Senior Information Security Lead
$125k - $165kGenesis Capital LLC
Genesis Capital (the "Company") is one of the largest business purpose lenders in the country, focused on providing commercial real estate financing solutions to real estate developers who buy, renovate, and sell single-family and/or multi-family residential real estate. The Company is a subsidiary of Rithm Capital (parent company), a publicly traded mortgage real estate investment trust.
The Senior Information Security Lead is a hands-on senior individual contributor responsible for designing, operating, and governing Genesis Capital's network and information security controls across a hybrid environment (Microsoft 365, Azure, AWS, and on-prem). This role serves as the primary security control owner and internal audit gatekeeper for security-relevant IT General Controls (ITGCs), including responsibility for SOX audit readiness, evidence quality, deficiency remediation, and risk exception governance. The position combines deep technical execution with independent judgment, strategic thinking, documentation rigor, and executive-level communication, without managing a team. Principal Duties: ESSENTIAL FUNCTIONS include the following. Other duties may be assigned. Network Security (Hands-On Ownership)- Design, configure, and maintain enterprise network security controls, including Palo Alto firewalls , rulebases, segmentation, and secure connectivity patterns.
- Own and operate the Netskope Zero Trust / SSE platform, including access policies, data protection rules, and monitoring.
- Define and enforce network security standards (Zero Trust principles, segmentation, logging, egress controls) and validate adherence through configuration reviews and monitoring.
- Perform regular firewall, SSE, and network control reviews to identify risk, over-permissive access, and audit exposure.
- Own the vulnerability management lifecycle using Qualys , including scan coverage, severity thresholds, remediation SLAs, and verification.
- Assign and track remediation actions across IT teams; independently validate closure through rescans and evidence review.
- Govern patching and hardening outcomes across infrastructure and cloud services, ensuring results meet security and audit requirements.
- Enforce security-related change control expectations, including documentation quality and emergency change review.
- Information Security Controls & Governance
- Enforce information security policies across Microsoft 365, Azure, AWS, and on-premise systems , translating policy into enforceable technical controls.
- Conduct security risk assessments for new systems, architecture changes, and third-party integrations; document risks and required controls.
- Operate and continuously improve security monitoring and alerting (including SIEM tooling where applicable).
- Research emerging threats and technologies and recommend security improvements aligned to business risk.
- Act as the single point of contact for internal and external auditors for SOX and security-related audits .
- Serve as named control owner for assigned security and infrastructure ITGCs, with responsibility for:
- Control design and documentation (narratives, procedures, evidence standards)
- Evidence completeness, accuracy, and timeliness
- Walkthroughs and auditor inquiries
- Deficiency analysis, remediation planning, and validation of closure
- Maintain audit-ready documentation and evidence repositories throughout the year.
- Act as the security approval authority for exceptions, compensating controls, and risk acceptances.
- Document business justification, compensating controls, and expiration dates for accepted risks.
- Escalate material or systemic risks to executive leadership with clear impact analysis and recommendations.
- Lead technical incident response activities, including containment, root-cause analysis, and corrective action tracking.
- Maintain incident response and disaster recovery documentation; coordinate testing, tabletop exercises, and lessons learned.
- Conduct periodic phishing simulation testing and analyze results to drive targeted remediation.
- Conduct quarterly User Access Reviews for SOX-scoped applications and ensure timely remediation of findings.
- Review identity, access, and protection reports to identify control weaknesses and audit exposure.
- Prepare clear, executive-level reporting on:
- Risk posture
- Vulnerability trends and mitigations
- Audit status and findings
- Control effectiveness and exceptions
- Bachelor's degree in Computer Science or related field, or equivalent experience.
- 7+ years of progressive experience in network security and information security within a regulated or sensitive environment (financial services strongly preferred).
- Hands-on experience securing Microsoft 365, Azure, AWS , and hybrid/on-prem environments.
- Strong expertise with firewalls , z ero trust , and vulnerability management
- Strong knowledge of Windows/Linux, VMWare, SQL Server, Active Directory, and networking.
- Demonstrated experience acting as primary audit contact and control owner for SOX or similar regulatory audits.
- Working knowledge of ISO 27000, SOX, PCI, and GLBA control expectations.
- Experience with Juniper and Cisco/Meraki network switches, a plus.
- Excellent written and verbal communication skills, including audit-ready documentation and executive briefing
- Ability to manage IT projects and support strategic initiatives.
