We create data storage solutions that power the technology of today and inspire the innovations of tomorrow.
Senior Security Engineer
Location
California
Posted
36 days ago
Salary
$131.4K - $217.6K / year
Seniority
Senior
Job Description
Senior Security Engineer
Western Digital
• Own, design, and continuously improve the security tooling ecosystem that underpins a modern, detection-first Security Operations Center (SOC) • Engineer, deploy, and maintain all core SOC platforms, including Malware analysis and sandboxing solutions, Analyst workstation environments (Windows investigation VMs), Endpoint Detection & Response (EDR/XDR), Email Security Engineering, Vulnerability Scan Engineering • Act as technical owner for SOC platforms, including alignment with architecture requirements, lifecycle management, upgrades, and decommissioning • Ensure SOC platforms are engineered for scale, reliability, performance, and forensic integrity • Own EDR platform engineering, configuration, and operational health across the enterprise • Define and enforce EDR hygiene standards (sensor coverage, policy consistency, versioning, asset attribution) • Monitor EDR health metrics and proactively remediate gaps impacting detection or response efficacy • Develop testing frameworks to validate EDR detections, policies, and response actions • Serve as a technical owner of detection engineering, enabling high-fidelity detections through better tooling, telemetry, and data quality • Engineer and maintain malware detonation and analysis environments that support safe, repeatable analysis • Assess new attacker techniques, malware families, and evasion tactics for detection and prevention opportunities across the enterprise
Job Requirements
- Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or equivalent practical experience
- 5–10+ years of experience in security engineering, detection engineering, or advanced SOC technical roles
- Deep hands-on experience with EDR/XDR platforms (e.g., CrowdStrike, Defender, SentinelOne)
- Experience engineering SOC platforms rather than only consuming alerts (platform ownership mindset)
- Strong understanding of Windows internals, Linux operating systems, and server infrastructure, including endpoint and host-level telemetry, process execution, persistence mechanisms, and administrative activity across workstation and server environments
- Experience supporting malware analysis and sandboxing environments
- Familiarity with SOC workflows, detection pipelines, and incident response requirements
- Strong scripting and automation skills (PowerShell, Python)
- Solid grasp of attacker TTPs mapped to the MITRE ATT&CK framework
Benefits
- Paid vacation time
- Paid sick leave
- Medical/dental/vision insurance
- Life, accident and disability insurance
- Tax-advantaged flexible spending and health savings accounts
- Employee assistance program
- Other voluntary benefit programs such as supplemental life and AD&D, legal plan, pet insurance, critical illness, accident and hospital indemnity
- Tuition reimbursement
- Transit
- Employee stock purchase plan
- Sandisk's Savings 401(k) Plan
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Security Alarm Tech Support – Access Control, CCTV, Intrusion
Interface SystemsManaged Business Security, Business Intelligence, and Purpose-Built Managed Network and Voice Solutions
• Demonstrate sustained effectiveness and high performance within a fast-paced, dynamic environment while resolving complex, time-critical service needs. • Own technician success by delivering accurate diagnostics, correct parts selection, and clearly defined, executable scopes of work supported by complete, relevant documentation. • Drive SLA compliance by analyzing service outliers, executing root cause analysis, and delivering targeted corrective and preventative actions. • Collaborate with STS L1 and L2 leadership to identify and remediate process, coaching, or training deficiencies.
IT Security Systems Senior Engineer
Children's HealthAt Children's Health, our mission is to Make Life Better for Children, and we recognize that their health plays a crucial role in achieving this goal. Through our cutting-edge treatments and affiliation with UT Southwestern, we strive to deliver an extraordinary patient and family experience, ensuring that every moment, big or small, contributes to their overall well-being. Our dedication to promoting children's health extends beyond our organization and encompasses the broader community. Together, we can make a significant difference in the lives of children and contribute to a brighter and healthier future for all.
