Talent.com
Senior IT Security Engineer
Senior IT Security EngineerNantmedia • El Segundo, CA, United States
Senior IT Security Engineer

Senior IT Security Engineer

Nantmedia • El Segundo, CA, United States
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

The Senior IT Security Engineer will assess, recommend, and maintain a robust information security infrastructure and ensure the company's adherence to policy compliance, such as Payment Card Industry Data Security Standards (PCI DSS). This position involves conducting thorough and independent assessments of the management, operational, and technical security protocols across the company's cloud and on-premise Information Technology (IT) infrastructure. This position oversees project management for security initiatives, manages relationships with managed information security providers, and ensures the effectiveness of current cybersecurity measures. This role will oversee risk management, ensure vulnerability compliance and reporting, handle internal controls, and contribute to IT optimization efforts.

Responsibilities :

  • Oversee the Managed Security Services Provider (MSSP), ensuring their services and performance delivery are consistent with our published SLAs.
  • Conduct internal assessments and audits to ensure compliance with the most recent PCI DSS and other relevant security standards.
  • Collaborate with various departments to identify, evaluate, and mitigate vulnerabilities and risks in payment card processing environments.
  • Develop, maintain, and update a comprehensive PCI compliance program, including policies, procedures, and documentation.
  • Oversee the management of security infrastructure and ensure its robustness against potential threats
  • Provide guidance and support to business units and IT teams on implementing secure payment card processing practices.
  • Liaise with external Qualified Security Assessors (QSAs) during annual PCI DSS assessments and facilitate the remediation of any identified gaps.
  • Train and educate staff on PCI DSS requirements and best practices for protecting cardholder data.
  • Track updates to PCI DSS standards and ensure timely implementation of required updates and changes within the organization.
  • Prepare Reports on Compliance (ROCs) and Self-Assessment Questionnaires (SAQs) for annual reporting on the Company's status to the Payment Card Industry Data Security Standard (PCI-DSS).
  • Present and obtain Senior IT Management approval of process improvements and implement process modifications successfully.
  • Determines whether company information systems comply with existing policies, standards, architectures, procedures, laws, regulations, and other requirements.
  • Generate and audit monthly vulnerability reports, quarterly network scans, and bi-annual penetration tests to ensure compliance and remediation tasks and activities are completed within SLA periods.
  • Work collaboratively with Application Support, Network Infrastructure, Enterprise Architecture & DevOps, Product & Program Management, Data Science, Digital Engineering, and IT Operations teams.
  • Work with the legal department to develop and maintain IT Security Compliance and Governance contract provisions for external service providers and vendors.
  • Perform quarterly follow-up activities to report on status and / or mitigation completion.
  • Assist in the development and maintenance of a robust incident response plan for security breaches and incidents involving cardholder data.
  • Generate regular reports on compliance status, security assessments, and remediation efforts for senior executive management and relevant stakeholders.
  • Participate in security and compliance projects as required.
  • Perform other tasks as assigned

Requirements :

  • Bachelor's degree in Information Technology, Information Security, Computer Science (or a related field), and 8+ years of experience in information security, with specific experience in PCI DSS compliance OR 10+ years of experience in information security, with specific experience in PCI DSS compliance.
  • 6+ years of experience with security tools and technologies used for information security and compliance monitoring.
  • Expert knowledge of information security principles, vulnerability scanning, remediation, reporting, data protection laws, and payment industry standards.
  • Excellent analytical, problem-solving, and decision-making skills.
  • Adaptable communicator tailoring messages for diverse audiences.
  • Detail-oriented with the ability to manage multiple tasks and projects simultaneously.
  • In-depth understanding and experience in IT governance, risk management, and compliance software tools.
  • Advanced knowledge of IT security principles, including those that apply to cloud infrastructure (Azure, AWS, Google Cloud), network, database, application security, firewalls, multi-factor authentication mechanisms, and identity and access management.
  • Adept at the application of technical understanding of the following areas : Access and Authentication, Data Security, Secure Software Development, Infrastructure and IT Operations, Boundary Protection, Vulnerability Management, Business Continuity, and Disaster Recovery.
  • Ability to work independently and within a team to accomplish assigned tasks timely and accurately.
  • Demonstrated work ethic and professionalism.
  • Preferred Qualifications :

  • Professional certifications such as PCI ISA (Internal Security Assessor), PCIP (PCI Professional), CISSP (Certified Information Systems Security Professional), CISM, CISA (Certified Information Systems Auditor), CIS, NIST, HIPAA are highly desirable
  • The L.A. Times is an equal opportunity employer and welcomes all qualified applicants regardless of race, ethnicity, religion, gender, gender identity, sexual orientation, disability status, protected veteran status, or any other characteristic protected by law. We actively work to create an inclusive environment where all of our employees can thrive. This Privacy Notice for Los Angeles Times sets forth how we will use the information we obtain when you apply for a position with us. Explore our company history, achievement, values, mission and more on our career site.

