Skip to content
← Back to job listings

Lead Security Engineer

Fictiv · Oakland, United States

Imported listingfull-time25 days ago

About The Role

Join MISUMI Americas as a Lead Security Engineer, where you'll be responsible for securing our infrastructure, running access audits, setting up controls, reviewing systems and code, and investigating incidents. You'll have a significant impact on our security policies and priorities, and you'll manage our AI tools and contribute to various compliance programs. This is a hands-on role that requires senior-level expertise in various security domains and a strong understanding of AI security.

  • Lead the security day-to-day work, including securing infrastructure, running access audits, setting up controls, and reviewing systems and code.
  • Make security decisions and help prioritize security projects across MISUMI Americas' global operations, including managing AI tools and determining their safety.
  • Act as the escalation point for routine security issues, coordinate incident response, and help investigate incidents both hands-on and by coordinating the response.
  • Solid application security skills: automation tooling, reading code for security issues, and secure integration practices
  • A habit of turning manual security work into repeatable processes and automation
  • Senior-level, proven expertise across the security domains this role touches: identity and access management, infrastructure and cloud security, governance and compliance, incident response and investigation, application and integration security, and AI/LLM security
  • Experience supporting audit and compliance programs like SOC 2, NIST 800-53/800-171, CMMC 2.0, and J-SOX, including gathering evidence and validating controls
  • Cloud security experience (AWS, Azure, or similar), and comfort designing roles and RBAC in platforms like Microsoft Entra ID, Okta, or AWS IAM
  • Clear communication and the ability to work across a spread-out, multi-site, global organization
  • Strong, hands-on experience securing infrastructure across networking and cloud, including firewalls and segmentation on the network side and IAM, security groups, permission policies, and application permissions on the cloud side
  • Hands-on incident investigation experience, and the judgment to act as an escalation point on user-facing threats like phishing and spam
  • Real experience running user access audits, access reviews, and compliance checks
  • A working understanding of AI and LLM security, including administering AI tools, weighing new capabilities for risk, and knowing how integrations like MCP servers fit in
  • The confidence to make security decisions on your own and help sort out competing priorities
  • Familiarity with security monitoring and detection tools, enough to support investigations effectively
  • We’re actively seeking teammates who:
  • Excel at being part of a strong, empathetic team
  • Have an ‘always learning’ mindset that celebrates learning, not just wins
  • Thrive in an environment emphasizing respect, honesty, collaboration, and growth
  • Bring diverse perspectives and experience to our culture and company
  • Help us continue to build a world-class organization that values the contributions of all of our teammates
  • Certifications like CISSP, CISM, Security+, or GIAC (GSEC, GCIH, and the like)
  • Experience with audit and controls at a global, Japanese-owned company (J-SOX exposure)
  • Firsthand experience preparing for and going through a CMMC 2.0 assessment
  • Scripting and automation skills, for example, Bash, Python or PowerShell

This is an external listing. JobSpring does not represent or verify the employer. Report this listing