Position: Sr. Security Engineer (Network/Palo Alto, Azure/Cloud, CrowdStrike/IDS, Arctic Wolf/Monitoring)
Location: Santa Ana, CA (Onsite M-F)
Duration: Direct Hire Full Time
Salary: 130k to 150k + 10% Bonus + Excellent Benefits Program
Must Haves: Palo Alto firewall (rules, security policies etc.) and Azure cloud (configurations etc.)
What You Will Do:
- Review and identify any gap in Palo Alto Firewall rules, security policy and Implementation.
- Assists in the planning and deployment of the Company’s cloud information security strategies.
- Implement security controls and solutions in cloud environments (Azure) to protect against threats, including control tower, Guard rails, service control policies, identity and access management, VPC flow logs and subnet security, data encryption, web application firewall and application security.
- Manage Infrastructure and application security monitoring tools to detect and respond to security incidents in real-time.
- Conduct regular vulnerability assessments and penetration testing to identify weaknesses in the infrastructure and applications.
- Develops and maintain an incident response plan, and coordinate responses to security incidents, ensuring timely resolution.
- Ensure compliance with industry specific security standards (e.g. SOX, PCI) and assist in audits and compliance assessments.
- Create and maintain documentation related to security policies, procedures, and configurations.
- Maintain training and awareness programs to educate employees and cloud and devops teams on security best practices.
- Uses penetration testing tools to perform regular vulnerability assessments of internal, DMZ, and external devices, and Cloud resources.
- Work with Infrastructure team to Prioritize risk and guidance for quick remediation.
- Designs, tests, and implements security protection measures intended to protect cloud-based applications and data.
- Coordinates assigned security projects during implementation phase and ensures timely completion.
- Assists in the day-to-day security team functions (i.e., response, monitoring, and support)
- Communicate and relate complex business requirements and associated risks to technology.
- Collaborate with cross functional teams, including DevOps, development, and IT, to integrate security into software development and deployment lifecycle using SASE framework.
- Researches, evaluates, designs, tests, recommends, and plans implementation of new or improved information security software or devices.
- Reviews computer logs and messages to identify and report on possible violations of security.
- Assists in development of disaster or emergency recovery procedures for information systems and computer environment.
- Provides leadership in understanding and responding to security audit failures reported by internal and external auditing.
What Gets You The Job:
- Bachelor’s degree in Computer Science, Computer Engineering or related Information Technology field.
- Minimum three (3) years of experience in information security or information technology.
- Proven experience in firewall security, cloud security and devsecops, including best practices, risk assessment and compliance requirements.
- Experience with security tools and technologies such as web application firewall management, and evaluate vulnerability associated risk.
- Working experience with below technologies are highly desirable but not required:
- Paloalto Firewall
- Crowdstrike EDR, IDP, Filevantage
- ArcticWolf
- Delinea
- Checkpoint Harmoney
- Automox
Please send your resume to Dave Lim, Senior Technical Recruiter for immediate consideration.
Irvine Technology Corporation (ITC) is a leading provider of technology and staffing solutions for IT, Security, Engineering, and Interactive Design disciplines servicing startups to enterprise clients, nationally. We pride ourselves in the ability to introduce you to our intimate network of business and technology leaders – bringing you opportunity coupled with personal growth, and professional development! Join us. Let us catapult your career!
Irvine Technology Corporation provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, Irvine Technology Corporation complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities.