- Salary
- $85k – $100k
- Location
- Local Office - California, United States of America
- Workplace
- Hybrid
- Type
- Full-time
- Department
- IT
- Education
- Bachelor
- Source
- Workday
Description
We are a fast-paced business with ambitious growth plans; so if you are dedicated, enthusiastic and always seeking ways to improve, you'll enjoy a career with us!
Ontic is a leading global aerospace OEM trusted by the world’s aviation leaders. Ontic’s Chatsworth, CA, site specializes in precision engineering, MRO, and new solutions for parts at risk of obsolescence. With over 1,400 employees across four time zones and seven sites, we have more than doubled in size since 2019 and are continuing to grow at pace.
Our team is looking for a Cybersecurity Specialist to join them. You will report to the Director of IT Security and will have a hybrid work structure in Chatsworth, CA.
To be considered for the Cybersecurity Specialist opening, here’s what you’ll need to bring with you:
- Bachelor's degree in Cybersecurity, Information Security, Computer Science or a related discipline, or equivalent practical experience in a security-focused role.
- Industry certifications such as CISSP, CISM, Security+, CySA+, SSCP, Certified CMMC Professional (CCP), ISO/IEC 27001 Lead Implementer/Lead Auditor or equivalent are desirable
- Experience working in cybersecurity with demonstrable exposure to both security operations and governance, risk and compliance activities
- Experience supporting compliance with NIST SP 800-171, CMMC Level 2, ISO/IEC 27001 and/or Cyber Essentials Plus
- Experience coordinating or supporting internal and external security audits, including technical evidence collection and remediation activities
- Experience conducting technical security risk assessments and implementing security controls
- Strong hands-on experience with enterprise security technologies such as CrowdStrike Falcon, Microsoft Defender, Zscaler ZIA/ZPA, SIEM/SOAR platforms and vulnerability management tools
- Experience supporting incident response, threat hunting and security investigations
- Experience working with Controlled Unclassified Information (CUI), ITAR and/or EAR-controlled data
- Experience within a manufacturing, aerospace or defence environment
As a Cybersecurity Specialist, you will:
- Provide advanced monitoring, investigation and response to security alerts using tools such as CrowdStrike Falcon Complete, Microsoft Defender, Zscaler ZIA/ZPA, Arctic Wolf and other security platforms, ensuring timely investigation, resolution and documentation of security incidents while supporting security operations during US business hours and acting as an escalation point for complex security incidents
- Support Ontic's vulnerability management program including the identification, prioritization, remediation tracking, validation and reporting of vulnerabilities across endpoints, infrastructure and cloud environments, working closely with Infrastructure, Engineering and application teams to ensure timely remediation in line with business risk and regulatory requirements
- Conduct proactive threat hunting and support incident response, including post-incident reviews and root cause analysis, to identify emerging threats, strengthen detection capabilities and drive continual improvement of security controls and processes
- Continuously optimize security tooling and monitoring capabilities, improving detection logic, reducing false positives and enhancing visibility across Ontic's technology environment
- Support the continual development and maturity of Ontic's cybersecurity compliance program, coordinating technical activities to maintain alignment with NIST SP 800-171, CMMC Level 2, ISO/IEC 27001, Cyber Essentials Plus and customer security requirements
- Support the implementation, assessment and continual improvement of security controls, including NIST SP 800-171 and CMMC Level 2 practices, maintaining technical evidence and supporting customer assessments, certification activities and ongoing compliance
- Coordinate and support internal and external security audits, facilitating technical control validation, evidence collection and remediation activities to ensure ongoing compliance and audit readiness
- Contribute to the development and continual improvement of information security policies, standards, procedures and technical guidance, ensuring documentation remains current, effective and aligned with business and regulatory requirements
- Conduct technical security risk assessments and assess the effectiveness of security controls, providing recommendations to mitigate identified risks, supporting the maintenance of the information security risk register and coordinating remediation activities where improvements are identified
- Provide technical subject matter expertise and security advisory for projects, change initiatives and technology implementations, collaborating with IT, Engineering and business stakeholders to embed security-by-design principles and ensure compliance requirements are considered throughout the system lifecycle
- Act as a technical contact for cybersecurity vendors, supporting service performance reviews, incident escalations and assessments of security control effectiveness
- Support security metrics, dashboards and reporting, translating technical findings into meaningful insights for technical teams and senior stakeholders to support informed decision-making
- Support security awareness and phishing defense initiatives, promoting secure behaviors across the organization and contributing to a positive security culture
- Maintain accurate, auditable records of incidents, vulnerabilities, risk assessments, changes and compliance activities within ServiceDesk Plus and other ITSM platforms to ensure operational transparency and audit readiness
- Provide technical guidance and knowledge sharing to Cybersecurity Analysts and other IT colleagues, supporting capability development and the consistent application of cybersecurity best practices across the organization
Our Benefits:
- Comprehensive medical insurance
- Competitive PTO, holiday pay, and sick leave
- Company 401K plan with up to 4% matched contribution
- Annual bonus program (varies by level and discretionary based on company and individual performance)
- Flexible working arrangements
- Paid volunteering opportunities
- Access to mental health champions across our sites
- Commitment to development
- Employee referral program
#LI-Hybrid
EOE/Minority/Female/Sexual Orientation/Gender Identity/Disability/Veteran
Compensation Pay Range
$85,000-100,000/yr based on experience
Please click here to review Ontic's California Consumer Privacy Act policy.
Ontic Engineering and Manufacturing Inc. is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex including sexual orientation and gender identity, national origin, disability, protected Veteran
Status, or any other characteristic protected by applicable federal, state, or local law.
This position must meet export control compliance requirements. To meet export control compliance requirements, a “U.S. Person ” as defined by 22. C.F.R. §120.15 is required. “U.S. Person” includes U.S. Citizen, lawful permanent resident, asylee, or refugee.