Information Security Lead

Addison Group
Los Angeles, CA, United States
1 day ago
Apply on www.thejobnetwork.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$125,000.0 - $165,000.0
Working hours
Regular working hours

Tech stack

Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security CompTIA Security+ Cyber Security Identity and Access Management Network Security Phishing Zero Trust Network Access Software Vulnerability Management IT General Controls (ITGC)
+2 more
Firewalls (Computer Science) Palo Alto Networks

Job description

Our client is seeking a Senior Information Security Lead to serve as the primary owner of enterprise security controls, security governance, and audit readiness initiatives across a hybrid technology environment. This is a hands-on individual contributor role responsible for designing, implementing, monitoring, and continuously improving network and information security controls across cloud and on-premises platforms.

The ideal candidate will combine strong technical cybersecurity expertise with the ability to support compliance, risk management, internal audits, and executive-level reporting. This position plays a critical role in maintaining security posture, driving remediation efforts, managing security exceptions, and ensuring ongoing readiness for regulatory and audit requirements.

This role is approximately 70% technical and 30% governance, compliance, and stakeholder engagement., * Design, implement, and maintain enterprise security controls across hybrid environments.

  • Serve as the primary security control owner for network, cloud, and information security initiatives.
  • Manage and optimize security technologies including firewalls, secure access platforms, vulnerability management tools, and cloud security controls.
  • Lead vulnerability management efforts, including identification, prioritization, remediation tracking, and reporting.
  • Conduct and coordinate phishing simulations, security awareness initiatives, and risk reduction activities.
  • Partner with internal and external auditors to support audit requests, evidence collection, and compliance reviews.
  • Maintain security documentation, policies, standards, procedures, and control evidence.
  • Support SOX compliance efforts and IT General Controls (ITGC) audit readiness.
  • Manage security findings, control deficiencies, remediation plans, and risk exceptions.
  • Collaborate with infrastructure, cloud, networking, and application teams to strengthen security posture.
  • Provide security-related guidance and recommendations to technical teams and business stakeholders.
  • Communicate risks, remediation status, and security initiatives to leadership and executive stakeholders.

Requirements

  • 5+ years of progressive experience in information security, cybersecurity, network security, or infrastructure security.
  • Experience administering and supporting Palo Alto Networks Firewalls.
  • Experience working with Netskope Secure Service Edge (SSE) / Zero Trust solutions.
  • Working knowledge of cloud security concepts within Microsoft Azure and Amazon Web Services (AWS).
  • Experience with vulnerability management programs and security risk assessments.
  • Hands-on experience supporting security audits, compliance reviews, and control testing.
  • Understanding of IT General Controls (ITGCs) and security governance practices.
  • Strong knowledge of security frameworks, best practices, and risk management principles.
  • Excellent documentation, analytical, and problem-solving skills.
  • Strong communication skills with the ability to interact effectively with technical teams, auditors, and executive leadership., * Experience supporting SOX compliance and audit readiness programs.
  • Industry certifications such as CISSP, CISM, CCSP, Security+, Palo Alto, Azure Security, or AWS Security certifications.
  • Experience with hybrid infrastructure environments spanning cloud and on-premises systems.
  • Familiarity with security operations, threat management, and incident response practices.
  • Knowledge of identity and access management (IAM) and Zero Trust security architecture.
  • Experience managing security-related risk exceptions and remediation programs., The ideal candidate is a senior cybersecurity professional who enjoys remaining highly technical while also serving as a trusted advisor for security governance, risk, and compliance activities. This individual is comfortable working independently, partnering with auditors and executives, driving remediation efforts, and maintaining a secure, audit-ready environment without direct people management responsibilities.

Benefits & conditions

health insurance

disability insurance

life insurance

retirement plans (like a 401(k))

paid time off (PTO) including vacation and sick days

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.thejobnetwork.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

10:35 min

Teaching and coaching security concepts for lasting impact

Tanya Janca · World Congress 2021

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:06 min

Outline of free tools for Microsoft Azure

Radu Vunvulea Radu Vunvulea · World Congress 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · World Congress 2026 Europe

Videos

See all

Related articles

See all