It's fun to work in a company where people truly BELIEVE in what they're doing! We're committed to bringing passion and customer focus to the business. If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us! 1. Security monitoring and alert triage Monitor Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), anti-malware, email security, web security and cloud security alerts. Validate, triage and prioritise security events using agreed playbooks, business impact and risk context. Create accurate incident records, preserve relevant evidence and escalate incidents through the agreed incident management process. Support containment, eradication and recovery activities under the direction of the incident owner. 2. Incident response and operational support Follow documented incident response procedures for malware, phishing, account compromise, data exposure, suspicious network activity and lost or stolen devices. Assist with post-incident actions, including evidence capture, timeline building, lessons learned and remediation tracking. Maintain security operations knowledge base articles and playbooks for repeatable response tasks. 3. Vulnerability and configuration management Run or support scheduled vulnerability scanning across servers, endpoints, network devices, applications and cloud services. Validate scan findings, remove false positives where evidence supports this, assign remediation tickets and monitor progress against agreed service levels. Support secure configuration checks against approved baselines, including endpoint hardening, logging configuration and privileged account controls. Provide clear remediation guidance to infrastructure, application and service teams. 4. Identity, access, Data Loss Prevention and Multi-Factor Authentication Support identity and access management processes, including joiners, movers, leavers, privileged access reviews and evidence collection for access recertification. Monitor and investigate Data Loss Prevention (DLP) alerts, applying agreed classification, privacy and escalation rules. Support Multi-Factor Authentication (MFA) administration, user enrolment, exception handling, break-glass access checks and failed authentication investigations. Assist with user access investigations where suspected compromise, misuse or policy breach is identified. 5. Security controls and tooling Operate security tools in line with documented procedures and change controls. Support maintenance of alert rules, watchlists, endpoint policies, email filtering rules and data protection controls under approved guidance. Record control issues, service defects and improvement opportunities. Carry out routine security checks for backup alerts, logging gaps, certificate expiry, secure configuration and monitoring coverage. 6. Policy, compliance and assurance support Gather evidence for audits, risk assessments, supplier checks and compliance reviews. Apply relevant internal policies, standards and data handling requirements. Support regular checks against security standards, control requirements and business processes. Identify policy exceptions or control gaps and raise them through the agreed risk management process. 7. Awareness and stakeholder support Provide practical security advice to users and technical teams. Support phishing exercises, security awareness activities and targeted communications. Explain security requirements in a clear, proportionate and helpful way. Promote secure behaviours, including reporting suspicious activity, protecting credentials and handling sensitive data correctly. 8. Reporting and documentation Maintain accurate incident, alert, remediation and evidence records. Prepare routine operational reports on alerts, incidents, vulnerabilities, Data Loss Prevention (DLP), Multi-Factor Authentication (MFA), control exceptions and remediation progress. Contribute to dashboards and management information using agreed metrics. Keep procedures, playbooks and technical notes up to date. Qualifications Bachelor Degree in Computer Science, Information Technology, Cybersecurity, or related fields. At least 1–2 years of experience in IT governance, IT audit, risk, or compliance Experience in cybersecurity risk assessment, threat modeling, control testing, or security governance. Good command of spoken and written in English. Strong analytical and problem-solving skills Good documentation and report-writing abilities Attention to detail and organizational skills We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation. Lumentum is illuminating the networks of tomorrow with advanced photonic technologies that enable AI, data centers, telecom, industrial, and sensing applications. As AI accelerates the global demand for bandwidth and energy efficiency, we deliver the building blocks that keep data moving reliably, efficiently, and at massive scale. Our optical products support AI and compute infrastructure, cloud and DCI environments, metro and long-haul networks, while our lasers drive breakthroughs in precision manufacturing and sensing. For nearly five decades, Lumentum has been at the intersection of light and innovation. What began as a vision with JDS Uniphase to harness the power of photonics has evolved into a global force driving the communication infrastructure of tomorrow. At Lumentum, we’re building more than a business—we’re building a team of passionate innovators whose drive to collaborate, create, and connect the world fuels everything we do. We are part of the AI technology revolution and we are illuminating the path forward. Headquartered in San Jose, California, we operate worldwide through a network of R&D, manufacturing, and sales locations.