Designs, implements, and maintains cybersecurity controls across identity, network, endpoint, server, cloud, and infrastructure platforms. Develops IAM and privileged-access frameworks, supports vulnerability management, monitors alerts, investigates incidents, and participates in containment and recovery. Reviews architectures, documents controls, supports audits and regulatory compliance, and coordinates remediation with IT and business stakeholders. The role requires daily onsite work in Chatsworth and focuses on financial-sector security standards, risk management, and continuous process improvement.
Description
Job Title: IAM Information Security Engineer – Chatsworth Onsite Daily
Overview:
- The IAM Information Security Engineer is responsible for designing, implementing, and maintaining security controls that protect the credit union’s systems, infrastructure, and data.
- This role ensures security capabilities are preventive, detective, and responsive, while maintaining compliance with regulatory requirements. The engineer works closely with IT, Infrastructure, Cloud, and Application teams to embed security into daily operations and ensure audit readiness.
- Implements the enterprise Identity and Access Management (IAM) framework, governing how employees, contractors, and temporary staff are granted role-based access to systems and applications.
- Maintains the documentation for certification and accreditation of each information system in accordance with Federal Financial Institutions Examination Council (FFIEC) requirements.
- Assesses the impacts on system modifications and technological advances. Additionally, review systems to identify potential security weaknesses, recommend improvements to amend vulnerabilities, implement changes and document upgrades and familiarization with National Institute of Standards and Technology (NIST).
What You Will Do:
- Security Engineering & Operations: Design, implement, and maintain security controls across network, endpoint, server, cloud, and identity platforms.
- Configure, tune, and support security tools including (but not limited to): Endpoint Detection and Response (EDR/XDR), Network security controls (firewalls, segmentation, IDS/IPS) Identity and Access Management (IAM), MFA, and privileged access controls Vulnerability management and configuration hardening tools.
- Monitor security alerts, investigate suspicious activity, and support incident containment and remediation efforts.
- Vulnerability & Threat Management : Work with IT teams to prioritize remediation based on risk, exposure, and business impact. Track remediation progress and validate corrective actions.
- Incident Response & Resilience team membership: Participate in security incident response activities, including detection, investigation, containment, and recovery, forensic data collection and evidence preservation as required. Provide technical input into risk assessments, vendor reviews, and exception requests.
- Review system designs and architecture for security risks and control gaps.
- Develop and implement IAM framework. Partner with various stakeholders in the credit union to ensure that proposed processes meet regulatory requirements and best practices.
- Help team members to determine security requirements for business processes and technology systems based upon generally accepted risk analysis methods, functional and performance requirements, information security architecture principles, and market-leading solutions.
- Support the team in the creation, tracking, and completion of any compliance findings related to identity and access management.
- Participate in audit related activities as they pertain to IT access for internal and external audits.
- Stays abreast of changes and improvements in systems and technology.
- Assumes responsibility for establishing and maintaining effective communication and coordination with Company personnel and with Management.
- Keeps management informed of area activities and of any significant problems.
- Completes required reports, records, and other documentation.
- Assumes responsibility for ensuring professional business relations exist with vendors and trade professionals.
- Ensures requests, questions and problems are courteously and professionally resolved. Ensures communications are efficient and effective.
- Completes required reports, records, and other documentation.
- Help drive continuous quality and process improvement within InfoSec and IT.
Requirements
What We Are Looking For:
- Minimum 5 years of experience in information security engineering, infrastructure security, or related roles with experience in developing and implementing access management frameworks.
- Must have experience with Microsoft Active Directory and Agile, DevSecOps and ITIL practices.
- Bachelor’s degree in Information Security, Computer Science, Information Technology, or equivalent experience.
- Certification required in one or more of the following: ISC2 Cybersecurity (CC), Certified Information Security Manager (CISM), GIAC or Security+.
- Knowledge of identity lifecycle and governance processes. Understanding of Technology and solutions for financial services such as Jack Henry.
- Cross-functional understanding of the organization and all lines of business.
- Hands on experience securing, Windows and/or Linux server environments, Network infrastructure and firewalls.
- Identity systems and privileged access management. Strong understanding of cybersecurity principles including least privilege, defense in depth.
- Ability to document technical controls clearly for audit and executive audiences.
- Experience in a financial institution or highly regulated environment. Familiarity with ISO, NIST Cybersecurity Frameworks, CIS Controls, or similar standards.
- Experience with cloud security (Azure & AWS). Security certifications such as ISC2 CC/ SSCP/CCSPCISM, GIAC, Security+, or vendor specific credentials.
- Experience supporting security tooling such as SIEM, PAM, vulnerability scanners, and/or EDR platforms.
- Extremely detailed oriented.
- Ability to think outside the box to create unique solutions to specific needs.
- Powerful oral, written and presentation capabilities adapted to communicate clearly and concisely with executive, business, and technical audiences.
Pay Grade Info:
The base pay range for this position is: 130-140k annually.
Equal Opportunity Employer – Veterans / Disabled
Drug-free Workplace
Perks Important to You:
Our Team Members enjoy the following rewards and benefits:
· Competitive pay
· Subsidized health care including medical, dental and vision
· FSA and HSA
· Company-Paid Life and A&D insurance
· Discounts on loans (must be a member)
· Paid Vacation, Holiday, and Sick time
· 401k Retirement Saving Plan with a 6% safe harbor employer match
· Educational Assistance Program and more!
Similar Jobs
Software • Database • Facilities Maintenance
Full-cycle enterprise sales role responsible for prospecting, developing, qualifying, and closing deals with large, multi-stakeholder organizations. The position sells FacilitiesLink, a facilities information platform for planning, building, and operating large-scale campus environments. Compensation includes 50% commission, a $20-per-hour guaranteed draw, and on-target earnings starting at $150,000 annually. Flexible work arrangements are available, with occasional travel required.
Top Skills:
Enterprise DatabasesFacilities Information SystemsFacilitieslink
Edtech • Fintech • Payments • Social Impact • Financial Services • Big Data Analytics
Leads and scales the implementation team, manages and mentors implementation specialists, optimizes deployment playbooks, oversees implementation risk and quality, handles executive escalations, and partners with Sales, Product, Engineering, and Client Success. Tracks implementation KPIs, resource utilization, backlogs, and CRM data integrity while driving faster customer time-to-value, retention, and account growth.
Top Skills:
Google SuiteHubspotExcel
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Leads complex, cross-functional web programs from planning through delivery, including website launches, digital campaigns, development initiatives, and continuous improvements. Owns program plans, schedules, resources, risks, dependencies, documentation, and stakeholder communications. Coordinates Creative, IT, marketing, campaigns, developers, agencies, and consultants; translates business objectives into roadmaps; supports Agile delivery; and establishes scalable digital processes and best practices.
Top Skills:
AgileAirtableArtificial IntelligenceGoogle SheetsGoogle WorkspaceJIRAKanbanSalesforceScrumTableau
What you need to know about the Boston Tech Scene
Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.
Key Facts About Boston Tech
- Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
- Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
- Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
- Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories



