Search jobs > Boise, ID > It security engineer

IT Security Engineer

WinCo Foods
BOISE, ID, US
Full-time

Overview

Job Summary

Work side-by-side with the team that manages WinCo Foods’ retail and distribution technologies to ensure secure integration and functionality of the technologies that drive our business.

Responsible for strategizing, designing, implementing, and supporting security solutions within retail and distribution environments, as well as, aiding in the secure implementation of new and existing retail technology systems.

Ensure ongoing regulatory compliance and data protection of WinCo Foods’s payment systems, computer systems, network devices and sensitive data.

Collaborate with cross-functional teams to cultivate WinCo Food’s security culture. Perform related work.

Typical Duties and Responsibilities

  • Maintain an atmosphere of friendly, enthusiastic customer service with an emphasis on taking care of the customer. Provide exceptional customer service by telephone, email, and in person.
  • Work with other Information Technology (IT) teams to ensure logical and physical security of all systems and data.
  • Identify security gaps or weaknesses, and recommend solutions to reduce risk to the company.
  • Lead initiatives to implement new security solutions. Identify vendors, evaluate tools and implement the solution(s).
  • Establish vulnerability-scanning procedures and work with the necessary teams to prioritize and install patches and security fixes based upon risk and impact.
  • Act as the subject matter expert for IT Security on company technology projects lead by other teams.
  • Develop security protection goals, objectives and metrics consistent with enterprise best practices.
  • Produce periodic reports on security metrics and incidents.
  • Perform log and event analysis of systems and security technologies to identify anomalies and suspicious activity.
  • Develop monitoring and alerting for security technologies including IDS / IPS, firewall, vulnerability scanning, security logging and event management.
  • Respond to security incidents and coordinate response, containment, forensics and mitigation.
  • Conduct information security investigations and threat assessments.
  • Perform maintenance, configuration and support of IDS / IPS, firewall, web proxy, vulnerability scanning, SIEM, and other security technologies.
  • Promote security awareness across the organization through end-user training, knowledge transfer, and documentation of threats and vulnerabilities.
  • Actively research and communicate current threats and attack vectors to IT management.
  • Develop, document and update IT security procedures and policies.
  • Perform on-call support for security events.
  • Perform other projects and duties as needed and assigned.

Requirements

Education :

Associates degree in IT, Computer Science, or related field AND five (5) years of IT Security or Engineering experience OR equivalent combination (seven (7) years) of education, training, and / or experience demonstrating considerable knowledge of IT security.

Experience :

  • At least five (5) years direct experience working in an enterprise technology environment in a security or engineering role.
  • Demonstrating technical working knowledge of design considerations for Firewall, LAN, WAN, WLAN, VPN, Windows Server, Active Directory, DMZs, Certificate (PKI) Infrastructure, Unix / Linux, Virtual Infrastructure, and network protocols.
  • Implementing and managing enterprise security solutions such as antivirus, encryption methodologies, IPS / IDS, Web Content Filtering, Identity and Access Management, email security, and monitoring and alerting.
  • Demonstrating familiarity with security tools used for penetration testing, vulnerability scanning and forensics.
  • Implementing security best practices related to networks, servers, end-user devices and sensitive information.
  • Hands-on with log aggregation or SIEM technologies including implementation and support.
  • Understanding of cyber security concepts, principles and industry-recognized security frameworks such as ISO 27002, NIST, CIS CSC, etc.
  • Hands-on hardware and software troubleshooting.
  • Demonstrating knowledge of applicable data privacy practices and laws.
  • Exhibiting excellent customer service skills, working well with others and demonstrating professionalism and courtesy in all customer interactions.
  • Working in a team-oriented, collaborative environment.

Ability to :

  • Consistently provide friendly and engaging customer service to internal and external customers.
  • Demonstrate strong organizational skills, initiative and self-direction to effectively manage time and perform tasks to meet timelines and work quality expectations.
  • Effectively prioritize and execute tasks in a high-pressure environment.
  • Continually assess WinCo’s security posture, and design and implement solutions for gaps.
  • Learn and apply new / emerging technologies and best practices.
  • Conduct research into IT security issues, products and solutions.
  • Demonstrate strong analytical and problem-solving abilities while always maintaining attention to detail.
  • Exhibit strong written and oral communication skills.
  • Be highly motivated with a passion for IT Security.
  • Communicate complex, technical, information and ideas to all levels of audiences.
  • Demonstrate excellent interpersonal skills.
  • Be on call to respond to security incidents, including evenings, weekends and holidays as required.
  • Travel up to 10% of the time.

