Post job

Security architect jobs in Fontana, CA

- 90 jobs
All
Security Architect
Senior Security Engineer
Information Security Engineer
Senior Information Security Engineer
Security Engineer
Information Security Director
Security System Engineer
Senior Security Analyst
Information Systems Security Officer
  • Information Security Application Vulnerability Engineer

    Alignment Healthcare 4.7company rating

    Security architect job in Orange, CA

    Alignment Health is breaking the mold in conventional health care, committed to serving seniors and those who need it most: the chronically ill and frail. It takes an entire team of passionate and caring people, united in our mission to put the senior first. We have built a team of talented and experienced people who are passionate about transforming the lives of the seniors we serve. In this fast-growing company, you will find ample room for growth and innovation alongside the Alignment Health community. Working at Alignment Health provides an opportunity to do work that really matters, not only changing lives but saving them. Together. This position is responsible for identifying, analyzing, and helping with remediate security vulnerabilities within our applications. This role requires a strong understanding of application security principles, hands-on experience with various security testing methodologies, and excellent communication skills to collaborate effectively with development teams and other stakeholders. Job Responsibilities: Conduct static application security testing (SAST), dynamic application security testing (DAST), and interactive application security testing (IAST) on a continuous basis. Identify, triage, and validate security vulnerabilities using both automated tools and manual review. Work closely with software development and DevOps teams to provide clear, actionable guidance on how to fix vulnerabilities and implement secure coding practices. Help integrate security controls and checks into the software development lifecycle (SDLC) and CI/CD pipelines. Drive and support application security reviews and threat modeling. Manage and configure a suite of application security tools, ensuring their effective use and reporting. Stay up-to-date with the latest security threats, trends, and technologies, and conduct research on new vulnerabilities and attack vectors. Contribute to the creation and maintenance of application security policies, standards, and procedures to guide development teams and ensure compliance. Develop and deliver security awareness and secure coding training to engineering teams. Support and lead third-party penetration testing. Job Requirements: Experience: Required: 5-7+ years of progressive experience in information security, with a strong focus on application security testing and vulnerability management. Proven track record of working directly with developers and engineering teams to identify and remediate security vulnerabilities in a fast-paced environment. Experience in a large-scale enterprise environment with complex application portfolios. Preferred: Experience in healthcare or another highly regulated field. Education: Required: Bachelor's degree or equivalent work experience in Computer Science, Information Security, or a related technical discipline. Preferred: Relevant professional certifications such as Offensive Security Certified Professional (OSCP), GIAC Web Application Penetration Tester (GWAPT), or Certified Secure Software Lifecycle Professional (CSSLP) are highly desirable. ISC2 Certified Information Systems Security Professional (CISSP) Specialized Skills: Required: Experience with general threat hunting techniques and tools. Experience with one or more programming languages (i.e., C#, Scala, Python). Essential Physical Functions: The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. 1. While performing the duties of this job, the employee is regularly required to talk or hear. The employee regularly is required to stand, walk, sit, use hand to finger, handle or feel objects, tools, or controls; and reach with hands and arms. 2. The employee frequently lifts and/or moves up to 10 pounds. Specific vision abilities required by this job include close vision and the ability to adjust focus. Pay Range: $113,332.00 - $169,999.00 Pay range may be based on a number of factors including market location, education, responsibilities, experience, etc. Alignment Health is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, age, protected veteran status, gender identity, or sexual orientation. *DISCLAIMER: Please beware of recruitment phishing scams affecting Alignment Health and other employers where individuals receive fraudulent employment-related offers in exchange for money or other sensitive personal information. Please be advised that Alignment Health and its subsidiaries will never ask you for a credit card, send you a check, or ask you for any type of payment as part of consideration for employment with our company. If you feel that you have been the victim of a scam such as this, please report the incident to the Federal Trade Commission at ******************************* If you would like to verify the legitimacy of an email sent by or on behalf of Alignment Health's talent acquisition team, please email ******************.
    $113.3k-170k yearly Auto-Apply 36d ago
  • Lead AI Security Engineer

    Capital Group International Inc. 4.4company rating

    Security architect job in Irvine, CA

    “I can succeed as a Lead AI Security Engineer at Capital Group” As a Lead AI Security Engineer, you will be responsible for securing Capital Group's enterprise AI Platforms. You will help enable Capital Group's AI strategy by building and/or procuring solutions to protect a diverse set of enterprise AI platforms being built and deployed at Capital Group. You'll collaborate with platform engineering, security engineering, and risk teams to ensure their solutions support scalable, secure adoption of AI. Additionally, you'll be expected to provide mentoring, advising diverse teams across the organization, and promoting AI Security principles across Capital Group. AI Security Procurement Managements: You will procure and/or build technical solutions to reduce the risk of misconfiguration, exploitation, and other security issues for multiple enterprise AI platforms. Embedding Security in the AI Platform Ecosystem: Working closely with platform teams to integrate security into every component of the AI Platform. Implementing Security Controls & “Guardrails” for GenAI: Designing, deploying, and operating technical controls to prevent misuse of AI systems. Guardrails design includes content filtering systems, usage policies, and safety checks that mitigate issues like prompt injection attacks, unauthorized data extraction, model bias or hallucinations, and other misuse of generative AI platforms. AI Runtime Security: Engineer continually tests and updates to the guardrails, replacing weaker controls with more robust solutions as threats evolve. AI Governance: You will work cross functionally with architecture and platform teams to monitor alignment of solutions to AI Governance processes Contribute to Standards and Policies: You will provide thought leadership for Information Security policies and standards for AI in collaboration with technology risk AI/Agent SME: You will provide AI/Agent subject matter expertise for AI Incidents and Security Reviews, and help develop incident response playbooks for AI-related security incidents “I am the person Capital Group is looking for.” You have 8+ years of experience in information security, application security, platform security, or penetration testing, DevSecOps, network security and other security disciplines. You have experience securing AI platforms, whether internal AI platforms or offerings such as CoPilot Studio, Amazon Bedrock, and/or Azure AI Gateway Proficient in Programming & ML Tool. Strong Python skills required, with experience in AI/ML frameworks. Ability to review and write ML code to implement security measures (e.g., model validation, adversarial testing) is desired. You have 5+ years of relevant professional experience or demonstrated an equivalent level of expertise in security engineering, such as cloud, API, or platform security. You have 3+ years of experience embedded identity, network, and encryption controls into enterprise platforms You can effectively partner and collaborate with stakeholder teams. You have effective communication skills and the ability to outline security risks to leadership. You are familiar with cloud and API security vendors and managed services providers. Preferred Qualifications: You have knowledge and experience with technologies including Kubernetes, Containers, CI/CD, and Cloud Service Providers You are familiar with function and purpose of key AI platform components such as AI gateways (Kong, Databricks Mosaic AI Gateway, custom API orchestration), Model Orchestration (Examples LangChain, LlamaIndex, etc.) You are familiar with key AI regulatory frameworks such as NIST AI RMF, MITRE ATLAS, GDPR, EU AI Act, etc You have information Security certifications (CISSP, SANS GIAC, CISA, etc.) Southern California Base Salary Range: $173,211-$277,138San Antonio Base Salary Range: $142,394-$227,830New York Base Salary Range: $183,613-$293,781 In addition to a highly competitive base salary, per plan guidelines, restrictions and vesting requirements, you also will be eligible for an individual annual performance bonus, plus Capital's annual profitability bonus plus a retirement plan where Capital contributes 15% of your eligible earnings. You can learn more about our compensation and benefits here. * Temporary positions in Canada and the United States are excluded from the above mentioned compensation and benefit plans. We are an equal opportunity employer, which means we comply with all federal, state and local laws that prohibit discrimination when making all decisions about employment. As equal opportunity employers, our policies prohibit unlawful discrimination on the basis of race, religion, color, national origin, ancestry, sex (including gender and gender identity), pregnancy, childbirth and related medical conditions, age, physical or mental disability, medical condition, genetic information, marital status, sexual orientation, citizenship status, AIDS/HIV status, political activities or affiliations, military or veteran status, status as a victim of domestic violence, assault or stalking or any other characteristic protected by federal, state or local law.
    $183.6k-293.8k yearly Auto-Apply 4d ago
  • Senior Information Security Engineer

