Sr. Security Engineer
California Water Service · San Jose, CA · 5 days ago
Information TechnologyContract
Key Responsibilities
- Security Engineering & Architecture
- Design and implement security solutions across enterprise environments, including endpoint, identity, data protection, and vulnerability management
- Evaluate and integrate security controls for third-party SaaS platforms
- Partner with IT, infrastructure, and application teams to embed security into system design and deployment
- Drive improvements aligned to Zero Trust and least privilege principles
- Security Operations & Threat Management
- Independently review and analyze security logs across multiple platforms
- Perform alert triage, investigation, and escalation as needed
- Conduct proactive threat hunting activities to identify suspicious or malicious behavior
- Identify, validate, and respond to security incidents with minimal oversight
- Offensive Security / Red Teaming
- Perform red team / adversary simulation exercises to test detection and response capabilities
- Identify gaps in controls, detections, and processes
- Monitor and analyze dark web and underground forums for threat intelligence
- Provide actionable recommendations to strengthen defenses based on findings
- Administer and optimize:
- CrowdStrike (EDR/XDR)
- Okta (Identity & Access Management)
- Varonis (Data Security / Governance)
- Nessus (Vulnerability Management)
- AlienVault
- Palo Alto Firewall / Zscaler
- Maintain secure configurations and operational procedures
- Monitor, analyze, and remediate vulnerabilities and security findings
- Develop scripts and automation to streamline security operations
- Integrate workflows across security tools to improve efficiency and response times
- Communicate risks, findings, and recommendations clearly to technical and non-technical stakeholders
- Provide guidance to internal teams on secure design and implementation
- Support audits, compliance efforts, and security assessments
- 9+ years of experience in cybersecurity or security engineering
- Strong hands-on experience with:
- CrowdStrike
- Okta
- Varonis
- Nessus
- AlienVault
- Palo Alto
- Zscaler
- Proven ability to independently monitor, triage, and investigate security events
- Experience performing threat hunting and incident response
- Experience conducting red team or offensive security activities
- Strong scripting and automation skills (e.g., Python, PowerShell)
- Excellent analytical and problem-solving skills
- Strong written and verbal communication skills
- CISSP certification (required)
- Experience in regulated environments (e.g., utilities / critical infrastructure)
- Familiarity with NIST CSF, NIST 800-171, and Zero Trust Architecture
- Experience with SaaS and cloud security environments