Job Details

Description

Join UCT and be part of the fastest-growing sector in the world! We indirectly touch every semiconductor chip that goes into every smartphone, smart car and device that uses artificial intelligence. This is a critical time for the semiconductor industry and for UCT - as technology evolves, we evolve with it. UCT is a diverse workplace where every talented employee is committed to continuous innovation, challenging the status quo and exceeding customer expectations. If you are a person with a relentless drive to succeed, a strong focus on quality with a passion for success – join us today!

Why Join Us?

Come and impact the Ultra Clean Technologies organization! This role is essential to the ongoing security and compliance efforts of the organization. The Information Security (Info Sec) Engineer will design, implement, and manage security systems to protect UCT systems and data against cybersecurity threats. This role works on system design, collaborate with diverse teams, and play a critical part in protecting sensitive data and systems from unauthorized access and exposure.

Position Overview

The Information Security Engineer is responsible for designing, implementing, and maintaining enterprise-wide security architecture of our systems and managing key security systems.

The ideal candidate must have a solid understanding of security controls and how they work with various software, network protocols, databases, and operating systems. They will be responsible for ensuring that we are implementing secure design in our technology and data ecosystems.

This role collaborates across technical and business teams for secure design and implementation of our UCT systems, ensuring that the organization’s systems remain compliant with relevant regulations and standards while optimizing user experience and maintaining a strong security posture.

Key Responsibilities

Strategic Architecture & Roadmap

  • Develop and implement security measures to protect the organization’s systems, networks, and data. Ensure that relevant architectural principles are part of our enterprise architecture strategy and roadmap.
  • Continuously evaluate emerging security technologies and trends to enhance security and improve operational efficiency.

Implementation & Operations

  • Focus on securing UCT systems in the following control areas: secure configuration; vulnerability management; email & web browser protection; application software security; data protection; and third-party risk management
  • Create detailed cybersecurity designs and develop and/or review security architecture and configuration. Oversee the deployment and integration of these designs as part of the Secure Development Lifecycle (SDLC) and Project Management Lifecycle, as relevant.
  • Track and report on meaningful Info Sec metrics, including efficacy and coverage of key systems within the ecosystem. Provide regular status updates and recommendations to IT leadership and key stakeholders.

Collaboration

  • Collaborate with cross-functional stakeholders, including IT, Engineering, and Business Units, to align initiatives with secure designs.

Risk Management & Incident Response

  • Identify and assess security risks related to system architecture. Participate in the architecture review board, including risk identification for Information Security.
  • Develop and implement remediation strategies to mitigate vulnerabilities.
  • Participate in security incident response efforts related to architecture and configuration, providing technical expertise and guidance.

Governance & Compliance

  • Be able to demonstrate that appropriate protocols and controls have been implemented for compliance purposes. Remediate issues and develop corrective action plans.

Technical Skills

Security Platforms & Tools: Proficiency with industry-standard SIEM tools, Firewalls, Endpoint Security, Cloud Security, and Vulnerability Management tools.

Email & Web Browser Protection: Knowledge of email security solutions, web security tools, and browser security settings and extensions.

Systems Integration: Experience with securely integrating SaaS solutions with internal systems directories (AD, Azure AD), and cloud environments (AWS, Azure, GCP).

  • API Integration: Proven experience in integrating tools and systems using APIs to ensure least privilege principles, seamless data flow and automation.
  • Scripting & Automation: Knowledge of scripting languages (PowerShell, Python) for automation of IAM processes and workflows is a plus.
  • Database & Infrastructure: Understanding of databases, server infrastructure, and network security fundamentals a plus.

Security Frameworks: Familiarity with relevant frameworks (NIST, CIS, ISO 27001) and regulations (SOX, GDPR).

Soft Skills

Analytical Thinking: Ability to analyze complex security issues and develop effective solutions, adapting to evolving business and security landscapes.

Communication & Presentation: Strong written and verbal skills to articulate complex technical concepts to both technical and non-technical audiences.

Problem-Solving: Analytical mindset to diagnose issues quickly, identify root causes, and implement effective solutions.

Collaboration & Stakeholder Engagement: Able to influence IT teams and align to common objectives. Comfortable working with cross-functional teams and managing relationships with executives, auditors, and other key stakeholders.

Adaptability: Able to handle changing priorities and remain flexible in a dynamic environment.

Education and Qualifications

Proven Experience of designing and/or securing global enterprise systems against cyber threats. 3-5 years in security engineering, securing operations, or related security roles preferred.

Track Record of successful project delivery, cross functional collaboration, and stakeholder management.

Bachelor’s degree in computer science, Information Systems, Cybersecurity, or a related field (or equivalent work experience).

Certifications such as Certified Information Systems Security Professional (CISSP), GIAC Security Essentials Certification (GSEC), CompTIA Security + are preferred. CCNA, Microsoft, AWS, RHCE are a plus.

Overnight Travel:

  • Work may require out-of-town travel depending upon assignment (training and meeting).

At Ultra Clean Technology, we do not just welcome diversity - we celebrate it! Ultra Clean Technology is proud to be an equal opportunity employer. We are committed to equal employment opportunity regardless of race, color, national or ethnic origin, age, religion, disability, sexual orientation, gender, gender identity and expression, marital status, and any other characteristic protected under laws and regulations.

UCT offers an excellent benefits package to all full-time employees, which includes medical, dental, vision, 401(k), and paid time off.

Equal Opportunity Employer

This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.

Read Full Description
Confirmed 14 hours ago. Posted 2 days ago.

Discover Similar Jobs

Suggested Articles