C

Senior System and Security Engineer

Coasthills Federal Credit Union
3 days ago
Full-time
On-site
Santa Maria, California, United States
$122,500 - $140,000 USD yearly
Cybersecurity & InfoSec

SUMMARY

 

The Senior Systems and Security Engineer designs, implements, supports, and maintains the Credit Union’s on-premise and cloud-based systems and security infrastructure. You will identify vulnerabilities, develop and apply protective measures, harden systems, automate processes, and ensure compliance and reliability. Reporting to the IT Manager, you will establish standards, processes, and ongoing controls to safeguard IT operations against unauthorized access, modification, or loss.


ESSENTIAL FUNCTIONS

 

Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. The following statements are intended to describe the general nature and level of work being performed by this position. It is not intended to be an exhaustive list of all duties, responsibilities, and skills required of this position. Other duties may be assigned to meet business needs.

 

Administer Active Directory, including security, auditing, Group Policies, and SSO integration to third-party applications.


Manage daily security operations: oversee patching, virus updates, third-party software deployments, email security (Office 365 and Barracuda), and Microsoft Defender Threat Protection.


Ensure servers, applications, and backups are reliable, efficient, and replicating to the disaster recovery site.


Develop and enforce standard security requirements, technical designs, and hardened configurations for servers, workstations, and printers.


Maintain up-to-date security policies, processes, and documentation.


Research, recommend, and implement tools/solutions to strengthen systems security and administration.


Create PowerShell, Batch, and other scripts/automation to enhance security and operational efficiency.

Analyze security systems and logs to detect vulnerabilities, threats, and issues; recommend and develop mitigations.


Evaluate system/software requirements and provide security recommendations.


Support tier-2 troubleshooting and resolution of system issues.


Contribute to the physical security program and other monitoring initiatives.


Collaborate with the Senior Network and Security Engineer to align security practices.


Participate in business continuity and disaster recovery testing; respond to disruptions, execute recovery for critical systems (network, phone, PCs, email), and recommend policy updates.


Review and update Disaster Recovery/Business Continuity plans; lead annual DR tests and present results to leadership, risk assessment, and auditors.


Monitor emerging security trends, technologies, and standards; maintain in-depth knowledge.


Recommend online compliance training courses in partnership with HR and Learning & Development.


Participate in required training and deliver monthly security reports to the Information Security Committee.


Assist with department budget preparation.


Perform other duties as assigned, including occasional branch work.


QUALIFICATIONS

 

The qualifications listed below are representative of the knowledge, skill and/or ability required to perform the essential functions of this position.


Education and Experience

Bachelor’s degree in Computer Science, Information Security, or related technical field, or a minimum of ten years equivalent combination of education, training, and experience.


Certificates, Licenses and Registrations

CompTIA Security+ (equivalent or higher security) or ability to get within 6 months of employment
 Microsoft Certified Systems Administrator (MCSA)

Microsoft Certified Systems Engineer (MCSE) -- or

Microsoft Certified Information Technology Professional (MCITP) - Preferred


Knowledge

Strong proficiency in: Active Directory, Azure, Intune, VMware vSphere/vCloud, Citrix VDI, Microsoft Defender, Windows Server/Workstation, Microsoft 365, Veeam, PDQ, Netrix.

Expertise in Windows services (DNS, DHCP, DFS, SQL, IIS, Group Policies).

Scripting and automation (PowerShell and Batch).

PCI Compliance, disaster recovery, and security best practices.


Other Skills and Abilities

Operates a variety of office equipment and machines.

Travels, attends, and participates in meetings, seminars, and conferences held before and after normal business hours that may require unaccompanied long-distance travel and overnight lodging.

Ability to work a variety of hours, including evenings and weekends.


AFFIRMATIVE ACTION/EEO STATEMENT:

CoastHills is an Equal Opportunity/Affirmative Action employer. We will consider all qualified applicants for employment without regard to race, color, religion, ancestry, gender, pregnancy, sex, sexual orientation, transitioning status, gender identity, gender expression, national origin, age, genetic information, military and veteran status, marital status, medical condition, mental disability, physical disability, or any other basis protected by local, state, or federal law. 

 

For our EEO Policy Statement, please click here. If you’d like more information on your EEO rights under the law, please click here