About the Company
H-E-B is a leading innovator in technology, and we continue to invest in our customers' digital experience. Our Digital Technology Partners collaborate to design, construct, implement, and support technology solutions, using the best available technologies to deliver modern engagement, reliability, and scalability to meet customer needs.
About the Role
As a Staff Security Engineer, you'll design, test, maintain, and implement best-in-class security solutions and strategies to improve the security posture of H-E-B technical controls and processes. You'll also coach and mentor.
Responsibilities
- Owns products of H-E-B's information security stack; leads planning, implementation, lifecycle, and care for security measures and controls related to security monitoring, detection, and incident response.
- Assesses existing security posture against industry best practices and control frameworks; proposes solutions and improvements.
- Works with H-E-B teams and external security solution vendors to scope / configure / validate solutions that support our security posture.
- Works with information system owners and Administrators to design / propose / implement security relevant standards, techniques, and processes.
- Collaborates with other engineering teams to lead / drive software-defined infrastructure environment, configuration and build scripts, and CI / CD security components.
- Educates on / ensures others understand implementation of security controls and solutions; ensures gaps, dependencies, and defects are identified / addressed.
- Research / stays current on emerging technologies, threats, and solutions; helps evaluate technologies that align with business goals, reduce costs, and improve reliability, scalability, and security.
- Champions an environment of information security; shares / promotes security and safe operating procedures.
- Coaches / mentors team Partners.
Qualifications
7+ years of experience designing / developing / configuring / implementing / supporting systems and multi-vendor, diverse security solutions in medium to large enterprises.3+ years of experience in information security or IT risk management and compliance .Experience automating processes to drive efficiency and scale.Experience improving site reliability and observability of services.Experience with log management (e.g. Datadog, New Relic, Dynatrace, Splunk, and AppDynamics, Grafana, or Prometheus)