    Vast 4.7company rating

    Security architect job in Long Beach, CA

    At Vast, our mission is to contribute to a future where billions of people are living and thriving in space. We are building artificial gravity space stations, allowing long-term stays in space without the adverse effects of zero-gravity. Our initial crewed space habitat will be Haven-1, scheduled to be the world's first commercial space station when it launches into low earth orbit in May 2026. Our team is all-in, committed to executing our mission safely and on time. If you want to work with the most talented people on Earth furthering space exploration for humanity, come join us. Vast is looking for a(n) Senior Information Security Engineer reporting to the Information Security Manager, to support the development of the systems that will be required for the design and build of artificial-gravity human-rated space stations. This will be a full-time, exempt position located in our (Long Beach) location. Responsibilities: Design, deploy, and manage enterprise security technologies including firewalls, intrusion detection/prevention systems (IDS/IPS), endpoint protection, and security information and event management (SIEM) platforms. Implement/maintain solutions and configurations to achieve compliance with government regulations like NIST 800-171, CMMC 2.0, and ITAR/EAR. Work cross-functionally with other teams to ensure the security of the systems they use or build. Automate our security infrastructure to the maximum extent possible. Collaborate with SOC analysts and other teams to enhance detection and response capabilities. Support monitoring of security systems, networks, and applications for suspicious activities. Minimum Qualifications: 2+ years of hands-on experience. Experience securing Windows, MacOS, and Linux endpoints. Proficiency in configuring, deploying, and maintaining security tools such as SIEM, IDS/IPS, antivirus, and vulnerability scanning. Proficient understanding of cloud technologies such as AWS, Google, and Azure. Proficient in using automation scripts (i.e. Powershell, Bash, Python). Knowledge of network protocols, firewalls, and intrusion detection/prevention systems. Preferred Skills & Experience: Technical certifications such as OSCP, eCPPT, or platform specific certifications. Familiarity with Kali Linux. Understanding of cyber deception. Experience conducting social engineering campaigns. Experience supporting audits and assessments. Understanding of compliance requirements and certifications like NIST 800-171, CMMC 2.0, DFARS ************, ITAR/EAR. Familiarity with security SaaS solutions and relevant integrations. Prior experience working in a fast-paced startup environment. Additional Requirements: Ability to travel up to 10% of the time. Willingness to work overtime, or weekends to support critical mission milestones. Pay Range: Senior Information Security Engineer: $143,500 - $203,700 Staff Information Security Engineer: $158,100 - $226,900 Salary Range: California$143,000-$226,900 USDCOMPENSATION AND BENEFITS Base salary will vary depending on job-related knowledge, education, skills, experience, business needs, and market demand. Salary is just one component of our comprehensive compensation package. Full-time employees also receive company equity, as well as access to a full suite of compelling benefits and perks, including: 100% medical, dental, and vision coverage for employees and dependents, flexible paid time off for exempt staff and up to 10 days of vacation for non-exempt staff, paid parental leave, short and long-term disability insurance, life insurance, access to a 401(k) retirement plan, One Medical membership, ClassPass credits, personalized mental healthcare through Spring Health, and other discounts and perks. We also take pride in offering exceptional food perks, with snacks, drip coffee, cold drinks, and dinner meals remaining free of charge, and lunch subsidized as part of Vast's ongoing commitment to providing high-quality meals for employees. U.S. EXPORT CONTROL COMPLIANCE STATUS The person hired will have access to information and items subject to U.S. export controls, and therefore, must either be a “U.S. person” as defined by 22 C.F.R. § 120.62 or otherwise eligible for deemed export licensing. This status includes U.S. citizens, U.S. nationals, lawful permanent residents (green card holders), and asylees and refugees with such status granted, not pending. EQUAL OPPORTUNITY Vast is an Equal Opportunity Employer; employment with Vast is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status.
    $158.1k-226.9k yearly Auto-Apply 1d ago
  • Director, Information Security

    Glaukos Corporation 4.9company rating

    Security architect job in Aliso Viejo, CA

    Are you a hands-on security leader ready to make a measurable impact in a mission-driven organization? We're looking for a Director of Information Security to lead and scale our security operations, incident response, and engineering efforts. In this role, you'll oversee our security ecosystem - from real-time monitoring to proactive threat hunting - and help shape the future of enterprise security at a growing company. This is a highly collaborative position where you'll work cross-functionally with teams across the business to protect our information assets, infrastructure, and services - especially within a SaaS and life sciences environment. What will you do? Shape and drive the enterprise security operations strategy in alignment with broader company goals. Serve as a trusted advisor to senior leadership on all things security. Manage our Security Operations Center (SOC), ensuring rapid incident detection, triage, and response. Oversee threat intelligence, vulnerability management, and operational risk mitigation initiatives. Partner with IT and engineering teams to deploy, tune, and optimize tools like SIEM, SOAR, EDR, and DLP. Implement automation and integrations that improve speed and efficiency. Lead cyber incident response efforts and continuously test and improve our disaster recovery and response plans. Coordinate cross-functional teams (e.g., Legal, HR, Communications) during major security events. Lead, mentor, and grow a high-performing team of security and infrastructure professionals. Support the development of a resilient, inclusive, and learning-driven culture across the department. Align programs with regulatory standards (HIPAA, SOX, GDPR, PCI-DSS) and frameworks (NIST, MITRE ATT&CK). Support audits and ensure documentation is ready and accurate. How will you get there? Bachelor's degree in Computer Science, Information Security, or related field (Master's a plus). 12+ years of relevant experience, including 4+ years leading teams in complex enterprise environments. Hands-on expertise in SOC management, incident response, and threat intelligence. Experience in the Medical Device, Life Sciences, or highly regulated industries preferred. Professional certifications such as CISSP, CISM, GIAC, or CEH. Proficiency with security tools including SIEM, EDR, SOAR, IDS/IPS, and vulnerability management platforms. Strong knowledge of cloud (AWS, Azure, GCP), Windows/Linux systems, and network protocols. Familiarity with security frameworks and standards (NIST, MITRE, ISO 27001). Proven ability to build, lead, and retain high-performing technical teams. A proactive, solutions-oriented mindset with excellent communication and collaboration skills. #GKOSUS
    $137k-194k yearly est. Auto-Apply 60d+ ago
  • Senior Cloud Security Engineer

    True Anomaly

    Security architect job in Long Beach, CA

    A new space race has begun. True Anomaly seeks those with the talent and ambition to build innovative technology that solves the next generation of engineering, manufacturing, and operational challenges for space security and sustainability. OUR MISSION The peaceful use of space is essential for continued prosperity on Earth-from communications and finance to navigation and logistics. True Anomaly builds innovative technology at the intersection of spacecraft, software, and AI to enhance the capabilities of the U.S., its allies, and commercial partners. We safeguard global security by ensuring space access and sustainability for all. OUR VALUES Be the offset. We create asymmetric advantages with creativity and ingenuity What would it take? We challenge assumptions to deliver ambitious results It's the people. Our team is our competitive advantage and we are better together YOUR MISSION As a Senior Cloud Security Engineer, you will be at the forefront of securing the heart of our satellite mission control software. You will play a pivotal role in fortifying our cloud infrastructure, ensuring the safety of our critical space operations. If you enjoy pioneering solutions to novel security challenges, this mission is for you. RESPONSIBILITIES Design and implement secure cloud infrastructure solutions that meet regulatory and compliance requirements. Implement security strategies via automation to maximize control efficacy and user experience. Conduct security assessments and audits to ensure compliance with industry standards and best practices. Collaborate with cross-functional teams to provide security guidance and support. Stay current with emerging security threats, technologies, and regulations affecting cloud platforms and services. Provide expert guidance and lead response efforts for cloud security incidents. Operate vulnerability discovery tools for operating systems, containers, and software libraries. Build, deploy, and manage production security tools and services to monitor networks, endpoints, and cloud workloads. Design and operate scalable processes to provision cloud access and maintain least-privilege. Maintain a secure, reliable and low-touch infrastructure using technologies such as Terraform, Kubernetes, and immutable images. QUALIFICATIONS 5+ years of experience in a cloud or infrastructure security role. Security experience with Docker/Kubernetes and how to secure those environments. Experience with any of the three major cloud providers (AWS, Azure, GCP). Experience with Terraform, Python, Bash or similar scripting language. Experience building secure CI/CD pipelines with either GitHub Actions, Jenkins, GitLab. Experience managing vulnerability management and scanning tools. Experience with public key infrastructure and management of secrets. Understanding of real-time threat detection, secrets management, security considerations within build, release, CI/CD and other similar tooling. PREFERRED SKILLS AND EXPERIENCE Experience working in startups with hybrid cloud and on-prem environments. Experience implementing and managing security controls in accordance with Department of War Impact Levels, NIST 800-53 and Security Technical Implementation Guides. Certifications including CEH, Security+, OSCP. Eligibility to obtain and maintain an active U.S. Top Secret clearance. COMPENSATION California Base Salary: $175,000-$245,000 Colorado Base Salary: $155,000-$215,000 Washington D.C. Base Salary: $160,000-$225,000 Remote: Compensation for remote employees will vary based on location and local market data. Equity + Benefits including Health, Dental, Vision, HRA/HSA options, PTO and paid holidays, 401K, Parental Leave Your actual level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education and experience. ADDITIONAL REQUIREMENTS Ability to maintain or obtain TS//SCI clearance Work Location: Ideally, candidates will be based near Denver, Colorado Springs, Long Beach, or Washington, D.C., as some work requires on-site collaboration. Remote candidates will also be considered but should anticipate occasional travel for in-person work. Work environment is in a standard office, working at a desk or in a production factory. Physical demands may include frequent standing, sitting, walking, bending, and lifting or carrying items up to 20lbs. This position will be open until it is successfully filled. To submit your application, please follow the directions below. [#LI-Hybrid] To conform to U.S. Government space technology export regulations, including the International Traffic in Arms Regulations (ITAR) you must be a U.S. citizen, lawful permanent resident of the U.S., protected individual as defined by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations from the U.S. Department of State. True Anomaly is committed to equal employment opportunity on any basis protected by applicable state and federal laws. If you have a disability or additional need that requires accommodation, please do not hesitate to let us.
    $175k-245k yearly Auto-Apply 14d ago
  • Senior Security Operations Analyst

    Revelyst

    Security architect job in Irvine, CA

    As a Senior Security Operations Analyst, you will be a key member of our Security Operations team, responsible for detecting, investigating, and responding to cyber threats across our enterprise. You will help build and mature our SOC (Security Operations Center) capabilities, contribute to threat intelligence and incident response, and play a critical role in securing our e-commerce platforms, customer data, and connected product ecosystem. This role requires a balance of hands-on technical expertise, analytical thinking, and the ability to communicate risk and remediation clearly to both technical and business stakeholders. **Key Responsibilities** Security Monitoring & Detection · Lead monitoring of security events across SIEM, EDR, cloud, and network security platforms. · Analyze alerts, correlate data, and distinguish between true positives, false positives, and emerging threats. · Develop, tune, and improve detection use cases, rules, and automation playbooks. Incident Response & Forensics · Serve as a first responder and subject matter expert for security incidents, leading investigations and containment activities. · Conduct forensic analysis on endpoints, cloud environments, and applications when necessary. · Collaborate with IT, cloud, and DevOps teams to ensure rapid remediation and recovery. Threat Intelligence & Hunting · Perform proactive threat hunting activities to identify hidden risks or advanced persistent threats. · Leverage external threat intelligence to enrich investigations and improve defensive measures. · Stay current with evolving attack techniques, malware trends, and vulnerabilities relevant to retail, e-commerce, and IoT/connected devices. Governance, Risk, and Compliance (Support) · Support compliance initiatives (PCI-DSS, SOC2, ISO 27001, GDPR, CCPA, NIST etc.) by ensuring security controls are effective. · Provide input into risk assessments and partner with vulnerability management to prioritize patching. Collaboration & Continuous Improvement · Partner with IT, Product, e-commerce, and retail technology teams to secure new business initiatives. · Mentor junior analysts and contribute to knowledge-sharing across the team. · Recommend and implement process improvements, automation, and best practices. **Qualifications** Required Skills & Experience · 5+ years in a security operations or incident response role, with experience in enterprise-scale environments. · Strong knowledge of SIEM, EDR, MDR, firewalls, and cloud-native security tools (AWS/GCP/Azure). · Hands-on experience with incident handling, digital forensics, and malware analysis. · Familiarity with MITRE ATT&CK, cyber kill chain, and common threat actor tactics. · Proficiency in scripting (Python, PowerShell, or similar) to automate investigations or workflows. · Excellent communication skills, with the ability to explain technical risks to non-technical stakeholders. Preferred Skills · Experience in retail, e-commerce, or IoT/connected device security. · Experience in key principles of incident response & security operations. · Experience in MDR & SIEM solutions · retail, e-commerce, or IoT/connected device security. · Exposure to PCI-DSS or other retail payment security frameworks. · Knowledge of container security (Kubernetes, Docker) and DevSecOps practices. · Relevant certifications: GCIA, GCIH, GCFA, CEH, OSCP, or CISSP. **Pay Range:** $112,200.00 - $148,500.00 The actual annual salary offered to a candidate will be based on variables including experience, geographic location, education, and skills/achievements, and will be mutually agreed upon at the time of offer. We offer a highly competitive salary, comprehensive benefits including: medical and dental, vision, disability and life insurance, 401K, PTO, paid holidays, gear discounts and the ability to add value to an exciting mission! Our Postings are not intended for distribution to or use in any jurisdiction, country or territory where such distribution or use would violate local law or would subject us to any regulations in another jurisdiction, country or territory. We reserve the right to limit our Postings in any jurisdiction, country or territory. Equal Opportunity Employer Minorities/Females/Protected Veteran/Disabled **Revelyst is a collective of makers that design and manufacture performance gear and precision technologies. Our category-defining brands leverage meticulous craftsmanship and cross-collaboration to pursue new innovations that redefine what is humanly possible in the outdoors. Portfolio brands include Foresight Sports, Bushnell Golf, Fox, Bell, Giro, CamelBak, Bushnell, Simms Fishing and more.** Revelyst is an equal opportunity employer. All applicants are considered for employment without regard race, color, religion, sexual orientation, gender identity, national origin, disability, veteran status, and any other characteristics protected by law. The EEO Law poster is available here: **************************************************************** If you need a reasonable accommodation because of a disability for any part of the employment process, please send an e-mail to ******************** . Please note that this email address is for accommodation purposes only. Revelyst will not respond to inquiries for other purposes.
    $112.2k-148.5k yearly 23d ago
  • Senior Security Engineer

    Turion Space

    Security architect job in Irvine, CA

    Job Description Turion Space is seeking a Security Engineer to join our platform engineering team. Working across our cloud and on-premises infrastructure, you'll help design, implement, and maintain our security solutions. While we currently operate primarily in AWS, you'll be instrumental in ensuring security across our hybrid infrastructure, from cloud workloads to endpoint devices. This role offers an opportunity to work with both traditional security practices while embracing modern cloud-native security approaches and automation. You'll work closely with our platform and network teams to deliver robust, comprehensive security solutions. Key Responsibilities Security Operations: Design and implement security controls across cloud and on-premises environment Manage endpoint security programs including EDR, MDM, and anti-malware solutions Configure and maintain security monitoring and incident response systems Implement and maintain security automation solutions using infrastructure as code Create and maintain robust security monitoring and alerting solutions Support our office security infrastructure and compliance needs Maintain security tool deployments and lifecycle management Participate in on-call rotations for security incident response Lead security incident investigations and response efforts Platform Security: Work with platform team to implement security automation solutions Help design and implement cloud-native security solutions Support container and Kubernetes security implementations Assist in creating standardized security patterns and controls Contribute to security documentation and training materials Help teams with their security requirements and compliance needs Support CI/CD pipeline security components Implement security controls and monitoring Collaborate with network team on security architecture Minimum Qualifications: 3+ years of experience in security engineering and operations Strong understanding of security principles and best practices Experience with cloud security services (preferably AWS) Proficiency with security automation and infrastructure as code Current security certification (Security+ or equivalent) Experience with Linux/Windows systems security Basic programming/scripting skills (Python, Shell scripting) Strong problem-solving skills and eagerness to learn Good communication skills and ability to work collaboratively Experience with security incident response and handling Understanding of compliance requirements and frameworks The ability to obtain and maintain an active DOD Secret or Top Secret clearance Security Engineer: $110,000 - $150,000 USD ITAR Requirements: This position may include access to technology and/or software source code that is subject to U.S. export controls. To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. § 1157, or (iv) Asylee under 8 U.S.C. § 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Benefits: We offer a comprehensive compensation and benefits package designed to support the well-being and professional growth of our employees. In addition to a competitive base salary and company stock, determined by factors such as job-related knowledge, education, skills, experience, and market demand, full-time employees are eligible for: Equity: Receive equity in Turion Space, letting you benefit from the company's success Health Insurance: Comprehensive medical, dental, and vision coverage for employees and their dependents. Retirement Plans: Access to a 401(k) plan to help you plan for your future. Paid Time Off: Generous vacation days, personal days, sick days, and holidays to ensure you have time to recharge. Professional Development: Opportunities for ongoing training, workshops, and courses to advance your skills and career growth. Team Building Activities: Regular social events, team outings, and company-sponsored activities to foster a positive work environment. We are dedicated to providing a supportive and enriching environment for our team members, recognizing that our collective success is built upon the well-being and satisfaction of each individual. Turion Space is an Equal Opportunity Employer; employment with Turion Space is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status. Compensation Range: $140K - $180K
    $140k-180k yearly 18d ago
  • Principal Cloud Security Engineer

