Cyber Defense Specialist, Senior

Blue Shield of California
Oakland, CA, United States
27 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$102,740.0 - $154,220.0
Working hours
Regular working hours
Job source

Tech stack

Antivirus Softwares Cyber Security Computer Networks Identity and Access Management Intrusion Detection and Prevention Network Intrusion Detection Systems Nmap Phishing Web Application Security Security Information and Event Management Wireshark Cybercrime
+3 more
Malware Detection Cyber Warfare Security Orchestration, Automation & Response

Job description

The Information Security team is looking for a certified security professional to join our fast paced, highly collaborative, and diverse team of talent. Our mission is to provide operationally excellent next-generation information security event monitoring, threat hunting, and incident response services that protect our customers from adverse cyber events. The Cyber Defense Specialist, Senior will report to the Senior Manager of Information Security Operations. In this role you will utilize industry leading technology to detect, respond, and recover from advanced attacks and apply root cause analysis and lessons learned to proactively protect against known adversary tactics, techniques, and procedures, prevent impact of our customer’s assets, and control recurrence of incidents.

Your Work

In this role, you will:

  • Provide advanced network intrusion monitoring of and response including performing security incident risk assessment and severity declaration
  • Perform expert level endpoint detection and response (EDR)
  • Analyze application and web security events
  • Interpret logs for expert level threat hunting to identify and respond to indicators of compromise (IOCs) and threats including User and Event Behavioral Analytics (UEBA) using a security information and event management (SIEM) environment
  • Perform incident response containment
  • Utilize Security Orchestration, Automation, and Response (SOAR) of information security incidents
  • Respond and facilitate tier-3 incident management; mobilize security incident response team (SIRT) of key stakeholders; communicate and notify at all levels of the organization; perform post-incident activity involving root cause analysis (RCA) and lesson learned assessments and identify owners of correction action plans (CAP)
  • Formulation of security operation incident response plan, operational procedures, desk level procedures, and operational level agreements
  • Yield security compliance evidence of NIST 800-53 controls, Employees living more than 50 miles from an office location will work with their manager to determine in-office time based on business need.

Requirements

  • Typically, requires advanced knowledge of job area typically obtained through advanced education combined with experience. May have practical knowledge of project management.
  • Typically, requires a college degree or equivalent experience and minimum 5 years of prior relevant experience.
  • GCIH certification preferred
  • CISSP certification preferred
  • Security event monitoring and incident response.
  • Security Information Event Management (SIEM) searching.
  • Intrusion detection and network tools; Wireshark, Nmap.
  • Anti-virus and malware detection.
  • Social engineering and phishing detection.
  • Identity & Access Management.
  • Incident Response
  • Managed Defense

About the company

Stellarus, launched in January 2025, is designed to scale innovative healthcare solutions that support customers in creating a health care experience deserving of their family, friends, and neighbors.

Stellarus is part of a family of organizations that is overseen by a nonprofit corporate entity named Ascendiun. The Ascendiun Family of Companies also includes Blue Shield of California and its subsidiary, Blue Shield of California Promise Health Plan and Altais, a clinical services company.

Stellarus’ vision is to empower its customers to create a healthcare experience that is worthy of their family, friends, and neighbors. Stellarus’ objective is to offer innovative, modern, scalable solutions that challenge the health care status quo. This very closely aligns with Blue Shield of California’s vision by using innovation to improve quality, affordability, and experience for members.

To achieve our mission, we foster an environment where all employees can thrive and contribute fully to address the needs of the various communities we serve. We are committed to creating and maintaining a supportive workplace that upholds our values and advances our goals.

Our Values:

At Stellarus, our core values of agility, trust, drive, courage and service shape our approach to developing innovative product offerings.

Our Workplace Model:

We believe in fostering a workplace environment that balances purposeful in-person collaboration with flexibility - providing clear expectations while respecting the diverse needs of our workforce. Our workplace model is designed around intentional in-person interaction, collaboration, connection, creativity and flexibility:

  • For most teams, this means coming into the office two days per week.
  • Employees living more than 50 miles from an office location, out of state employees, and employees in certain member-facing roles should work with their manager to determine in-office time based on business need.
  • For employees with medical conditions that may impact their ability to work in-office, we are committed to engaging in an interactive process and providing reasonable accommodations to ensure their work environment is conducive to their success and well-being.

The Company reserves the right to require more presence in the office based on business needs, and requirements are subject to change with periodic reviews.

Physical Requirements:

Office Environment - roles involving part to full time schedule in Office Environment. Based in our physical offices and work from home office/deskwork - Activity level: Sedentary, frequency most of work day.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:19 min

Setting up a vulnerable test application and monitoring environment

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2024

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

1:52 min

Refining the agent by automating physical hardware restarts

Marc Plogas Marc Plogas · World Congress 2026 Europe

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:48 min

Analyzing network packets with database protocol tools

Daniël van Eeden Daniël van Eeden · World Congress 2026 Europe

Videos

See all

Related articles

See all