Key Responsibilities:
Security Engineering & Architecture
Design and implement security solutions across enterprise environments, including endpoint, identity, data protection, and vulnerability management
Evaluate and integrate security controls for third-party SaaS platforms
Partner with IT, infrastructure, and application teams to embed security into system design and deployment
Drive improvements aligned to Zero Trust and least privilege principles
Security Operations & Threat Management
Independently review and analyze security logs across multiple platforms
Perform alert triage, investigation, and escalation as needed
Conduct proactive threat hunting activities to identify suspicious or malicious behavior
Identify, validate, and respond to security incidents with minimal oversight
Offensive Security / Red Teaming
Perform red team / adversary simulation exercises to test detection and response capabilities
Identify gaps in controls, detections, and processes
Experience monitoring and analyzing dark web and underground forums for threat intelligence, including credential exposure, data leaks, and targeting of critical infrastructure or enterprise assets.
Provide actionable recommendations to strengthen defenses based on findings
Platform Ownership & Operations
Administer and optimize:
CrowdStrike (EDR/XDR)
Okta (Identity & Access Management)
Varonis (Data Security / Governance)
Nessus (Vulnerability Management)
AlienVault
Palo Alto Firewall / Zscaler
Monitor, analyze, and remediate vulnerabilities and security findings
Maintain secure configurations and operational procedures
Automation & Scripting
Develop scripts and automation to streamline security operations
Integrate workflows across security tools to improve efficiency and response times
Collaboration & Communication
Communicate risks, findings, and recommendations clearly to technical and non-technical stakeholders
Provide guidance to internal teams on secure design and implementation
Support audits, compliance efforts, and security assessments
Work Environment
Onsite role in San Jose, CA
Standard business hours: 8:30 AM 5:00 PM PST
Fast-paced environment supporting critical infrastructure
Required Qualifications:
9+ years of experience in cybersecurity or security engineering
Strong hands-on experience with:
CrowdStrike
Okta
Varonis
Nessus
AlienVault
Palo Alto
Zscaler
Proven ability to independently monitor, triage, and investigate security events
Experience performing threat hunting and incident response
Experience conducting red team or offensive security activities
Strong scripting and automation skills (e.g., Python, PowerShell)
Excellent analytical and problem-solving skills
Strong written and verbal communication skills
CISSP certification (Preffered)