1Above Technology Security Engineer Los Angeles, CA · Full time

protecting client environments — monitoring for threats, anticipating vulnerabilities before they are exploited, and responding swiftly and effectively when incidents occur

About 1Above Technology

About Us 1Above Technology is a managed services provider (MSP) delivering IT consulting, support, and infrastructure management to businesses across the Los Angeles area. We pride ourselves on responsive, high-quality service and a team-first culture where technicians grow their skills while solving real problems for real clients.

Description

About the Role

We are a growing Managed Service Provider (MSP) delivering hardware, software, low voltage installations, and comprehensive IT support to businesses across multiple industries. At 1Above Technology, we’re building the strategic technology partner that growing businesses rely on — delivering custom-tailored IT and support that keep their operations running so they can focus on what they do best. Our client base spans healthcare, apartment communities, restaurants, law offices, and schools.


As cyber threats grow in frequency and sophistication, security has become one of the most critical services we provide to our clients. We are seeking a Security Engineer to join our two-person Security team, reporting to the Security Manager. This role is primarily focused on protecting client environments — monitoring for threats, anticipating vulnerabilities before they are exploited, and responding swiftly and effectively when incidents occur. Maintaining the security of our own internal systems is equally important, as any gap there directly impacts the clients who depend on us.


This is a monitoring-intensive role for a technically sharp, detail-oriented professional who takes security personally and understands the stakes, particularly in industries like healthcare, where the consequences of a breach extend well beyond data loss.


What Success Looks Like in the First Year

  • Client environments are being proactively monitored with no critical threats going undetected; you’ve established a reliable rhythm of threat scanning, alerting, and reporting across the portfolio
  • When incidents occur, response is fast and structured — clients and internal stakeholders are informed promptly, containment happens quickly, and root cause analysis follows every event
  • Internal systems are hardened and audited — known vulnerabilities have been identified, prioritized, and addressed in partnership with the Security Manager
  • You’ve built enough familiarity with our client environments that you can anticipate risk patterns by vertical — particularly across healthcare, legal, and other sensitive sectors

Key Responsibilities

Client Environment Security

  • Monitor client networks, endpoints, and systems for threats, anomalies, and indicators of compromise using SIEM, EDR, and other security tooling
  • Proactively assess client environments for vulnerabilities through regular scanning, risk assessments, and security audits — identifying exposure before it becomes an incident
  • Develop and maintain a clear understanding of each client’s security posture, infrastructure, and risk profile to enable faster, more accurate threat detection
  • Deliver regular security reports and findings to the Security Manager, with clear prioritization of risks and recommended remediation steps
  • Support clients across regulated industries — particularly healthcare — in maintaining security practices aligned with applicable compliance frameworks

Incident Response & Breach Management

  • Serve as a primary technical responder when security incidents occur — executing containment, eradication, and recovery steps in a timely and methodical manner
  • Maintain and follow documented incident response playbooks, ensuring every event is handled consistently and completely
  • Communicate clearly with the Security Manager and relevant internal teams during active incidents, providing accurate status updates and escalating appropriately
  • Conduct post-incident analysis to identify root cause, document findings, and recommend controls to prevent recurrence
  • Maintain detailed incident logs and contribute to ongoing improvement of the team’s response capabilities

Threat Intelligence & Anticipation

  • Stay current on emerging threats, vulnerabilities, attack vectors, and adversary tactics — translating threat intelligence into proactive protective action for client environments
  • Identify patterns across client environments that may indicate coordinated or emerging risk, and surface those findings to the Security Manager
  • Recommend and help implement security controls, configurations, and tooling improvements that reduce attack surface across the client portfolio
  • Participate in the evaluation of new security tools and technologies as the team’s capabilities evolve

Internal Systems Security

  • Monitor and maintain the security of 1Above Technology’s own internal infrastructure, recognizing that our internal posture directly affects the clients we serve
  • Identify and remediate vulnerabilities in internal systems, networks, and endpoints in coordination with the Security Manager
  • Support the enforcement of internal security policies, access controls, and data handling standards
  • Contribute to security awareness within the broader 1Above Technology team, helping colleagues recognize and respond to threats such as phishing and social engineering


Cross-Team Collaboration

  • Partner with Helpdesk to establish clear escalation paths for security-related tickets, ensuring suspicious activity reported by clients or flagged internally reaches Security promptly and is triaged appropriately
  • Coordinate with Project Management during new client onboarding and infrastructure deployments to ensure security requirements are scoped, communicated, and addressed from the start
  • Support Customer Success in communicating security-related matters to clients, helping the Customer Success team understand the nature and severity of incidents well enough to maintain client trust and set accurate expectations during and after an event
  • Engage with Professional Services during client onboarding to conduct or contribute to baseline security assessments, ensuring new client environments are evaluated and documented before full service delivery begins
  • Collaborate with the Service Delivery team to ensure cohesion in security considerations, ensuring they are embedded in how work is routed, escalated, and completed

Documentation & Compliance Support

  • Maintain accurate, up-to-date documentation of client security configurations, incident history, and remediation actions
  • Support clients in healthcare and other regulated industries with security documentation relevant to their compliance obligations (e.g., HIPAA Security Rule requirements)
  • Contribute to internal security policies, standards, and procedures in partnership with the Security Manager
  • Regularly review and update internal and client security policies as needed to reflect changes in the threat landscape, client environments, or compliance requirements

Qualifications

Required

  • 3+ years of experience in a security engineering, SOC analyst, or similar hands-on cybersecurity role
  • Proficiency with SIEM platforms, EDR tools, vulnerability scanners, and network monitoring technologies
  • Demonstrated experience identifying, investigating, and responding to security incidents in a structured, documented manner
  • Solid understanding of networking fundamentals (TCP/IP, DNS, firewalls, VPNs) and how they relate to threat detection and defense
  • Strong analytical skills with the ability to assess risk, prioritize findings, and communicate clearly to both technical and non-technical audiences
  • Ability to work independently and manage multiple client environments simultaneously without sacrificing thoroughness
  • Comfortable operating in a fast-moving MSP environment where client needs and threat landscapes shift quickly

Preferred

  • Experience working in an MSP or multi-client security environment, managing security across diverse industries and infrastructure types
  • Familiarity with HIPAA Security Rule requirements and the practical security considerations of healthcare IT environments
  • Experience with compliance frameworks such as NIST CSF, CIS Controls, SOC 2, or ISO 27001
  • Relevant certifications such as CompTIA Security+, CySA+, CEH, GCIH, or equivalent
  • Exposure to cloud security (Microsoft Azure, AWS, or Google Cloud) and securing hybrid environments
  • Experience supporting security for client verticals including legal, education, or multifamily residential
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field, or equivalent hands-on experience

What We Offer

  • Medical benefits options including medical, dental, and vision coverage (no contirbutiona at this time)
  • 401(k) with company match after 1 year of employment
  • Paid time off and company holidays
  • Professional development support including certifications and training
  • Collaborative, growth-oriented culture with direct access to leadership


Salary

$80,000 - $90,000 per year