Talent.com
Senior IT Security Engineer

Senior IT Security Engineer

NantmediaEl Segundo, CA, United States
22 hours ago
Job type
  • Full-time
Job description

The Senior IT Security Engineer will assess, recommend, and maintain a robust information security infrastructure and ensure the company's adherence to policy compliance, such as Payment Card Industry Data Security Standards (PCI DSS). This position involves conducting thorough and independent assessments of the management, operational, and technical security protocols across the company's cloud and on-premise Information Technology (IT) infrastructure. This position oversees project management for security initiatives, manages relationships with managed information security providers, and ensures the effectiveness of current cybersecurity measures. This role will oversee risk management, ensure vulnerability compliance and reporting, handle internal controls, and contribute to IT optimization efforts.

Responsibilities :

  • Oversee the Managed Security Services Provider (MSSP), ensuring their services and performance delivery are consistent with our published SLAs.
  • Conduct internal assessments and audits to ensure compliance with the most recent PCI DSS and other relevant security standards.
  • Collaborate with various departments to identify, evaluate, and mitigate vulnerabilities and risks in payment card processing environments.
  • Develop, maintain, and update a comprehensive PCI compliance program, including policies, procedures, and documentation.
  • Oversee the management of security infrastructure and ensure its robustness against potential threats
  • Provide guidance and support to business units and IT teams on implementing secure payment card processing practices.
  • Liaise with external Qualified Security Assessors (QSAs) during annual PCI DSS assessments and facilitate the remediation of any identified gaps.
  • Train and educate staff on PCI DSS requirements and best practices for protecting cardholder data.
  • Track updates to PCI DSS standards and ensure timely implementation of required updates and changes within the organization.
  • Prepare Reports on Compliance (ROCs) and Self-Assessment Questionnaires (SAQs) for annual reporting on the Company's status to the Payment Card Industry Data Security Standard (PCI-DSS).
  • Present and obtain Senior IT Management approval of process improvements and implement process modifications successfully.
  • Determines whether company information systems comply with existing policies, standards, architectures, procedures, laws, regulations, and other requirements.
  • Generate and audit monthly vulnerability reports, quarterly network scans, and bi-annual penetration tests to ensure compliance and remediation tasks and activities are completed within SLA periods.
  • Work collaboratively with Application Support, Network Infrastructure, Enterprise Architecture & DevOps, Product & Program Management, Data Science, Digital Engineering, and IT Operations teams.
  • Work with the legal department to develop and maintain IT Security Compliance and Governance contract provisions for external service providers and vendors.
  • Perform quarterly follow-up activities to report on status and / or mitigation completion.
  • Assist in the development and maintenance of a robust incident response plan for security breaches and incidents involving cardholder data.
  • Generate regular reports on compliance status, security assessments, and remediation efforts for senior executive management and relevant stakeholders.
  • Participate in security and compliance projects as required.
  • Perform other tasks as assigned

Requirements :

  • Bachelor's degree in Information Technology, Information Security, Computer Science (or a related field), and 8+ years of experience in information security, with specific experience in PCI DSS compliance OR 10+ years of experience in information security, with specific experience in PCI DSS compliance.
  • 6+ years of experience with security tools and technologies used for information security and compliance monitoring.
  • Expert knowledge of information security principles, vulnerability scanning, remediation, reporting, data protection laws, and payment industry standards.
  • Excellent analytical, problem-solving, and decision-making skills.
  • Adaptable communicator tailoring messages for diverse audiences.
  • Detail-oriented with the ability to manage multiple tasks and projects simultaneously.
  • In-depth understanding and experience in IT governance, risk management, and compliance software tools.
  • Advanced knowledge of IT security principles, including those that apply to cloud infrastructure (Azure, AWS, Google Cloud), network, database, application security, firewalls, multi-factor authentication mechanisms, and identity and access management.
  • Adept at the application of technical understanding of the following areas : Access and Authentication, Data Security, Secure Software Development, Infrastructure and IT Operations, Boundary Protection, Vulnerability Management, Business Continuity, and Disaster Recovery.
  • Ability to work independently and within a team to accomplish assigned tasks timely and accurately.
  • Demonstrated work ethic and professionalism.
  • Preferred Qualifications :

  • Professional certifications such as PCI ISA (Internal Security Assessor), PCIP (PCI Professional), CISSP (Certified Information Systems Security Professional), CISM, CISA (Certified Information Systems Auditor), CIS, NIST, HIPAA are highly desirable
  • The L.A. Times is an equal opportunity employer and welcomes all qualified applicants regardless of race, ethnicity, religion, gender, gender identity, sexual orientation, disability status, protected veteran status, or any other characteristic protected by law. We actively work to create an inclusive environment where all of our employees can thrive. This Privacy Notice for Los Angeles Times sets forth how we will use the information we obtain when you apply for a position with us. Explore our company history, achievement, values, mission and more on our career site.

    The pay scale the Company reasonably expects to pay for this position at the time of the posting is $145,000 to $160,000 and takes into account a wide range of factors including but not limited to skill set, experience, training, licenses, certifications, and other business or organizational needs. Compensation will be determined based on the above factors along with the requirements of the position. At the L.A. Times, it is not typical for an individual to be hired at or near the top of the range for the role. Please visit our career site to view the benefits available to our employees. We recommend adding our applicant tracking system domain (@dayforce.com) as a safe sender or contact, sometimes these emails get filtered to candidates' spam folders.

    Create a job alert for this search

    It Security Engineer • El Segundo, CA, United States

    Related jobs
    • Promoted
    • New!
    Senior Engineer, IT Systems & Security - Los Angeles

    Senior Engineer, IT Systems & Security - Los Angeles

    Hudson Pacific PropertiesLos Angeles, CA, United States
    Full-time
    Senior Engineer, IT Systems & Security - Los Angeles.At Hudson Pacific Properties, we provide best-in-class office space to the biggest names in tech and media (Netflix, Google, Amazon).As we conti...Show moreLast updated: 21 hours ago
    • Promoted
    • New!
    Senior Cyber Security Systems Engineer

    Senior Cyber Security Systems Engineer

    KBREl Segundo, CA, United States
    Full-time
    Senior Cyber Security Systems Engineer.KBR is seeking a Senior Cyber Security Systems Engineer to join our team supporting the Space Systems Command (SSC) Program Executive Officer for Space Combat...Show moreLast updated: 22 hours ago
    • Promoted
    • New!
    Senior Security Engineer

    Senior Security Engineer

    East West BankSan Marino, CA, United States
    Full-time
    The Senior Security Engineer will be a member of the Infosec Operations / SOC team, working on a primary mission of incident detection and response. They will participate in establishing and maintaini...Show moreLast updated: 21 hours ago
    • Promoted
    Senior Security Engineer, Network

    Senior Security Engineer, Network

    Anduril IndustriesCosta Mesa, CA, United States
    Full-time
    Anduril Industries is a defense technology company with a mission to transform U.By bringing the expertise, technology, and business model of the 21st century's most innovative companies to the def...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    Classic Collision IncLos Angeles, CA, United States
    Full-time
    Monitor security systems, logs, and alerts to detect and respond to potential security incidents promptly.Assist in investigating and analyzing security breaches, unauthorized access attempts, and ...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Senior Software Engineer - Edge-Services Security

    Senior Software Engineer - Edge-Services Security

    StubHubLos Angeles, CA, United States
    Full-time
    StubHub is on a mission to redefine the live event experience on a global scale.Whether someone is looking to attend their first event or their hundredth, we're here to delight them all the way fro...Show moreLast updated: 21 hours ago
    • Promoted
    • New!
    Senior Security Engineer, Offensive Security

    Senior Security Engineer, Offensive Security

    ClearanceJobsCosta Mesa, CA, United States
    Full-time
    Senior Security Engineer, Offensive Security.Anduril Industries is a defense technology company with a mission to transform U. We're seeking a Senior Security Engineer, Offensive Security to grow An...Show moreLast updated: 21 hours ago
    • Promoted
    IT Security Architect

    IT Security Architect

    JobotLos Angeles, CA, US
    Full-time
    IT Security Architect Opportunity!!!.This Jobot Job is hosted by : Robert Reyes.Are you a fit? Easy Apply now by clicking the "Apply Now" button and sending us your resume. Salary : $159,000 - $178,00...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Sr. Engineer, Information Security

    Sr. Engineer, Information Security

    Sony Pictures EntertainmentCulver City, CA, United States
    Full-time
    We are seeking a highly motivated and experienced Information Security Engineer to join our dynamic security team.This critical role will focus on building and maintaining robust data ingestion pip...Show moreLast updated: 22 hours ago
    • Promoted
    Senior IT Security Engineer

    Senior IT Security Engineer

    Los Angeles TimesEl Segundo, CA, United States
    Full-time
    The Senior IT Security Engineer will assess, recommend, and maintain a robust information security infrastructure and ensure the company's adherence to policy compliance, such as Payment Card Indus...Show moreLast updated: 13 days ago
    • Promoted
    • New!
    Senior Security Engineer, Network

    Senior Security Engineer, Network

    andurilCosta Mesa, CA, United States
    Full-time
    Anduril Industries is a defense technology company with a mission to transform U.By bringing the expertise, technology, and business model of the 21st centurys most innovative companies to the defe...Show moreLast updated: 21 hours ago
    • Promoted
    • New!
    Senior Cybersecurity Engineer SME

    Senior Cybersecurity Engineer SME

    ASTRION, INC.El Segundo, CA, United States
    Full-time
    Senior Cybersecurity Engineer SME.This role will provide direct Assessment & Authorization (A&A) support to the Information Systems Security Manager (ISSM), ensuring the secure operations of enterp...Show moreLast updated: 22 hours ago
    • Promoted
    Information Security Engineer (CISSP, CISM)

    Information Security Engineer (CISSP, CISM)

    TechSourceSan Fernando, CA, US
    Full-time
    Please send me your updated resume at ashwini@tsourceinc.Position : Information Security Engineer (CISSP, CISM).Location : San Fernando Valley ,CA. Client : Hospital & Healthcare.Bachelor of Scienc...Show moreLast updated: 3 days ago
    • Promoted
    • New!
    Senior IT Security Engineer

    Senior IT Security Engineer

    LA Times Studios LLCEl Segundo, CA, United States
    Full-time
    The Senior IT Security Engineer will assess, recommend, and maintain a robust information security infrastructure and ensure the company's adherence to policy compliance, such as Payment Card Indus...Show moreLast updated: 22 hours ago
    • Promoted
    • New!
    Senior Security Engineer

    Senior Security Engineer

    Wilson SonsiniLos Angeles, CA, United States
    Full-time
    Wilson Sonsini is the premier legal advisor to technology, life sciences, and other growth enterprises worldwide.We represent companies at every stage of development, from entrepreneurial start-ups...Show moreLast updated: 22 hours ago
    • Promoted
    • New!
    Senior Systems Security Engineer, Cyber Survivability

    Senior Systems Security Engineer, Cyber Survivability

    Jobs via DiceCosta Mesa, CA, United States
    Full-time
    Senior Systems Security Engineer, Cyber Survivability.Dice is the leading career destination for tech experts at every stage of their careers. Our client, Aduril Industries, is seeking the following...Show moreLast updated: 22 hours ago
    • Promoted
    Corporate IT Security Engineer

    Corporate IT Security Engineer

    Jam CityCulver City, CA, United States
    Full-time
    Lead incident investigations across Saas platforms including Okta, Google Workspace, Slack, Box as well as Cloud Computing & Infrastructure platforms such as GCP and AWS. Design and implement automa...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer for ITS Security - LA METRO

    Security Engineer for ITS Security - LA METRO

    Cornerstone Concilium IncLos Angeles, CA, United States
    Full-time
    Security Engineer for ITS Security - LA METRO.Los Angeles - Los Angeles, CA 90001 US (Primary).This project entails providing cybersecurity staff augmentation services to Metro's Information Securi...Show moreLast updated: 30+ days ago