Senior Risk Operations Specialist, Supplier Security Risk Management (SSRM)
Location: Irvine, HQ
Company Overview
Hyundai AutoEver America (HAEA) is the dynamic IT powerhouse behind Hyundai Motor Corporation, a Fortune 500 global leader in the automotive industry. As a key affiliate, we provide cutting-edge IT services and support to top brands including Kia, Genesis, Hyundai Translead, Hyundai Mobis, Hyundai Capital, and Glovis.
HAEA offers a truly global and collaborative environment. Here, you'll drive innovation, boost operational efficiency, and help shape the future of mobility for the Hyundai Motor Group.
At HAEA, we understand that IT is the cornerstone of today's fast-evolving digital world. By uniting all IT resources under one roof, we deliver consistent, top-quality solutions while serving as the crucial information link between Hyundai's Global Headquarters and North American operations.
If you're passionate about technology and eager to make a real impact at a world-class company, Hyundai AutoEver America is the place to grow your career. Join us and be part of the transformation that's driving the future of automotive innovation.
Website: www.haeaus.com
Role Overview
The Senior Risk Operations Specialist, Supplier Security Risk Management (SSRM), is a senior-level individual contributor responsible for supporting and managing critical information security and network security initiatives across the organization. This role plays a key part in protecting corporate assets by designing, implementing, administering, operating, and continuously improving enterprise security technologies, processes, and controls.
The position supports a broad range of cybersecurity functions, including intrusion detection, incident response, vulnerability management, application security, and compliance with corporate information security policies. The successful candidate will work closely with internal and external stakeholders to identify security requirements, evaluate risks, implement security solutions, and strengthen overall security posture across systems, networks, and business applications.
In addition, this role provides technical security engineering expertise, leads or participates in incident response activities, supports audit and compliance initiatives, and delivers reporting and recommendations to senior stakeholders. The position requires a strong combination of hands-on technical expertise, risk management knowledge, and the ability to communicate effectively with both technical and executive audiences.
Key Responsibilities
- Design, build, test, and deploy enterprise security technologies and associated operational procedures and runbooks.
- Provide technical security engineering support for existing security systems and automate security implementation, monitoring, and enforcement processes.
- Investigate, evaluate, deploy, and integrate security tools and technologies to improve protection of corporate infrastructure and assets.
- Conduct technical risk assessments and security exposure analyses of systems, networks, and business applications.
- Analyze network security architectures to ensure optimal security, performance, and cost effectiveness.
- Oversee installation, configuration, and operational support of security technologies.
- Participate in and lead incident response activities, investigations, and remediation efforts.
- Collaborate with internal and external stakeholders to identify security requirements and develop solutions to security challenges.
- Prepare and deliver periodic or ad hoc security reports and situational awareness updates for senior stakeholders.
- Monitor networks and infrastructure for cyber threats, malware, and unauthorized activity, ensuring complete remediation of identified issues.
- Implement security infrastructure changes in accordance with established change management policies and procedures.
- Evaluate, configure, tune, and operate security solutions including intrusion prevention systems, vulnerability scanners, and encryption technologies.
- Recommend enhancements to security technologies, processes, and reporting capabilities.
- Support security audits, assessments, compliance reviews, and risk management initiatives.
- Participate in an established on-call rotation to support after-hours security operations.
- Perform additional security-related projects and operational support activities as assigned.
Basic Qualifications
- Bachelor’s degree in Computer Science, Information Systems, or a related field, or equivalent work experience AND 8+ years of relevant IT experience with at least 5 years performing Security Engineering, Security Planning, or Security Operations functions.
- Experience working within medium-to-complex computing environments with advanced knowledge of security technologies and services.
- Hands-on experience with two or more enterprise security technologies, including:
- Network Intrusion Prevention/Detection Systems
- Virtual Private Networks (SSL, IPSec, Site-to-Site)
- Enterprise-class Stateful Inspection Firewalls
- Network Access Control and Identity Management solutions
- Windows Server and Desktop Operating Systems
- Network Packet Inspection technologies
- Directory Services including LDAP, Active Directory, and Secure Authentication Technologies
- Experience implementing information security technologies and/or security processes.
- Experience defining information security strategies and frameworks.
- Experience integrating security technologies into enterprise operational frameworks.
- Strong verbal and written communication skills with the ability to engage technical and executive-level stakeholders.
- Ability to manage multiple priorities within a team-oriented environment.
- Strong attention to detail and analytical problem-solving skills.
- Knowledge of information security risk assessment methodologies and industry standards.
- Experience creating technical documentation, reports, proposals, statements of work, and white papers.
- Ability to work independently and successfully complete projects with minimal supervision.
Preferred Qualifications
- Master’s degree in Computer Science, Information Systems, or a related field, or equivalent work experience AND 8+ years of relevant IT experience with at least 5 years performing Security Engineering, Security Planning, or Security Operations functions.
- CISSP certification.
- CISSP-ISSAP certification.
- SANS certifications or other professional certifications related to security engineering.
Technical Knowledge
- Security engineering, security operations, and security architecture.
- Intrusion prevention and detection technologies.
- Vulnerability management and security assessment methodologies.
- Network security architecture and packet inspection.
- Firewall administration and VPN technologies.
- Identity management, authentication, LDAP, and Active Directory.
- Endpoint protection, network access control, and multi-factor authentication technologies.
- Windows Server and desktop operating systems.
- Security monitoring, enforcement, and automation.
- Security & Risk Management
- Incident response and remediation processes.
- Security risk assessments and exposure analysis.
- Security compliance reviews and audit support.
- Information security strategy and framework development.
- Security technology integration within enterprise environments.
- Communication & Leadership
- Ability to communicate effectively with technical teams, business stakeholders, and executives.
- Ability to influence and guide security initiatives across the organization.
- Experience preparing and presenting security reports to senior leadership
Operational Skills
- Technical documentation and report development.
- Project execution with minimal supervision.
- Multi-tasking and prioritization in fast-paced environments.
- Strong attention to detail and analytical thinking.
Salary range: $103,170 - $158,873
In addition to a competitive salary, this position offers a fantastic benefits package that includes comprehensive medical/dental coverage, generous PTO, education assistance, and annual merit increase eligibility in a growth-focused work environment.
Team Culture
Our team thrives on collaboration, innovation, and continuous learning. We foster a supportive environment where every member is encouraged to share ideas and contribute to problem-solving. We value:
- Passion for Technology
- Agility
- Teamwork
- Growth
- Inclusivity
Learn more about this Employer on their Career Site
