Sr. IT Security Ops Engineer (Hybrid)

Lakeshore Learning Materials, LLCCarson, CA
Hybrid

About The Position

At Lakeshore, we create innovative learning materials and world-class guest experiences for teachers, parents and children. Since 1954, we’ve grown into a global community—with a thriving e-commerce business, multiple catalogs, over 50 stores, a peerless national sales force, plus international offices that support our preeminent supply chain division. But today we’re working better, smarter and faster than ever—and setting our sights even higher. We’re building an infrastructure designed for scalability, embracing data-driven decision-making and using technology to improve efficiency and ensure the best tools for the best work. Most importantly, we continue to invest in a diverse team of inquisitive top talent who fuel each other’s passions and curiosity, take risks, try new things and believe that every new day brings opportunities for growth. We are seeking a Senior IT Security Ops Engineer to join our team. In this role, you will manage and oversee responses to security incidents, conduct investigations, analyze evidence and provide recommendations for remediation and improvement in the Lakeshore Learning Materials environment. The position also requires developing and maintaining Security Incident Response policies, procedures and best practices. Applicants should have at least seven years of experience in security incident response, forensics or threat intelligence. The ideal candidate also possesses certifications such as CISSP, GCIH, GCFA or CISM.

Requirements

  • Bachelor’s degree in computer science, cybersecurity or a related field, or equivalent work experience
  • At least 7 years of experience in security incident response, forensics or threat intelligence
  • Proficiency with Security Incident Response tools and platforms, such as SIEM, EDR, SOAR and IRM
  • Experience working with cloud-based environments such as AWS, Azure or GCP
  • Strong knowledge of security frameworks, standards and best practices, including NIST, ISO and MITRE
  • Ability to design security-relevant infrastructure as code (IaC)

Nice To Haves

  • Certifications such as CISSP, GCIH, GCFA or CISM
  • Hands-on experience assessing, implementing and managing third-party and cloud service provider security tools and services, such as Endpoint Protection Platforms (EPP), firewall and network security tools, intrusion detection and prevention systems (IDS/IPS), vulnerability management tools, web application firewalls (WAF), and identity and access management (IAM)
  • Familiarity with advanced Microsoft Office features for data analysis and presentation of findings
  • Demonstrated scripting capabilities with modern languages such as Python
  • Program experience using languages such as Bash, PowerShell and Python
  • Ability to collaborate, influence and negotiate with professionals at all levels, including leadership
  • Strong interpersonal, verbal presentation and written communication skills
  • Experienced in using threat intelligence services in a production environment
  • Understanding of industry best practices and frameworks that support adoption, including NIST 800-53, PCI, CIS and CSA CCM

Responsibilities

  • Overseeing the response to security incidents from identification through resolution; preparing and delivering incident reports, briefings and lessons learned to internal and external audiences
  • Conducting forensic analysis, threat hunting and root-cause analysis related to security incidents
  • Training and mentoring other Information Security Analysts, providing feedback and guidance to help solve new or complex problems
  • Identifying areas to improve Information Security monitoring and detection capabilities; monitoring and analyzing emerging threats, vulnerabilities and exploits
  • Developing and implementing scalable preventative security measures, including detection, monitoring and exploitation prevention
  • Developing and delivering cybersecurity awareness training programs for employees, educating them on current threats and best practices
  • Configuring alerting and automation within end point protection, incident detection and vulnerability management tools
  • Helping plan, organize and conduct quarterly tabletop exercises to prepare the organization for security incidents

Benefits

  • Bonus eligible
  • Paid leave for new parents to support work/life balance and family bonding
  • Excellent medical/dental and vision coverage—EPO, PPO and HSA
  • 401(k) retirement plan with company contribution (because you will retire someday)
  • Flexible benefits—choose what you like, ignore the rest
  • On-site preschool for our employees’ children
  • On-site employee gym for all levels/fitness needs
  • Generous employee discount
  • Casual dress…and we really mean it
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service