Infrastructure Engineer (Networking + Okta/Security)

Maven Companies10 days ago
San Francisco, CA, United States
Hybrid
Full-time
Junior Level (1-3 years)

Job Description

Job Summary

We are seeking an experienced Network & Information Security Professional to lead enterprise-wide cybersecurity initiatives across complex on-premises and cloud environments. The ideal candidate will have strong expertise in Security Operations, Compliance, Identity & Access Management, and Cloud Security, with hands-on experience in PCI-DSS regulated financial environments.

This role will be responsible for designing resilient security architectures, driving compliance initiatives, leading vulnerability management programs, and securing enterprise infrastructure across 100+ endpoints.

Key Responsibilities

Security & Compliance Leadership

  • Lead cybersecurity initiatives aligned with PCI DSS, ISO 27001, SOC 1 & SOC 2, and NIST frameworks
  • Ensure 100% compliance across audited systems through governance and control implementation
  • Conduct quarterly penetration tests and weekly vulnerability scans
  • Collaborate with Compliance teams to develop and validate security test cases
  • Drive continuous infrastructure hardening and risk mitigation strategies

Cloud & Infrastructure Security

  • Secure AWS cloud infrastructure using:
  • Lead migration of on-premises data center infrastructure to AWS Cloud
  • Manage DLP and Web Proxy security configurations

Security Operations & Threat Management

  • Monitor and manage enterprise security using:
  • Splunk/Wiz/CrowdStrike
  • Correlate logs from multiple security devices to identify attack patterns
  • Apply framework for threat modeling and detection
  • Automate security workflows to reduce incident response time
  • Lead vulnerability management

Identity & Access Management (IAM)

  • Deploy and manage MFA solutions (Google Authenticator, FortiToken, Duo)
  • Onboard and manage applications in Okta
  • Enforce least-privilege access controls
  • Manage digital certificates

Network Security & Administration

  • Configure and manage:
  • Cisco 2851 ISR routers
  • Layer 2/Layer 3 switches
  • FortiGate & Cisco ASA firewalls
  • Implement OSPF routing protocols
  • Configure VLANs, STP, EtherChannel, ACLs, and Inter-VLAN routing
  • Perform IOS upgrades and system patching
  • Manage DHCP scopes and IP address reservations
  • Monitor network logs for troubleshooting and audit readiness

Required Skills

NIST Frameworks
Okta
Vulnerability Management
Information Security
Threat Management
Data Loss Prevention (DLP)
Network Security
Cisco ASA
Cloud Security
Splunk
Cybersecurity
Identity & Access Management
SOC 1 & SOC 2
AWS Cloud Security
Multi-Factor Authentication
ISO 27001
FortiGate Firewalls
PCI DSS Compliance