Now hiring

Cybersecurity Engineer @ Tillster

USHybridFull-time
Apply with ResuMinder

Opens on the employer's site

About this role

Role: Associate Cyber Security Engineer Hybrid Role, MUST BE BASED IN SAN DIEGO, CA

About Tillster Tillster, headquartered in the USA, is the global leader in digital ordering and customer engagement solutions. For over a decade, we have developed revolutionary self-service ordering and payment solutions – for mobile, tablet, online, kiosk, call center, and more – creating personalized interactions based on consumer preferences, language, and currency. Our platform is compatible with 15+ unique POS systems, representing over 90% coverage in multi-unit restaurants. We offer one platform; one scalable, enterprise-class solution – to create world-class digital engagement solutions.

Our mission and passion are one in the same: Empower restaurants and consumers to engage and transact anywhere, anytime, and from any device - one consumer at a time, one order at a time, billions of times over. In doing so, together we are transforming e-commerce in restaurants and make the till grow for Tillster and our customers.

Job Summary

The Associate Cyber Security Engineer is responsible for monitoring, detecting, analyzing, and responding to security threats across the organization’s systems and networks. This role is hands-on and operational, serving as the front line of defense by investigating alerts, responding to incidents, and supporting continuous improvement of the security program.

Key Responsibilities

Security Monitoring & Detection

Monitor security alerts from SIEM, EDR, IDS/IPS, and other security tools

Identify suspicious activity, anomalies, and potential security incidents

Triage alerts and determine severity, scope, and impact

Escalate incidents according to defined procedures

Incident Response & Investigation

Investigate security events and confirm true positives

Assist with containment, eradication, and recovery efforts

Collect and preserve evidence for incident analysis

Participate in post-incident reviews and lessons learned

Threat Analysis & Intelligence

Analyze attacker techniques, tactics, and procedures (TTPs)

Stay current on emerging threats and vulnerabilities

Contribute to threat intelligence and detection improvements

Recommend enhancements to alerting and response processes

Vulnerability & Risk Support

Review vulnerability scan results and assist with validation

Track remediation efforts and verify fixes

Security Awareness Training & Phishing

Assist in developing, delivering, and maintaining security awareness training for employees, including onboarding and annual refresher content

Plan, configure, and execute phishing simulation campaigns in coordination with senior team members

Monitor and triage user-reported suspicious emails, escalating confirmed phishing attempts as security incidents

Analyze phishing simulation and training results to identify high-risk users, departments, and trends

Coordinate targeted follow-up training for users who repeatedly fail phishing simulations

Track training completion and report security awareness program metrics to leadership

Documentation & Reporting

Document incidents, investigations, and response actions

Maintain runbooks, playbooks, and procedures

Prepare reports and metrics for leadership and compliance needs

Collaboration & Support

Work closely with Security Engineers, IT, and DevOps teams

Provide guidance during active security incidents

Support audits and compliance efforts (SOC 2, ISO 27001, PCI, etc.)

Success Metrics

Success in the Associate Cyber Security Engineer position will be evaluated based on performance against key objectives and measurable performance indicators, including, but not limited to:

1. Security Monitoring & Alert Triage – Monitor security tools and triage alerts accurately, consistently, and within established service levels.

2. Incident Investigation & Response Support – Investigate security events and support containment, eradication, and recovery efforts under the direction of senior team members.

3. Threat Analysis & Detection Improvement – Apply threat knowledge to strengthen alerting, detection, and response processes.

4. Vulnerability & Risk Management Support – Help validate vulnerabilities and track remediation through verified closure.

5. Security Awareness Training & Phishing – Support security awareness training and phishing simulation programs that measurably reduce human-related security risk.

6. Documentation & Reporting – Maintain accurate, complete, and timely security documentation and reporting.

7. Audit & Compliance Support – Support audit and compliance efforts, including SOC 2, ISO 27001, and PCI DSS.

8. Cross-Functional Collaboration – Partner effectively with Security Engineering, IT, and DevOps teams.

9. Professional Growth & Skill Development – Build technical depth and increasing independence across security operations.

These success metrics and performance indicators are intended to provide a framework for evaluating performance and are not exhaustive. The Company may establish, modify, replace, reprioritize, or adjust these metrics, thresholds, service levels, and performance expectations from time to time based on evolving business requirements, technologies, security risks, regulatory obligations, and operational needs. Performance will also be evaluated based on the overall responsibilities, conduct, judgment, collaboration, learning and development, and expectations of the position.

Pay and Benefits (USA)

Salary is $65,000-$85,000

Health Benefits: All full-time, regular employees and their dependents are eligible for medical, dental, vision and FSA benefits. Additional health benefits include Healthcare and Dependent Care reimbursement programs, Employee Assistance Program (“EAP”) and Optum Care 24-hour confidential medical counseling services.

Holidays: The company observes ten (10) paid holidays per calendar year.

Paid Time Off (PTO): Full-time, regular employees earn 15 days of PTO in the first 12-months of continuous service, and 22 days in subsequent years. Eligible part-time employees earn pro-rated PTO.

Retirement: Effective with your employment start date, you will be eligible to participate in the 401(k) Plan.

Education, Learning & Development: We offer college tuition and education assistance programs; Udemy Learning courses; and ongoing learning and development opportunities.

Local Candidates Only No Visa Sponsorship Principals only – no Agencies or calls please

Skills

Enterprise IT

Ready to apply?

Install the ResuMinder extension and we'll auto-fill the application in seconds — no rewriting.

See how your CV scores