    Rocket Lab USA 3.8company rating

    Security architect job in Long Beach, CA

    ABOUT ROCKET LAB Rocket Lab is an end-to-end space company delivering responsive launch services, complete spacecraft design and manufacturing, payloads, satellite components, and more - all with the goal of opening access space. The rockets and satellites we build, and launch enable some of the most ambitious and vital space missions globally, supporting scientific exploration, Earth observation and missions to combat climate change, national security, and exciting new technology demonstrations. Our Electron rocket has become the second most frequently launched U.S. rocket annually and has delivered more than 230 satellites to orbit, all while we work to develop Neutron, our upcoming medium-lift, reusable launch vehicle for larger constellation deployment. Our Space Systems business designs and builds our extensive line of satellites, payloads, and their components, including spacecraft that have been selected to support NASA missions to the Moon and Mars and components used on the James Webb Space Telescope. IT Rocket Lab's IT team is responsible for how our global teams access information and run operations across our computer systems, networks, and devices. Our hardworking IT team is a group of flexible problem-solvers working in a fast-paced environment but who also thrive under the challenge of supporting all of our proprietary systems and people, from finance to launch operations. PRINCIPAL CLOUD SECURITY ENGINEER Based onsite at Rocket Lab's office in Long Beach, CA the Senior Cloud Security Engineer must demonstrate a firm grasp of cloud-first, automated, API-driven security and statistical risk concepts and communication. They will work on securing all facets of Rocket Lab's cloud presence: the wide array of vendor services, code pipelines deploying into prod and non-prod environments, and automation performing an assortment of business-critical operations. They will provide analyses including quantifiable statistical information regarding IT and Cybersecurity risk to business partners with fiduciary responsibility. They will support the IT organization to develop a secure, reliable, and fiercely efficient platform to empower the Rocket Lab's objectives as a rapidly growing multinational space company. WHAT YOU'LL GET TO DO: * Design, implement, and maintain security controls for hybrid cloud-based environments, including infrastructure as a service (IaaS), platform as a service (PaaS), software as a service (SaaS), and function as a service (FaaS) solutions. * Design and develop custom automation in pursuit of cyber team objectives. * Provide security support for internal and external design reviews related to security. * Conduct security assessments and risk analyses to identify vulnerabilities and develop mitigation strategies for automated infrastructure such as public cloud, CI/CD pipelines, and agentic systems. * Work with Infrastructure Operations to Implement and manage identity and access management (IAM) solutions to control access to cloud resources and applications. * Develop documentation, plans, and proofs of concept for cybersecurity-related platform improvements. * Configure and monitor cloud security tools and services. * Collaborate with development teams to integrate security best practices into the software development lifecycle (SDLC), DevOps, and MLOps processes. * Maintain systems to help the team stay up-to-date on emerging threats, vulnerabilities, and industry best practices related to DevSecOps/MLOps and recommend proactive measures to enhance security posture. * Provide guidance and support to internal teams on security-related matters, including incident response, compliance, and security awareness training. * Participate in regular security audits, assessments, and compliance reviews to ensure adherence to regulatory requirements and industry standards. YOU'LL BRING THESE QUALIFICATIONS * Education and Experience in IT and Cybersecurity * 12+ years of experience in scripting languages (e.g., Bash, PowerShell, Python) and configuration management/infrastructure as code tools (e.g., Puppet, Ansible, Terraform). * Bachelor's degree or equivalent years of work experience (16+ years of total work experience) * Cloud Security and Architecture Expertise * Proven experience in cloud security architecture, design, and implementation across major cloud platforms (AWS, Azure, Google Cloud). * Hands-on experience with cloud security tools and services (e.g., AWS Security Hub, Azure Security Center, Google Cloud Security Command Center). * Compliance, Vulnerability Management, and IT Governance * Experience working under US Government compliance regimes (e.g., CMMC, NIST, DISA STIG) and ITIL/Change Review systems. * Proficiency in vulnerability management systems (e.g., Tenable, Bringa) and CLI scanning tools (e.g., Trivy, OpenSCAP). * Version Control, Networking, and Secure Communication * Extensive experience with git-driven version control systems (e.g., GitHub, GitLab, Bitbucket). * Strong understanding of networking concepts, encryption techniques, and secure communication protocols. * Data and Analytics Expertise * Experience with databases (e.g., PostgreSQL, SQLite) and data formats (e.g., Parquet, Arrow). * Proficiency in analytics systems (e.g., PowerBI, Jupyter) and vendor-agnostic assessment engines (e.g., Cloud Custodian, Panther). THESE QUALIFICATIONS WOULD BE NICE TO HAVE: * Advanced degree in computer science, information technology, cybersecurity, or equivalent career experience * Involvement with community cybersecurity organizations * Experience with the following: * AWS GovCloud / Azure GCC High * CI/CD pipeline security * Tier 2 cloud vendors * Hybrid cloud engineering * SAST and DAST testing * Secrets management / vaults / HSMs * Cloud incident response / forensics * Log aggregators like Graylog, ELK, or Splunk ADDITIONAL REQUIREMENTS: * Specific vision abilities required by this job include close vision, distance vision, peripheral vision, depth perception, and the ability to focus. * Regularly required to sit, use hands and fingers, operate computer keyboard and controls, and communicate verbally and in writing. * Must be physically able to commute to buildings. * Occasional exposure to dust, fumes and moderate levels of noise. Level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, and experience. Base salary is just one component of our total rewards package at Rocket Lab. Employees may also receive company equity and access to a robust benefits package including: top tier medical HMO, PPO & a 100% company-sponsored medical HSA plan option, dental and vision coverage, 3 weeks paid vacation and 5 days sick leave per year, 11 paid holidays per year, flexible spending and dependent care savings accounts, paid parental leave, disability insurance, life insurance, and access to a 401(k) retirement plan with company match. Other perks include: Discounted employee stock purchase program, subsidized EV charging stations, onsite gym, food and drinks, and other discounts. Eligibility for benefits may vary based on employment status, please check with your recruiter for a comprehensive list of the benefits available for this role. Benefit programs are subject to change at the company's discretion. Base Pay Range (CA Only) $150,000-$175,000 USD WHAT TO EXPECT We're on a mission to unlock the potential of space to improve life on Earth, but that's not an easy task. It takes hard work, determination, relentless innovation, teamwork, grit, and an unwavering commitment to achieving what others often deem impossible. Our people out-think, out-work and out-pace. We pride ourselves on having each other's backs, checking our egos at the door, and rolling up our sleeves on all tasks big and small. We thrive under pressure, work to tight deadlines, and our focus is always on how we can deliver, rather than dwelling on the challenges that stand in the way. Important information: FOR CANDIDATES SEEKING TO WORK IN US OFFICES ONLY: To conform to U.S. Government space technology export regulations, including the International Traffic in Arms Regulations (ITAR), Rocket Lab Employees must be a U.S. citizen, lawful U.S. permanent resident (i.e., current Green Card holder), or lawfully admitted into the U.S. as a refugee or granted asylum, or be eligible to obtain the required authorizations from the U.S. Department of State and/or the U.S. Department of Commerce, as applicable. Learn more about ITAR here. Rocket Lab provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment at Rocket Lab, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training. Applicants requiring a reasonable accommodation for the application/interview process for a job in the United States should contact Giulia Johnson at ***********************.This dedicated resource is intended solely to assist job seekers with disabilities whose disability prevents them from being able to apply/interview. Only messages left for this purpose will be considered. A response to your request may take up to two business days. FOR CANDIDATES SEEKING TO WORK IN NEW ZEALAND OFFICES ONLY: For security reasons background checks will be undertaken prior to any employment offers being made to an applicant. These checks will include nationality checks as it is a requirement of this position that you be eligible to access equipment and data regulated by the United States' International Traffic in Arms Regulations. Under these Regulations, you may be ineligible for this role if you do not hold citizenship of Australia, Japan, New Zealand, Switzerland, the European Union or a country that is part of NATO, or if you hold ineligible dual citizenship or nationality. For more information on these Regulations, click here ITAR Regulations.
    $150k-175k yearly Auto-Apply 22d ago
  • Senior Security Engineer-Identity Management (IAM)

    Insight Global

    Security architect job in Irvine, CA

    Insight Global is seeking a seasoned IAM Security Engineer to lead the design and operation of enterprise identity systems for both workforce and third-party users, including contractors and subsidiaries. This role will elevate Okta as the central control plane for Zero Trust, deploying phishing-resistant authentication (FIDO2, passkeys, WebAuthn) to mitigate OTP fatigue and SIM-swap risks. The engineer will architect and manage Okta tenants, enforce policy-driven access (RBAC/ABAC), and implement robust JML automation using SCIM, APIs, and HRIS triggers to ensure SLA-based deprovisioning. They will integrate identity with Zscaler ZPA for segmentation, Delinea PAM for privileged access workflows, Venafi PKI for certificate lifecycle management, and CrowdStrike for device posture telemetry. The role includes defining secure contractor/BYOD access patterns, maintaining a unified identity data model, and partnering with CSIRT to codify threat detections and incident playbooks. Additionally, the engineer will lead M&A identity integrations, including directory consolidation and access mapping, while ensuring compliance with regulatory frameworks such as ISO 27001 and NIST 800-53. We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to ********************.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: **************************************************** Skills and Requirements - 6-10+ years in IAM engineering/architecture at large enterprise scale. - Deep Okta expertise (policies, Workflows, OIDC/SAML, SCIM, risk signals) and directory hygiene. - Strong background in Zero Trust, RBAC/ABAC design, and privileged access patterns (PAM integration). - Proven delivery of phishing-resistant authentication at scale and identity-centric incident response. - Familiarity with regulatory environments (ISO 27001, NIST 800-53/CSF, NYDFS) and evidence-ready control operation. - Experience with Zscaler ZPA segmentation design, Venafi automation, Grip/Obsidian identity-app mapping, and ServiceNow request workflows. - Exposure to FIDO2 authenticator management at scale (attestation, lifecycle, lost device playbooks).
    $121k-169k yearly est. 48d ago
  • Senior Security Firmware Engineer

    Sandisk

    Security architect job in Irvine, CA

    Sandisk understands how people and businesses consume data and we relentlessly innovate to deliver solutions that enable today's needs and tomorrow's next big ideas. With a rich history of groundbreaking innovations in Flash and advanced memory technologies, our solutions have become the beating heart of the digital world we're living in and that we have the power to shape. Sandisk meets people and businesses at the intersection of their aspirations and the moment, enabling them to keep moving and pushing possibility forward. We do this through the balance of our powerhouse manufacturing capabilities and our industry-leading portfolio of products that are recognized globally for innovation, performance and quality. Sandisk has two facilities recognized by the World Economic Forum as part of the Global Lighthouse Network for advanced 4IR innovations. These facilities were also recognized as Sustainability Lighthouses for breakthroughs in efficient operations. With our global reach, we ensure the global supply chain has access to the Flash memory it needs to keep our world moving forward. Job Description ESSENTIAL DUTIES AND RESPONSIBILITIES: Development of various cryptography-based security features such as data encryption, Secure Boot, and Device Attestation. Integrate these security protocols and features into the SSD data and control flows to ensure a robust and secure system. Additionally, investigate and resolve any security protocol compatibility issues that may arise. Investigating failures, documenting bug reports, and providing valuable assistance to product teams in identifying and resolving issues. Debugging, optimizing, and validating the Firmware on SoC platforms, as well as bringing up of FPGA and ASIC. Contribute to the Security Development Lifecycle of the Firmware by supporting its development at different stages, including design, threat analysis, implementation, validation, vulnerability testing, certification, and audit. Qualifications REQUIRED: To qualify for this position, an ideal candidate would have/be. A degree in Computer Science, Electrical/Computer Engineering, Software Engineering, or a related field. 3+ years of experience in embedded programming, with proficiency in C/C++ and one or more of the following: Python, Rust, Go. Strong understanding of microcontroller architectures and debugging of hardware/firmware issues. Experience in firmware code review, CI/CD test and validation methodology, as well as static and dynamic code analysis. Familiarity with the Agile software development process life cycle is also desired. Proficiency in failure analysis in debugging an embedded firmware application, using JTAG/debuggers such as Lauterbach. An engineer who can take ownership of given features and manage them from start to finish. Being self-motivated and driven is essential for this role. Good communication skills and be able to work effectively with cross-functional teams. What Sets You Apart Detailed knowledge of RISC-V Instruction Set Architectures (ISA) Technical expertise in applied cryptography and firmware/hardware security, including knowledge of data encryption, trusted execution environment, secure boot, and device attestation. Knowledge of storage controller architectures and security protocols, such as TCG Opal/Ruby/Pyrite, IEEE 1667, SPDM, and IDE. Develop firmware on SoC platforms, run simulation or bringing up FPGA and ASIC. Familiarity with writing code in Github repository and it's CI/CD testing framework. Additional Information Sandisk is committed to providing equal opportunities to all applicants and employees and will not discriminate against any applicant or employee based on their race, color, ancestry, religion (including religious dress and grooming standards), sex (including pregnancy, childbirth or related medical conditions, breastfeeding or related medical conditions), gender (including a person's gender identity, gender expression, and gender-related appearance and behavior, whether or not stereotypically associated with the person's assigned sex at birth), age, national origin, sexual orientation, medical condition, marital status (including domestic partnership status), physical disability, mental disability, medical condition, genetic information, protected medical and family care leave, Civil Air Patrol status, military and veteran status, or other legally protected characteristics. We also prohibit harassment of any individual on any of the characteristics listed above. Our non-discrimination policy applies to all aspects of employment. We comply with the laws and regulations set forth in the "Know Your Rights: Workplace Discrimination is Illegal” poster. Our pay transparency policy is available here. Sandisk thrives on the power and potential of diversity. As a global company, we believe the most effective way to embrace the diversity of our customers and communities is to mirror it from within. We believe the fusion of various perspectives results in the best outcomes for our employees, our company, our customers, and the world around us. We are committed to an inclusive environment where every individual can thrive through a sense of belonging, respect and contribution. Sandisk is committed to offering opportunities to applicants with disabilities and ensuring all candidates can successfully navigate our careers website and our hiring process. Please contact us at [email protected] to advise us of your accommodation request. In your email, please include a description of the specific accommodation you are requesting as well as the job title and requisition number of the position for which you are applying. Based on our experience, we anticipate that the application deadline will be 11/11/2025 (3 months from posting), although we reserve the right to close the application process sooner if we hire an applicant for this position before the application deadline. If we are not able to hire someone from this role before the application deadline, we will update this posting with a new anticipated application deadline. #LI-RT1 Compensation & Benefits Details An employee's pay position within the salary range may be based on several factors including but not limited to (1) relevant education; qualifications; certifications; and experience; (2) skills, ability, knowledge of the job; (3) performance, contribution and results; (4) geographic location; (5) shift; (6) internal and external equity; and (7) business and organizational needs. The salary range is what we believe to be the range of possible compensation for this role at the time of this posting. We may ultimately pay more or less than the posted range and this range is only applicable for jobs to be performed in California, Colorado, New York or remote jobs that can be performed in California, Colorado and New York. This range may be modified in the future. You will be eligible to participate in Sandisk's Short-Term Incentive (STI) Plan, which provides incentive awards based on Company and individual performance. Depending on your role and your performance, you may be eligible to participate in our annual Long-Term Incentive (LTI) program, which consists of restricted stock units (RSUs) or cash equivalents, pursuant to the terms of the LTI plan. Please note that not all roles are eligible to participate in the LTI program, and not all roles are eligible for equity under the LTI plan. RSU awards are also available to eligible new hires, subject to Sandisk's Standard Terms and Conditions for Restricted Stock Unit Awards. We offer a comprehensive package of benefits including paid vacation time; paid sick leave; medical/dental/vision insurance; life, accident and disability insurance; tax-advantaged flexible spending and health savings accounts; employee assistance program; other voluntary benefit programs such as supplemental life and AD&D, legal plan, pet insurance, critical illness, accident and hospital indemnity; tuition reimbursement; transit; the Applause Program, employee stock purchase plan, and the Sandisk's Savings 401(k) Plan. Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole discretion unless and until paid and may be modified at the Company's sole discretion, consistent with the law.
    $121k-169k yearly est. 56d ago
  • Senior Security Engineer

    Goodleap 4.6company rating

    Security architect job in Irvine, CA

    About GoodLeap:GoodLeap is a technology company delivering best-in-class financing and software products for sustainable solutions, from solar panels and batteries to energy-efficient HVAC, heat pumps, roofing, windows, and more. Over 1 million homeowners have benefited from our simple, fast, and frictionless technology that makes the adoption of these products more affordable, accessible, and easier to understand. Thousands of professionals deploying home efficiency and solar solutions rely on GoodLeap's proprietary, AI-powered applications and developer tools to drive more transparent customer communication, deeper business intelligence, and streamlined payment and operations. Our platform has led to more than $30 billion in financing for sustainable solutions since 2018. GoodLeap is also proud to support our award-winning nonprofit, GivePower, which is building and deploying life-saving water and clean electricity systems, changing the lives of more than 1.6 million people across Africa, Asia, and South America. Position Summary The GoodLeap security team is responsible for both business enablement and safeguarding the organization's information assets; it is involved in virtually all aspects of the business, from product safety and resilience, to building security paved roads, customer, partner, and regulatory trust, managing technology governance and compliance, and ensuring the privacy, and safety of GoodLeap's customers, partners, and employees information. The senior security engineer role provides a unique opportunity to shape the security and resilience of GoodLeap corporate systems, services, and operational processes. In this role, you will work closely with product, engineering, IT, and business teams within GoodLeap, acting as the key individual with both the authority and responsibility to ensure the safety and resilience of enterprise systems, products, and services. Your oversight will encompass: - Enterprise systems:Identifying potential misuse and abuse cases, proposing solutions to address these scenarios, and identifying product features, configuration settings, and/or mitigating or compensating controls to meet resilience requirements. - Build-time controls: Managing applications/products security controls and activities during development. - Runtime controls: Overseeing security measures at runtime, from prevention to detection and response. Additionally, you will be involved with aspects of internally built products and represent all areas of security, spanning governance, risk, and compliance (GRC) to security monitoring, for a number of departments/teams. You will also have the authority and ability to involve other security team members as needed. While you will take on multiple responsibilities-from advisor to builder and beyond-your primary focus will be designing and building security patterns and practices for services and processes, and fostering strong relationships with product, business, and engineering. Essential Job Duties & Responsibilities Lead, participate in, and contribute to partnerships between security, IT, General & Administrative teams, engineering, product, and operations teams to build, orchestrate, and automate security controls and services in GoodLeap enterprise systems, products, services, and operational processes. Identify potential misuse and abuse cases in enterprise systems, propose solutions to address these scenarios, and identify product features, configuration settings, and/or mitigating or compensating controls to meet resilience requirements. Support or develop components of the security analytics platform. Contribute to investigations, threat hunting, and incident response activities in a supporting role. Collaborate with the monitoring and response team to create playbooks for specific incident response scenarios related to the products and services you oversee. These investigations, incidents, and playbooks may address security, fraud, privacy, resilience, and related concerns. Support the security operations team with the vulnerability management lifecycle for products and services under your purview. Ensure technical alignment for the products and services you oversee with team initiatives, including GRC, security operations, and monitoring and response activities. Required Skills, Knowledge & Abilities Strong communicator with the ability to lead technical architecture discussions, drive technical decisions, and effectively communicate with non-technical audiences. Expertise in agile product lifecycles. Ideally, you have experience in a product manager or engineering manager role and understand how SaaS products (B2B, B2B2C, and B2C) are built, including roadmap planning and feature and defect prioritization. Experience with threat modeling methodologies, with the ability to create efficient and scalable approaches to conducting such assessments. Familiarity with AWS services, including KMS, SST, Container Registry, ELBs, Lambda, API Gateway, CloudTrail, and IAM (knowledge of GCP and/or Azure is a plus). Proven ability to establish credibility and build trust with business, engineers, and operational staff; confident yet humble. Hands-on experience with managing security for core enterprise systems, e.g., ERP, HCM, Salesforce, etc. Strong understanding of both human and non-human identity management and common enterprise and consumer authentication standards and use cases. Practical experience with CI/CD pipelines and DevOps tools, including Infrastructure-as-Code (IaC) tools like Terraform, Pulumi, or CDK; GitHub and GitHub Actions; artifact management; and secrets management tools like Doppler and HashiCorp Vault. Passionate about learning new technologies. While you're not expected to know everything, you should demonstrate a willingness and ability to learn as needed. Prior experience interfacing and supporting with G&A teams, internal product teams, and other cross-functional areas. Proficiency in writing automation scripts in multiple languages, with prior experience automating security processes in cloud or SaaS environments. Experience engaging with vendors in design partnerships. Experience overseeing vulnerability and threat management at the platform and application levels. Familiarity with penetration testing and red team exercises, including manual verification, exploitation, and lateral movement. Ability to balance a high-level view of security strategy with attention to detail, ensuring thorough and effective execution. Additional Information Regarding Job Duties and s: Job duties include additional responsibilities as assigned by one's supervisor or other managers related to the position/department. This job description is meant to describe the general nature and level of work being performed; it is not intended to be construed as an exhaustive list of all responsibilities, duties and other skills required for the position. The Company reserves the right at any time with or without notice to alter or change job responsibilities, reassign or transfer job position or assign additional job responsibilities, subject to applicable law. The Company shall provide reasonable accommodations of known disabilities to enable a qualified applicant or employee to apply for employment, perform the essential functions of the job, or enjoy the benefits and privileges of employment as required by the law. If you are an extraordinary professional who thrives in a collaborative work culture and values a rewarding career, then we want to work with you! Apply today! We are committed to protecting your privacy. To learn more about how we collect, use, and safeguard your personal information during the application process, please review our Employment Privacy Policy and Recruiting Policy on AI.
    $114k-145k yearly est. Auto-Apply 60d+ ago
  • Senior Information Security Engineer

