Sr. IT Security Ops Engineer (Hybrid)
Lakeshore Learning Materials, LLCAbout the role
Company Description
At Lakeshore, we create innovative learning materials and world-class guest experiences for teachers, parents and children. Since 1954, we’ve grown into a global community—with a thriving e-commerce business, multiple catalogs, over 50 stores, a peerless national sales force, plus international offices that support our preeminent supply chain division. But today we’re working better, smarter and faster than ever—and setting our sights even higher. We’re building an infrastructure designed for scalability, embracing data-driven decision-making and using technology to improve efficiency and ensure the best tools for the best work. Most importantly, we continue to invest in a diverse team of inquisitive top talent who fuel each other’s passions and curiosity, take risks, try new things and believe that every new day brings opportunities for growth.
Job Description
We are seeking a Senior IT Security Ops Engineer to join our team. In this role, you will manage and oversee responses to security incidents, conduct investigations, analyze evidence and provide recommendations for remediation and improvement in the Lakeshore Learning Materials environment. The position also requires developing and maintaining Security Incident Response policies, procedures and best practices. Applicants should have at least seven years of experience in security incident response, forensics or threat intelligence. The ideal candidate also possesses certifications such as CISSP, GCIH, GCFA or CISM.
A day on the job looks like this:
- Overseeing the response to security incidents from identification through resolution; preparing and delivering incident reports, briefings and lessons learned to internal and external audiences
- Conducting forensic analysis, threat hunting and root-cause analysis related to security incidents
- Training and mentoring other Information Security Analysts, providing feedback and guidance to help solve new or complex problems
- Identifying areas to improve Information Security monitoring and detection capabilities; monitoring and analyzing emerging threats, vulnerabilities and exploits
- Developing and implementing scalable preventative security measures, including detection, monitoring and exploitation prevention
- Developing and delivering cybersecurity awareness training programs for employees, educating them on current threats and best practices
- Configuring alerting and automation within end point protection, incident detection and vulnerability management tools
- Helping plan, organize and conduct quarterly tabletop exercises to prepare the organization for security incidents
Qualifications
Got the skills and experience? Here’s what we’re looking for:
Required:
- Bachelor’s degree in computer science, cybersecurity or a related field, or equivalent work experience
- At least 7 years of experience in security incident response, forensics or threat intelligence
- Proficiency with Security Incident Response tools and platforms, such as SIEM, EDR, SOAR and IRM
- Experience working with cloud-based environments such as AWS, Azure or GCP
- Strong knowledge of security frameworks, standards and best practices, including NIST, ISO and MITRE
- Ability to design security-relevant infrastructure as code (IaC)
Preferred:
- Certifications such as CISSP, GCIH, GCFA or CISM
- Hands-on experience assessing, implementing and managing third-party and cloud service provider security tools and services, such as Endpoint Protection Platforms (EPP), firewall and network security tools, intrusion detection and prevention systems (IDS/IPS), vulnerability management tools, web application firewalls (WAF), and identity and access management (IAM)
- Familiarity with advanced Microsoft Office features for data analysis and presentation of findings
- Demonstrated scripting capabilities with modern languages such as Python
- Program experience using languages such as Bash, PowerShell and Python
What Sets you Apart:
- Ability to collaborate, influence and negotiate with professionals at all levels, including leadership
- Strong interpersonal, verbal presentation and written communication skills
- Experienced in using threat intelligence services in a production environment
- Understanding of industry best practices and frameworks that support adoption, including NIST 800-53, PCI, CIS and CSA CCM
Additional Information
And here’s our end of the bargain!
At Lakeshore, we pay local market wages for employees that reside within Los Angeles and Orange Counties.
For this position, new employees joining Lakeshore who live within Los Angeles
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s