- Hands-on experience with SIEM systems and open-source security tools.
- Security certifications (preferred): CISSP, CISM, CCSP, or equivalent.
- Independent ownership and accountability
- Strong risk-based judgment and business acumen
- Ability to say "no" and document defensible decisions
- Detail-oriented with audit-quality rigor
- Comfortable operating as a senior individual contributor authority without formal management responsibilities
By applying to this position candidate acknowledges that this is not a remote role and is required to be on-site. Compensation Range: $125,000 - $165,000/annual Equal Employment Opportunity
We're proud to be an equal opportunity employer- and celebrate our employees' differences, including race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, and Veteran status. Different makes us better. CA Privacy Policy CA Notice at Collection
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Senior Information Security Lead in Los Angeles, CA vacancy
- Ernst & Young Oman is seeking an Assistant Director in the Information Security Portfolio Compliance Enablement function to ensure compliance with Information Security policies. You will work with global teams to strengthen EY's risk posture through effective compliance...SeniorFlexible hours
$125k - $165k
...Senior Information Security Lead Genesis Capital (the "Company") is one of the largest business purpose lenders in the country, focused on providing commercial real estate financing solutions to real estate developers who buy, renovate, and sell single-family and/or...Senior- Satwic Inc is seeking a senior-level professional in Information Security for a hybrid role in Los Angeles. The ideal candidate will have a Bachelor's degree in a relevant field and 7-10 years of experience in architecting DLP and CASB environments. Strong project management...SeniorImmediate start
- An innovative security consultancy is seeking an IT Training Specialist in Los Angeles to support its Information Security Program. This role involves designing and developing IT solutions while serving as a liaison between IT architects and security engineering teams....Senior
$170k - $200k
A leading environmental consulting firm based in California is seeking a full-time Principal to lead their Environmental Team. This senior position requires 10 - 15+ years of experience in overseeing CEQA and/or NEPA documentation, alongside proven skills in project management...SeniorFull time- Northrop Grumman seeks a Principal Program Cost Control Analyst in Los Angeles to improve financial performance in the Advanced Weapons Systems Operating Unit. Candidates must have a degree in Accounting, Finance, or Business Administration along with several years of experience...Senior
- The Senior Post Lead is responsible for overseeing day-to-day operations within the stadium, ensuring a safe, efficient, and exceptional experience for guests, staff, and vendors. This role combines leadership, problem-solving, and hands-on supervisiSenior
- ...A leading entertainment company is seeking a Sr Live Event Technology Specialist to oversee global live streaming events. This role involves ensuring reliable delivery and high-quality streaming performances, managing potential issues, and coordinating with various teams...Senior
- ...A technology solutions company is seeking a Senior ABM Specialist to develop campaigns targeting enterprise accounts. Candidates should have at least 2 years of experience in Account-Based Marketing, B2B environments, and Email Marketing. The role offers work-from-home...SeniorRemote workWork from home
- ...A leading telehealth organization is seeking a Claims Follow-Up Lead for a fully remote position. The ideal candidate will resolve denials, manage accounts receivable, and support workflow execution within a mission-driven team. Candidates should have 3-5+ years in behavioral...SeniorRemote workFlexible hours
- Slope is seeking a Senior VFX Supervisor in Los Angeles. This leadership role will drive the integration of cutting-edge technologies into our VFX workflows. The ideal candidate has over 10 years of experience in visual effects, showcasing leadership skills and expertise...Senior
- ...Senior Vice President, Divisional Lead, Property and Casualty Insurance About the Company Top-tier insurance agency Industry Insurance Type Privately Held About the Role The Company is seeking a Senior Vice President, Divisional Lead for Property...Senior
- ...Cognisys is seeking a Senior Information Consultant to join their GRC Consulting team. This remote position involves leading engagements and advising clients on security governance and compliance. Key responsibilities include designing and delivering GRC programmes and...SeniorRemote work
- ...of mission-enabling solutions for global security. Our Engineering and Sciences (E&S)... ...Principal Network Systems Engineer or a Senior Principal Network Systems Engineer Basic... ...Bachelor's of Science in Computer Science, Information Technology, Networking, or a related...SeniorFull time
$120k - $200k
