Job Closed
This listing is no longer active.
FloQast is an accounting software company that offers close management software to help accountants close their books faster and with greater accuracy, as well
IT Security Engineer III
Location
California
Posted
129 days ago
Salary
$116K - $174K / year
Seniority
Senior
Job Description
IT Security Engineer III
FloQast
• Work in partnership with other FloQast IT teams to design, implement, and maintain corporate IT security systems, ensuring compliance • Lead third-party vendor and contractor security reviews • Audit and harden 3rd party SaaS systems for security best practices, leading remediation efforts • Ensuring security configurations across our corporate environment are documented and maintained • Regularly triage security events and ensure ongoing health of our Managed Detection & Response (MDR) partner • Own the analysis and documentation of security events & incidents, including investigating & escalating issues and participating in security event escalations • Maintaining existing compliance attestations and participating in risk assessment exercises • Lead vulnerability management efforts, ensuring issues are triaged, prioritized, and remediated according to defined SLA’s • Maintain and secure internal corporate endpoints (macOS and Windows) • Administer endpoint management platform for enterprise-wide monitoring and dash boarding • Participate in Agile scrum ceremonies for project and initiative tracking • Lead security awareness and training programs • Stay abreast of new and emerging security technologies and paradigms
Job Requirements
- 6 - 8 years as a Security Engineer, DevOps, or IT security professional
- In-depth knowledge of common compliance frameworks e.g. SOC, SOX, PCI, and ISO standards
- Experience using at least one high-level programming/scripting language
- Ability to lead cross-functional initiatives and communicate proposals and ideas to stakeholders concisely
- Experience balancing commercial objectives with security and compliance obligations
- Advanced understanding of network and application fundamentals and best practices e.g. HTTP/S, DNS, VPN, Load Balancing, SAML, OAuth, and other modern protocols
- Experience with cloud environments AWS, GCP, or Azure
- Strong sense of ownership, urgency, and drive
- Experience with zero-trust security concepts
- Experience securing multi-tenant enterprise SaaS products
- Experience with hardening tools and frameworks such as CIS benchmarks, NIST
Benefits
- Medical
- Dental
- Vision
- Family Forming benefits
- Life & Disability Insurance
- Unlimited Vacation
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
IT Security Systems Administrator – Telecom
AireSpringGlobal provider of Managed SD-WAN, UCaaS, Managed Security, and Business Internet to Multi-location enterprises.
• Manage enterprise firewalls, including Cisco Meraki, SonicWall, and Fortinet. • Monitor and respond to security alerts using XDR, RMM, and SIEM platforms. • Lead incident response, breach remediation, and root-cause analysis. • Administer Bitdefender Endpoint Protection and similar endpoint security tools. • Secure the Microsoft 365 tenant, including Defender, identity protection, and conditional access policies. • Support SOC 2 and ISO 27002 compliance activities. • Collaborate with internal teams to support telecom-specific applications and integrations. • Monitor system performance, troubleshoot issues, and provide timely resolutions to minimize downtime. • Ensure compliance with telecom industry standards, data protection regulations, and company policies. • Create and maintain documentation for system configurations, processes, and troubleshooting guides. • Perform Windows Server and Linux administration. • Manage user accounts, access permissions, and IT resources across enterprise systems. • Support and maintain virtualization platforms (VMware and Hyper-V). • Perform networking fundamentals and troubleshooting. • Provide technical support to end users, ensuring effective communication and timely resolution of IT-related concerns. • Research and recommend technology upgrades or enhancements to optimize IT operations. • Stay current with the latest IT trends and best practices relevant to the telecom sector.
Cloud Security Engineer
EncouraWe empower students & institutions to create meaningful connections to achieve their goals.
• Risk & compliance tracking against government standards (e.g. CCPA, NIST, SOCII). • Tracking and remediation management of vulnerability issues and system patches. • Review and recommend additional or changes to existing AWS security-minded services. • Work with managed security service provider to triage and respond to potential security events. • Grow, as needed, the data fed to SIEM to provide visibility into potential security events. • Develop security-minded reports and dashboards for the Exec team, and for techies. • Develop and deploy security system alerting and monitoring strategy. • Systems access level inventory and auditing. • Provide as-needed security-minded operational support of our applications and platforms. • Partner with development teams on security architecture decisions. • Implement tagging and reporting strategy to measure security event risk/impact. • Gain functional knowledge of all Encoura applications. • Serve in an on-call rotation for security, or potential security-related issues.
The Ewing Internship Experience Video Develop the skills and experience you need to succeed in the workplace while making the world a little greener at Ewing, the largest family-owned supplier of landscape and irrigation products in the U.S. During an internship at Ewing, you can expect to grow your skills, knowledge, and experience in wholesale distribution by working in several different job functions in our rotational program. You will gain operations experience working alongside our Branch Service Professionals learning counter sales, shipping, and receiving. Shadowing and performing the duties of a Branch Manager exposes interns to strategic planning and operations of running a branch. Interns will gain sales experience working alongside some of our Account Managers performing sales calls and activities to grow the business. Lastly, interns are exposed to high-level leadership through the mentoring from Regional and Divisional Managers allowing exposure to the strategic development of the business and our employees. All interns will be given the opportunity to work on a Capstone Project, where interns use their knowledge, skills, and interests to develop process improvement strategies for Ewing! Examples of projects include but not limited to… - Customer churn outreach - Conducting employee “stay” interviews - Social media outreach - Customer satisfaction exploration - Learning & Development activity effectiveness - And more! At the completion of the project, you will get the opportunity to present your findings and show off your hard work to a group of company executives. A great experience throughout!
Security GRC Program Manager
VanillaMaking Estate Planning Simple for Financial Advisors. Built for advisors, loved by clients.
• Lead customer due diligence questionnaire (DDQ) and RFP response process and third-party risk management process; track and manage high volume of DDQ and RFP requests. Coordinate and collaborate with internal teams to meet tight deadlines. Handle a high volume of requests and interactions in a fast-paced environment • Support enterprise sales with technical customer security discussions • Lead SOC 2 Type II audit preparation, evidence collection, and remediation • Conduct third party vendor security assessments, collaborate on third party risk management processes • Implement and manage third party tool and new processes to create efficiencies • Develop the security narrative and conduct security reviews for new product functionality to enable GTM • Review and negotiate security and compliance language in customer contracts in collaboration with Legal team • Build and manage Trust Center integrations and public-facing security documentation in collaboration with Legal team • Build customer-facing compliance artifacts (security whitepapers, certifications)




