Description
United's Digital Technology team is comprised of many talented individuals all working together with cutting-edge technology to build the best airline in the history of aviation. Our team designs, develops and maintains massively scaling technology solutions brought to life with innovative architectures, data analytics, and digital solutions.
Responsibilities
- Senior Manager - Product Cybersecurity is a technical leader responsible for managing a team of cybersecurity engineers focused on developing and maintaining end-to-end security architecture of United’s product(s) / application(s) / service(s).
- Create and implement a vision for security across all products within the United portfolio.
- Recruiting and talent development of the team, including personnel management.
- Define, prioritize, allocate resources, track, and provide status reporting of work assignments, projects, and programs.
- Monitor changes in legislation and compliance standards that affect assigned areas and update standards, best practices and architectures accordingly.
- Coordinate remediation of non-compliant items to meet applicable standards and best practices.
- Assist with annual budgeting and monthly forecasting.
Qualifications What’s needed to succeed (Minimum Qualifications) :
Bachelor's degreeAt least 9 years of related experienceProficiency with OWASP Top 10Proficient knowledge of threat modelingProficient knowledge of risk management processesProficient knowledge of DevSecOps (e.g., CI / CD, IaC, PaC, CaC)Proficiency with application testing (e.g., SAST, DAST, MAST, RAST, IAST, Pen Test tooling)Proficiency with scripting (e.g., PowerShell, Python, Perl, Bash)Proficiency with programming languages and modern programming language structure (e.g., Object Oriented Programming, web framework)Proficient with DevSecOps technology stacks (e.g., AWS, Harness, TeamCity, GitHub, Artifactory, CHEF, CloudWatch)Proficiency with SDLC processProficiency with web and app security stack (e.g., API security)Proficient knowledge of cloud technologies and securityProficiency with vulnerability management processes and providing remediation guidanceProficient understanding of compliance frameworks (e.g., NIST 800-53) and processesExperience with technical documentation / SOP creationProficiency in cryptographyProficient understanding of IAM (i.e., authentication and authorization)Proficient understanding of networks and network securityAbility to manage business and external partnersExcellent problem solving, critical thinking, interpersonal, collaboration, written and verbal communication skillsMust be legally authorized to work in the United States for any employer without sponsorshipSuccessful completion of interview required to meet job qualificationReliable, punctual attendance is an essential function of the positionWhat will help you propel from the pack (Preferred Qualifications) :
Master's degreeOne or more of the following :Certified Ethical Hacker (CEH)GIAC Security Essentials (GSEC)Certified Information Security Manager (CISM)Comp TIA Security+Certified Information Systems Security Professional (CISSP)Certified Information Systems Auditor (CISA)Systems Security Certified Practitioner (SSCP)CompTIA Advanced Security Practitioner (CASP+)AWS Solutions Architect Pro., Networking, and Security Specializations12+ years of relative experienceWorking knowledge and / or hands on experience with as many as possible of the following areas :Operating System & platform securityNetworking Security and an understanding of network and web related protocolsVoice over IP and unified communication securityStrong subject matter expertise in IT security and risk managementStrong knowledge of IT infrastructure security best practices, procedures, and standardsExperience with cloud native products and in-depth understanding of microservice topologies and implementationsExpertise in application development and DevOps security technologies and integrationDemonstrated ability to think strategically about business, product, and technical challengesExperience within the transformation of traditional data center security measures into industry adopted cloud technologiesProven ability to work with compliance frameworks and requirementsAbility to work in a fast-paced and Agile development environmentAbility to perform manual security code reviewsAbility to interpret dynamic / static analysis tools, and penetration test resultsCompensation and Benefits
The base pay range for this role is $137,275.00 to $178,670.00. The base salary range / hourly rate listed is dependent on job-related factors such as experience, education, and skills. This position is also eligible for bonus and / or long-term incentive compensation awards.
You may be eligible for competitive benefits including medical, dental, vision, life, accident & disability, parental leave, employee assistance program, commuter, paid holidays, paid time off, 401(k) and flight privileges.
EEO Statement
United Airlines is an equal opportunity employer. United Airlines recruits, employs, trains, compensates and promotes regardless of race, religion, color, national origin, gender identity, sexual orientation, physical ability, age, veteran status and other protected status as required by applicable law. Equal Opportunity Employer - Minorities / Women / Veterans / Disabled / LGBT.
We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform crucial job functions. Please contact JobAccommodations@united.com to request accommodation.
#J-18808-Ljbffr