This is a hybrid position requiring an on-site presence 3 to 4 days per week. Please note that the number of days on-site can increase based on business needs.
Job Summary:
This position sits within the Infrastructure Operations program at Sysco where you’ll play a key role in analyzing vulnerability findings, determining best practices for remediation & adoption of Sysco’s Best Practice standards.
Duties and Responsibilities:
Collaborating with Cyber, leverage data & reports to direct internal teams to align to Sysco’s best practices for patch, posture and utilization of public & private cloud offerings
Collaborate with various teams across Sysco to ensure timely remediation, decommissioning, and/or and software versioning
Attend quarterly business reviews with Executives to report on & discuss specific environment posture
Attend Vulnerability Management meetings to align priorities into team reporting and actions
Ability to interpret threat and vulnerability data generated by Sysco’s vulnerability scanning tools
Education Preferred:
Experience Required:
Licenses/Certifications Preferred:
AWS Certified Security – Specialty, Azure Security Engineer Associate, GCP Cloud Security, CompTIA Security+, Systems Security Certified Practitioner
Technical Skills and Abilities:
Appreciation of application and IT product diversity, interoperability, and functional knowledge in IT security
Ability to consume scan output from tools such as Kenna, Tanium & Wiz.io
Understanding of VM lifecycle within cloud environment for discovering scanning, analyzing, and triage
Ability to interpret threat and vulnerability data generated by Sysco’s vulnerability scanning tools
Provide reporting to patching teams detailing prioritized needs for remediation
Physical Demands:
Reasonable accommodations will be made to enable individuals with disabilities to perform the essential functions of this job.
Work Environment:
Hybrid