Ceres Life Insurance Company Logo

Ceres Life Insurance Company

Senior Cybersecurity Engineer

Posted Yesterday
Remote
Hiring Remotely in United States
Senior level
Remote
Hiring Remotely in United States
Senior level
The Senior Cybersecurity Engineer will enhance security across cloud infrastructure, manage security tooling, and support compliance efforts while collaborating with various teams to protect sensitive financial data.
The summary above was generated by AI

Company Overview

Westaim and CC Capital have joined forces to strategically transform Westaim from a holding company into a global alternative credit asset manager with a unique, integrated insurance platform, branded as The Westaim Corporation. This partnership supports a long-term vision to deliver innovative, customized financial solutions across alternative credit and insurance, creating scalable growth and meaningful client impact.

Ceres USA Holdings, LLC, part of the insurance platform within The Westaim Corporation strategy, is the parent company of Ceres Life Insurance – a fast-growing, technology-driven annuity carrier startup. Ceres is focused on redefining retirement security by combining modern fintech capabilities, top-tier talent, and strong vendor partnerships to deliver exceptional annuity solutions and digital experiences.

Ceres is deeply committed to a client-centered culture. Through its Digital Contact Center and advisor-facing platforms, the company delivers proactive, personalized, and technology-enabled support that empowers clients and advisors while maintaining the highest standards of trust, security, and regulatory compliance.

About the Role

We are looking for a Senior Cybersecurity Engineer to join the Information Security team, reporting directly to the CISO, to help secure a modern, cloud-based insurance platform supporting annuity products and financial operations.

This is a hands-on role for someone who enjoys building and improving security systems end-to-end across infrastructure, identity, applications, and data. You will work closely with engineering, operations, and compliance teams to protect sensitive financial information and ensure our systems meet the highest standards of security and reliability.

This is not solely a development-focused security role. You will also help manage and mature our security tooling, identity platform, and cloud security posture on a day-to-day basis. If you are passionate about solving complex security challenges in a fast-paced, growing environment, this role offers the opportunity to make a meaningful impact.

Key Responsibilities

Build and Strengthen Security

  • Design and implement security controls across cloud infrastructure, applications, and data platforms
  • Review and secure system architectures, APIs, and integrations
  • Ensure secure configurations across environments supporting customer, policy, and financial systems
  • Manage and tune cloud security posture management (CSPM) tooling to identify and remediate misconfigurations
  • Implement and manage security controls across code repositories and CI/CD platforms, including branch protection, secret scanning, and access policies
  • Implement and manage security controls within cloud service provider environments, including IAM policies, network security groups, and service configurations

Detect and Respond to Threats

  • Monitor systems for security events using centralized logging and observability platforms
  • Lead investigations, root cause analysis, and remediation efforts
  • Improve detection capabilities through log aggregation, alerting, dashboards, and automation

Protect Data and Access

  • Implement and manage identity and access controls aligned with least privilege principles
  • Safeguard sensitive customer and financial data through encryption and secure data practices
  • Manage vulnerability scanning and remediation processes

Manage Identity, Access, and DNS Security

  • Administer and optimize the identity platform, including SSO, conditional access policies, and identity governance
  • Manage DNS records and configurations to support security and operational integrity

Support Compliance and Risk Management

  • Partner with compliance and legal teams to support regulatory requirements and audits
  • Help maintain security controls aligned with industry standards
  • Contribute to risk assessments and ongoing control improvements

Collaborate Across Teams

  • Work closely with engineering, data, and operations teams to embed security into workflows
  • Provide practical guidance on secure development and system design
  • Help promote a strong security culture across the organization
  • Continuously research and evaluate emerging security tools, technologies, and best practices to strengthen the organization’s security posture

Qualifications

Required

  • 7+ years of experience in cybersecurity engineering or a related field
  • Experience securing cloud environments such as AWS, Azure, or GCP
  • Hands-on experience with security and observability tools such as SIEM, EDR/XDR, CSPM, and centralized logging/monitoring platforms
  • Strong understanding of network, application, and API security
  • Experience with identity and access management (IAM) and role-based access controls
  • Experience administering identity platforms, including SSO, conditional access, and identity governance
  • Experience managing DNS records and configurations in support of security operations
  • Experience implementing security controls in code repository platforms and cloud-native services (e.g., GitHub, AWS)
  • Experience working in regulated environments such as financial services or insurance
  • Self-motivated learner who proactively researches emerging technologies, security trends, and evolving threats without waiting for direction

Nice to Have

  • Experience supporting insurance or annuity platforms
  • Familiarity with regulatory frameworks such as SOC 2 or NAIC guidelines
  • Certifications such as CISSP, CISM, or cloud security certifications
  • Experience integrating security into CI/CD pipelines (DevSecOps)
  • Experience in security operations (SecOps), including triage, incident handling, and operational monitoring
  • Demonstrated initiative in independently building knowledge in areas such as AI, automation, or other rapidly evolving technology domains
  • Strong communication skills and ability to work across technical and business teams

Why Join Us?

  • Be part of a fast-growing, innovative insurance business dedicated to providing top-tier support to IMOs and financial advisors
  • Make a direct impact on the company’s growth strategy by playing a key role in building and optimizing IMO partnerships
  • Work in a high-energy, collaborative startup environment focused on technology, digital tools, and advisor enablement
  • Competitive compensation package with PTO, health benefits, and career growth opportunities

 

Top Skills

AWS
Azure
Centralized Logging
Cspm
Edr
GCP
Iam
SIEM
Xdr

Similar Jobs

Yesterday
Remote
United States
118K-162K Annually
Senior level
118K-162K Annually
Senior level
Healthtech
The role involves designing and deploying Policy-Based Access Control solutions in IAM, collaborating with teams to meet business needs, and managing policies in PBAC platforms.
Top Skills: Azure InfrastructureAzure Kubernetes ServiceCi/Cd PipelinesGitGithub ActionsIdentity And Access ManagementPbacPolicy Based Access ControlPowershellRestful ApisShell ScriptingSQL
4 Days Ago
Remote or Hybrid
Senior level
Senior level
Healthtech • Pharmaceutical
The Senior Security Engineer will improve cybersecurity posture, manage risks, mentor team members, and use AI responsibly for security enhancements.
Top Skills: BashCrowdstrikePowershellPythonSplunkTenableWindows Defender
10 Days Ago
Remote
Georgia, USA
120K-180K Annually
Mid level
120K-180K Annually
Mid level
Retail
The Senior Cybersecurity Engineer focuses on designing automation for non-human identities, enhancing NHI governance, collaborating with various teams, and detecting malicious activities.
Top Skills: Cloud ServicesIamInfrastructure-As-CodePowershellPythonSecurity Monitoring

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account