Administer and maintain security platforms across multiple domains, including endpoint protection, vulnerability management, identity, network security, and logging/monitoring adapting to new tools as the environment evolves.
Support continuous monitoring activities to ensure ongoing compliance with regulatory frameworks such as SOC 2, FedRAMP, and ISO.
Respond to security incidents and alerts, including participation in on-call rotations and after-hours escalations as needed.
Conduct access reviews, enforce least-privilege principles, and support identity lifecycle management across enterprise systems.
Contribute to the development and maintenance of security runbooks, standard operating procedures, and internal documentation.
Act as a cross-functional resource for engineering, IT, and product teams — fielding security questions, supporting integrations, and participating in architecture and change reviews.
Identify opportunities to automate repetitive security tasks and improve operational efficiency across the team.
Requirements
6+ years of experience in Information Technology, with 3+ years in a security-focused role.
Demonstrated experience administering and operating security platforms across two or more domains (e.g., endpoint, identity, network, vulnerability management, or logging/SIEM).
Experience supporting compliance programs and contributing to audit evidence collection (e.g., SOC 2, FedRAMP, ISO).
Ability to troubleshoot across multi-cloud environments (AWS, Azure, or GCP).
Strong cross-functional communication skills, comfortable working with engineering, IT, and legal stakeholders.