MIGUEL HIDALGO, Distrito Federal, Mexico
1 day ago
Emerging Technologies Security – Senior Information Security Analyst
Overview We Are PepsiCo Join PepsiCo and Dare for Better! We are the perfect place for curious people, thinkers and change agents. From leadership to front lines, we're excited about the future and working together to make the world a better place. Being part of PepsiCo means being part of one of the largest food and beverage companies in the world, with our iconic brands consumed more than a billion times a day in more than 200 countries. Our product portfolio, which includes 22 of the world's most iconic brands, such as Sabritas, Gamesa, Quaker, Pepsi, Gatorade and Sonrics, has been a part of Mexican homes for more than 116 years. A career at PepsiCo means working in a culture where all people are welcome. Here, you can dare to be you. No matter who you are, where you're from, or who you love, you can always influence the people around you and make a positive impact in the world. Know more: PepsiCoJobs Join PepsiCo, dare for better. The Opportunity Your Impact as As Emerging Technologies Security – Senior Information Security Analyst your responsibilities would consist of for building and operationalizing security solutions in emerging technology areas like containers, API, AI/ML. Our mission is to effectively and efficiently make security risks visible to the business and actionable by them. Within the Cyber Fusion Center, the Emerging Technologies Security Team is looking for a highly technical Senior Information Security Analyst with 3 to 4 years of expertise in Vulnerability Management, Software Development, Security Automation, and Enterprise Security Operations. This role demands advanced coding skills (Python, PowerShell, Bash, or equivalent) to develop automation frameworks that operationalize and integrates security tools to optimizes vulnerability remediation workflows. As a technical professional, you will lead strategic security initiatives for building and operationalizing security solutions in emerging technology areas like containers, API, AI/ML. You will design scalable security architectures and solutions, review and suggest COTS products, and mentor junior analysts. Responsibilities Responsibilities Develop, optimize, and scale automation scripts (Python, PowerShell, Bash) to improve vulnerability detection, tracking, and remediation. Design custom API integrations between container/API scanning tools, ServiceNow VR & CC, and ITSM platforms to automate security workflows. Implement security automation playbooks that reduce manual efforts and accelerate response times. Build security solutions leveraging COTS tools to streamline vulnerability scanning and compliance reporting. Implement automated risk-based vulnerability prioritization models, leveraging AI/ML-driven insights where applicable. Leverage and optimize the ServiceNow VR module for scalable vulnerability tracking, exception management, and automated ticketing. Work closely with IT and business stakeholders to define remediation SLAs, risk thresholds, and compliance requirements. Lead the security assessment of container/API environments, ensuring compliance with industry standards and best practices. Automate the ingestion of container/API vulnerability findings into ServiceNow VR for enhanced tracking and resolution. Ensure that security data is accurate, actionable, and seamlessly integrated with ITSM and GRC platforms. Apply expert-level knowledge of networking and security protocols (e.g., TCP/IP, HTTP/S, SSH, FTP, DNS, SSL/TLS, VPNs, RDP). Develop tools to generate automated compliance reports, track remediation progress, and reduce audit preparation time. Stay ahead of emerging threats, regulatory and vulnerability trends, continuously refining security automation strategies. Conduct technical design reviews, evaluate security tools, and lead/participate in discussions to improve tool effectiveness. Provide technical expertise in vulnerability management, container/API security, and security automation. Define and track KPIs to gauge security effectiveness and direct continuous improvement efforts. Mentor junior and mid-level security analysts, sharing best practices in automation, API development, and risk prioritization. Develop comprehensive security documentation, playbooks, and process improvements. Accountabilities Execute on projects, objectives, and deliverables in alignments with team vision, mission, and goals. Routinely develop and update security documentation, processes, and technologies to adapt to emerging threat landscape. Develop automation to scale global resilient security capabilities. Collaborate with partner teams, service owners, and senior leadership to influence, prioritize, and drive the resolution of discovered security findings. Participate in security reviews, audits, on-site engagements, and support incidents after-hours when required. Qualifications Who Are We Looking For? Education & Years of experience Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field (or equivalent hands-on experience). 3 to 4 years of experience in cybersecurity, vulnerability management, software development and security automation. Mandatory Technical Skills Strong programming skills in Python, PowerShell, Bash, or equivalent languages for security automation. Knowledge in vulnerability management life cycle. Proficiency in Infrastructure-as-Code security (Terraform, CloudFormation), container security (Kubernetes, Docker) and serverless environment security. Experience with runtime security (linux/windows – VM, containers, serverless) and eBPF-based security monitoring for detecting and mitigating threats. Excellent technical cybersecurity and engineering/development skills, with experience in using APIs to integrate disparate security technologies and security platforms (ex: Tenable, Synk, AquaSec, Onapsis, ServiceNow, ITSM). Familiarity or hands-on experience with: Networking configurations, routing, firewalling; DevOps ecosystem: CICD tools, orchestration tools; Cloud computing environments (AWS, Azure, and Google Compute). Experience with cloud security automation (AWS, Azure, GCP). Proven ability to lead security automation initiatives and mentor junior analysts. Strong analytical, troubleshooting, and problem-solving skills. Non-technical Skills Strong communication skills, both verbal and written. A proactive and positive team player who is impact-focused, driven, curious, analytical, and a self-starter. High level of integrity and ethical standards. Excellent problem-solving skills, with a focus on long-term system sustainability. Ability to establish trust relationships and influence others to positively impact the security posture and the business. Operates extremely well under pressure, balancing multiple priorities in a fast-paced environment. Differentiating Behaviors: Focuses on scalable security solutions rather than individual tool deployments. Uses automation and data-driven decision-making to improve security tooling. Proactively eliminates security bottlenecks in development workflows. Ensures security signals are high-fidelity, prioritized, and developer friendly. Ability to weigh the relative costs/benefits/trade-offs of potential actions and identify the best resolution. Ability to organize tasks, manage time, and prioritize actions to meet business needs. If this is an opportunity that interests you, we encourage you to apply even if you do not meet 100% of the requirements. What can you expect from us: Opportunities to learn and develop every day through a wide range of programs. Internal digital platforms that promote self-learning. Development programs according to Leadership skills. Specialized training according to the role. Learning experiences with internal and external providers. We love to celebrate success, which is why we have recognition programs for seniority, behavior, leadership, moments of life, among others. Financial wellness programs that will help you reach your goals in all stages of life. A flexibility program that will allow you to balance your personal and work life, adapting your working day to your lifestyle. And because your family is also important to us, they can also enjoy benefits such as our Wellness Line, thousands of Agreements and Discounts, Scholarship programs for your children, Aid Plans for different moments of life, among others. We are an equal opportunity employer and value diversity at our company. We do not discriminate based on race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. We respect and value diversity as a work force and innovation for the organization.
Confirmar seu email: Enviar Email