A leading global technology firm is seeking a Lead Python Developer to join their Product Team in Los Angeles. The ideal candidate will have over 7 years of experience in Python and must demonstrate strong architectural and design skills. Responsibilities include developing...SeniorRemote workFlexible hours$75.05k - $120.16k
A leading advertising firm in Los Angeles is seeking an experienced OOH Supervisor to manage Out-of-Home strategies across various channels. The ideal candidate will have over four years of experience in OOH Investment or Media Planning, showcasing strong leadership, communication...Senior$162k - $190k
...Overview Senior Acquisition Lead LOCATION: El Segundo, CA (On-site) JOB STATUS: Full Time CLEARANCE: Secret (active or ability to obtain) SALARY: $162,000 - $190,000 Astrion is seeking a Senior Acquisition Lead to join our MILSATCOM Systems Engineering...SeniorFull timeWork at office- A healthcare technology organization is seeking a Senior EHR Systems Administrator to manage their athenahealth platform. This role requires expertise in EHR configuration and governance while ensuring the system supports clinical operations effectively. The ideal candidate...SeniorRemote workFlexible hours
$150k - $260k
...Staff/Senior/Principal Software Engineer (Elixir/AI Focus) Location... ...clients, developing a leading AI-powered platform for a specialized... ...job adverts, and providing information in accessible formats. Our... ...This information is managed securely in accordance with MLabs Ltd’...SeniorFull timeContract workRemote work$86.4k - $184.8k
A leading healthcare provider in Los Angeles is seeking a Senior Project Lead to support the development of their initial project portfolio. The role involves leading high-impact projects, managing stakeholder engagement, and applying strategic judgment to enhance ambulatory...Senior$185k - $250k
Exponent Inc. is seeking a Senior Manager for its Construction Consulting Practice in Los Angeles, CA. This role involves advising utility clients on complex projects and expanding Exponent's service offerings in California and beyond. The ideal candidate should have at...Senior- A leading architectural firm in Los Angeles is seeking an experienced Interiors Lead to manage the interiors practice. Responsibilities include fostering design excellence, financial management, and collaboration with various teams. The ideal candidate should have a professional...Senior
- A premier aerospace service provider in Los Angeles seeks an Aerospace Manufacturing Inspection Lead/Manager to oversee inspection processes, ensuring compliance with industry standards. The ideal candidate will have over 5 years of experience in precision inspection within...Senior
- King & Spalding is seeking a Complex Client Billing Manager in Los Angeles who will oversee billing processes for high-profile clients. This role includes ensuring billing compliance and managing project workflows. The ideal candidate will have over 10 years of law firm...Senior
$70.9k - $145.2k
Direct Jobs is seeking a Senior Leave Analyst in Los Angeles to coordinate various leaves of absence, including FMLA and Workers' Comp. This role involves consulting with employees, determining leave eligibility, and managing case files in compliance with regulations....Senior- Join AECO as a Proposal SpecialistIV in Los Angeles, CA. This hybrid role involves leading proposals for Federal agencies, mainly in the Environment sector, supporting the strategy to win work and collaborating with specialized teams. The ideal candidate has a Bachelor'...Senior
$100k - $130k
A mission-driven media organization in Los Angeles seeks a seasoned PR professional to oversee strategies that enhance its media presence. Responsibilities include developing and executing PR plans, managing media relationships, and ensuring impactful communications. Ideal...Senior- A health and wellness company in El Segundo, California, seeks a dynamic Senior Membership Sales Advisor to lead the sales team and drive membership growth. This role involves mentoring team members, developing effective sales strategies, and fostering client relationships...Senior
- Spark Foundry seeks an Associate Director, Audience Strategy & Insights in El Segundo, California. This role supports audience strategy for Mattel brands, embedding strategy across campaign lifecycles to achieve marketing outcomes. Successful candidates will have over 5...Senior
- A leading aerospace company based in Glendale, California is seeking a Subcontracts Administrator responsible for managing FAR15 proposals and subcontracts. The ideal candidate will have a minimum of 2 years experience in procurement/subcontracts administration with strong...SeniorContract work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Information Security Lead. Be the first to apply!
Related searches
- senior development executive Los Angeles, CA
- senior technical manager Los Angeles, CA
- senior procurement specialist Los Angeles, CA
- senior communications specialist Los Angeles, CA
- senior manager data science Los Angeles, CA
- senior platform engineer Los Angeles, CA
- senior procurement Los Angeles, CA
- senior director product management Los Angeles, CA
- senior cost manager Los Angeles, CA
- senior compliance officer Los Angeles, CA

