Cyber Security Operations Engineer III jobs in United States
cer-icon
Apply on Employer Site
company-logo

QuikTrip · 7 hours ago

Cyber Security Operations Engineer III

QuikTrip is seeking a Cyber Security Operations Engineer III who will serve as a technical leader responsible for incident response, threat detection, and the continuous improvement of cyber security solutions. The role involves mentoring IT staff, providing third-tier support, and ensuring compliance with regulatory requirements while enhancing security technologies.

FuelGroceryRetail
check
Growth Opportunities
check
H1B Sponsor Likelynote

Responsibilities

Lead Cyber Security Incident Response as an incident owner, direct incident response activities, provide real-time decision making and communicate with the incident commander
Function as a threat hunter, working proactively to seek out weaknesses and stealthy attackers, conducting penetration tests and reviewing vulnerability assessments
Continuously develop and improve security technologies, focusing on the development of automation and orchestration capabilities as it relates to incident response
Coordinate documentation of activities during an incident and provide status updates to the incident commander during the life cycle of the incident. Participate in post-mortem collections and after-action reviews to identify and remediate gaps in processes and technologies
Participate in regular table-top sessions with the CSIRT and E-CSIRT teams to evaluate readiness, address changes in QuikTrip, external cyber security threats and impact. Participate in after action reviews to identify and remediate gaps in process or technologies
Serve as an escalation point for all cyber security infrastructure operational issues during business hours and on-call for junior members of the team
Provide third tier support and subject matter expertise for all QuikTrip cyber security technologies and solutions
Work with the CSOC Principal and Manager to provide the team with tactical direction of operational technology capabilities focused on continuous improvement
Guide Security Engineering with necessary support as needed during IT projects with Cyber Security needs. Ensure project transitions meet CSOC operational standards for needed functionality, prevention, monitoring, detection, and response
Perform third tier analysis of exploits such as malware, network intrusions, and unauthorized use to help determine attack-surface, patient zero, and possible pivot-points for escalation
Provide technical leadership to the team and guidance in investigating escalated notable/suspicious events and the latest investigation techniques, containment and mitigation methods, evidence handling standards, threat intelligence, playbook development and case documentation best practices
Participate in the Cyber Security Risk Scoring process to include scoring risks, providing remediation or compensating control guidance and risk remediation/mitigation validation
Stay current on monitoring, detection, prevention, analysis, and investigation techniques/tools and adversary techniques, to implement recommendations for improving cyber security event processes, procedures and tooling
Participate in regular technical table-top sessions with the cyber security teams to evaluate readiness, address changes in QuikTrip, external cyber security threats and impact. Participate in after action reviews to identify and remediate gaps in process or technologies
Provide leadership and mentoring to IT staff in the following manner
Coordinate or lead necessary training to develop staff
Ensure that appropriate technology is implemented in the appropriate manner
Provide timely and effective communication of changes to processes and technologies
Maintain technical competence and relevance on existing and emerging cyber security, infrastructure, and automation technologies
Conceive, define, develop, and deploy tools/processes which help automate QT’s cyber security technologies to produce higher business value
Help develop cyber security awareness content and provide education on security policies and practices both internal and external to the group
Routinely evaluate documentation provided by Security Engineering staff to ensure complete coverage of required diagrams, support articles, and other necessary documentation

Qualification

Cyber Security TechnologiesIncident ResponseNetwork DefenseData ProtectionCryptographyCompliance StandardsScriptingProject ManagementMentoringCommunication SkillsTeam LeadershipProblem Solving

Required

Bachelors in relevant field or the equivalent combination of education and experience
Minimum of 8 years of progressive experience with cyber security technology design, administration or incident response in large, complex environments, particularly in multi-region retail
Advanced expertise in cryptography, network defense, endpoint protection, forensics, data protection, and incident response
Advanced understanding of data center technologies and concepts including services, security, infrastructure design, disaster recovery practices
Advanced level troubleshooting of IT systems
In depth knowledge of compliance standards such as HIPAA, PCI, and SOX
Experience mentoring, training, and developing other IT staff
Advanced knowledge of multiple cyber security technologies, including next generation firewalls, IDS/IPS, network access control, email and web security, digital forensics, endpoint detection and response, vulnerability scanning and analysis, data protection, credential vaulting, certificate management, Multi-Factor, access brokering, SIEM, public cloud compliance and Cybersecurity automation and orchestration technologies
Advanced experience in planning and tracking the execution of large and complex projects or other efforts
Experience in scripting or software development
The ability to communicate effectively to both business and IT staff in a professional manner

Preferred

Bachelor's degree in Cyber Security or a degree in a technology related field
Multiple industry certifications in Security, Systems Administration, and/or Networking, such as CISSP, GDSA, CCNP Security, or PCNSE
Advanced experience in all aspects of cyber security technologies and knowledge in supporting and building large, complex cyber security environments
Experience planning and implementing a technical backlog to drive continuous improvement of technology and practices
Working experience with Active Directory and Microsoft and/or Linux OS, networking, identity and access management, wireless networking and security, penetration testing, incident response, and application security methodologies
Understanding of encryption systems and methodology
Advanced experience in software development or secure coding techniques

Benefits

Employee Benefits – QuikTrip

Company

QuikTrip

company-logo
QuikTrip is 24 hour hour convenience store that offers gasoline and various grocery items.

H1B Sponsorship

QuikTrip has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2023 (1)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Gina Hitz
Retired
linkedin
Company data provided by crunchbase