    First City Credit Union 3.2company rating

    Security architect job in Altadena, CA

    The Senior Information Security Engineer will assume, but not be limited to, the following responsibilities: Responsible for designing, managing, and maintaining the credit union's information security systems to ensure member data confidentiality, integrity, and availability Compliance with established security policies, procedures and standards Monitors, manages and analyzes malicious activities daily to ensure the credit union's security infrastructure Assists in the development and maintenance of Information Technology Security Program, including policies, standards, procedures, and security awareness training. Conduct vulnerability scanning and develop prioritized remediation plans Assist internal and external auditors as required The successful candidate will possess the following education, knowledge and skillsets: Undergraduate degree and four (4) years information security related experience; or six (6) plus years of information security related experience Must have one or more of the following industry certifications: ISACA Certified Information Security Manager (CISM) GIAC Information Security Certification Certified Information Systems Security Professional (CISSP) Strong knowledge and experience with IDS/IPS Technologies, Firewall management and maintenance, Anti-Virus / Anti-Malware software, network protocols (BGP, OSPF, etc), SIEM/LEM technology, and etc. Must be a self starter, able to work without constant supervision Strong written and verbal communication skills Strong investigation, remediation, and reporting intuition We provide competitive compensation and benefits package that includes: Health, dental, and vision plans 401(k) plan Life insurance Paid Time Off (PTO) Plan Paid holidays EOE
    $133k-174k yearly est. 60d+ ago
  • Security Engineer

    Momenti, Inc.

    Security architect job in Irvine, CA

    Momenti is a dynamic and immersive content company that revolutionizestraditional media by bringing visceral experiences to all forms of content. Wespecialize in interactive video that breaks the 4th wall, creating deeperconnections and emotions with our audience. Join us in transforming the waypeople engage with content and bring moments to life. Momenti is at theforefront of the content revolution, and we want you to be part of it. Job Summary:We are seeking a talented and experienced Security Engineer to join Momentias our first security hire and report directly to our Engineering Director. In thisrole, you will be responsible for ensuring the security and integrity of oursystems, applications, and data. You will work closely with cross-functionalteams to identify potential vulnerabilities, develop and implement securitymeasures, and provide ongoing support to maintain a secure environment. Thisis a unique opportunity to make a significant impact and shape the securitylandscape at Momenti. Key Responsibilities:• Develop and implement effective security strategies, policies, and proceduresto protect Momenti's systems, applications, and data.• Conduct regular security assessments, vulnerability testing, and risk analysisto identify and address potential security weaknesses.• Collaborate with software engineers and other stakeholders to design andimplement secure coding practices and ensure secure applicationdevelopment.• Monitor and respond to security incidents, including investigating andresolving security breaches, intrusions, and unauthorized access attempts.• Stay up-to-date with the latest security technologies, trends, and bestpractices, and provide recommendations for enhancements to our securityposture.• Educate and train employees on security awareness and best practices topromote a culture of security throughout the organization.Preferred Qualifications:• Solid experience in a security engineering or related role, with a focus onapplication and system security.• Strong understanding of web application security, network security principles,and secure coding practices.• Familiarity with security frameworks such as OWASP, NIST, and CISbenchmarks.• Knowledge of cloud security principles and experience securing cloud-basedenvironments (e.g., GCP, AWS, Azure).• Experience with security assessment tools and techniques, such asvulnerability scanners, penetration testing, and log analysis.Basic Qualifications:• Proven experience in implementing and managing security controls in aproduction environment.• Familiarity with compliance standards and regulations (e.g., GDPR, HIPAA,PCI DSS).• Strong problem-solving and analytical skills, with the ability to assess risksand develop effective mitigation strategies.• Excellent communication and collaboration skills, with the ability to workeffectively in cross-functional teams.
    $104k-149k yearly est. Auto-Apply 60d+ ago
  • 0_IT_Software Engineer - Information Security

    Summithr

    Security architect job in Pasadena, CA

    Key Qualifications: Bachelor's degree or equivalent experience 5-10+ years of experience as a security engineer in related domains Experienced in Cloud IDAM solutions and able to provide Tier 2 and Tier 3 security operations support and incident handling. Assists in the development, implementation, and tuning of secure management of user interfaces, workspaces, and dashboards. Experience with auditing tools, intrusion detection/protection devices, security Benchmarks, Incident Response Handling, and NIST publications. Ability to perform under pressure and handle change easily while meeting deadlines. CISSP certification is preferred, with knowledge of operating systems, file systems, and memory on OS X, Linux, Windows, or iOS/Android. Coding or scripting proficiency in one or more languages is preferred having practical experience with attacker tactics, techniques, and procedures. Experience and knowledge across multiple security domains, but with expertise in detection engineering, digital forensics, incident response, threat intelligence, or malware analysis Recent digital forensic experience including memory or live analysis of mac OS, Linux, Windows, or iOS/Android systems. Experience as an incident responder responsible for running large scale incidents. Demonstrated engagement in the security community through talks, papers, or code. Experience with Kubernetes, threat modeling, STRIDE and writing secure Java code. To see new and updated job postings and job postings similar to this, please follow us on LinkedIn: *****************************************
    $100k-141k yearly est. 60d+ ago
  • Senior Security Engineer

    Akkodis

    Security architect job in Irvine, CA

    Akkodis is seeking a Senior Security Engineer for a Contract with a client in Irvine, CA. Candidates must have strong AWS cloud security experience and hands-on expertise with CSPM tools and scripting for automation. Rate Range: $58/hour to $60/hour; The rate may be negotiable based on experience, education, geographic location, and other factors. Senior Security Engineer job responsibilities include: * Design and implement security architecture for applications, networks, and cloud environments to ensure robust protection against threats. * Conduct vulnerability assessments and penetration testing and lead remediation efforts across systems and infrastructure. * Monitor and respond to security incidents, performing root cause analysis and implementing preventive measures. * Develop and enforce security policies, standards, and procedures in alignment with industry best practices and regulatory requirements. * Collaborate with cross-functional teams to integrate security into DevOps workflows and software development lifecycles. * Stay current with emerging threats and technologies and recommend improvements to enhance the organization's security posture. Required Qualifications: * Bachelor's degree in computer science, Cybersecurity, Data Engineering, or a related field. * 6-8 years of professional experience in cybersecurity, cloud engineering, or security analytics. * Strong hands-on experience with AWS security services and CSPM tools, including secure configuration, automation, and compliance monitoring. * Proficiency in Snowflake and Power BI for building security data pipelines and dashboards, with a solid understanding of AWS data lake architecture and ETL processes. If you are interested in this role, then please click APPLY NOW. For other opportunities available at Akkodis, or any questions, feel free to contact me at *****************************. Pay Details: $58.00 to $60.00 per hour Benefit offerings available for our associates include medical, dental, vision, life insurance, short-term disability, additional voluntary benefits, EAP program, commuter benefits and a 401K plan. Our benefit offerings provide employees the flexibility to choose the type of coverage that meets their individual needs. In addition, our associates may be eligible for paid leave including Paid Sick Leave or any other paid leave required by Federal, State, or local law, as well as Holiday pay where applicable. Equal Opportunity Employer/Veterans/Disabled Military connected talent encouraged to apply To read our Candidate Privacy Information Statement, which explains how we will use your information, please navigate to ************************************************* The Company will consider qualified applicants with arrest and conviction records in accordance with federal, state, and local laws and/or security clearance requirements, including, as applicable: * The California Fair Chance Act * Los Angeles City Fair Chance Ordinance * Los Angeles County Fair Chance Ordinance for Employers * San Francisco Fair Chance Ordinance Massachusetts Candidates Only: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
    $58-60 hourly Easy Apply 7d ago
  • Information Security Engineer

