Chicago, IL, 60684, USA
16 hours ago
Senior Manager - Detection Engineering
Company Description: McDonald’s new growth strategy, Accelerating the Arches, encompasses all aspects of our business as the leading global omni-channel restaurant brand. As the consumer landscape shifts we are using our competitive advantages to further strengthen our brand. One of our core growth strategies is to Double Down on the 3Ds (Delivery, Digital and Drive Thru). McDonald’s will accelerate technology innovation so 65M+ customers a day will experience a fast, easy experience, whether at one of our 25,000 and growing Drive Thrus, through McDelivery, dine-in or takeaway. Leading this tech revolution is McDonald’s Global Technology organization made up of intrapreneurs who get to build really cool tech with scary smart people using the latest innovations like AI, IOT, and edge computing. We do this working along diverse, global teams who are always hungry for a challenge. It’s bonus points when you get to see your family and friends use the tech you build at their favorite McD restaurant. This role will collaborate closely with cybersecurity experts, market leads, project managers, and Global Technology Solutions teams to ensure the reliable and efficient operation of McDonald’s security services. In addition, this role will be responsible for managing and collaborating with the support teams that handle tickets and other operational tasks for McDonald’s security services. This person will work closely with others in Global Technology Risk Management and other areas of Global Technology to ensure that our services are meeting the needs of markets, application teams, and other stakeholders. Check out the Global Technology Technical Blog to learn how technology is directly enabling the Accelerating the Arches strategy. Job Description:   We are seeking a Sr Manager for a Detection Engineering role that will build out and improve our ability to effectively detect and respond to threats. You will collaborate closely with cybersecurity experts, Global Technology teams, service partners, and business leaders to assess detection gaps across McDonald’s. drive the development, deployment, and maintenance of our global policies and standards. This role will have a direct impact on building capabilities for a new program through influence and technical contributions. The Operations team is expanding and looking to bring in a Detection Engineer with a strong foundation and understanding related to various security solutions and technologies. If disruption of the threat actors across the environment sounds exciting, then this opportunity is a perfect fit for you. The Sr Manager of Detection Engineering should be familiar with frameworks like MITRE ATT&CK and D3fend, as well as the Cyber Kill Chain. This knowledge will assist in evaluating current detection coverage and discovering opportunities to build new threat detection use cases. Be able to identify gaps in our infrastructure, and work with business partners to gain visibility through logging and detection. This position will have the ability to take lead in creating high-fidelity detections from logs, alerts, and anomalous behavior. Responsibilities + Write detection logic/rules to discover malicious activity + Build automation and detection models to support the identification of anomalous activity and response activities to mitigate threats at scale + Hunt for threats in our corporate and market environments to proactively identify anomalous activity and determine if there are gaps in coverage + Work side by side with our engineering teams to help them tune advanced detection rules to help keep systems safe and secure + Identify and consult on the design of security measures to reduce threats in our global environment + Keep up to date with current trends, tactics, and vulnerabilities to understand the Threat Landscape as it applies to McDonald’s + Work with the Cyber Threat Intelligence, Incident Response, and Endpoint teams to discover gaps, and submit tuning requirements to platform owners based on relevant signatures for monitoring and alerting purposes + Research network-based Tactics, Techniques, and Procedures (TTPs) and develop high-fidelity detections in various tools/languages including Endpoint Detection and Response platform and SIEM + Document internal team policies and procedures for completing core functions and engineering lifecycle + Develop relationships with external security organizations to maintain awareness of security issues and trends + Self-starter and creative problem-solver able to work independently with minimal guidance   Qualifications: Minimum Requirements + Bachelor's degree in a related technical field or equivalent practical experience. + 5+ years of hands-on in-depth knowledge and technical experience in security operations including detection engineering, threat hunting, incident response, digital forensics, and/or threat intelligence. + Exposure to data science and analytics solutions applicable to cybersecurity Desired skills + Knowledge and familiarity of the Cyber Kill Chain Framework and MITRE ATT&CK Framework and how these apply to the insider threat landscape. + Experience automating security detection and response + Outstanding organizational, prioritization, communication, and multitasking skills + Professional certifications such as CPA, CA, CIA, CISA, CISSP, and PMP Additional Information: McDonald’s is an equal opportunity employer committed to the diversity of our workforce. We promote an inclusive work environment that creates feel-good moments for everyone. McDonald’s provides reasonable accommodations to qualified individuals with disabilities as part of the application or hiring process or to perform the essential functions of their job. If you need assistance accessing or reading this job posting or otherwise feel you need an accommodation during the application or hiring process, please contact mcdhrbenefits@us.mcd.com. Reasonable accommodations will be determined on a case-by-case basis. McDonald’s provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to sex, sex stereotyping, pregnancy (including pregnancy, childbirth, and medical conditions related to pregnancy, childbirth, or breastfeeding), race, color, religion, ancestry or national origin, age, disability status, medical condition, marital status, sexual orientation, gender, gender identity, gender expression, transgender status, protected military or veteran status, citizenship status, genetic information, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training. Nothing in this job posting or description should be construed as an offer or guarantee of employment. Requsition ID: REF7899J_744000023585641
Confirm your E-mail: Send Email