Machines and Equipment Operated :

Office machines (computer terminal, copier / scanner, fax machine, telephone etc.).

Preferred Education, Experience and / or Credentials :

  • Five (5) years direct experience working with enterprise security tools, including at least 3 years of implementing and managing enterprise security tools.
  • Experience with open-source operating systems and security related tools.
  • One or more industry recognized security certification, such as CISSP, GIAC, Security+, etc.
  • One or more industry recognized technology certification, such as MSCE, CCNA, CCNP, etc.
  • Experience with PCI Compliance frameworks.
  • Working knowledge of retail and / or distribution technology systems. (Point of Sale, sign printing, scales, voice picking, application administration, etc.)

The above statements are intended to describe the general nature of work performed by the employees assigned to this job.

All employees must comply with Company policies and applicable laws. The responsibilities, duties and qualifications required of personnel may vary.

EEO / Inclusivity

As WinCo Foods continues to grow, our diversity from our variety of perspectives and wide range of experiences is essential to our strategy and success.

We are committed to continue to cultivate and celebrate an inclusive environment in which all employees are valued and respected regardless of their race, color, religion, sex, sexual orientation, gender identity, national origin, veteran, or disability status.

4 days ago
Related jobs
WinCo Foods
Boise, Idaho

Associates degree in IT, Computer Science, or related field AND five (5) years of IT Security or Engineering experience OR equivalent combination (seven (7) years) of education, training, and/or experience demonstrating considerable knowledge of IT security. Establish vulnerability-scanning procedur...

Promoted
KLA
Meridian, Idaho

Enabling the movement towards advanced chip design, KLA's Global Products Group (GPG), which is responsible for creating all of KLA's metrology and inspection products, is looking for the best and the brightest research scientist, software engineers, application development engineers, and senior pro...

Promoted
Penske Truck Leasing and Logistics
Meridian, Idaho

The Financial Systems Administrator is a techno-functional professional that understands enterprise level financial systems and translates finance business requirements into expected systems behavior. Penske is seeking an ambitious and inquisitive Financial Systems Administrator to join our Controll...

life-flight-network
Boise, Idaho

Under direction from the IT Infrastructure Support Manager, the Network Engineer is responsible for the design, implementation, maintenance, and support of the Life Flight Network infrastructure. Hands-on experience with monitoring, network diagnostic and network analytics tools. Ability to analyze ...

SEL
Boise, Idaho

As a Communication & Network Application Engineer a typical day might include the following: . Leverage your strong background in networking, routing, and Ethernet design to architect and implement communication solutions for SEL products. You have a Bachelor’s degree in Electrical Engineering, Comp...

ADEX Corporation
Boise, Idaho

Network Engineers support the design, implementation, and optimization of the telco network solution used to provide FTI services. Bachelor of Science in Electrical Engineering, Telecommunication Engineering, Computer Science, Computer Information Systems or equivalent of a -year accredited degree i...

Bastian Solutions
Boise, Idaho

The Embedded Systems Engineer III will work with a small state-of-the-art R&D team in Boise to bring new ideas to life that will help transform the material handling industry. Assist in resolving engineering issues as they arise by working closely with the engineering team, vendors, and the shop. Mi...

Scentsy Wickless Candles
Idaho

What You Will Do:Write complex infrastructure as code where availableDesign, test and implement disaster recovery plansInfluence the architecture, design, and implementation of technology to ensure the availability, confidentiality, and integrity of dataDesign and implement new systemsImplement, mai...

N. Harris Computer Corporation - USA
Idaho, United States
Remote

As the Cloud Security Analyst, you will utilize your wide area of expertise in access control management, cybersecurity, vulnerability management, risk management, incident management, security frameworks and other areas to provide security support for the Harris group of companies. Work with Inform...

Lamb Weston
Eagle, Idaho

Bachelor's degree in information security, Computer Science, or a related field. Minimum of 5-7 years of experience in information security, focusing on IT and SOX compliance. Develop, maintain, and enforce IT security policies and procedures in alignment with regulatory requirements. Design, implem...