    Orange County's Credit Union 4.3company rating

    Security architect job in Santa Ana, CA

    Orange County's Credit Union is hiring: Information Security Engineer. Why Orange County's Credit Union? With over 85 years of experience, serving 123,000+ members, and managing $2.5+ billion in assets, we are a premier financial service provider. Our mantra, "Putting People First: Connect, Discover, Deliver & Wow!" is not just a saying-it's a way of life. On our team. You'll work closely with leadership to ensure our projects are aligned with our mission to put people first. What We Offer: Comprehensive Benefits: Medical, Dental, and VSP effective day one of employment! Financial Security: Enjoy peace of mind with life insurance at no cost to you and a robust 401(k) plan where we contribute up to 8%. Work-Life Balance: Generous days of vacation, seven (7) sick days per year, and paid holidays, you'll have the time to recharge and pursue your passions. Growth Opportunities: We believe in your professional and personal development, offering educational grants up to $2,000 per year, step progression opportunities, and annual performance merit increases. Rewarding Work: Annual discretionary bonus and a supportive work environment that celebrates achievements and fosters collaboration. Make a Difference with Us! If you're looking for a rewarding role where you can contribute to a positive work environment and make a difference in the community, we'd love to hear from you. Apply today and join a team that puts people first, values your expertise, and supports your growth. OVERVIEW: The Information Security Engineer will play a critical role in evolving and maturing the organization's information security program to ensure the confidentiality, integrity, and availability of Orange County's Credit Union assets. The program includes: policies, standards, guidelines, and controls to manage and prevent risks to Orange County's Credit Union. Responsible for conducting information security reviews (technology, application and process) and vulnerability / risk assessments, monitoring key / compensating controls and baseline configuration standards, and identifying / remediating control gaps to minimize risks. ESSENTIAL FUNCTIONS: Coordinate and perform risk and vulnerability assessments of the Credit Union's systems and processes to ensure appropriate controls are in place and recommend / implement controls to remediate risk findings. In collaboration with IT Operations / Technology Services / Software Engineering and outside vendors, design and implement security tools, controls and automation frameworks to ensure the integrity, availability and confidentiality of the organization's data, systems and services on premises and in public cloud. Design, develop and document (1) network security architecture and baseline configuration standards for firewalls, routers, switches, load balancers, and related network appliances; (2) device security architecture and baseline configuration standards for servers, workstations and mobile devices; (3) application and data security architecture and baseline configuration standards for databases and enterprise applications; and (4) cloud platform security architecture and baseline configuration standards for AWS and Microsoft Azure services. QUALIFICATIONS: Bachelor's Degree in Computer Science, Information Security, Information Assurance or related technology field. 5+ years of experience in information / cyber security and IT risk management (including hands-on experience in implementing, maintaining, and managing on-prem and cloud-based network / infrastructure / application / data security for the enterprise). 2+ years of hands-on experience in securing AWS and Microsoft Azure cloud infrastructure / applications / services / solutions. Relevant security certifications (at least one is required), such as CISSP, SANS GIAC, CompTIA Security+, AWS Certified Security - Specialty, Azure Security Engineer Associate. The targeted salary range is $100,000.00 to $125,000.00. Final offer will be determined based on experience, education, training/certifications and specialized skills. We perform thorough background check and credit check. EOE
    $100k-125k yearly Auto-Apply 9d ago
  • Cybersecurity - Information System Security Officer (ISSO)

    Jeppesen 4.8company rating

    Security architect job in Huntington Beach, CA

    Company: The Boeing Company The Boeing Company is currently seeking a Cybersecurity - Information System Security Officer (ISSO) to support Department of Defense (DoD) and Special Program activities in El Segundo, CA and Huntington Beach, CA. The selected candidate will rely on Cybersecurity and Information Assurance (IA) background to be a technical leader and support Enterprise activities and Boeing customers throughout multiple classified computing domains. The ISSO is responsible for maintaining and implementing all Information System Security policies, standards, and directives to ensure assessment and authorization of information systems processing classified information. Position Responsibilities: Contribute to the development and deployment of program information security for assigned systems to meet the program and enterprise requirements, policies, standards, guidelines and procedures Implement Assessment and Authorization (A&A) processes under the Risk Management Framework (RMF), as well as product development and product maintenance for assigned systems Perform security compliance continuous monitoring (CONMON) Participate in security assessments and audits Prepare and present technical reports and briefings Contribute to the identification of root causes, the prioritization of threats, and recommend/implement corrective action Provide mentoring and technical leadership within the information security program team Explore the enterprise and industry for the evolving state of industry knowledge and methods regarding information security best practices Support development of enterprise-wide information security policies, standards, guidelines and procedures that may reach across multiple stakeholder organizations Basic Qualifications (Required Skills/Experience): Successfully completed Tier 5 Investigation (T5), formerly known as a Single Scope Background Investigation (SSBI) by the federal government within the last 5 years, or requires candidate to have been enrolled in a Continuous Vetting program within the last 5 years IAM Level 1 DoD 8140.01 (previously 8570.01) compliant certification (i.e. CAP, GSLC, Security+ CE, CISSP, CASP, CISM) 1+ years of experience with cyber security policies and implementation of Risk Management Framework (RMF): e.g. DAAPM, CNSSI 1253, ICD-503, JSIG, and/or NIST SP 800 series Active Counterintelligence (CI) Polygraph with ability to obtain a Full Scope (FS) Polygraph Preferred Qualifications (Desired Skills/Experience): 1+ years of experience as an information system security officer (ISSO) or information system security manager (ISSM) supporting classified programs 1+ years of experience utilizing security relevant tools, systems, and applications in support of Risk Management Framework (RMF) to include NESSUS, ACAS, DISA STIGs, SCAP, Audit Reduction, and HBSS 1+ years of experience in assessing and documenting test or analysis data to show cyber security compliance Drug Free Workplace: Boeing is a Drug Free Workplace where post offer applicants and employees are subject to testing for marijuana, cocaine, opioids, amphetamines, PCP, and alcohol when criteria is met as outlined in our policies. Pay & Benefits: At Boeing, we strive to deliver a Total Rewards package that will attract, engage and retain the top talent. Elements of the Total Rewards package include competitive base pay and variable compensation opportunities. The Boeing Company also provides eligible employees with an opportunity to enroll in a variety of benefit programs, generally including health insurance, flexible spending accounts, health savings accounts, retirement savings plans, life and disability insurance programs, and a number of programs that provide for both paid and unpaid time away from work. The specific programs and options available to any given employee may vary depending on eligibility factors such as geographic location, date of hire, and the applicability of collective bargaining agreements. Pay is based upon candidate experience and qualifications, as well as market and business considerations. Summary pay range: $99,450 - $134,550 Language Requirements: Not Applicable Education: Not Applicable Relocation: This position offers relocation based on candidate eligibility. Export Control Requirement: This position must meet export control compliance requirements. To meet export control compliance requirements, a “U.S. Person” as defined by 22 C.F.R. §120.15 is required. “U.S. Person” includes U.S. Citizen, lawful permanent resident, refugee, or asylee. Safety Sensitive: This is not a Safety Sensitive Position. Security Clearance: This position requires an active Top Secret/Sensitive Compartmented Information (TS/SCI) U.S. Security Clearance with an adjudicated Counterintelligence or Full Scope Polygraph (U.S. Citizenship Required). (A U.S. Security Clearance that has been active in the past 24 months is considered active.). Visa Sponsorship: Employer will not sponsor applicants for employment visa status. Contingent Upon Award Program This position is not contingent upon program award Shift: Shift 1 (United States of America) Stay safe from recruitment fraud! The only way to apply for a position at Boeing is via our Careers website. Learn how to protect yourself from recruitment fraud - Recruitment Fraud Warning Boeing is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national origin, gender, sexual orientation, gender identity, age, physical or mental disability, genetic factors, military/veteran status or other characteristics protected by law. EEO is the law Boeing EEO Policy Request an Accommodation Applicant Privacy Boeing Participates in E - Verify E-Verify (English) E-Verify (Spanish) Right to Work Statement Right to Work (English) Right to Work (Spanish)
    $99.5k-134.6k yearly Auto-Apply 2d ago
  • Information Security Engineer

    O. C. Credit Union

    Security architect job in Santa Ana, CA

    Job Description Orange County's Credit Union is hiring: Information Security Engineer. Why Orange County's Credit Union? With over 85 years of experience, serving 123,000+ members, and managing $2.5+ billion in assets, we are a premier financial service provider. Our mantra, "Putting People First: Connect, Discover, Deliver & Wow!" is not just a saying-it's a way of life. On our team. You'll work closely with leadership to ensure our projects are aligned with our mission to put people first. What We Offer: Comprehensive Benefits: Medical, Dental, and VSP effective day one of employment! Financial Security: Enjoy peace of mind with life insurance at no cost to you and a robust 401(k) plan where we contribute up to 8%. Work-Life Balance: Generous days of vacation, seven (7) sick days per year, and paid holidays, you'll have the time to recharge and pursue your passions. Growth Opportunities: We believe in your professional and personal development, offering educational grants up to $2,000 per year, step progression opportunities, and annual performance merit increases. Rewarding Work: Annual discretionary bonus and a supportive work environment that celebrates achievements and fosters collaboration. Make a Difference with Us! If you're looking for a rewarding role where you can contribute to a positive work environment and make a difference in the community, we'd love to hear from you. Apply today and join a team that puts people first, values your expertise, and supports your growth. OVERVIEW: The Information Security Engineer will play a critical role in evolving and maturing the organization's information security program to ensure the confidentiality, integrity, and availability of Orange County's Credit Union assets. The program includes: policies, standards, guidelines, and controls to manage and prevent risks to Orange County's Credit Union. Responsible for conducting information security reviews (technology, application and process) and vulnerability / risk assessments, monitoring key / compensating controls and baseline configuration standards, and identifying / remediating control gaps to minimize risks. ESSENTIAL FUNCTIONS: Coordinate and perform risk and vulnerability assessments of the Credit Union's systems and processes to ensure appropriate controls are in place and recommend / implement controls to remediate risk findings. In collaboration with IT Operations / Technology Services / Software Engineering and outside vendors, design and implement security tools, controls and automation frameworks to ensure the integrity, availability and confidentiality of the organization's data, systems and services on premises and in public cloud. Design, develop and document (1) network security architecture and baseline configuration standards for firewalls, routers, switches, load balancers, and related network appliances; (2) device security architecture and baseline configuration standards for servers, workstations and mobile devices; (3) application and data security architecture and baseline configuration standards for databases and enterprise applications; and (4) cloud platform security architecture and baseline configuration standards for AWS and Microsoft Azure services. QUALIFICATIONS: Bachelor's Degree in Computer Science, Information Security, Information Assurance or related technology field. 5+ years of experience in information / cyber security and IT risk management (including hands-on experience in implementing, maintaining, and managing on-prem and cloud-based network / infrastructure / application / data security for the enterprise). 2+ years of hands-on experience in securing AWS and Microsoft Azure cloud infrastructure / applications / services / solutions. Relevant security certifications (at least one is required), such as CISSP, SANS GIAC, CompTIA Security+, AWS Certified Security - Specialty, Azure Security Engineer Associate. The targeted salary range is $100,000.00 to $125,000.00. Final offer will be determined based on experience, education, training/certifications and specialized skills. We perform thorough background check and credit check. EOE
    $100k-125k yearly 9d ago
  • Systems Security Engineer II - P2 (Onsite-Fullerton, CA)

