Job Overview:
The Senior Cybersecurity Engineer is responsible for performing incident response investigations, security technology evaluations and decision making, SOAR utilization, and will drive continuous improvement of the UNFI Cybersecurity Digital Forensics and Incident Response (DFIR) program. The role is responsible for identification and resolution of cybersecurity opportunities and issues within the UNFI environment. The role functions as part of the cybersecurity operations team and collaborates cross functionally with the Threat Intelligence, Offensive Security, Governance Risk and Compliance, and Security Architecture and Engineering teams. The role is expected to independently lead engagements from conception to completion, communicate technical details to partners and senior leadership, mentor junior staff, and provide technical direction to the program.
Job Responsibilities:
Performs incident response for multiple varieties of security alerts for hardware, software, networks, web applications, cloud services, databases, directory services, and infrastructure. Evaluates technologies such as SIEM, SOAR, EDR, and Threat Intelligence as well as Managed Detection and Response, ASOC, MSSP. Evaluates new threat and anomaly detection sources and determine value, relevance, and integration with IR processes, especially Cloud technologies such as AWS Guard Duty/CloudTrail/Detective, Azure Security, GCP Security, Wiz CSPM and Cloud Detection and Response. Assesses threats to UNFI (Threat Intel, Zero-Days, Vulnerabilities, Threat Actors, Malware) and determine risk, coverage of controls, and create new detection/prevention content using SIEM, EDR, IPS/IDS capabilities. Determine need. Test detection and response capabilities. Research attempted or successful efforts to compromise systems security and designs countermeasures. Designs and collaborates on development of SOAR application runbooks, incident templates, dashboards, reports, jobs, etc. Creates security threat assessments using Kill Chain and MITRE ATT&CK methodologies and familiarity with principles of active defense. Performs forensic investigations as needed and approved in support of Cyber security, HR, and Legal department needs. Responds and investigates potential security incidents when reported, escalated, assigned, or witnessed via any of several sources. Identifies intel sources, both open source and otherwise, and partners with the Threat Intelligence Analyst to integrate into IR assessments, monitoring, and response processes. Completes analysis of threat actors which may pose a risk to the organization / industry, and preparation and dissemination of risk profiles and threat assessments. Completes monitoring, assessment, and escalation of new 0-day threats and critical vulnerabilities. Participates in system and network security audits to identify security weaknesses and vulnerabilities and reports to management. Leverages security applications, such as SIEM, IDS, EDR, and vulnerability management solutions for analysis and investigation. Serves as a member of the security incident response team. Compiles and analyzes data for management reporting and metrics as directed. Conducts root cause analysis and communicates outcomes in a clear and consistent manner. Monitors internal control systems to ensure that appropriate information access levels and security clearances are maintained. Demonstrates expert-level knowledge and skills in the technical, process, organizational, and philosophical aspects of information technology, information security, and information risk management disciplines. Participates in periodic review of penetration testing requirements, assessments, and remediation of critical findings. Performs other duties as assigned.Job Requirements:
Education/Certification:
BA/BS in Computer or Cybersecurity domain. At least 1 industry leading or senior level cybersecurity certification, for example: GIAC Certified Incident Handler (GCIH), GIAC Certified Forensic Examiner (or Analyst) (GCFE/A), GIAC Cloud Threat Detection (GCTD), GIAC Cloud Penetration Tester (GCPN), EC-Council Certified Network Defender (E|CND), EC-Council Certified Incident Handler (E|CIH). CISSP and/or CompTIA Security+ certification.Experience:
6 -10 years of hands-on cybersecurity experience within IT environments including forensics and incident response, detection engineering and operations, endpoint detection and response, network detection and response, enterprise forensics, vulnerability management, penetration testing, malware analysis, and/or security engineering. 3+ years of experience in network, server, or systems administration including scripting/coding. 2+ years of experience in Cloud technologies (DevOps, architecture, defense, IR, or forensics). 2+ years of experience in application development in a large, highly diverse, and distributed environment.Knowledge/Skills/Abilities:
The above statements are intended to describe the general nature of the work performed by the employees assigned to this job. All employees must comply with Company policy and applicable laws. The responsibilities, duties, and skills required of personnel so classified may vary within each department and/or location.
Work Environment:
Remote Role:
· This position is classified as remote where the associate will perform remote work from their primary residence. Remote associates are welcome to work from the office but are not required to do so. While remote associates are not required to work from an office on a regular basis, they may be required to come to the office or other UNFI locations for necessary business reasons or if directed to do so by their manager.
All qualified applicants will receive consideration for employment without regard to race, color, age, religion, sex, sexual orientation, gender identity or expression, national origin, disability, or protected veteran status. UNFI is an Equal Opportunity employer committed to creating an inclusive and respectful environment for all. - M/F/Veteran/Disability. VEVRAA Federal Contractor.
Additional Information
Schedule: Full-time#LI-Remote
Company: United Natural Foods Inc. ApplyCompensation:
UNFI anticipates paying the above-referenced pay rate (or within the above-referenced pay range) for this position. Actual Pay, where applicable, will depend on a number of factors, including, but not limited to, education, experience, training, and any requirements under applicable collective bargaining agreements. UNFI is committed to transparency in pay in compliance with applicable state and local laws.
Benefits:
For Washington positions (or positions that may be performed remotely from Washington), Click HERE for Washington-specific paid time off details.
Candidates hired into this position will also be eligible to participate in the following benefits programs: Paid Time Off; Sick Time; paid holidays and parental leave; 401K Program; medical, dental, vision, life, and accidental death/dismemberment insurance; short-term and long-term disability insurance program, Flexible Spending Account and/or Health Savings Account, subject to meeting the eligibility requirements and the terms and conditions of these programs, and subject to any requirements under applicable collective bargaining agreements.
Sales Positions Only: For sales positions that are commission-based, the above range is an estimate of total potential commission-based compensation during an associate’s first year, but UNFI offers an introductory period minimum of $680 per week. After the introductory period, as a 100% commission-based role, there is no set salary. UNFI’s commission plans are uncapped and average earnings vary depending on territory and sales achieved, among other factors.
UNFI’s compensation, benefits, and paid time off policies are subject to change in the Company’s sole discretion, consistent with applicable law. This job posting should not be construed as an offer of employment with certain terms, nor should it be construed as a guaranteed minimum.
Qualified applications with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance and the California Fair Chance Act.
Learn more about our brands: Cub: https://www.cub.com/sm/pickup/rsid/1612/about Shoppers: https://www.shoppersfood.com/wcp/about-us UNFI: https://www.unfi.com/about-us.html
Privacy Policy