Security Engineer
The Workers' Compensation Insurance Rating Bureau of California (WCIRB) is California’s trusted, objective provider of actuarially based information, advisory pure premium rates, and educational services integral to a healthy workers’ compensation system. A private, nonprofit association funded by membership fees, the WCIRB employs approximately 175 people with an average tenure of over 10 years and is committed to fostering a healthy, safe, and diverse work environment.
About the role
This hybrid position requires approximately 40% of work time at the home office in San Francisco, California. The IT Security Engineer performs core security functions for the enterprise, focusing on the day-to-day operations of in-place security solutions, identification, investigation, and resolution of security events. The role also involves implementing new security solutions, maintaining policies and procedures, and conducting vulnerability audits and assessments.
Responsibilities
- Participate in the planning and design of enterprise security architecture under the direction of the Director of Security.
- Create and maintain enterprise security documents (policies, standards, baselines, guidelines, and procedures).
- Maintain up-to-date knowledge of the IT security industry, including new security solutions, processes, and threat vectors.
- Recommend additional security solutions or enhancements to improve overall enterprise security.
- Deploy, integrate, and configure new security solutions and enhancements in accordance with standard operating procedures and enterprise security documents.
- Maintain up-to-date baselines for the secure configuration and operations of all in-place devices (security tools, workstations, servers, network devices).
- Monitor all in-place security solutions for efficient and appropriate operations.
- Deliver training and phishing simulations for the enterprise’s security awareness training program.
- Review logs and reports of all in-place devices, interpret activity implications, and devise resolution plans.
- Participate in investigations into problematic activity, evaluate and assess trends.
- Participate in the design and execution of vulnerability assessments, penetration tests, and security audits.
- Provide on-call support.
Requirements
- Bachelor of Science Degree in a relevant field (e.g., computer science) or equivalent combination of education and progressive experience.
- Certification in one or more of the following: CompTIA Security+, CompTIA PenTest+, GIAC Security Certifications, Microsoft Security Certifications, (ISC)² SSCP, or (ISC)² CISSP.
- 5+ years of extensive experience with threat hunting and security forensics.
- 3+ years of experience with the Microsoft Defender Security Stack (XDR, Endpoint, Identity, Cloud Apps, Office 365, Sentinel).
- 3+ years of experience with Identity Management (Entra ID, Active Directory, Conditional Access).
- Working experience with Intune and Group Policies (GPO) configuration management.
- Working experience with MFA infrastructure (Microsoft and Duo).
- Technical knowledge of Windows OS hardening, perimeter security, firewall services, and web application firewalls (PAN knowledge a plus).
- Strong technical knowledge of cloud computing standards (Azure preferred).
- Strong understanding of IP, TCP/IP, and other network administration protocols.
- Familiarity with NIST, CIS, PCI, and DSS standards.
Benefits
- Hybrid work environment (40% onsite in San Francisco, 60% remote).
- Medical, dental, and vision benefits.
- Competitive PTO program.
- Wellness benefits.
- 401K and pension plan (recognized as a Plan Sponsor of the Year finalist).
- Social activities and community volunteer involvement.
The successful candidate must reside in California and work from the San Francisco headquarters at least 40% of the time. WCIRB is an equal opportunity employer committed to an inclusive workplace.