Senior Security & Infrastructure Engineer

Snap-on Inc•Tustin, CA
•$145,000 - $165,000

About The Position

AutoCrib is the leader in industrial vending technology, designing and creating all software and hardware in-house to help manage inventory for customers across various industries including manufacturing, government, retail, and data centers. As a growing company, AutoCrib offers a challenging environment where employees can wear multiple hats, providing the resources of a larger company while maintaining a close-knit, family-like atmosphere. The company believes in empowering employees with autonomy and actively supports their career development. Benefits include healthcare, 401k, life insurance, and PTO. We are seeking a hands-on Senior Security & Infrastructure Engineer to own and mature the organization's cybersecurity program. This role will support the security, reliability, and compliance of our mission-critical SaaS platform and corporate infrastructure. Serving as the primary technical security resource, the engineer will be responsible for security operations, vulnerability management, incident response, infrastructure hardening, identity security, compliance initiatives, and cloud security governance. The ideal candidate will possess strong cybersecurity expertise, practical infrastructure experience, and the ability to collaborate effectively with Engineering, DevOps, and IT teams to mitigate risk and facilitate business growth. This position is well-suited for an experienced security professional who thrives in a multi-domain technology environment and aims to make a significant impact on the organization's security posture.

Requirements

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or equivalent experience.
  • 5+ years of experience in Security Engineering, Infrastructure Security, Cybersecurity Operations, or a related field.
  • Experience administering SIEM, EDR, and vulnerability management platforms.
  • Experience leading or participating in incident response investigations.
  • Strong understanding of networking, firewalls, VPNs, and security architecture.
  • Experience securing Windows Server, Linux, Active Directory, Microsoft Entra ID, and virtualized environments.
  • Experience managing cloud environments, preferably Microsoft Azure.
  • Strong understanding of vulnerability management and risk mitigation practices.
  • Experience with NIST Cybersecurity Framework and related security controls.
  • Experience with PowerShell, Python, Bash, or other scripting languages.
  • Strong written, verbal, and executive communication skills.

Nice To Haves

  • Experience supporting FedRAMP, CMMC, FISMA, SOC 2, or similar compliance frameworks.
  • Experience with Microsoft Sentinel, Microsoft Defender, CrowdStrike, Splunk, Tenable, Nessus, Qualys, or equivalent platforms.
  • Experience implementing CIS Benchmarks or DISA STIGs.
  • Experience supporting SaaS environments and cloud-hosted applications.
  • Experience with Infrastructure-as-Code solutions such as Terraform or Ansible.
  • Professional certifications such as CISSP, Security+, GSEC, GCIA, Azure Security Engineer, or equivalent.

Responsibilities

  • Own and administer enterprise security tools, including SIEM, EDR, vulnerability management, email security, and security monitoring platforms.
  • Monitor, investigate, and respond to security alerts and incidents.
  • Develop and maintain detection rules, dashboards, and alerting strategies.
  • Conduct proactive threat hunting and security investigations.
  • Coordinate third-party penetration testing and security assessments.
  • Maintain security metrics, reporting, and executive-level visibility into organizational risk.
  • Own and manage the enterprise vulnerability management program.
  • Perform vulnerability scanning across infrastructure, operating systems, cloud services, applications, and security monitoring platforms.
  • Prioritize remediation efforts based on business impact and risk.
  • Track remediation activities and communicate status to leadership.
  • Validate remediation efforts and drive continuous improvement.
  • Maintain risk registers and support organizational risk assessments.
  • Lead security incident response activities including containment, eradication, recovery, and lessons learned.
  • Develop and maintain incident response procedures and playbooks.
  • Perform root cause analysis and coordinate post-incident reviews.
  • Support forensic investigations and evidence collection.
  • Partner with internal and external stakeholders during security events.
  • Improve detection, response, and recovery capabilities across the organization.
  • Secure and harden Windows Server, Linux, virtualization platforms, databases, storage systems, and enterprise applications.
  • Review and maintain firewall configurations, VPNs, remote access solutions, and network security.
  • Support network segmentation and Zero Trust initiatives.
  • Implement security baselines aligned with CIS Benchmarks and industry best practices.
  • Participate in infrastructure architecture reviews and technology evaluations.
  • Validate backup, disaster recovery, and ransomware recovery readiness.
  • Administer and secure Active Directory and Microsoft Entra ID.
  • Implement least-privilege access controls and role-based access management.
  • Manage privileged access, service accounts, and identity governance processes.
  • Conduct periodic access reviews and entitlement audits.
  • Support MFA, Conditional Access, and identity security initiatives.
  • Support and lead security initiatives aligned with NIST, FedRAMP, CMMC, FISMA, and other applicable frameworks.
  • Develop and maintain policies, standards, procedures, SSPs, POA&Ms, and security reviews.
  • Coordinate technical evidence collection for audits and assessments.
  • Participate in risk assessments and security reviews.
  • Drive continuous monitoring and compliance activities.
  • Serve as the primary technical security resource during audits and customer security reviews.
  • Support customer security questionnaires, audits, and due diligence reviews.
  • Participate in customer-facing security discussions as needed.
  • Perform security reviews of third-party vendors, suppliers, and service providers.
  • Assist with security-related contractual and compliance requirements.
  • Develop scripts and automation to improve security operations and reporting.
  • Support integration of security controls into CI/CD and operational workflows.
  • Evaluate new technologies and recommend security improvements.
  • Promote secure engineering and operational best practices across the organization.

Benefits

  • healthcare
  • 401k
  • life insurance
  • PTO
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service