Sr SecOps Engineer
Listed on 2025-11-20
-
IT/Tech
Cybersecurity, Systems Engineer, Security Manager
Apply for the Sr Sec Ops Engineer role at Lending Club
.
Current employees of Lending Club: please apply via your internal Workday account.
Lending Club Corporation (NYSE: LC) is the parent company of Lending Club Bank, National Association, Member FDIC. We are the leading digital marketplace bank in the U.S., having helped our nearly 5 million members secure over $90 billion in loans to refinance high‑cost debt and achieve their financial goals. Members today have mobile‑first access to a growing range of products and services designed to work seamlessly together to deliver value in new ways.
Everyone deserves a better financial future, and our team is committed to making that a reality.
Our Infrastructure team (Production Operations) is made up of passionate, experienced professionals who excel at running, managing and scaling large‑scale web operations and systems administration. The team works closely with the rest of our Engineering and Info Sec organizations to ensure that the platform powering Lending Club remains reliable, performant and secure 24/7. Within Infrastructure, the Security Operations (Sec Ops) team plays a critical role by bridging operations and security.
As part of this team, you’ll be directly responsible for building and running the tools, controls, and processes that protect Lending Club’s systems and members. Sec Ops engineers partner closely with cloud, systems, and security architects to ensure that every layer of our infrastructure is resilient and secure by design.
- Lead monitoring of security tools, triage alerts, and oversee timely remediation of threats and incidents
- Drive root cause analysis and lessons learned to strengthen defenses and improve response playbooks
- Own vulnerability scanning, validation, and remediation tracking across infrastructure, endpoints, and cloud environments
- Partner with Info Sec, Engineering, and Compliance to close systemic security gaps and improve audit readiness
- Design, implement, and maintain Identity and Access Management (IAM) policies, roles, and least‑privilege models across cloud and enterprise systems
- Lead deployment and operations of Privileged Access Management (PAM) solutions to secure elevated accounts and sessions
- Continuously assess access controls to align with Zero Trust principles and regulatory requirements
- Design, build, and maintain security tooling, automation, and integrations for detection, logging, and compliance
- Securely implement and manage cloud‑native security controls in AWS (IAM, WAF, Guard Duty, Security Hub, KMS)
- Contribute to infrastructure‑as‑code pipelines with Terraform, Jenkins, and Git to embed security into delivery
- Support internal and external audits with evidence collection and control validation
- Consult with stakeholders to design corrective actions and improve security posture
- Mentor peers, share knowledge, and help establish Lending Club‑wide security best practices
- 6+ years of experience in security operations, engineering, or related infrastructure security roles in a medium‑to‑large enterprise
- Bachelor's degree or higher in a related field; or equivalent work experience
- Proven expertise with vulnerability scanning tools (Qualys, Wiz, Orca, Upwind) and EDR platforms (Crowdstrike, Tanium, Sentinel One, etc.)
- Strong knowledge of AWS security services (IAM, Guard Duty, Security Hub, WAF, KMS, VPC security)
- Hands‑on experience with SIEM & logging platforms (Splunk, ELK, Cloud Watch, Kibana)
- Proficiency in automation & scripting (Python, Bash, Go, Power Shell); experience with IaC (Terraform, Ansible, Cloud Formation) is a MUST
- Solid understanding of Windows & Linux architectures and security hardening baselines (CIS, STIGs)
- Familiarity with security tools (Kali, Nmap, Wireshark) and adversary techniques (exploitation, lateral movement, privilege escalation)
- Strong written and verbal communication; able to present technical findings to both engineers and executives
- Security certifications (CISSP, GSEC, CEH, OSCP)…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).