<p>We are looking for an IT Security Specialist to support daily cybersecurity operations for a growing organization in San Francisco, California. This Long-term Contract position is ideal for a hands-on, detail-oriented security specialist who can independently investigate threats, strengthen vulnerability management practices, and collaborate across IT, compliance, and security teams. The role also contributes to employee security education, asset visibility, and incident documentation while helping maintain a strong operational security posture.</p><p><br></p><p>This is a contract position and requires 4 days a week onsite in San Francisco.</p><p><br></p><p>Responsibilities:</p><p>• Monitor and assess security events generated by detection platforms, investigate suspicious activity, and escalate validated threats as needed.</p><p>• Perform incident analysis to determine underlying causes, document conclusions, and recommend practical corrective actions.</p><p>• Review data protection alerts for signs of policy breaches, unauthorized data movement, or insider risk, and coordinate escalation with appropriate stakeholders.</p><p>• Refine data loss prevention rules and alert logic to improve signal quality while preserving effective monitoring coverage.</p><p>• Maintain the enterprise asset inventory, verify device classification accuracy, and work with IT teams to address unknown or unmanaged assets.</p><p>• Run automated penetration testing activities, evaluate attack path results, and partner with technical teams to prioritize and remediate identified weaknesses.</p><p>• Oversee ongoing vulnerability scanning, interpret findings based on risk and asset importance, and track remediation progress through completion or documented exception.</p><p>• Deliver security awareness sessions for new hires and support phishing simulation campaigns, including follow-up education for higher-risk user groups.</p><p>• Coordinate security-related work across IT, compliance, and internal security partners while keeping operational procedures, runbooks, and incident records current.</p>