Staff Security Engineer

Posted Yesterday
Be an Early Applicant
Los Angeles, CA, USA
In-Office
Senior level
Cybersecurity
The Role
Lead architecture and technical strategy for multi-tenant security stacks, serve as Tier-4 escalation for complex incidents, build Security-as-Code automation (Python/PowerShell/Terraform), integrate tooling across platforms, drive vendor evaluations and global standardization, and oversee compliance evidence for HIPAA, SOC 2, and CMMC.
Summary Generated by Built In

We are seeking a Staff Security Engineer who operates at the nexus of high-level strategy and multi-tenant operational excellence. While a traditional internal role secures a single enterprise perimeter, you are responsible for the integrated defense fabric of a vast portfolio of diverse client environments.

You will navigate the complexities of varied compliance needs and legacy technical debt, transforming them into a unified, scalable security posture. This is a technical leadership role designed for an expert who prefers the keyboard and the whiteboard over a people-management track, focusing on the "big picture" of our global security product stack.

Core Responsibilities1. Strategic Security Architecture & Product Strategy
  • Scalable Multi-tenancy: Architect and maintain hardened, isolated security stacks (SIEM, EDR, XDR) designed to scale across hundreds of distinct client environments.
  • Product Vetting: Serve as the technical lead for vendor evaluations, "battle-testing" emerging tech to define our global standard offerings.
  • Global Standardization: Engineer "Gold Image" baselines and automated deployment templates based on CIS and NIST frameworks to ensure rapid, secure onboarding.
2. Tier 4 Escalation & Forensic Mastery
  • Final Authority: Serve as the ultimate technical escalation point for the SOC, leading the response to sophisticated APTs and complex breaches.
  • Post-Mortem Leadership: Conduct deep-dive Root Cause Analysis (RCA) and translate incident findings into systemic, fleet-wide preventative measures.
3. Security Engineering & Hyper-Automation
  • Security as Code: Build the automation tissue that connects our stack, utilizing Python, PowerShell, and Terraform to automate threat containment and patch management.
  • Integration Engineering: Develop custom API integrations to bridge gaps between vulnerability scanners, RMM tools, and ticketing systems for seamless auto-remediation.
4. High-Stakes Advisory & Governance
  • Strategic vCISO: Act as a high-level advisor for key accounts, translating abstract risk into actionable business roadmaps for C-suite stakeholders.
  • Compliance Orchestration: Oversee technical evidence collection and governance for HIPAA, SOC 2, and CMMC, ensuring our clients remain audit-ready.
Technical ProfileCategoryCompetenciesCloud & IdentityExpert-level AWS/Azure security; Zero Trust Architecture (ZTA); Advanced IAM/Entra ID.SecOps & IntelligenceAdvanced SOAR/SIEM engineering (Sentinel, Splunk, CrowdStrike); MITRE ATT&CK mapping.Network DefenseDeep-packet inspection; BGP security; SD-WAN; SASE; Micro-segmentation.Automation / IaCProficiency in Python, Terraform, or Ansible for infrastructure-as-code.CertificationsCISSP (Highly Preferred), CISM, CCSP, or specialized GIAC (GCIH/GCFA).Experience & Qualifications
  • 8–12+ Years in Information Security, with a significant background (3+ years) in multi-client consulting or MSP environments.
  • Force Multiplier: Proven track record of leading cross-functional projects and mentoring senior engineers without direct-report authority.
  • Bilingual Communication: The rare ability to pivot from a deep-dive technical audit with an engineer to a risk-based ROI presentation for a CEO.

Skills Required

  • 8-12+ years in Information Security with 3+ years in multi-client consulting or MSP environments
  • Expert-level AWS and Azure security (cloud security architecture)
  • Zero Trust Architecture and advanced IAM/Entra ID experience
  • Advanced SIEM/SOAR engineering (Sentinel, Splunk), EDR/XDR (CrowdStrike) and MITRE ATT&CK mapping
  • Tier-4 escalation, digital forensics, root cause analysis, and incident post-mortem leadership
  • Proficiency in Python, PowerShell and IaC tools (Terraform or Ansible) to implement Security-as-Code and automation
  • Experience building API integrations between vulnerability scanners, RMM tools, and ticketing systems for auto-remediation
  • Network defense expertise: deep-packet inspection, BGP security, SD-WAN, SASE, and micro-segmentation
  • Design and maintain hardened, isolated multi-tenant security stacks and create CIS/NIST-based 'Gold Image' baselines
  • Compliance orchestration experience for HIPAA, SOC 2, and CMMC (technical evidence collection, audit readiness)
  • Proven ability to lead cross-functional projects and mentor senior engineers without direct-report authority
  • CISSP (highly preferred); CISM, CCSP, or GIAC (GCIH/GCFA) considered
  • Ability to communicate technical findings to C-suite and translate risk into business roadmaps
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Garden Grove, California
11 Employees
Year Founded: 2009

What We Do

Red Cup IT is an enterprise-grade IT firm that provides MSP, MSSP, Project Delivery, and Skill Augmentation solutions. We have been in business for twelve years and support clients across the United States. Our hallmark is the delivery of skillsets in more than 100 IT solutions and SaaS applications. Red Cup IT’s technical staff constantly cross-train across their specializations. Our company culture is unusual for firms of our nature. We strongly believe in IT skill transfer and knowledge sharing. Our customers’ business and IT leaders appreciate that we take care of the technical details so that they can focus on their strategic and business missions. Our end users appreciate the white glove support we provide. We focus on vendor relationship development and know how to get the most out of our partnerships on behalf of our clients.

Similar Jobs

ServiceNow Logo ServiceNow

Security Engineer

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Remote or Hybrid
Mountain View, CA, USA
29000 Employees

SoFi Logo SoFi

Back-end Engineer

Fintech • Mobile • Software • Financial Services
Easy Apply
Hybrid
7 Locations
4500 Employees
154K-264K Annually

SoFi Logo SoFi

Staff Security Detection Engineer, Machine Learning

Fintech • Mobile • Software • Financial Services
Easy Apply
Hybrid
2 Locations
4500 Employees
144K-248K Annually

Biohub Logo Biohub

Staff Software Engineer

Artificial Intelligence • Healthtech • Machine Learning • Biotech
In-Office
Redwood City, CA, USA
468 Employees
214K-268K Annually

Similar Companies Hiring

Copia Automation Thumbnail
Cybersecurity • Industrial
New York, New York
50 Employees
SEON Thumbnail
Artificial Intelligence • Cybersecurity
Budapest, Budapest
415 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account