Senior Information Security Analyst / Engineer
Responsibilities
· Partner across Security, IT, and engineering teams to strengthen security posture across multiple cybersecurity domains.
· Contribute to the security program with a focus on risk evaluation and implementation of scalable security solutions across the company.
· Design and evaluate secure infrastructure, architectures, and processes that support the Cirrus Logic business roadmap.
· Develop and implement security requirements, policies, and procedures to protect information systems, data, and applications.
· Participate in detection and incident response activities, including investigation, containment, and remediation.
· Perform hands-on evaluation, engineering, and administration of enterprise security tools in collaboration with Security and IT peers.
· Assess security posture and controls and help drive secure design and configuration across mixed platform, on-prem, hybrid, ecosystem, labs, and applications.
· Prepare clear, actionable reporting on findings, risks, mitigation efforts, and overall security posture for stakeholders and senior leadership.
Required Skills and Qualifications
· 8+ years of experience across multiple cybersecurity domains, including vulnerability management, incident response, identity and access management, network security, risk analysis, security operations, and security engineering.
· Demonstrated success operating as a senior individual contributor in a complex enterprise environment, balancing risk, business priorities, and practical implementation.
· Strong hands-on experience designing secure solutions and partnering with infrastructure and engineering teams to implement them.
· Deep familiarity with enterprise security tools, including endpoint protection, vulnerability management, and logging or SIEM platforms.
· Experience with AI security and governance, including policy, risk, and enablement of cyber monitoring, detection, and response capabilities.
· Experience leading or materially contributing to incident response, investigations, and threat-driven security initiatives.
· Strong executive communication skills, with the ability to engage effectively with both technical and non-technical stakeholders and facilitate balanced risk discussions.
· Working knowledge of security frameworks and governance concepts, including NIST CSF, ISO 27000 series, FAIR risk analysis, and privacy-related requirements.
· Bachelor’s degree in cybersecurity, information systems, or a related technical field, or equivalent practical experience.
· Relevant industry certifications such as CISSP, SSCP, or GCIA are preferred.
· Experience in a high-tech, engineering, or semiconductor environment is strongly preferred.
· Proven ability to work effectively with globally dispersed teams across multiple time zones.
