Talent.com
Senior Security Engineer
Senior Security EngineerGoodLeap • Irvine, CA, US
Senior Security Engineer

Senior Security Engineer

GoodLeap • Irvine, CA, US
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Job Description

Job Description

About GoodLeap :

GoodLeap is a technology company delivering best-in-class financing and software products for sustainable solutions, from solar panels and batteries to energy-efficient HVAC, heat pumps, roofing, windows, and more. Over 1 million homeowners have benefited from our simple, fast, and frictionless technology that makes the adoption of these products more affordable, accessible, and easier to understand. Thousands of professionals deploying home efficiency and solar solutions rely on GoodLeap’s proprietary, AI-powered applications and developer tools to drive more transparent customer communication, deeper business intelligence, and streamlined payment and operations. Our platform has led to more than $30 billion in financing for sustainable solutions since 2018.

GoodLeap is also proud to support our award-winning nonprofit, GivePower, which is building and deploying life-saving water and clean electricity systems, changing the lives of more than 1.6 million people across Africa, Asia, and South America.

Position Summary

The GoodLeap security team is responsible for both business enablement and safeguarding the organization’s information assets; it is involved in virtually all aspects of the business, from product safety and resilience, to building security paved roads, customer, partner, and regulatory trust, managing technology governance and compliance, and ensuring the privacy, and safety of GoodLeap’s customers, partners, and employees information.

The senior security engineer role provides a unique opportunity to shape the security and resilience of GoodLeap corporate systems, services, and operational processes. In this role, you will work closely with product, engineering, IT, and business teams within GoodLeap, acting as the key individual with both the authority and responsibility to ensure the safety and resilience of enterprise systems, products, and services.

Your oversight will encompass :

  • Enterprise systems : Identifying potential misuse and abuse cases, proposing solutions to address these scenarios, and identifying product features, configuration settings, and / or mitigating or compensating controls to meet resilience requirements.
  • Build-time controls : Managing applications / products security controls and activities during development.
  • Runtime controls : Overseeing security measures at runtime, from prevention to detection and response.

Additionally, you will be involved with aspects of internally built products and represent all areas of security, spanning governance, risk, and compliance (GRC) to security monitoring, for a number of departments / teams. You will also have the authority and ability to involve other security team members as needed.

While you will take on multiple responsibilities—from advisor to builder and beyond—your primary focus will be designing and building security patterns and practices for services and processes, and fostering strong relationships with product, business, and engineering.

Essential Job Duties & Responsibilities

  • Lead, participate in, and contribute to partnerships between security, IT, General & Administrative teams, engineering, product, and operations teams to build, orchestrate, and automate security controls and services in GoodLeap enterprise systems, products, services, and operational processes.
  • Identify potential misuse and abuse cases in enterprise systems, propose solutions to address these scenarios, and identify product features, configuration settings, and / or mitigating or compensating controls to meet resilience requirements.
  • Support or develop components of the security analytics platform.
  • Contribute to investigations, threat hunting, and incident response activities in a supporting role.
  • Collaborate with the monitoring and response team to create playbooks for specific incident response scenarios related to the products and services you oversee. These investigations, incidents, and playbooks may address security, fraud, privacy, resilience, and related concerns.
  • Support the security operations team with the vulnerability management lifecycle for products and services under your purview.
  • Ensure technical alignment for the products and services you oversee with team initiatives, including GRC, security operations, and monitoring and response activities.
  • Required Skills, Knowledge & Abilities

