We’re seeking a hands-on engineer to convert Slack security best-practices into production-grade API checks and delivery artifacts for solution (our SaaS Security Posture Management + ITDR product). You will design and implement Slack connectors that query Slack APIs (Web API, Admin APIs, SCIM, Audit Logs, Events), normalize responses, and produce deterministic pass/fail results with evidence. Work must follow least-privilege principles, support single-workspace and Enterprise Grid installs, handle rate limits/pagination, and be production-ready with tests and documentation. Expect to work with our team .
For example :
Admins & Owners inventory + MFA enforcement
SSO (SAML) enabled and IdP config
Audit logs enabled & retention meets policy
Installed apps with sensitive scopes (files:write, admin scopes)
Token/service-bot inventory & last-use (stale or orphaned)
Message retention/export settings and public-link sharing
Guest/external accounts & public channel membership
Audit log events presence for admin actions (evidence of logging)
Apply Now
Apply Now