Remote job
IT Security Specialist
Job details
About this role
Role overview An IT Security Specialist is needed to protect the systems, devices, identities, applications, and workflows that underpin a media organization. The focus goes beyond deploying tools—it requires evaluating how systems are actually used, assessing fitness for purpose, and surfacing risk introduced by configurations, permissions, vendors, and user behavior. The role embeds security into decisions from evaluation and procurement through implementation, monitoring, and continuous improvement.
Responsibilities - Own endpoint security for the Mac fleet, including management platform administration, compliance, monitoring, alert investigation, malware response, and device remediation - Administer identity and access management, including adaptive MFA, SSO, application assignments, access scopes, and joiner/mover/leaver lifecycle - Partner with People, Legal, and Infrastructure to improve provisioning, offboarding, access removal, archival, legal holds, and lifecycle automation - Establish security configurations and risk controls across core services and SaaS applications, covering authentication, email security, data protection, alerting, activity monitoring, vendor and procurement reviews, and security questionnaires - Treat the browser and SaaS layer as critical security boundaries, evaluating how users access data and where browser-based workflows create risk - Use logs and activity monitoring across endpoints, browsers, identity systems, and SaaS to investigate suspicious activity and support incident response - Design and run security awareness programs, including human risk initiatives, phishing simulations, reporting workflows, and targeted training for higher-risk roles - Review AI tools, automations, and internally built solutions for data handling, permissions, secrets management, logging, monitoring, and operational readiness - Help protect high-risk users through appropriate privacy, account-security, and personal-data protections
Requirements - Substantial experience in IT security, endpoint security, identity and access management, or a related field - Hands-on experience with macOS, Jamf or comparable endpoint platforms, CrowdStrike Falcon or similar EDR, Okta or similar identity providers, and Google Workspace security - Strong understanding of modern security boundaries across browsers, SaaS, identity providers, endpoints, APIs, data flows, and AI-enabled systems - Experience with security logging, monitoring, incident investigation, vendor assessments, and SaaS risk management - Track record operating or improving security awareness, phishing, or role-specific training programs - Ability to assess systems, tools, permissions, and workflows for security, operational fit, and long-term supportability
Benefits and work setup - Remote-optional within the United States - 401(k) with employer match, multiple health plan options including a high-deductible plan with employer HSA contribution, plus dental and vision coverage - 12 weeks paid primary caregiver leave plus 6–8 additional weeks for birth-givers; generous vacation and holidays; one mental health day per quarter - Annual learning and development stipend and a monthly work-from-home stipend - Tele-mental health services, telehealth primary care membership, personal health advocacy resources, and inclusive family-forming benefits - Employee hardship support fund, increased flexibility for parents and caretakers, and virtual company-sponsored social events - Equal opportunity employer committed to a diverse and inclusive workplace