Lead Engineer - Information Security
PepsiCo
Overview The Information Security Engineer will provide technical support and execution on a range of critical security products, serve as a point of contact for all security product deployment, configuration, upgrades, related events, serve as a mentor to IT staff, automate and work to help standardize and improve processes and procedures. Responsibilities Works in support of the Senior Information Security Engineer enhancing the security direction for the organization including systems, networks, user services, and vendor development efforts Installs, configures, manages, and maintains mission-critical enterprise applications such as endpoint, software delivery, patching, log management and other technical controls. Provides technical support for day-to-day security operations, change management and business continuity programs. Troubleshoots security systems and related issues. Assists with complex projects and assumes ongoing support of security operations Conduct network and system tests via simulation or other means to highlight and find any weaknesses that may be exploited Design, implement, support, and evaluate security-focused tools and services including project leadership roles Design, implement, support, and evaluate vulnerably management tools and services Provide security tool integration and automation support Assists in defining security requirements and review of systems to determine if they have been designed to comply with established security standards. Develop new standards as necessary. Design and develop automation scripts and integrations using Python or PowerShell to monitor the health of endpoint security tools and remediate coverage issues proactively. Utilize REST APIs and JSON to automate, integrate, and enrich data across security tools for real-time monitoring and incident response. Apply AI/ML models to use cases that support automated remediation of health and coverage issues in endpoint security tooling Participate in security compliance efforts (e.g., PCI DSS, SOX) Participate in incident handling Other related duties to support the information security function Qualifications Six or more years of experience in the design and implementation of Endpoint Security products such as CrowdStrike, Symantec Endpoint Protection (SEP), and Microsoft Defender for Endpoint Demonstrated effectiveness working across multiple business units to achieve results Significant technical expertise in two or more of the following areas Cloud Security Endpoint security Data Security SIEM
Confirmar seu email: Enviar Email