Information Security Engineer

Walnut Creek, California, United States

 

About ITS Logistics

Are you ready to unleash your potential and be a part of one of the fastest-growing, exciting logistics companies in the US? ITS Logistics is a premier Third-Party Logistics company that provides creative supply chain solutions.  With the highest level of service, unmatched industry experience and work ethic, and a laser focus on innovation and technology–our purpose is to improve the quality of life by delivering excellence in everything we do.

At ITS, we invest in your personal and professional growth, providing the tools, resources, and support you need to unleash your full potential, collaborate with like-minded teammates, and seize limitless opportunities. By joining our all-star team, you will be part of an organization that values your unique skills, encourages your drive for excellence, and recognizes your unwavering commitment to achieving our shared goals.

We empower our team members to become champions in their respective fields by nurturing a culture of collaboration, competition, and unyielding resilience. We believe that together, we can conquer any challenge and achieve remarkable victories.

Want to learn more about ITS Logistics?  Check out our website!  www.its4logistics.com

About our IT team

At ITS, we see Information technology as a core enabler in delivering complex third-party logistics services at scale. ITS continues to invest in transforming its applications and infrastructure to support business growth and set us apart in the marketplace. An increasing percentage of ITS IT spending is now allocated to innovation and transformation initiatives with the goal of rapidly leveraging the following significant technology shifts to maximize business gain:

  • Leverage the public cloud to deliver an elastic infrastructure for increased business agility, scalability, and resiliency.
  • Use of the latest data analytics platform for informed decision-making, driving business outcomes, and uncovering new opportunities with data-driven insights.
  • AI and automation to improve efficiency and speed up business processes and results.
  • Digital apps to reinvent the workplace to boost employee productivity, agility, and digital dexterity through an engaging and intuitive work environment (employee experience).
  • Participate in building a world-class Information Security Team.

 

About the Position

Information Security Engineer

Role Responsibilities

  • This is a hands-on, highly technical position within a fast-paced environment, reporting to the Senior Manager of Information Security at our technology center of excellence in Walnut Creek, CA.  We are building the Information Security Program, and you will have great experience building a greenfield environment.
  • The role requires four days in the office.
  • Provide best-in-class enterprise subject-matter expertise across all Cybersecurity controls for on-premises Infrastructure and Azure Cloud.
  • Responsible for maintaining operational excellence status on cybersecurity services related to administration, availability, diagrams, documentation, updates, and policy management.
  • Investigate and analyze security alerts to determine scope, urgency, impact, and remediation.
  • Manage cyber security incidents and conduct triage/forensic analyses and root cause analyses of cyber-attacks.
  • Continually improve internal scanning, detection, and reporting of security risks and anomalous activity.
  • Provide input for Key Performance Indicators (KPIs) and Metrics reporting.
  • Identify opportunities to automate or streamline current processes.
  • Participate in tabletop exercises.

 

Role Requirements

  • Bachelor’s degree with advanced security certifications such as CISSP, Certified Cloud Security Professional (CCSP), SANS GIAC, Offensive Security, Azure Certified Security Associate (AZ-500), Microsoft Cybersecurity Architect (SC-100), Etc.
  • Four to Six years of experience in Information/Cyber Security.

 

Bonus Skills (one or more)

  • Expertise with Azure Cloud Security and the Azure Well-Architected Framework.
  • Experience with Rapid7 Insight IDR and Microsoft Sentinel other SIEM platforms to manage, create, and improve threat detection rules within the SIEM platform.
  • Expertise in Beyond Trust PAM , other PAM solutions, and CrowdStrike Identify Exposure.
  • Expertise with CrowdStrike or other EDR solutions, and CIS Operating System Hardening
  • Expertise with Palo Alto Networks Prisma or other cloud native tools.
  • Expertise in Tenable One, Rapid7 or other Vulnerability Management Platforms.
  • Expertise with On-premises Fortinet FortiGate or other NGFW technologies.
  • Expertise with Incident Detection and Response.
  • Expertise with Synk or other Application code scanning tools.  Including SAST/DAST.
  • Understanding of networking and network security and common enterprise communication technologies.
  • Knowledge of MITRE ATT&CK, CIS and NIST CSF Frameworks.
  • Experience with various cybersecurity techniques and principles, such as Security Operations Center and SIEM, forensics, threat hunting, penetration testing, and threat intelligence.
  • Designing and orchestrating requirements for CI/CD pipelines in DEVSECOPS.
  • Experience with threat modeling.
  • Experience with Microsoft Purview and Data Privacy.
  • Experience with drafting security policies, procedures, SOPs.
  • Proficiency in secure coding/scripting and automation.
  • Knowledge of compliance framework, e.g. SOC2, NIST, ISO 27001
  • Excellent communication skills in writing and speaking.
  • Self-starter, and someone who is not afraid of new challenges and is willing to learn and grow in the Infosec field.

Salary Range:  $150,000 - $165,000 + Bonus

 

 

Apply for this job

*

indicates a required field

Resume/CV

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf


Select...
Select...

Voluntary Self-Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.

As set forth in ITS Logistics, LLC’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Select...
Select...
Race & Ethnicity Definitions

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Select...

Voluntary Self-Identification of Disability

Form CC-305
Page 1 of 1
OMB Control Number 1250-0005
Expires 04/30/2026

Why are you being asked to complete this form?

We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.

Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp.

How do you know if you have a disability?

A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability. Disabilities include, but are not limited to:

  • Alcohol or other substance use disorder (not currently using drugs illegally)
  • Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDS
  • Blind or low vision
  • Cancer (past or present)
  • Cardiovascular or heart disease
  • Celiac disease
  • Cerebral palsy
  • Deaf or serious difficulty hearing
  • Diabetes
  • Disfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disorders
  • Epilepsy or other seizure disorder
  • Gastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndrome
  • Intellectual or developmental disability
  • Mental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSD
  • Missing limbs or partially missing limbs
  • Mobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supports
  • Nervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)
  • Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilities
  • Partial or complete paralysis (any cause)
  • Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysema
  • Short stature (dwarfism)
  • Traumatic brain injury
Select...

PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.