Jobs · Information Technology · California

10112 - Senior Security Engineer

Hyundai AutoEver America · Fountain Valley, CA · 3 wk ago
Information TechnologyFull-time

About the Role

The Senior Security Engineer is an individual contributor who will participate and manage in all aspects of information and network security including intrusion detection, incident response, vulnerability assessment, application security, and compliance with the corporate information security policy.

Responsibilities

  • Security Engineering
    • Design, build, test, and deploy new security technologies, including the development of operational manuals and runbooks.
    • Provide technical security operations engineering services to support and update existing security systems, and automate processes related to security implementations, monitoring, and enforcement.
    • Investigate, recommend, evaluate, deploy, and integrate operational security tools and techniques to improve protection of corporate assets and infrastructure.
    • Participate in technical risk assessments and security exposure analyses of systems, networks, and business applications.
    • Analyze network security elements and overall network security architectural designs to ensure secure and optimal system and network performance and cost-effectiveness.
    • Oversee the installation, configuration, and supportive processes of security technologies.
    • Participate in or lead Incident Response activities.
    • Interact with internal and external clients on security operations requirements, identify security processes, and develop strategies/solutions to security issues.
    • Stay abreast of trends and changing technologies as they relate to IT, Network Engineering, and Information Security fields.
    • Lead or assist in periodic or ad-hoc security reports that provide relevant situational awareness to senior stakeholders.
  • Security Operations / Administration
    • Monitor and manage networks and infrastructure for attacks, malicious software, and possible intrusions, including complete remediation of infected systems.
    • Required to be on-call (after hours) per the established rotational schedule.
    • Implement changes to security technologies/infrastructure in accordance with standard and change control policies/procedures.
    • Evaluate, implement, tune, and operate Security Solutions such as IPS, Vulnerability scanning tools, encryption capabilities, etc.
    • Monitor and recommend improvements to security technologies and their reports.
  • Risk Management / Security Audit/Assessment Support / Ad-hoc Support
    • Support security audit/assessment-related activities and compliance reviews.
    • Perform other tasks, duties, and projects as assigned.
    • Provide ad-hoc support as required.

Requirements

  • Bachelor’s Degree in Computer Science, Information Systems, or related field, or equivalent experience.
  • 8+ years of IT-relevant experience or equivalent combination of experience plus at least 5 years of experience performing Security Engineering / Planning / Operations.
  • Experience in medium to complex computing environments, with advanced knowledge in security technologies and services.
  • Hands-on experience with at least two or more of the following Enterprise Security Technologies:
    • Network Intrusion Prevention / Detection
    • Virtual Private Networks; SSL, IPSec, and Site-to-Site
    • Enterprise Class Stateful Inspection Firewalls
    • Network Access Controls in the context of Identity Management
    • Windows Server OS & Desktop OS
    • Network Packet Inspection
    • Directory Services including LDAP, AD, and Secure Authentication Technologies
  • Experience in implementing Information Security technologies and/or processes.
  • Experience in defining Information Security strategies and frameworks.
  • Experience integrating security technologies into corporate operations frameworks.
  • Ability to communicate effectively with client staff at all levels, from technical to executive.
  • Multi-task oriented in a team environment.
  • Demonstrated ability to pay close attention to detail.
  • Knowledge of Information Security risk assessment methodologies and standards.
  • Experience developing technical documentation, including reports, proposals, statements of work, and whitepapers.
  • Ability to work independently, undertaking and completing project tasks on schedule with minimal supervision.

Qualifications

  • CISSP, CISSP-ISSAP, SANS, or other professional certification applicable to security engineering are preferred.

Similar jobs

Security Engineer (Senior)

Candid HealthSan Francisco, CA· 1 mo ago
Information Technology$180k–$258k/yrapply on joincandidhealth.com