What are the responsibilities and job description for the Information Technology Security Engineer position at Orange County's Credit Union?
This hybrid opportunity requires working from our Santa Ana, CA corporate office three days per week.
At Orange County’s Credit Union, we don’t just offer banking services, we create meaningful relationships that empower our members and enrich our community. With over 85 years of trust, $2.5 billion in assets, and 140,000 members, we’ve built a reputation for excellence—and we’re just getting started. Our commitment to people, performance, and purpose has earned us the #1 spot in the Orange County Register’s 2025 and 2024.
OVERVIEW:
The Information Security Engineer will play a critical role in evolving and maturing the organization’s information security program to ensure the confidentiality, integrity, and availability of Orange County’s Credit Union assets. The program includes: policies, standards, guidelines, and controls to manage and prevent risks to Orange County’s Credit Union. Responsible for conducting information security reviews (technology, application and process) and vulnerability / risk assessments, monitoring key / compensating controls and baseline configuration standards, and identifying / remediating control gaps to minimize risks.
ESSENTIAL FUNCTIONS:
- Coordinate and perform risk and vulnerability assessments of the Credit Union’s systems and processes to ensure appropriate controls are in place and recommend / implement controls to remediate risk findings.
- In collaboration with IT Operations / Technology Services / Software Engineering and outside vendors, design and implement security tools, controls and automation frameworks to ensure the integrity, availability and confidentiality of the organization’s data, systems and services on premises and in public cloud.
- Design, develop and document (1) network security architecture and baseline configuration standards for firewalls, routers, switches, load balancers, and related network appliances; (2) device security architecture and baseline configuration standards for servers, workstations and mobile devices; (3) application and data security architecture and baseline configuration standards for databases and enterprise applications; and (4) cloud platform security architecture and baseline configuration standards for AWS and Microsoft Azure services.
QUALIFICATIONS:
- Bachelor’s Degree in Computer Science, Information Security, Information Assurance or related technology field.
- 5 years of experience in information / cyber security and IT risk management (including hands-on experience in implementing, maintaining, and managing on-prem and cloud-based network / infrastructure / application / data security for the enterprise).
- 2 years of hands-on experience in securing AWS and Microsoft Azure cloud infrastructure / applications / services / solutions.
- Relevant security certifications (at least one is required), such as CISSP, SANS GIAC, CompTIA Security , AWS Certified Security – Specialty, Azure Security Engineer Associate.
The targeted salary range is $100,000.00 to $125,000.00.
Final offer will be determined based on experience, education, training/certifications and specialized skills.
What else do we offer?
- Anthem HMO/PPO, Delta Dental, and Unum options – from day one!
- 401(k) with up to 6% employer matching dollar for dollar!
- Annual discretionary bonus & performance merit increases
- Educational grants up to $1,000
- 13 vacation days/year (increases with tenure)
- 7 sick days/year PLUS paid holidays
We perform thorough background check and credit check. EOE
Salary : $100,000 - $125,000