    RTX Corporation

    Security architect job in Fullerton, CA

    Country: United States of America Onsite U.S. Citizen, U.S. Person, or Immigration Status Requirements: Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance Security Clearance: Secret - Current At Raytheon, the foundation of everything we do is rooted in our values and a higher calling - to help our nation and allies defend freedoms and deter aggression. We bring the strength of more than 100 years of experience and renowned engineering expertise to meet the needs of today's mission and stay ahead of tomorrow's threat. Our team solves tough, meaningful problems that create a safer, more secure world. Raytheon is seeking a well-qualified Systems Security Engineer II (P2) to join our Systems Security Engineering (SSE) team in developing solutions to protect the Warfighter's technology advantage. Systems Security Engineering creates holistic security solutions leveraging Cyber Security, Software Assurance and Supply Chain Risk Management to support Program Protection Implementation on embedded weapons systems. Join our highly visible team and perform technically challenging assignments, which will directly contribute to protecting our nation and our Warfighters. This is an onsite position at Raytheon in Fullerton, CA. What You Will Do * Lead the patch team, ensuring on-time delivery of patches to our customer * Perform analysis on cybersecurity collected data and test results * Validate secure configuration of routers, switches, firewalls, servers, operating systems, applications, and other assets, using DoD approved scanning and assessment tools such as Nessus, STIG, Evaluate STIG, and/or RADIX * Create and maintain Linux Bash and Python scripts * Create patch artifacts such as patch media and information assurance posture reports Qualifications You Must Have * Typically requires a Bachelor's Degree in Science, Technology, Engineering or Mathematics (STEM) and 2 years of prior relevant experience * Active and transferable U.S. government issued DoD Secret security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance * Experience in System Security Engineering, computer technology reverse engineering, cybersecurity or embedded security Qualifications We Prefer * Experience with scrum planning and scrum tools such as Jira * Experience in the SSE implementation throughout the entire life cycle * Experience contributing to a team environment for the purpose of developing creative solutions to technical problems * Cyber Certifications in accordance with DoDD 8570/DoDD 8140 such as CISSP, GSLC, CEH * Experience supporting the development of Risk Management Framework (RMF) documents and controls validation testing for Authority to Operate (ATO) accreditations * Candidate must exhibit an exceptional degree of ingenuity, creativity and resourcefulness * Excellent communication, technical writing, oral presentation and interpersonal skills What We Offer * Our values drive our actions, behaviors, and performance with a vision for a safer, more connected world. At RTX we value: Trust, Respect, Accountability, Collaboration, and Innovation * Relocation Eligible - Relocation assistance is available As part of our commitment to maintaining a secure hiring process, candidates may be asked to attend select steps of the interview process in-person at one of our office locations, regardless of whether the role is designated as on-site, hybrid or remote. The salary range for this role is 72,000 USD - 144,000 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills. Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement. Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance. This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply. RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window. RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act. Privacy Policy and Terms: Click on this link to read the Policy and Terms
    $96k-139k yearly est. Auto-Apply 9d ago
  • Sr. Information Security Engineer

    Alignment Healthcare 4.7company rating

    Security architect job in Orange, CA

    Sr. Information Security Engineer External Description: Alignment Healthcare is a data and technology driven healthcare company focused on partnering with health systems, health plans and provider groups to provide care delivery that is preventative, convenient, coordinated, and that results in improved clinical outcomes for seniors. We are experiencing rapid growth (backed by top private equity firms), and our team is looking for the best and brightest individuals. We love our customers and understanding them better makes it possible to provide the best clinical outcomes and care experience. Are you an Information Security Engineer with experience in automation, cloud technologies, and endpoint security? Would you like to work in an environment where your skills can be utilized effectively, and you have opportunities to make significant impact? If you are passionate about security and can reduce risk in practical ways that scale, we want to hear from you! Major Responsibilities Contributes to the daily operational aspects of the Information Security Team, primarily from a technical implementation perspective. Assists with break/fix of tools and automation that are owned by the Information Security Team. Works with internal and external customers on a variety of issues, from a simple security review of a mundane and routine ask, to a complex deep dive into a new feature implementation in O365, Azure, or AWS. Balances operational work (approximately 70% of the day) to help meet team SLAs, and project work (approximately 30% of the day) to meet assigned team deliverables. Contributes to the design, implementation, and documentation of new security tools. Collaborates with other internal information technology teams (networking, cloud, traditional architecture, developers, and data scientists) to support internal and external systems. Utilizes scripting and DevOps to provide automation and orchestration between: information security tools, such as the SIEM (Logstash, FortiSIEM, IBM QRadar, etc.); endpoint protection (Symantec, McAfee, Cylance, CrowdStrike Falcon, etc.); vulnerability scanners (Rapid7, Nessus, etc.); patch management (SCCM, Altiris, PDQ, etc.); other applications; OS' (Windows, MacOS, Linux, iOS, Android); cloud platforms (AWS, Azure); and IAM platforms (Active Directory, Okta, Auth0, PingIdentity, SAML, OIDC). Clearly documents designed automation and system relationships. Contributes and participates in the Information Security Team daily stand-ups and other meetings as necessary. Participates in regular reporting, maintaining accountability and transparency within the Information Security Team. Remains current on industry trends in cyber risk with industry standards (ISO 27001/2, NIST, CIS) and regulatory requirements (HIPAA, HITECH, HITRUST, etc.) Technical knowledge of common information security tools and systems: DLP, MAM/MDM, Firewall/VPN, endpoint protection, PKI, RBAC, IAM, etc. Demonstrated practical experience with one or more programming or scripting languages. (PowerShell, Python, C#, VB, VBA, Ruby, NodeJS, SQL, etc.) We're not picky, but you must be able to deliver practical automation! Demonstrated practical experience with one or more of the major cloud providers (AWS, Azure, GCP). Excellent oral and written communication skills, and an ability to present and discuss technical information in a way that establishes rapport and trust. Detail orientated, with an ability and desire to build to 100%, but being ok with building to 90% as tasked. An ability to be productive as an individual contributor with little supervision to meet agreed upon deliverables. Preferred Prior experience in the healthcare or a related HIPAA regulated industry. A working knowledge of the NIST CSF and/or CIS Critical Security Controls (CSC). A working knowledge of Git and GitHub. Previous experience contributing to projects using agile tools (Jira, Azure DevOps, Pivotal) and processes (Scrum, Kanban). One or more cloud security certifications. Education Bachelor's degree in Computer Science, Computer Engineering, or related technical discipline, and/or equivalent work experience. 3+ years' experience working in a technical, hands-on, information security role. One or more current security related certifications (e.g., CISSP, SANS GIAC, etc.) City: Orange State: California Location City: Orange Schedule: Full Time Location State: California Community / Marketing Title: Sr. Information Security Engineer Company Profile: Alignment Healthcare was founded with a mission to revolutionize health care with a serving heart culture. Through its unique integrated care delivery models, deep physician partnerships and use of proprietary technologies, Alignment is committed to transforming health care one person at a time. By becoming a part of the Alignment Healthcare team, you will provide members with the quality of care they truly need and deserve. We believe that great work comes from people who are inspired to be their best. We have built a team of talented and experienced people who are passionate about transforming the lives of the seniors we serve. In this fast-growing company, you will find ample room for growth and innovation alongside the Alignment community. EEO Employer Verbiage: On August 17, 2021, Alignment implemented a policy requiring all new hires to receive the COVID-19 vaccine. Proof of vaccination will be required as a condition of employment subject to applicable laws concerning exemptions/accommodations. This policy is part of Alignment's ongoing efforts to ensure the safety and well-being of our staff and community, and to support public health efforts. Alignment Healthcare, LLC is proud to practice Equal Employment Opportunity and Affirmative Action. We are looking for diversity in qualified candidates for employment: Minority/Female/Disable/Protected Veteran. If you require any reasonable accommodation under the Americans with Disabilities Act (ADA) in completing the online application, interviewing, completing any pre-employment testing or otherwise participating in the employee selection process, please contact ******************.
    $125k-156k yearly est. Easy Apply 60d+ ago

Learn more about security architect jobs

How much does a security architect earn in Fontana, CA?

The average security architect in Fontana, CA earns between $99,000 and $203,000 annually. This compares to the national average security architect range of $92,000 to $179,000.

Average security architect salary in Fontana, CA

$141,000
Job type you want
Full Time
Part Time
Internship
Temporary