Jobs · Information Technology · California

Sr. Security Engineer

California Water Service · San Jose, CA · 5 days ago
Information TechnologyContract

Key Responsibilities

  • Security Engineering & Architecture
    • Design and implement security solutions across enterprise environments, including endpoint, identity, data protection, and vulnerability management
    • Evaluate and integrate security controls for third-party SaaS platforms
    • Partner with IT, infrastructure, and application teams to embed security into system design and deployment
    • Drive improvements aligned to Zero Trust and least privilege principles
    • Security Operations & Threat Management
      • Independently review and analyze security logs across multiple platforms
      • Perform alert triage, investigation, and escalation as needed
      • Conduct proactive threat hunting activities to identify suspicious or malicious behavior
      • Identify, validate, and respond to security incidents with minimal oversight
      • Offensive Security / Red Teaming
        • Perform red team / adversary simulation exercises to test detection and response capabilities
        • Identify gaps in controls, detections, and processes
        • Monitor and analyze dark web and underground forums for threat intelligence
        • Provide actionable recommendations to strengthen defenses based on findings

    Platform Ownership & Operations

    • Administer and optimize:
      • CrowdStrike (EDR/XDR)
      • Okta (Identity & Access Management)
      • Varonis (Data Security / Governance)
      • Nessus (Vulnerability Management)
      • AlienVault
      • Palo Alto Firewall / Zscaler
    • Maintain secure configurations and operational procedures
    • Monitor, analyze, and remediate vulnerabilities and security findings
    • Develop scripts and automation to streamline security operations
    • Integrate workflows across security tools to improve efficiency and response times

    Collaboration & Communication

    • Communicate risks, findings, and recommendations clearly to technical and non-technical stakeholders
    • Provide guidance to internal teams on secure design and implementation
    • Support audits, compliance efforts, and security assessments

    Required Qualifications

    • 9+ years of experience in cybersecurity or security engineering
    • Strong hands-on experience with:
      • CrowdStrike
      • Okta
      • Varonis
      • Nessus
      • AlienVault
      • Palo Alto
      • Zscaler
    • Proven ability to independently monitor, triage, and investigate security events
    • Experience performing threat hunting and incident response
    • Experience conducting red team or offensive security activities
    • Strong scripting and automation skills (e.g., Python, PowerShell)
    • Excellent analytical and problem-solving skills
    • Strong written and verbal communication skills
    • CISSP certification (required)

    Preferred Qualifications

    • Experience in regulated environments (e.g., utilities / critical infrastructure)
    • Familiarity with NIST CSF, NIST 800-171, and Zero Trust Architecture
    • Experience with SaaS and cloud security environments

Similar jobs

Sr. Security Engineer

JobgetherUnited States· 5 days ago
RemoteInformation Technology$180k–$230k/yrapply on jobs.lever.co

Sr. Security Engineer

OpenSpaceUnited States· 1 wk ago
RemoteInformation Technology$180k–$230k/yrapply on openspace.ai