Role Responsibilities:
- Develop, train, and monitor best security practices across application, infrastructure, and endpoint security.
- Build and monitor security tools (EDR, SIEM, DLP, CASB, ZTNA), identify threats, and drive vulnerability remediation.
- Define secure configuration baselines for device fleets and partner with IT on provisioning and identity workflows.
Security Operations:
- Conduct threat hunting exercises to identify new risks and lead incident detection and response from triage to post-mortem.
- Conduct security reviews for new corporate tooling, vendor integrations, and IT infrastructure changes.
- Assist with security and compliance audits and establish metrics that reflect real security posture.
Qualifications and Experience:
- 6+ years of IT security experience with at least 3 years as a security engineer and a relevant security certification (CISSP, CISM, OSCP).
- Deep expertise in endpoint security, identity security (Active Directory, Okta), and cloud security (AWS, GCP, Azure).
- Proven incident response leadership, ability to write detection scripts/automation, and knowledge of security frameworks like SOC2 and ISO.
Compensation and Work Model:
- Compensation includes a base salary range of $160,000 - $200,000, equity, and a comprehensive benefits package.
- The role supports a flexible work arrangement, allowing employees to work fully remote, hybrid, or full-time in a physical office.