  • Strong communicator with the ability to lead technical architecture discussions, drive technical decisions, and effectively communicate with non-technical audiences.
  • Expertise in agile product lifecycles. Ideally, you have experience in a product manager or engineering manager role and understand how SaaS products (B2B, B2B2C, and B2C) are built, including roadmap planning and feature and defect prioritization.
  • Experience with threat modeling methodologies, with the ability to create efficient and scalable approaches to conducting such assessments.
  • Familiarity with AWS services, including KMS, SST, Container Registry, ELBs, Lambda, API Gateway, CloudTrail, and IAM (knowledge of GCP and / or Azure is a plus).
  • Proven ability to establish credibility and build trust with business, engineers, and operational staff; confident yet humble.
  • Hands-on experience with managing security for core enterprise systems, e.g., ERP, HCM, Salesforce, etc.
  • Strong understanding of both human and non-human identity management and common enterprise and consumer authentication standards and use cases.
  • Practical experience with CI / CD pipelines and DevOps tools, including Infrastructure-as-Code (IaC) tools like Terraform, Pulumi, or CDK; GitHub and GitHub Actions; artifact management; and secrets management tools like Doppler and HashiCorp Vault.
  • Passionate about learning new technologies. While you're not expected to know everything, you should demonstrate a willingness and ability to learn as needed.
  • Prior experience interfacing and supporting with G&A teams, internal product teams, and other cross-functional areas.
  • Proficiency in writing automation scripts in multiple languages, with prior experience automating security processes in cloud or SaaS environments.
  • Experience engaging with vendors in design partnerships.
  • Experience overseeing vulnerability and threat management at the platform and application levels.
  • Familiarity with penetration testing and red team exercises, including manual verification, exploitation, and lateral movement.
  • Ability to balance a high-level view of security strategy with attention to detail, ensuring thorough and effective execution.
  • In addition to the above salary, this role may be eligible for a bonus.

    Additional Information Regarding Job Duties and Job Descriptions :

    Job duties include additional responsibilities as assigned by one's supervisor or other managers related to the position / department. This job description is meant to describe the general nature and level of work being performed; it is not intended to be construed as an exhaustive list of all responsibilities, duties and other skills required for the position. The Company reserves the right at any time with or without notice to alter or change job responsibilities, reassign or transfer job position or assign additional job responsibilities, subject to applicable law. The Company shall provide reasonable accommodations of known disabilities to enable a qualified applicant or employee to apply for employment, perform the essential functions of the job, or enjoy the benefits and privileges of employment as required by the law.

    If you are an extraordinary professional who thrives in a collaborative work culture and values a rewarding career, then we want to work with you!  Apply today!

    We are committed to protecting your privacy. To learn more about how we collect, use, and safeguard your personal information during the application process, please review our  Employment Privacy Policy  and  Recruiting Policy on AI .

    We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

    serp_jobs.job_alerts.create_a_job

    Senior Security Engineer • Irvine, CA, US

    Job_description.internal_linking.related_jobs
    Chief Engineer, Missile Defense

    Chief Engineer, Missile Defense

    Menlo Ventures • Laguna Beach, CA, United States
    serp_jobs.job_card.permanent
    True Anomaly seeks those with the talent and ambition to build innovative technology that solves the next generation of engineering, manufacturing, and operational challenges for space security and...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Systems Engineer, Air Defense

    Systems Engineer, Air Defense

    Anduril • Irvine, CA, US
    serp_jobs.job_card.full_time
    Anduril Industries is a defense technology company with a mission to transform U.By bringing the expertise, technology, and business model of the 21st century's most innovative companies to the def...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Security Project Manager

    Security Project Manager

    Confidential • Anaheim, California, United States
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Our company is seeking a full-time, enthusiastic, results-driven, and forward-thinking Security Project Manager to join our amazing culture. In this pivotal role, you'll ensure projects are executed...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30
    Senior Software Engineer

    Senior Software Engineer

    Hirsch • Santa Ana, CA, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Hirsch stands as a global leader in physical security, offering a comprehensive range of physical access control, video intelligence, and analytic-driven security solutions.Our mission is to empowe...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30
    Senior Security Architect

    Senior Security Architect

    TradeJobsWorkForce • 92612 Irvine, CA, US
    serp_jobs.job_card.full_time
    Senior Security Architect Job Duties : Enhances security team accomplishments and competence by planning deliv...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Software Engineer, Platform - Murrieta, USA

    Software Engineer, Platform - Murrieta, USA

    Speechify • Murrieta, CA, US
    serp_jobs.job_card.full_time
    The mission of Speechify is to make sure that reading is never a barrier to learning.Over 50 million people use Speechify's text-to-speech products to turn whatever they're reading – ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior SOC Security Analyst

    Senior SOC Security Analyst

    Jobot • Irvine, CA, United States
    serp_jobs.job_card.full_time
    Litigation Paralegal Position- Boutique Law Firm / Cutting Edge Technology / Amazing Benefits!.This Jobot Job is hosted by : Anne-Laure McGrory. Are you a fit? Easy Apply now by clicking the "Apply" butt...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    FIPS Compliance Engineer

