer specializes in identifying and preventing phishing attacks through technical measures and user education. A Security Analyst has a broader scope, monitoring overall security posture, analyzing threats, and responding to incidents. The roles often overlap but differ mainly in focus and specific responsibilities.

What are popular job titles related to Security Phishing Engineer jobs?

For Security Phishing Engineer jobs, the most frequently searched job titles are:

Infographic showing various Security Phishing Engineer job openings in the United States as of September 2026, with employment types broken down into 85% Full Time, 13% Part Time, and 2% Contract. Highlights an 90% Physical, 2% Hybrid, and 8% Remote job distribution, with an average salary of $152,773 per year, or $73.4 per hour.

Manager, Enterprise Security

San Francisco, CA โ€ข On-site

Turo
Internet and ITย โ€ขย 501 - 1,000 employees

$184K - $230K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Re-posted 18 days ago


Job description

About the team

Turo is searching for a highly motivated and strategic Manager, Enterprise Security to lead and mentor a team of Security Engineers in securing enterprise systems and data through the definition, execution, and continuous improvement of a comprehensive security framework. This role will focus heavily on advancing the Zero Trust principles across the organization, ensuring the integrity of our systems and protecting against emerging threats.

Key areas of focus include Advanced Email Security, Data Loss Prevention (DLP), Insider Threat prevention, Endpoint Security, Identity and Access Governance, Security Awareness Training, Configuration management and Infrastructure as Code, Incident Response (SOAR automation), Regulatory Compliance and SaaS Security Posture. The successful candidate will provide strategic direction and technical leadership for these domains, anticipating and mitigating potential threats and ensuring regulatory compliance.

What you will do
  • Provide technical and strategic leadership for the Enterprise Security team, managing, mentoring, and supporting the career development of team members.

  • Define the strategy and oversee the implementation of Zero Trust security frameworks across the enterprise, focusing on continuous verification and least privilege access models.

  • Direct the development and management of Advanced Email Security, Data Loss Prevention (DLP), Insider Threat prevention, and Endpoint Security solutions.

  • Collaborate with the Identity and Access Governance teams to define policy and ensure secure and efficient access control policies are enforced.

  • Lead efforts to ensure ongoing compliance with SOX and SOC 2 standards, including performing regular audits and gap assessments.

  • Direct the delivery of Security Awareness Training programs and security phishing campaigns to educate employees.

  • Drive the adoption and deployment of Infrastructure as Code to automate security configurations and infrastructure, specifically using Terraform.

  • Manage and lead Incident Response efforts (including automation playbooks and SOC collaboration) and identify, assess, and mitigate security risks to protect Turo's assets.

  • Establish a robust SaaS Security Posture and collaborate with cross-functional teams to integrate security into all stages of the Software Development Life Cycle (SDLC).

  • Lead the annual penetration testing and annual security tabletop exercise.

Your profile
  • Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent experience.

  • 10+ years of experience in enterprise security, focusing on Zero Trust architecture, Advanced Email Security, DLP, Endpoint Security (e.g., Crowdstrike), and Infrastructure as Code/configuration management (e.g., Terraform).

  • 2+ years of experience managing or leading a team of security engineers, with a demonstrated ability to provide leadership, guidance, and motivation.

  • Strong knowledge of identity governance frameworks (e.g., Okta, Sailpoint), SaaS security, compliance (SOX/SOC 2), and experience with Incident Response and advanced threat detection methodologies (SOAR tools like Tines preferred).

  • Proficiency in scripting and automating security processes using Python, PowerShell, or similar languages, with a passion for building tooling from the ground up.

  • Experience working on cloud infrastructure, especially AWS and its Security services suite, with a solid understanding of containerized environments and familiarity with GitOps flow.

  • Strong presentation, facilitation, and written/verbal communication skills, with the capability to interface with multiple levels of the organization and serve as an influencer.

  • Industry certifications such as CISSP, CISM, CEH, or GIAC are a plus.


For this role, the target base salary range in San Francisco is $184k-$230k annually. This role is also eligible for equity and benefits. In general, our ranges reflect the market-based target for new hire salaries based on the level and location of the role. Within the range, individual pay is determined by objective factors assessed during the application and interview process, such as job-related skills, experience, and relevant education or training. We encourage you to talk with your recruiter to learn more about the total compensation and benefits available for this role.

Turo highly values having employees working in-office to foster a collaborative work environment and company culture. This role will be in-office on a hybrid schedule - Turists will be expected to work in the office 3 days per week on Mondays, Wednesdays, and Thursdays. Your recruiter can share more information about the various in-office perks Turo offers.

Turo Recruiting Scam Alert:

We've learned that there are scammers targeting job candidates by impersonating Turo and its employees. We ask candidates to be careful of fraudulent job postings or suspicious recruiting activity during their job search, especially if they're contacted through unofficial channels (such as Instagram, Telegram, MS Teams, etc.). In general, Turo interacts with candidates through our Careers page and via turo.com email addresses, and we don't ask candidates for sensitive financial or personal info or request money as part of the hiring process (so an application fee or equipment costs). If candidates are not sure whether they're dealing with an impersonator, they can contact Turo's Recruiting Team at recruit@turo.com. Candidates can also report suspicious activity to the FTC or other appropriate authorities.

Turo AI Policy:

Turo may use AI-enabled tools to support our recruiting operations, including gathering information from candidates, drafting communications, helping with interview note-taking and assessment, and so on. These tools only supplement our team; all decisions to advance or hire candidates are made by Turo employees. While we welcome candidates to use AI-enabled tools to help prepare for their interviews, the use of such tools, including any AI chatbots or note-takers, is not permitted during live interviews or technical assessments. We want to see how you consider and solve problems in real-time, so interviews and assessments are all you (unless we indicate otherwise and ask you specifically to use an AI-enabled tool to answer a question). If during the application process you require the use of an AI-enabled tool as a reasonable accommodation for a disability, please let us know at PeopleOps@turo.com.

Benefits
  • Competitive salary, equity, benefits, and perks for all full-time employees

  • Employer-paid medical, dental, and vision insurance (Country specific)

  • Retirement employer match

  • Learning & Development stipend to invest in your professional development

  • Turo host matching program

  • Turo travel credit

  • Cell phone and internet stipend

  • Paid time off to relax and recharge

  • Paid holidays, volunteer time off, and parental leave

  • For those who are in the office full-time or hybrid we have in-office lunch, office snacks, and fun activities

We are committed to building a diverse team. If you are from a background that's underrepresented in tech, we'd love to meet you.

Aside from an award winning work environment and the opportunity to be part of the world's largest car sharing marketplace, we are also growing the team quickly - join us! Even if you don't meet every qualification, we are looking for people with enthusiasm for what we do and we will consider you for this and other possibilities.

About Turo

Turo is the world's largest car sharing marketplace where you can book the perfect car for wherever you're going from a vibrant community of trusted hosts across the US, UK, Canada, Australia, and France. Whether you're flying in from afar or looking for a car down the street, searching for a rugged truck or something smooth and swanky, Turo puts you in the driver's seat of an extraordinary selection of cars shared by local hosts.

Discover Turo at https://turo.com, the App Store, and Google Play, and check out our blog, Field Notes.

Read more about the Turo culture according to Turo CEO, Andre Haddad.

Turo is an Equal Opportunity Employer and a participant in the U.S. Federal E-Verify program. Women, minorities, individuals with disabilities and protected veterans are encouraged to apply. We welcome people of different backgrounds, experiences, abilities and perspectives.

Turo will consider qualified applicants with criminal histories in a manner consistent with the San Francisco Fair Chance Ordinance, as applicable.

We welcome candidates with physical, mental, and/or neurological disabilities. If you require assistance applying for an open position, or need accommodation during the recruiting process due to a disability, please submit a request to People Operations by emailing PeopleOps@turo.com.