Senior Information Security Lead
Indexed description
Location: Woodland Hills, CA
Salary: $125 - 165k
No sponsorship available
Benefits:
health insurance
disability insurance
life insurance
retirement plans (like a 401(k))
paid time off (PTO) including vacation and sick days
Summary:
Our client is seeking a Senior Information Security Lead to serve as the primary owner of enterprise security controls, security governance, and audit readiness initiatives across a hybrid technology environment. This is a hands-on individual contributor role responsible for designing, implementing, monitoring, and continuously improving network and information security controls across cloud and on-premises platforms.
The ideal candidate will combine strong technical cybersecurity expertise with the ability to support compliance, risk management, internal audits, and executive-level reporting. This position plays a critical role in maintaining security posture, driving remediation efforts, managing security exceptions, and ensuring ongoing readiness for regulatory and audit requirements.
This role is approximately 70% technical and 30% governance, compliance, and stakeholder engagement.
Key Responsibilities
- Design, implement, and maintain enterprise security controls across hybrid environments.
- Serve as the primary security control owner for network, cloud, and information security initiatives.
- Manage and optimize security technologies including firewalls, secure access platforms, vulnerability management tools, and cloud security controls.
- Lead vulnerability management efforts, including identification, prioritization, remediation tracking, and reporting.
- Conduct and coordinate phishing simulations, security awareness initiatives, and risk reduction activities.
- Partner with internal and external auditors to support audit requests, evidence collection, and compliance reviews.
- Maintain security documentation, policies, standards, procedures, and control evidence.
- Support SOX compliance efforts and IT General Controls (ITGC) audit readiness.
- Manage security findings, control deficiencies, remediation plans, and risk exceptions.
- Collaborate with infrastructure, cloud, networking, and application teams to strengthen security posture.
- Provide security-related guidance and recommendations to technical teams and business stakeholders.
- Communicate risks, remediation status, and security initiatives to leadership and executive stakeholders.
- 5+ years of progressive experience in information security, cybersecurity, network security, or infrastructure security.
- Experience administering and supporting Palo Alto Networks Firewalls.
- Experience working with Netskope Secure Service Edge (SSE) / Zero Trust solutions.
- Working knowledge of cloud security concepts within Microsoft Azure and Amazon Web Services (AWS).
- Experience with vulnerability management programs and security risk assessments.
- Hands-on experience supporting security audits, compliance reviews, and control testing.
- Understanding of IT General Controls (ITGCs) and security governance practices.
- Strong knowledge of security frameworks, best practices, and risk management principles.
- Excellent documentation, analytical, and problem-solving skills.
- Strong communication skills with the ability to interact effectively with technical teams, auditors, and executive leadership.
- Experience supporting SOX compliance and audit readiness programs.
- Industry certifications such as CISSP, CISM, CCSP, Security+, Palo Alto, Azure Security, or AWS Security certifications.
- Experience with hybrid infrastructure environments spanning cloud and on-premises systems.
- Familiarity with security operations, threat management, and incident response practices.
- Knowledge of identity and access management (IAM) and Zero Trust security architecture.
- Experience managing security-related risk exceptions and remediation programs.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search