Barback

Torsap Thai Kitchen

San Anselmo (CA)

On-site

USD 165,000 - 210,000

Full time

7 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Performance bonus
Medical, dental, vision
401(k) matching
Professional learning stipend

Job summary

Torsap Thai Kitchen is seeking an experienced Lead Cybersecurity Engineer to oversee our enterprise security architecture, drive defense initiatives, and ensure resilience of our infrastructure and sensitive systems across multi-cloud environments.

You will serve as a technical security authority, design scalable controls, mentor senior engineers, and work with DevOps and software teams to balance rapid execution with rigorous risk management and compliance with federal standards.

Qualifications

  • 10+ years in cybersecurity engineering or architecture.
  • Experience securing multi-cloud and on-prem environments.
  • Strong knowledge of CI/CD security integrations (SAST/DAST/SCA).
  • US citizenship or ability to obtain security clearance.

Responsibilities

  • Lead security architecture across enterprise and cloud platforms.
  • Oversee incident response and threat intelligence operations.
  • Define security standards, governance, and compliance mapping.

Skills

Cloud security
Security operations
Automation scripting
Network & AppSec

Education

BS/MS in Cybersecurity/CS/IT

Tools

SIEM/SOAR tools
EDR/XDR
Vulnerability management
IaC tooling

Job description

We are seeking an experienced Lead Cybersecurity Engineer to oversee our enterprise security architecture, drive strategic defense initiatives, and ensure the resilience of our infrastructure and sensitive systems. In this role, you will act as a technical authority for security, designing scalable defense controls across multi-cloud environments, leading high-visibility threat modeling and incident response, and mentoring senior security engineering staff. You will work closely with executive leadership, DevOps, and software architecture teams to balance rapid technical execution with rigorous risk management and federal regulatory compliance standards.

Key Responsibilities

Security Architecture & Technical Leadership

  • Lead the vision, architecture, and deployment of enterprise-wide security solutions across multi-cloud (AWS, GCP, or Azure) and hybrid environments.
  • Establish architectural patterns for Zero Trust Network Access (ZTNA), Identity and Access Management (IAM), data encryption, and microsegmentation.
  • Partner with engineering leadership to integrate automated security checks (SAST, DAST, SCA) into global CI/CD pipelines, driving DevSecOps maturity.

Incident Oversight & Threat Intelligence

  • Oversee critical incident response operations, threat intelligence feeds, and proactive threat-hunting campaigns.
  • Direct root-cause analyses and post-incident reviews following security events, authoring executive reports and establishing long-term remediation roadmaps.
  • Conduct advanced risk assessments and threat modeling for new platforms, software features, and vendor integrations.

Compliance & Strategic Governance

  • Ensure enterprise compliance with stringent regulatory frameworks and federal standards (e.g., NIST SP 800-53, FedRAMP, SOC 2, CMMC, ISO 27001).
  • Define organizational security engineering standards, baselines, and hardening guidelines across systems, containers, and network infrastructures.
  • Mentor and lead senior and mid-level cybersecurity engineers through code reviews, architectural feedback, and technical career growth.
Required Skills & Qualifications

Technical Skills & Expertise

  • Cloud & Infrastructure Security: Mastery in securing enterprise public cloud platforms (AWS/Azure/GCP), container Orchestration (Kubernetes, Docker), and Infrastructure-as-Code (Terraform, CloudFormation).
  • Security Operations & Tooling: Expert knowledge of SIEM/SOAR platforms (Splunk, Elastic, Datadog), EDR/XDR, and vulnerability management platforms (Tenable, Qualys).
  • Scripting & Automation: High proficiency in Python, Bash, or Go to build automated security tooling, custom integrations, and incident response playbooks.
  • Network & AppSec: Strong proficiency in modern cryptography, Web Application Firewalls (WAF), API security, and network protocol security (TLS, IPsec, DNSSEC).

Clearance & Compliance Requirements

  • US Citizenship: Must be a US Citizen (required due to federal contract/compliance requirements).
  • Active Security Clearance or ability to obtain/maintain US Government clearance (Secret/Top Secret) preferred depending on program assignments.

Soft Skills & Domain Requirements

  • Executive presence with proven ability to communicate complex security risks and investment trade-offs to C-suite leadership and board members.
  • Strategic, proactive mindset with exceptional crisis management capabilities during security emergencies.
Preferred Qualifications
  • Education: Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent technical experience.
  • Experience: 8+ years of dedicated cybersecurity engineering experience, with 2+ years in a team lead, principal, or architectural capacity.
  • Industry Certifications: CISSP, CISM, CCSP, OSCP, or specialized cloud certifications (e.g., AWS Certified Security - Specialty).
Benefits & Compensation
  • Salary Range: $165,000 – $210,000 annually (commensurate with experience) + performance bonus.
  • Comprehensive medical, dental, and vision health coverage.
  • 401(k) retirement plan with high company match.
  • Flexible paid time off (PTO) and company-paid federal holidays.
  • Dedicated continuous learning stipend for security certifications, labs, and security conference attendance.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Lead Cyber Security Architect (100% Remote) Direct Hire Fortune 100 Co
Lead Cyber Security Architect (100% Remote) Direct Hire Fortune 100 Co

Confidential • United States

On-site
USD 130,000 - 160,000
Competitive Base Salary + Annual Bonus
Full Health, Dental, and Vision Insurance
401(k) with Company Match
+3
Senior Security Engineer
Senior Security Engineer

Zermount, Inc. • United States Virgin Islands

On-site
USD 100,000 - 150,000
Cybersecurity Engineer
Cybersecurity Engineer

OneImaging • Bellevue (WA)

On-site
USD 100,000 - 130,000
Health Care Plan
Retirement Plan
Paid Time Off
+2
Senior Staff Engineer - DevSecOps
Senior Staff Engineer - DevSecOps

Exelixis Inc • Alameda (CA)

On-site
USD 154,500 - 220,500
401(k) plan with company contributions
Group medical, dental, and vision coverage
Flexible spending accounts
+1
Cyber Security Engineer—Technical Lead
Cyber Security Engineer—Technical Lead

Leidos • Bethesda (MD)

On-site
USD 150,000 - 180,000
Lead, Cybersecurity Architecture & Operations
Lead, Cybersecurity Architecture & Operations

Culligan International • Rosemont (IL)

On-site
USD 140,000 - 180,000
Lead Security Architect
Lead Security Architect

ShorePoint, LLC • United States

On-site
USD 140,000 - 190,000
PTO 144 hours/year
11 holidays
Healthcare premiums 85% covered
+2
Lead Security Engineer
Lead Security Engineer

Ladders • United States

Remote
USD 125,000 - 150,000
Equity options
Sponsored 401(k) retirement plan
Parental leave policy
+4
Senior Security Engineer
Senior Security Engineer

Hiring Our Heroes • Arlington (VA)

On-site
USD 120,000 - 150,000
Cyber Security Engineer
Cyber Security Engineer

StevenDouglas • West Palm Beach (FL)

On-site
USD 150,000 - 190,000