Cyber Security Operations Engineer III
The CSOC Operations Engineer III position is a technical leader responsible for the tactical execution of incident response, threat detection and continuous improvement of solutions which defend and protect QuikTrip's computer systems, information, and networks from intentional or unintentional access, modification, or destruction. This position is responsible for technical leadership in the design, planning, documenting and support of projects and cyber security solutions for QuikTrip. This position needs to intently focus on prioritization and always seek the improvement of processes and tools, providing recommendations to engineering and architecture teams. A successful CSOC Operations Engineer III will have a multidisciplinary background beyond cyber security, with advanced knowledge in fields such as client and server systems, networking, and application development. This position will also be responsible for ensuring systems and processes follow regulatory requirements, such as PCI-DSS, HIPAA and SOX. This position is responsible for the mentorship of other IT staff and performs third level support for incidents and issues.
Major Functions :
Cyber Security Incident Response 15% of total job
Cyber Security Infrastructure Operations 60% of total job
Cyber Security Threat Operations 15% of total job
Technical Leadership 10% of total job
Position in Organization :
Reports to : Cyber Security Operations Manager
Relationship :
Inside the Company : All QuikTrip personnel
Outside the Company : Hardware and software vendors, personnel in other companies involved in supporting cyber security tools or for triage of incidents.
Position Specification :
The required specifications (education, experience, and skills) are those that the employee must have to hold the position. Applicants applying for this position must possess the required specifications in order to be considered for the job. The desired specifications are those that are not required for the employee to hold the position but the employee should try to obtain the desired education, experience, and / or skills to be effective and successful in the position.
Required education : Bachelors in relevant field or the equivalent combination of education and experience.
Desired education : Bachelor's degree in Cyber Security or a degree in a technology related field. Multiple industry certifications in Security, Systems Administration, and / or Networking, such as CISSP, GDSA, CCNP Security, or PCNSE.
Required education : Minimum of 8 years of progressive experience with cyber security technology design, administration or incident response in large, complex environments, particularly in multi-region retail. Advanced expertise in cryptography, network defense, endpoint protection, forensics, data protection, and incident response. Advanced understanding of data center technologies and concepts including services, security, infrastructure design, disaster recovery practices. Advanced level troubleshooting of IT systems. In depth knowledge of compliance standards such as HIPAA, PCI, and SOX. Experience mentoring, training, and developing other IT staff.
Desired education : Advanced experience in all aspects of cyber security technologies and knowledge in supporting and building large, complex cyber security environments. Experience planning and implementing a technical backlog to drive continuous improvement of technology and practices.
Required education : Advanced knowledge of multiple cyber security technologies, including next generation firewalls, IDS / IPS, network access control, email and web security, digital forensics, endpoint detection and response, vulnerability scanning and analysis, data protection, credential vaulting, certificate management, Multi-Factor, access brokering, SIEM, public cloud compliance and Cybersecurity automation and orchestration technologies. Advanced experience in planning and tracking the execution of large and complex projects or other efforts. Experience in scripting or software development. The ability to communicate effectively to both business and IT staff in a professional manner.
Desired education : Working experience with Active Directory and Microsoft and / or Linux OS, networking, identity and access management, wireless networking and security, penetration testing, incident response, and application security methodologies. Understanding of encryption systems and methodology. Advanced experience in software development or secure coding techniques.
Additional Criteria :
This position will require shift work that could include weekends and nights as dictated by support needs. On call 24 / 7. Must have knowledge of many areas and be able to switch between them rapidly. Must be able to work under pressure and provide guidance to Information Technology and business users during a crisis. This position will require ability to maintain absolute confidentiality of information or events due to the sensitivity of their natures.
Starting Salary : $122,900-$153,600
Benefits : Employee Benefits QuikTrip
Cyber Security Engineer • Tulsa, OK, US