About Zum:
Zum is a rapidly expanding Series E startup backed by industry leaders Sequoia Capital, SoftBank, Spark Capital, and GIC, with a bold mission to transform the stagnant school transportation industry. Operating in over 15 states across the United States—with flagship hubs in San Francisco, Los Angeles, and Seattle—we are actively extending our reach to the East Coast and Midwest regions. As a technology-driven company, we deploy cutting-edge solutions to manage and operate school district transportation systems while also launching our own charter platform and developing proprietary SaaS offerings. Additionally, we are spearheading a nationwide initiative to electrify school transportation fleets, simultaneously supporting local utilities by feeding much-needed energy back into the grid. We have been recognized as CNBC 50 disruptor, Financial Times 500 fastest growing companies, Fast Company World Changing Ideas.
Who You Are:
We are seeking a highly motivated Security Engineer to join our team and play a key role in strengthening our security posture as we scale. This role will be responsible for building and improving security processes, workflows, and automations and will play a key role in the implementation of our SOC1 & 2 compliance. You will collaborate cross-functionally with IT, Engineering, and Compliance teams to implement technical safeguards, drive incident investigations, and streamline security operations. This role reports in to the Head of IT & Security.
What You'll Do:
• Design and implement vulnerability management workflows across multiple platforms and systems
• Develop automations to optimize security workflows, threat detection, and data analysis
• Help build out and implement SOC2 compliance framework
• Help buildout and implement SOX required controls within financial tools
• Draft, implement, and maintain security policies, procedures, and monitoring workflows
• Support incident response efforts, including investigation, remediation, and root cause analysis
• Partner with the IT team on least privilege access and DLP controls
• Conduct penetration testing and simulate real-world attacks to proactively identify vulnerabilities
• Build out AI initiatives to support the Security & IT teams needs
• Continuously evaluate new tools and technologies to improve security operations and posture
What You Bring To Zūm:
• 3+ years of experience in security engineering, with specific focus on SOC2 and SOX environments
• Proven experience in conducting penetration testing and vulnerability assessments
• Strong knowledge of vulnerability management tools
• Hands-on experience with automation tools and scripting (e.g., Python, Bash, or PowerShell)
• Familiarity with compliance standards such as SOC 2, SOX, ISO 27001, and NIST
• Strong analytical and problem-solving skills with the ability to respond quickly to security incidents
• Excellent communication and documentation skills
• Experience with cloud environments like AWS
• Experience with SIEM tools and EDR solutions
The targeted base salary range for this role is listed in the compensation section below. Actual salary may be above or below this range based on factors such as location, skills, and relevant experience. In addition, this position may include additional compensation in the form of equity or commissions. If you are a full-time salaried or hourly worker, we offer the following benefits: Medical, Dental, Vision, 401(k), Holidays, Wellness, Vacation, and more. The targeted pay range for this role is: $140,000 to $177,000
Zum Services, Inc. and all its subsidiaries provide equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.
If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.
Experienced Enterprise Engineer/Architect needed to design scalable, secure enterprise solutions and lead cloud migrations while providing technical leadership across teams.
Senior Security Engineer specializing in Identity to architect and operate SailPoint and PAM solutions (CyberArk preferred) for a remote U.S.-based team focused on secure, scalable access management.
M&T Bank is hiring a Senior Cybersecurity Engineer – Firewall to design, implement, and tune firewall/security solutions as part of its Protection Engineering team at the Buffalo Tech Hub (hybrid).
Cooper University Health Care is hiring a Security Engineer to help secure and optimize network and security infrastructure while working closely with IT and business stakeholders.
Major League Soccer is hiring a Director of Security & Network Operations to oversee and scale network and security operations for enterprise, cloud, and live-event broadcast environments.
Support a major GSA digital transformation effort as a Systems Administrator III responsible for SD‑WAN, routing, vulnerability remediation, and large-scale network provisioning across hundreds of sites.
Avint LLC is hiring a Systems Cybersecurity Journeyman to lead ACAS/STIG reporting, vulnerability analysis, and RMF support for Air Force enterprise systems at Hanscom AFB.
Support and improve Oxeon’s technology and data hygiene through user training, troubleshooting, vendor coordination, and process documentation in a hybrid New York-based role.
Support HHS Cybersecurity Operations by collecting, analyzing, and reporting actionable threat intelligence across open and classified sources to protect the HPH sector.
Lead security engineering and RMF efforts to secure Anduril products for classified, air-gapped deployments while managing ISSO teams and earning/maintaining ATOs.
Lead ALO's cybersecurity and infrastructure programs to protect data, detect and remediate threats, and ensure reliable operations across cloud and on-prem systems.
Experienced Senior Network and Computer Systems Administrator needed to provide on-site technical support, manage IT assets, and perform ISSO/cybersecurity liaison duties for government customers.
American Operations Corporation is hiring a Windows Systems Engineer to architect, deploy, and maintain secure Windows Server environments for DoD-focused networked corporate systems.
Modernizing Student Transportation to Make it Safe, Sustainable, and Accessible for All
6 jobs