    The pay scale the Company reasonably expects to pay for this position at the time of the posting is $145,000 to $160,000 and takes into account a wide range of factors including but not limited to skill set, experience, training, licenses, certifications, and other business or organizational needs. Compensation will be determined based on the above factors along with the requirements of the position. At the L.A. Times, it is not typical for an individual to be hired at or near the top of the range for the role. Please visit our career site to view the benefits available to our employees. We recommend adding our applicant tracking system domain (@dayforce.com) as a safe sender or contact, sometimes these emails get filtered to candidates' spam folders.

    serp_jobs.job_alerts.create_a_job

    It Security Engineer • El Segundo, CA, United States

    Job_description.internal_linking.related_jobs
    Defensive Cybersecurity Engineer

    Defensive Cybersecurity Engineer

    The Aerospace Corporation • El Segundo, CA, United States
    serp_jobs.job_card.full_time
    The Aerospace Corporation is the trusted partner to the nation's space programs, solving the hardest problems and providing unmatched technical expertise. As the operator of a federally funded resea...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior DevOps Engineer

    Senior DevOps Engineer

    Relativity Space • Long Beach, California, United States
    serp_jobs.job_card.full_time
    At Relativity Space, we have two audacious goals : to build the next great commercial launch company with Terran R and to become America's leading force in additive manufacturing innovation.Both con...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    IT Security Architect

    IT Security Architect

    Prosum • Los Angeles, CA, United States
    serp_jobs.job_card.full_time
    Reporting to the organization's Chief Information Security Officer, the Information Technology (IT) Security Architect supports the overall vision of the our client's Medicine's Information Securit...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Cyber Security Engineer

    Cyber Security Engineer

    TEKsystems • Redondo Beach, CA, United States
    serp_jobs.job_card.full_time
    A Cyber Systems Security Engineering position requires demonstrated technical accomplishments in securing complex systems that can be applied to Space Systems. Space Systems are comprised of multipl...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Space Cybersecurity Systems Engineer

    Space Cybersecurity Systems Engineer

    The Aerospace Corporation • El Segundo, CA, United States
    serp_jobs.job_card.full_time
    The Aerospace Corporation is the trusted partner to the nation's space programs, solving the hardest problems and providing unmatched technical expertise. As the operator of a federally funded resea...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Azure Cloud Engineer

    Senior Azure Cloud Engineer

    Unisys Corporation • Long Beach, CA, United States
    serp_jobs.job_card.full_time
    What success looks like in this role : .We are seeking a highly skilled Senior Azure Cloud Engineer with proven expertise in designing and deploying multitenant Microsoft Sentinel environments.The id...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior IT Security Engineer

    Senior IT Security Engineer

    Los Angeles Times • El Segundo, CA, United States
    serp_jobs.job_card.full_time
    The Senior IT Security Engineer will assess, recommend, and maintain a robust information security infrastructure and ensure the company's adherence to policy compliance, such as Payment Card Indus...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Security Engineer

    Senior Security Engineer

    SourcePro Search, LLC • Los Angeles, CA, United States
    serp_jobs.job_card.full_time
    We have a great opportunity for an experienced Senior Security Engineer in our global law firm client's Los Angeles office. The Senior Security Engineer is a hands-on role that requires a high level...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Security Systems Engineer

    Senior Security Systems Engineer

    EPAM Systems Inc • Los Angeles, CA, United States
    serp_jobs.job_card.full_time
    Senior Security Systems Engineer.WiFi performance testing, automation, and network analysis in laboratory environments.This role requires deep expertise in wireless protocols, hands-on experience w...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior IT Security Engineer

    Senior IT Security Engineer

    LA Times Studios LLC • El Segundo, CA, United States
    serp_jobs.job_card.full_time
    The Senior IT Security Engineer will assess, recommend, and maintain a robust information security infrastructure and ensure the company's adherence to policy compliance, such as Payment Card Indus...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Lead Security Engineer - Cyber Security

    Lead Security Engineer - Cyber Security

    Relativity • Los Angeles, CA, United States
    serp_jobs.job_card.full_time
    As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging threat...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Technical Program Manager

    Senior Technical Program Manager

    Unisys Corporation • Long Beach, CA, United States
    serp_jobs.job_card.full_time
    What success looks like in this role : .Senior Technical Program Manager to oversee the successful implementation of the Cybersecurity programs which include implementation of the Security Incident E...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Technology Vulnerability Management Engineer

    Technology Vulnerability Management Engineer

    Cooley LLP • Santa Monica, CA, United States
    serp_jobs.job_card.full_time
    Technology Vulnerability Management Engineer.Cooley is seeking a Technology Vulnerability Management Engineer to join the Security team. Cooley Technology embraces a culture of customer service exce...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Lead AI Security Engineer

    Lead AI Security Engineer

    Capital Group • Los Angeles, CA, United States
    serp_jobs.job_card.full_time
    I can succeed as a Lead AI Security Engineer at Capital Group".As aLeadAISecurity Engineer, you willbe responsible forsecuring Capital Group's enterprise AI Platforms. You'llcollaborate with platfor...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior IT Security & Compliance Lead — Onsite Santa Monica

    Senior IT Security & Compliance Lead — Onsite Santa Monica

    TWG Global AI • Santa Monica, CA, United States
    serp_jobs.job_card.full_time
    A tech and AI innovations firm is looking for a Technical Compliance Lead to manage user rights, permissions, and data protection in Santa Monica. This full-time role requires 8+ years in IT securit...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
    Principal Security Infrastructure Engineer

    Principal Security Infrastructure Engineer

    Vast • Long Beach, California, United States
    serp_jobs.job_card.full_time +1
    At Vast, our mission is to contribute to a future where billions of people are living and thriving in space.We are building artificial gravity space stations, allowing long-term stays in space with...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Vice President, Senior Cybersecurity Engineer

    Vice President, Senior Cybersecurity Engineer

    Confidential • Los Angeles, CA, US
    serp_jobs.job_card.full_time
    Vice President, Senior Cybersecurity Engineer.Leading international alternative asset organization offering comprehensive investment solutions. Consulting & Professional Services.The Company is ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_1_day • serp_jobs.job_card.promoted
    Senior Software Engineer, Security

    Senior Software Engineer, Security

    Vast의 Senior Software Engineer, Security 직무 입사 지원서 • Long Beach, California, United States
    serp_jobs.job_card.full_time +1
    At Vast, our mission is to contribute to a future where billions of people are living and thriving in space.We are building artificial gravity space stations, allowing long-term stays in space with...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted