Sr. Information Security Engineer II
Pacific LifeAbout the role
Job Description:
Providing for loved ones, planning rewarding retirements, saving enough for whatever lies ahead – our policyholders count on us to be there when it matters most. It’s a big ask, but it’s one that we have the power to deliver when we work together. We collaborate and innovate – pushing one another to transform not just Pacific Life, but the entire industry for the better. Why? Because it’s the right thing to do. Pacific Life is more than a job, it’s a career with purpose. It’s a career where you have the support, balance, and resources to make a positive impact on the future – including your own.
Pacific Life’s Enterprise Information and Security Office is investing in bright, agile, and diverse talent to contribute to our mission of building trust and cultivating digital safety within the Pacific Life community. We are actively seeking a Sr. Information Security Engineer II to join our Cyber Operations team based in Newport Beach, CA. This role can be on-site or on a hybrid work schedule.
As our Sr. Information Security Engineer II, you’ll play a key role supporting our Cyber Operations team by improving our ability to prepare, identify, and respond to the organization’s cyber threats and declared cyber incidents. You will fill an existing role within our Security Monitoring team of six people within the Enterprise Functions division and participate in an on-call rotation. Your colleagues will include analysts, engineers, and fellow cybersecurity professionals. Your day-to-day work will focus on initiatives designed to drive the maturity of our cybersecurity operations program. Additionally, you will also perform security event investigations and act as an escalation contact for junior analysts.
Our ideal candidate is a hungry mid to senior level security engineer who has a strong interest in security operations. Someone who has supported multiple incident investigations and is looking for the opportunity to grow from a supporting role to a leading role. This role will provide opportunity to expand our adversary simulation, threat hunting and detection capabilities with the goal of progressively taking on additional ownership and responsibilities as your experience grows.
How you'll help move us forward:
Drive process improvement initiatives to increase SOC program maturity.
Serve as technical lead for investigation and response to security incidents, conduct in-depth analysis, and provide guidance to junior analysts.
Author, update, and maintain SOPs, playbooks, and work instructions.
Lead threat hunting efforts based on current cyber threat intelligence or recent cyber events.
Oversee the development, deployment, and management of our adversary simulation capability.
Establish trust and business relationships with customer and other relevant stakeholders.
The experience you bring:
8+ years of experience in Information Security.
3+ years of experience supporting the investigation and response to cybersecurity incidents.
Strong ability to prioritize and execute with minimal direction or oversight.
Flexible and adaptable self-starter with strong relationship-building skills.
Proven track record of successfully managing and executing on short term and long-term projects.
Understanding of common cybersecurity attacks necessary to determine root cause and coordinate timely effective response.
The ability to tailor your communications and effectively communicate with stakeholders at all levels of the organization.
What makes you stand out:
Relevant certifications such as CISSP, GSEC, GCIH, GSOC, GCFA, GCTI, GCIA, GNFA or equivalent experience and skills.
Deep understanding of Security Operations Center and Incident Response team protocols and procedures.
The ability to remain calm and work effectively under the pressure of an active cyber incident.
Strong troubleshooting and root cause analysis skills.
Strong understanding of security operations technologies including SIEM, EDR and orchestration (SOAR). Splunk Enterprise Security, CrowdStrike, and XSOAR experience is a plus.
Familiarity with cloud concepts and experience performing monitoring and responding to threats in cloud environments.
You can be who you are.
People come first here. We’re committed to a diverse, equitable and inclusive workforce. Learn more about how we create a welcoming work environment through Diversity, Equity, and Inclusion at www.pacificlife.com. What’s life like at Pacific Life? Visit Instagram.com/lifeatpacificlife.
Benefits start Day 1.
Your wellbeing is import
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s