Role Description The Senior Security Systems Engineer is responsible for architecting, implementing, and operating enterprise security engineering solutions focused on Identity & Access Management (IAM), data privacy, data security, AI, automated workflow creation and management, and infosec data analytics reporting for a large hospital system. This role engineers security controls across Microsoft 365 and Microsoft Azure, enabling secure clinical and corporate workflows while maintaining compliance with HIPAA and internal governance standards. This position requires deep hands-on experience with identity security, data protection, and automation-driven operations, including advanced Python scripting to maintain pre-existing solutions and expand AI capabilities internally to reduce security risk, improve security posture management from an observability and monitoring perspective, and support audit readiness in a regulated healthcare environment. Responsibilities - Identity & Access Management (Primary Focus) - Design, implement, and operate enterprise IAM controls including: - Microsoft Entra ID (Azure AD) authentication, authorization, and federation - Conditional Access (risk-based access, device trust, MFA, session controls) - Privileged Identity Management (PIM) and just-in-time administrative access - Identity lifecycle processes (joiner/mover/leaver) and access hygiene - Engineer least-privilege role models for clinical, research, and administrative users. - Integrate IAM with clinical systems, analytics platforms, and SaaS applications using SSO and modern auth standards (SAML, OAuth2, OIDC). - Develop and maintain detections and operational responses for identity compromise, abnormal access, and privilege escalation. - Data Privacy & Security Engineering - Implement Microsoft-native data protection controls for PHI/ePHI: - Sensitivity labels, encryption, and rights management - Data Loss Prevention (DLP) across Exchange, Teams, SharePoint, OneDrive, endpoints, and sanctioned SaaS - Enforce secure sharing controls and domain restrictions aligned with hospital policy. - Translate HIPAA privacy requirements into enforceable technical solutions. - Provide architectural guidance for secure analytics and collaboration environments handling sensitive healthcare data. - Microsoft 365 Security Administration - Administer and engineer security features across M365 workloads: - Exchange Online (anti-phishing, impersonation protection, secure mail routing) - Teams, SharePoint, and OneDrive sharing and access controls - Microsoft Defender and Microsoft Purview security features - Support investigations, legal holds, and security incidents in coordination with Privacy, Legal, and SecOps teams. - Tune policies to balance clinician usability with security and compliance. - Azure Security & Identity Engineering - Secure Azure identity and platform services: - Entra ID hardening, tenant security posture improvements - RBAC, managed identities, service principals, Key Vault - Integrate logging and telemetry with centralized monitoring/SIEM platforms. - Participate in design reviews, threat modeling, and security sign-off for new cloud initiatives. - Python Scripting & Security Automation - The Senior Security Systems Engineer is expected to actively design and maintain Python-based automation to support IAM, privacy, and security operations. - Ensure scripts follow secure coding practices, logging standards, and production change controls. - Governance, Risk & Compliance Support - Provide engineering input, evidence, and architecture documentation for HIPAA Security Rule compliance. - Support risk assessments, tabletop exercises, and control testing activities. - Collaborate with GRC teams to map technical controls to regulatory requirements and internal policies. Qualifications - At least 5 years experience in information security, with a focus on security systems engineering required. - Strong knowledge of security technologies, including firewalls, IDS/IPS, and encryption required. Requirements - Four-year Bachelor's degree or equivalent experience in Computer Science, Information Security, or a related field required. Benefits - Employee portion of medical plan premiums are covered after 3 years. - 4%-10% employee savings plan match based on tenure. - Paid Parental Leave (up to 12 weeks). - Caregiver Leave. - Adoption and surrogacy reimbursement.
Senior Security Advisor, Falcon Complete
CrowdStrikeCrowdStrike has redefined security with the world’s most advanced cloud-native platform that protects and enables the people, processes and technologies that drive modern enterprise. Tested and proven, the world's largest organizations trust CrowdStrike to stop breaches with unparalleled protection against the most sophisticated cyberattacks. The CrowdStrike culture has been built upon our Core Values since the day we began. We are Fanatical About the Customer, Relentlessly Focused on Innovation and believe that our Limitless Passion drives Unlimited Potential for every CrowdStriker. As a purpose-built remote-first company, we believe cultivating a connected culture for every employee, no matter where they are in the world, is a key ingredient in building a high-performing, diverse team. We don’t have a mission statement. We’re on a mission—to stop breaches. Ready to join a mission that matters?
• Assess customer’s Falcon environment and ensure alignment with Falcon Complete standards. • Provide Falcon Complete customers with recommendations that align to improved security. • Create and recommend remediation for components of CrowdStrike products that may lead to improved security posture. • Contact customers directly upon identification of misalignment with Falcon Complete standards. • Document, update, and resolve all customer related issues in accordance with established procedures and SLAs. • Develop and provide customers with service reports and stats as requested. • Partner with internal teams to ensure customer satisfaction. • Liaise with support team to help troubleshoot and coordinate efforts to resolve technical issues.
• Articulate value proposition to C-level decision-makers across multiple verticals to assess buying interest and improve consideration. • Meet and exceed quarterly goals consisting of marketing-generated leads, qualified meetings, and activity metrics. • Partner closely with sales teams in key GEOs and create account strategies together to drive penetration against very large businesses. • Daily, integrated use of Salesforce.com, and additional applications to manage all lead data and ensure data integrity. • Be involved in helping grow pipeline funnel through targeted marketing campaigns. • Drive pipeline opportunities through an account-based marketing approach. • Perform a variety of other marketing-related duties as assigned to improve the customer experience.



