Information Security Operations Analyst (1822)

Remote

Applications have closed

Amyris

We provide a scalable way forward in a world where demand for the earth’s bounty far exceeds supply. We make what’s scarce, abundant for all.

View company page

Amyris, a leader in synthetic biology is seeking a well experienced information security engineer to join our IT infrastructure team in a very fast paced, growth company. Amyris has a large data and application footprint in multiple geographies and is continuing to see rapid growth. The right candidate will express a keen interest in helping to secure our data footprint, network topology, infrastructure and applications to help Amyris scale and grow while helping to keep our business assets confidential, with integrity and available. The engineer will oversee all aspects of securing/hardening our platforms as well as providing guidance on policy and strategic functions.  The ideal candidate is expected to bring previous knowledge and experience to help support our hyperscale growth.
We are looking for a motivated, independent engineer who can learn technologies quickly, and who can translate needs across teams – including communicating with stakeholders who are not experts in cybersecurity. This position offers flexibility to design and implement solutions from the ground up – and to have a real impact on Amyris’ ability to deliver synthetic organisms.

Responsibilities:

  •  Monitor and respond to cybersecurity alerts from tools and services; escalate as needed
  •  Investigate and validate phishing email reports, email filter quarantines and other incidents as assigned
  • Coordinate as needed with Firm IT team to implement, maintain, and manage cybersecurity tools and services
  • Coordinate with service providers to assess needs, implement products and services, and optimize and maintain high delivery standards
  • Working with Firm Legal, coordinate e-discovery data collection activities as well as complete data destruction requests
  • Coordinate bi-annual data owner reviews and configuration of file and folder rights within file shares
  • Conduct basic security risk assessments and vendor diligence for new and existing vendor products and services delivered to the Firm
  • Work with the cybersecurity leaders and related stakeholders across the organization to mature/design information security controls & mitigate risk
  • Support key business initiatives by identifying security and compliance-related risks
  • Enable compliance with information security policies and relevant legal and regulatory requirements
  • Ensure appropriate changes and improvement actions are implemented as related to cybersecurity tools
  • Continuously evaluate and provide suggestions to improve existing programs, practices, and technologies to align with the Firm's risk appetite and ensure regulatory compliance
  • Develop and analyze reports and alerts to identify gaps and propose changes to improve the organization's security, risk, and compliance posture
  • Apply concepts and processes from industry security frameworks, such as CIS 20 Security Controls, NIST CSF, ISO 27001, GDPR and CCPA, etc
  • Develop and implement security policies, standards, and guidelines
  • Audit technology user compliance towards Firm acceptable use standards

Required Qualifications:

  • 2-5 Years of professional information security experience
  • Demonstrable experience with common cybersecurity tools and services is required
  • Operational understanding of Microsoft Azure, Microsoft 365 and Azure Information Protection or other cloud tools
  • Basic understanding of security controls for common platforms and devices, including Windows, Mac and network equipment
  • Understanding of cyber security operations, including daily monitoring and response to alerts and issues
  • Basic knowledge of tools used in penetration testing, security event analysis, incident response, computer forensics, malware analysis or other areas of security operations
  • Experience in drafting security policies and guidelines
  • Bachelor’s degree or comparable tenure in a technology infrastructure-focused role

Preferred Qualifications:

  • Degree in cybersecurity is preferred

  • #LI-IF1
  • #LI-REMOTE
At Amyris, we believe that diversity, equity, inclusion, and belonging (DEIB) is essential to our core values. We embrace and encourage an equity-minded work culture, knowing that it is the driving force of innovation that positively impacts our employees, consumers, and communities. And for Amyris, a sense of belonging is what drives our mission forward and is the foundation of everything we do, ensuring a healthier, more sustainable future for us all. Make Good, No Compromise.

Amyris, a leader in industrial synthetic biology, uses its innovative bioscience solutions to achieve renewable products by converting plant sugars into hydrocarbon molecules. Amyris’ molecules are used in wide range of specialty & performance chemicals, flavors & fragrances and in applications ranging from cosmetics to biofuels. Learn more at www.amyris.com.
Under the California Consumer Privacy Act of 2018 (“CCPA”), Amyris is required to inform California residents who are our job applicants (“Applicants”) about the personal information we collect about you when you apply to a job on this site.
As an Applicant, you have the right to know and understand the categories of personal information we collect about you, and the purposes for which the categories of personal information shall be used, pursuant to the CCPA.
By clicking the “APPLY FOR THIS JOB” button below and submitting your job application, you agree you have reviewed the complete Privacy Notice for Employees, Independent Contractors and Job Applicants.
If you have any questions regarding this information, please contact Amyris at privacy@amyris.com
As a VEVRAA Federal Contractor, Amyris is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, sex, color, religion, sexual orientation, gender identity, national origin, disability status, protected veteran status, or any other characteristic protected by law. Amyris complies with applicable state and local laws governing nondiscrimination in employment.
If you are a recruiter or placement agency, please do not submit resumes to any person or email address at Amyris, Inc. prior to having a signed agreement. Amyris is not liable for and will not pay placement fees for candidates submitted by any agency other than its approved recruitment partners. Furthermore, any resumes sent to us without an agreement in place will be considered your company’s gift to Amyris and may be forwarded to our recruiters for their attention.

Tags: Azure CCPA Cloud Compliance Forensics GDPR Incident response Industrial ISO 27001 IT infrastructure Malware Monitoring NIST Pentesting Privacy Windows

Perks/benefits: Career development Startup environment

Region: Remote/Anywhere
Job stats:  84  17  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.