Cybersecurity Engineer
TLDR
Monitor SIEM, EDR, and IDS/IPS alerts, investigate incidents, and run phishing simulation programs.
Role: Associate Cyber Security Engineer
Hybrid Role, MUST BE BASED IN SAN DIEGO, CA
About Tillster
Tillster, headquartered in the USA, is the global leader in digital ordering and customer engagement solutions. For over a decade, we have developed revolutionary self-service ordering and payment solutions – for mobile, tablet, online, kiosk, call center, and more – creating personalized interactions based on consumer preferences, language, and currency. Our platform is compatible with 15+ unique POS systems, representing over 90% coverage in multi-unit restaurants. We offer one platform; one scalable, enterprise-class solution – to create world-class digital engagement solutions.
Our mission and passion are one in the same: Empower restaurants and consumers to engage and transact anywhere, anytime, and from any device - one consumer at a time, one order at a time, billions of times over. In doing so, together we are transforming e-commerce in restaurants and make the till grow for Tillster and our customers.
Job Summary
The Associate Cyber Security Engineer is responsible for monitoring, detecting, analyzing, and responding to security threats across the organization’s systems and networks. This role is hands-on and operational, serving as the front line of defense by investigating alerts, responding to incidents, and supporting continuous improvement of the security program.
Key Responsibilities
Security Monitoring & Detection
Monitor security alerts from SIEM, EDR, IDS/IPS, and other security tools
Identify suspicious activity, anomalies, and potential security incidents
Triage alerts and determine severity, scope, and impact
Escalate incidents according to defined procedures
Incident Response & Investigation
Investigate security events and confirm true positives
Assist with containment, eradication, and recovery efforts
Collect and preserve evidence for incident analysis
Participate in post-incident reviews and lessons learned
Threat Analysis & Intelligence
Analyze attacker techniques, tactics, and procedures (TTPs)
Stay current on emerging threats and vulnerabilities
Contribute to threat intelligence and detection improvements
Recommend enhancements to alerting and response processes
Vulnerability & Risk Support
Review vulnerability scan results and assist with validation
Track remediation efforts and verify fixes
Security Awareness Training & Phishing
Assist in developing, delivering, and maintaining security awareness training for employees, including onboarding and annual refresher content
Plan, configure, and execute phishing simulation campaigns in coordination with senior team members
Monitor and triage user-reported suspicious emails, escalating confirmed phishing attempts as security incidents
Analyze phishing simulation and training results to identify high-risk users, departments, and trends
Coordinate targeted follow-up training for users who repeatedly fail phishing simulations
Track training completion and report security awareness program metrics to leadership
Documentation & Reporting
Document incidents, investigations, and response actions
Maintain runbooks, playbooks, and procedures
Prepare reports and metrics for leadership and compliance needs
Collaboration & Support
Work closely with Security Engineers, IT, and DevOps teams
Provide guidance during active security incidents
Support audits and compliance efforts (SOC 2, ISO 27001, PCI, etc.)
Success Metrics
Success in the Associate Cyber Security Engineer position will be evaluated based on performance against key objectives and measurable performance indicators, including, but not limited to:
1. Security Monitoring & Alert Triage – Monitor security tools and triage alerts accurately, consistently, and within established service levels.
2. Incident Investigation & Response Support – Investigate security events and support containment, eradication, and recovery efforts under the direction of senior team members.
3. Threat Analysis & Detection Improvement – Apply threat knowledge to strengthen alerting, detection, and response processes.
4. Vulnerability & Risk Management Support – Help validate vulnerabilities and track remediation through verified closure.
5. Security Awareness Training & Phishing – Support security awareness training and phishing simulation programs that measurably reduce human-related security risk.
6. Documentation & Reporting – Maintain accurate, complete, and timely security documentation and reporting.
7. Audit & Compliance Support – Support audit and compliance efforts, including SOC 2, ISO 27001, and PCI DSS.
8. Cross-Functional Collaboration – Partner effectively with Security Engineering, IT, and DevOps teams.
9. Professional Growth & Skill Development – Build technical depth and increasing independence across security operations.
These success metrics and performance indicators are intended to provide a framework for evaluating performance and are not exhaustive. The Company may establish, modify, replace, reprioritize, or adjust these metrics, thresholds, service levels, and performance expectations from time to time based on evolving business requirements, technologies, security risks, regulatory obligations, and operational needs. Performance will also be evaluated based on the overall responsibilities, conduct, judgment, collaboration, learning and development, and expectations of the position.
Pay and Benefits (USA)
Salary is $65,000-$85,000
Health Benefits: All full-time, regular employees and their dependents are eligible for medical, dental, vision and FSA benefits. Additional health benefits include Healthcare and Dependent Care reimbursement programs, Employee Assistance Program (“EAP”) and Optum Care 24-hour confidential medical counseling services.
Holidays: The company observes ten (10) paid holidays per calendar year.
Paid Time Off (PTO): Full-time, regular employees earn 15 days of PTO in the first 12-months of continuous service, and 22 days in subsequent years. Eligible part-time employees earn pro-rated PTO.
Retirement: Effective with your employment start date, you will be eligible to participate in the 401(k) Plan.
Education, Learning & Development: We offer college tuition and education assistance programs; Udemy Learning courses; and ongoing learning and development opportunities.
Local Candidates Only
No Visa Sponsorship
Principals only – no Agencies or calls please
Benefits
Education Stipend
We offer college tuition and education assistance programs; Udemy Learning courses; and ongoing learning and development opportunities.
Health Insurance
Additional health benefits include Healthcare and Dependent Care reimbursement programs, Employee Assistance Program (“EAP”) and Optum Care 24-hour confidential medical counseling services.
Paid Time Off
Full-time, regular employees earn 15 days of PTO in the first 12-months of continuous service, and 22 days in subsequent years. Eligible part-time employees earn pro-rated PTO.
Tillster builds advanced digital ordering and customer engagement solutions tailored for the restaurant and retail sectors. Our platform streamlines self-service, ordering, and payments across multiple channels, ensuring seamless integration with various point-of-sale systems.
- Founded
- Founded 2002
- Employees
- 201-500 employees
- Industry
- computer software
- Total raised
- $34M raised