    FIPS Compliance Engineer

    Broadcom • Trabuco Canyon, CA, US
    serp_jobs.job_card.full_time
    The Sr FIPS Compliance Engineer performs assessments of cryptographic security functions including in their use of Cloud Services. consults in development of a product's security design; tests and ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    BEST - Technical Sales - Security Systems - Irvine, CA

    BEST - Technical Sales - Security Systems - Irvine, CA

    Johnson Controls • Irvine, CA, US
    serp_jobs.job_card.full_time +2
    Early Career Sales Engineering Program.Build your best future with the Johnson Controls Team.As a global leader in smart, healthy and sustainable buildings, our mission is to reimagine the performa...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Safety Engineer

    Safety Engineer

    Pentangle Tech Services | P5 Group • Irvine, CA, US
    serp_jobs.job_card.full_time
    Position : CAE Occupant Safety engineer.Duration : 6 months possible with extension.Technical recruiter hiring for IT, Techno functional, and Non-IT, Cyber Security, Engineering role.Develop, correla...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Associate Engineer

    Senior Associate Engineer

    ReadyOntario • Ontario, CA, US
    serp_jobs.job_card.full_time +1
    Senior Associate Engineer (Revised) – City of Ontario.Expand Your Engineering Career with the City of Ontario.The application cycle is extended to receive additional applications.Applications will ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Cyber SDC- M365 Security Operations Lead Engineer - Senior - Consulting - Location Open

    Cyber SDC- M365 Security Operations Lead Engineer - Senior - Consulting - Location Open

    Ernst & Young Oman • Irvine, CA, US
    serp_jobs.job_card.full_time
    At EY, we're all in to shape your future with confidence.We'll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.Join EY and help ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    10390 - Security Engineer II

    10390 - Security Engineer II

    Hyundai Autoever America • Fountain Valley, CA, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Security Engineer II Location : .Fountain Valley, CA (5-days onsite) Company Overview Hyundai AutoEver America (HAEA), a subsidiary of Hyundai and Kia Motor Companies, provides premier IT services ac...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30
    Software Engineer, Platform - Menifee, USA

    Software Engineer, Platform - Menifee, USA

    Speechify • Menifee, CA, US
    serp_jobs.job_card.full_time
    The mission of Speechify is to make sure that reading is never a barrier to learning.Over 50 million people use Speechify's text-to-speech products to turn whatever they're reading – ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Investigator-Security Ops

    Senior Investigator-Security Ops

    Verizon • Irvine, CA, US
    serp_jobs.job_card.full_time +1
    When you join Verizon, you want more out of a career—a place to share your ideas freely and to learn, grow, and thrive.At Verizon, we power and empower how people live, work and play by connecting ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Information Technology Specialist I - Physical Security Engineer

    Information Technology Specialist I - Physical Security Engineer

    City of Irvine • Irvine, CA, US
    serp_jobs.job_card.full_time
    The Information Technology team at the City of Irvine is seeking a proactive and knowledgeable Physical Security Engineer to join a high-performing team dedicated to safeguarding the City's critica...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Security Operations Admin

    Security Operations Admin

    ManpowerGroup • Irvine, CA, US
    serp_jobs.job_card.full_time
    Security Operations Administrator (Endpoint Security Lead).Fully Remote (Company Based in Irvine, CA).The Security Operations Admin is a specialized role focused on the strategic ownership and day-...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Security Specialist, Intelligence Systems

    Senior Security Specialist, Intelligence Systems

    Anduril • Santa Ana, CA, US
    serp_jobs.job_card.full_time
    Senior Security Specialist, Intelligence Systems.Anduril Industries is a defense technology company with a mission to transform U. By bringing the expertise, technology, and business model of the 21...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Security Specialist, Intelligence Systems

    Senior Security Specialist, Intelligence Systems

    Clearance Jobs • Santa Ana, CA, US
    serp_jobs.job_card.full_time
    Anduril Industries is a defense technology company with a mission to transform U.By bringing the expertise, technology, and business model of the 21st century's most innovative companies to the def...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Dam Safety Engineer / FERC Independent Consultant

    Senior Dam Safety Engineer / FERC Independent Consultant

    HDR • Claremont, CA, US
    serp_jobs.job_card.full_time +1
    Senior Dam Safety Engineer / FERC Independent Consultant.Senior Dam Safety Engineer / FERC Independent Consultant.Senior Dam Safety Engineer / FERC Independent Consultant. Be among the first 25 applica...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted