Red Cup IT Logo

Red Cup IT

Staff Security Engineer

Posted 21 Days Ago
Be an Early Applicant
In-Office
Los Angeles, CA, USA
Senior level
In-Office
Los Angeles, CA, USA
Senior level
Lead architecture and technical strategy for multi-tenant security stacks, serve as Tier-4 escalation for complex incidents, build Security-as-Code automation (Python/PowerShell/Terraform), integrate tooling across platforms, drive vendor evaluations and global standardization, and oversee compliance evidence for HIPAA, SOC 2, and CMMC.
The summary above was generated by AI

We are seeking a Staff Security Engineer who operates at the nexus of high-level strategy and multi-tenant operational excellence. While a traditional internal role secures a single enterprise perimeter, you are responsible for the integrated defense fabric of a vast portfolio of diverse client environments.

You will navigate the complexities of varied compliance needs and legacy technical debt, transforming them into a unified, scalable security posture. This is a technical leadership role designed for an expert who prefers the keyboard and the whiteboard over a people-management track, focusing on the "big picture" of our global security product stack.

Core Responsibilities1. Strategic Security Architecture & Product Strategy
  • Scalable Multi-tenancy: Architect and maintain hardened, isolated security stacks (SIEM, EDR, XDR) designed to scale across hundreds of distinct client environments.
  • Product Vetting: Serve as the technical lead for vendor evaluations, "battle-testing" emerging tech to define our global standard offerings.
  • Global Standardization: Engineer "Gold Image" baselines and automated deployment templates based on CIS and NIST frameworks to ensure rapid, secure onboarding.
2. Tier 4 Escalation & Forensic Mastery
  • Final Authority: Serve as the ultimate technical escalation point for the SOC, leading the response to sophisticated APTs and complex breaches.
  • Post-Mortem Leadership: Conduct deep-dive Root Cause Analysis (RCA) and translate incident findings into systemic, fleet-wide preventative measures.
3. Security Engineering & Hyper-Automation
  • Security as Code: Build the automation tissue that connects our stack, utilizing Python, PowerShell, and Terraform to automate threat containment and patch management.
  • Integration Engineering: Develop custom API integrations to bridge gaps between vulnerability scanners, RMM tools, and ticketing systems for seamless auto-remediation.
4. High-Stakes Advisory & Governance
  • Strategic vCISO: Act as a high-level advisor for key accounts, translating abstract risk into actionable business roadmaps for C-suite stakeholders.
  • Compliance Orchestration: Oversee technical evidence collection and governance for HIPAA, SOC 2, and CMMC, ensuring our clients remain audit-ready.
Technical ProfileCategoryCompetenciesCloud & IdentityExpert-level AWS/Azure security; Zero Trust Architecture (ZTA); Advanced IAM/Entra ID.SecOps & IntelligenceAdvanced SOAR/SIEM engineering (Sentinel, Splunk, CrowdStrike); MITRE ATT&CK mapping.Network DefenseDeep-packet inspection; BGP security; SD-WAN; SASE; Micro-segmentation.Automation / IaCProficiency in Python, Terraform, or Ansible for infrastructure-as-code.CertificationsCISSP (Highly Preferred), CISM, CCSP, or specialized GIAC (GCIH/GCFA).Experience & Qualifications
  • 8–12+ Years in Information Security, with a significant background (3+ years) in multi-client consulting or MSP environments.
  • Force Multiplier: Proven track record of leading cross-functional projects and mentoring senior engineers without direct-report authority.
  • Bilingual Communication: The rare ability to pivot from a deep-dive technical audit with an engineer to a risk-based ROI presentation for a CEO.
HQ

Red Cup IT Garden Grove, California, USA Office

14271 Corporate Dr, Garden Grove, California, United States, 92843

Similar Jobs

3 Days Ago
Easy Apply
Remote or Hybrid
United States
Easy Apply
165K-266K Annually
Expert/Leader
165K-266K Annually
Expert/Leader
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Leads Samsara’s application security and vulnerability management programs across cloud, firmware, IoT, and corporate systems. Responsibilities include setting technical strategy, reducing remediation time, developing automation, guiding engineering teams, mentoring security engineers, assessing high-profile vulnerabilities, supporting incident investigations, and participating in on-call response. The role requires extensive security experience, programming proficiency, AWS expertise, vulnerability management knowledge, and practical use of AI/LLM tooling.
Top Skills: Ai/Llm ToolingAWSAws LambdaC/C++Ci/CdCvssDastEpssFedrampGoJavaScriptPythonSastScaSemgrepTinesWiz
3 Days Ago
In-Office
Long Beach, CA, USA
205K-310K Annually
Expert/Leader
205K-310K Annually
Expert/Leader
Aerospace • Artificial Intelligence • Hardware • Machine Learning • Software • Defense • Manufacturing
Build and operate cloud security tooling, automation, and controls across AWS and Azure. Secure IAM, networks, infrastructure-as-code, CI/CD, PKI, certificates, Kubernetes integrations, and secrets management with HashiCorp Vault. Lead security projects from design through implementation, troubleshoot multi-account cloud networks, conduct CSPM and threat detection work, and support incident response. Collaborate with engineering teams on secure architectures and leverage AI to accelerate development. The role is onsite in Denver or Long Beach, may include on-call duties and occasional travel, and requires obtaining and maintaining a security clearance.
Top Skills: Ad CsAWSAws Private CaAzureCi/CdCloudFormationCspmCwppExpressconnectGoHashicorp VaultIamInfrastructure-As-CodeKubernetesMtlsNaclsNsgsPkiPythonSecurity GroupsSIEMTerraformTlsTransit GatewayVirtual WanVnetVpcVpnX.509
4 Days Ago
Remote or Hybrid
176K-308K Annually
Senior level
176K-308K Annually
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Secure ServiceNow instances by assessing configurations against security baselines, identifying misconfigurations, validating customer-reported findings, and providing actionable remediation guidance. The role develops hardening guidance, distinguishes product vulnerabilities from configuration issues, partners with Product Security and Engineering, supports customer escalations, and drives scalable improvements to security tooling, detection, and risk-reduction processes.
Top Skills: Ai-Powered ToolsApplication SecuritySaas Security Posture ManagementServicenowServicenow Platform

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account