Salary
💰 $75,000 - $125,000 per year
About the role
- Implement and manage security controls for our corporate systems, applications, and information assets
- Design and maintain secure configurations for our employee endpoints and enforce security best practices
- Administer and secure corporate user accounts and identities, including managing permissions and access controls
- Develop and implement IT security policies, procedures, and runbooks
- Identify and remediate vulnerabilities in our corporate environment, adhering to best practices for data security
- Monitor internal and external systems for security threats and respond to alerts
- Identify and investigate security incidents affecting our corporate environment, and conduct post-incident analysis
- Automate security-related tasks to improve efficiency and scalability
Requirements
- Experience in a security or IT administration role with a focus on enterprise security
- Proven knowledge of securing corporate IT environments, including endpoint security, identity and access management (IAM), and SaaS security
- Hands-on experience administering and securing enterprise-level platforms like Google Workspace or O365
- Strong problem-solving skills and the ability to operate independently in a startup environment
- Excellent communication skills to articulate security concepts to both technical and non-technical stakeholders
- Familiarity with security frameworks, standards, and regulations (e.g., SOC 2, HIPAA, NIST, CIS, ISO 27001)
- Relevant industry or cloud security certifications (e.g., CISSP, CCSP) (preferred)
- Experience with scripting and automation to streamline administrative tasks (preferred)
- Experience in protecting and managing macOS workstations (preferred)
- Experience deploying and managing endpoint security solutions (e.g. management frameworks, EDR tools) (preferred)
- Certifications such as Microsoft 365 Certified: Enterprise Administrator Expert, Google Workspace Administrator, or similar (preferred)
- Experience with e-mail security protocols (e.g. SPF, DKIM, DMARC) and controls (preferred)
- Experience in a regulated industry (e.g., government, finance, healthcare) with exposure to specific compliance requirements (preferred)