Senior Security Engineer - Ardán Inc
ArdánAbout the role
https://www.ardaninc.com/california-employee-and-job-application-privacy-notice/
Position Summary: Senior Security Engineer protects the organization's information assets through cybersecurity operations, security engineering, incident response, and strategic technology initiatives. Working closely with IT leadership, infrastructure teams, and third-party security partners, this role helps implement and mature the enterprise cybersecurity program while supporting compliance, operational excellence, and continuous improvement.
Essential Functions:
Security Operations
- Investigate, triage, document, and prioritize security events.
- Execute approved containment, eradication, and recovery actions.
- Maintain incident records, evidence collection, and executive reporting.
- Continuously improve detection quality by reducing false positives.
- Investigate, triage, document, and prioritize security events.
- Execute approved containment, eradication, and recovery actions.
- Maintain incident records, evidence collection, and executive reporting.
- Continuously improve detection quality by reducing false positives.
Security Engineering & Strategic Initiatives
- Plan, deploy, configure, and optimize enterprise security technologies.
- Develop security playbooks, automation, and standard operating procedures.
- Evaluate emerging security technologies and recommend improvements.
- Partner with IT teams to embed security into new solutions and projects.
- Support vulnerability scanning, remediation, and validation.
- Tune SIEM, EDR, and security monitoring rules.
- Participate in infrastructure, cloud, AI, and enterprise security projects.
- Support implementation of strategic cybersecurity initiatives and roadmap objectives.
Governance, Risk & Compliance
- Support SOC 2, regulatory, and internal compliance initiatives.
- Assist with development of security policies, standards, and procedures.
- Support phishing simulations and security awareness training.
- Promote continuous improvement through risk assessments and control enhancements.
- Collect audit evidence and validate security controls.
- Participate in third-party risk and vendor security reviews.
- Maintain security documentation, operational metrics, and compliance reporting.
- Assist with audit remediation and control monitoring.
Education and Experience:
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or equivalent experience
- 5+ years in Security Operations, Security Engineering, or MDR environments
- Experience responding to cybersecurity incidents and implementing enterprise security technologies
- Experience working within regulated or compliance-driven environments preferred
- Experience with IAM, encryption technologies, network security controls, and security monitoring tools
- Proven experience leading risk assessments and remediation initiatives
- Deep understanding of security frameworks and best practices (e.g., NIST, CIS, ISO 27001)
- Strong analytical, communication, and leadership skills
Technical Skills
SIEM & EDR Platforms
SentinelOne / Microsoft Defender
Microsoft 365 Security
Active Directory / Microsoft Entra ID
Microsoft Sentinel / Splunk
Azure & AWS Fundamentals
Windows Server
Vulnerability Management
TCP/IP, DNS, HTTP/S, SMTP
NIST CSF, CIS Controls & SOC 2
PowerShell
Security Automation
Preferred Qualifications
- Professional certifications such as CompTIA Security+, CompTIA CySA+, Microsoft SC-200, GIAC GISF / GCIH, CISSP, Microsoft SC-300, AWS Security Specialty, CISSP or CISM (or in progress), Equivalent industry certification
- Experience implementing DevSecOps practices in CI/CD environments
- Experience working in regulated industries
Physical Demands
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s