Senior Vice President, Cyber Security
Los Angeles, United States
Full Time Senior-level / Expert USD 200K - 225K
Oaktree
Oaktree Capital Management: Global investment firm specializing in alternative investments, delivering superior risk-adjusted returns with a value-oriented approach.Our Company
Oaktree is a leader among global investment managers specializing in alternative investments, with more than $202 billion in assets under management as of March 31, 2025. The firm emphasizes an opportunistic, value-oriented, and risk-controlled approach to investments in distressed debt, corporate debt (including high yield debt and senior loans), control investing, convertible securities, real estate, and listed equities. Headquartered in Los Angeles, the firm has over 1000 employees and offices in 20 cities worldwide.
For additional information please visit our website at www.oaktreecapital.com
Responsibilities
Based in downtown Los Angeles, this position will be part of the Information Technology Infrastructure and Operations team. The IT I&O team is part of the global Information Technology organization and oversees the firm’s technology infrastructure, including Microsoft Azure Cloud Services and Amazon Web Services, Data Center Operations, Network Engineering, Technology Services, IT Governance & Release Management, Database Administration, and Cybersecurity. It is expected that the candidate would work in the office 3 days per week as part of our hybrid working model.
Responsibilities for this role include:
- Lead and manage the technical security operations team, ensuring effective implementation and continuous improvement of cybersecurity technologies and processes
- Develop and refine threat hunting hypotheses based on threat intelligence, attack patterns, and knowledge of attacker tactics, techniques, and procedures (TTPs)
- Direct the implementation and management of Data Loss Prevention (DLP) solutions to safeguard sensitive information
- Oversee the vulnerability management lifecycle, from discovery and prioritization to remediation and verification.
- Coordinate and lead Red Team exercises, penetration testing, and ethical hacking activities to proactively identify vulnerabilities and strengthen defenses
- Proactively identify and investigate potential threats by conducting continuous threat hunting activities across enterprise environments
- Collaborate closely with IT infrastructure, application development, and DevOps teams to embed security controls throughout the technology lifecycle
- Develop and monitor technical cybersecurity metrics and dashboards to evaluate the effectiveness of security operations
- Act as an escalation point for security incidents, providing strategic guidance during incident response activities.
- Automate security processes and workflows using Python, PowerShell, Bash, or other scripting languages
- Continuously improve security posture through regular reviews, red team/blue team exercises, and attack surface reduction initiatives
- Work with the IT Governance team to maintain and enforce organizational cybersecurity policies, standards, and procedures
- Hands-on experience with DevSecOps methodologies and integrating security into CI/CD pipelines
Qualifications
- Minimum 10 years of experience in cybersecurity with a focus on cybersecurity operations, systems hardening, vulnerability management, threat intelligence, threat hunting, and red teaming/penetration testing
- Strong knowledge of cybersecurity frameworks and standards, including NIST Cybersecurity Framework (CSF)
- ISO 27001, CIS Controls, SOC 2, and PCI-DSS
- Proven experience designing, deploying, and optimizing cybersecurity solutions in complex technology environments.
- Strong understanding of network security, cloud security architectures, secure coding practices, and emerging cybersecurity threats
- Expertise in vulnerability assessment, penetration testing, and red teaming techniques, tools, and methodologies
- Proficiency in using offensive security tools such as Metasploit, Cobalt Strike, Empire, Kali Linux, and BloodHound
- Hands-on experience with SIEM, XDR, and EDR platforms
- Strong knowledge of threat intelligence frameworks such as MITRE ATT&CK, Diamond Model, and Cyber Kill Chain
- Experience in security automation and orchestration using scripting languages such as Python, PowerShell, or Bash
- Strong understanding of cloud security principles and best practices in Azure, AWS, and hybrid cloud environments
Personal Attributes
- Self-starter with a proven ability to take initiative
- Responsible with a strong work ethic and sense of dedication
- Excellent interpersonal, verbal, and written communication skills
- Works well under pressure and with time constraints
- Outstanding organization skills with high attention-to-detail
- Possess intellectual curiosity to improve systems and processes
- Team-oriented with strong integrity and professionalism; and
- Must be able to handle highly confidential information and situations with professionalism and tact.
Education
Bachelor’s degree in computer science, information technology, business administration, finance, or related field from a top college or university.
Relevant security certifications is preferred
- CISSP (Certified Information Systems Security Professional)
- OSCP (Offensive Security Certified Professional)
- CEH (Certified Ethical Hacker)
- GCIA (Certified Intrusion Analyst) or GCIH (Incident Handler)
Base Salary Range
$200,000 - $225,000
In addition to a competitive base salary, you will be eligible to receive discretionary bonus incentives, a comprehensive benefits package and a flexible work arrangement. The base salary offered will be commensurate with experience and/or qualifications, industry knowledge and expertise, as well as prior training and education.
Equal Opportunity Employment Policy
Oaktree is committed to diversity and to equal opportunity employment. Oaktree does not make employment decisions on the basis of race, creed, color, ethnicity, national origin, citizenship, religion, sex, sexual orientation, gender identity, gender expression, age, past or present physical or mental disability, HIV status, medical condition as defined by state law (genetic characteristics or cancer), pregnancy, childbirth and related medical conditions, veteran status, military service, marital status, familial status, genetic information, domestic violence victim status or any other classification protected by applicable federal, state and local laws and ordinances. This policy applies to hiring, placement, internal promotions, training, opportunities for advancement, recruitment advertising, transfers, demotions, layoffs, terminations, recruitment advertising, rates of pay and other forms of compensation and all other terms, conditions and privileges of employment. This policy applies to all Oaktree applicants, employees, clients, and contractors. Staff members wishing to report violations or suspected violations of this policy should contact the head of their department or Human Resources.
For positions based in Los Angeles
For those applying for a position in the city of Los Angeles, the firm will consider for employment qualified applicants with a criminal history in a manner consistent with applicable federal, state and local law.
Tags: Automation AWS Azure Bash Blue team CEH CI/CD CISSP Cloud Cobalt Strike Computer Science Cyber Kill Chain DevOps DevSecOps EDR Ethical hacking Finance GCIA GCIH Governance Incident response ISO 27001 IT infrastructure Kali Linux Metasploit MITRE ATT&CK Network security NIST Offensive security OSCP Pentesting PowerShell Python Red team Scripting SIEM SOC SOC 2 Threat intelligence TTPs Vulnerabilities Vulnerability management XDR
Perks/benefits: Career development Competitive pay Flex hours
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.