Skip to main content
Wymagany identyfikator: RC738297

Cyber Security Lead

Professional
  • Firma: FedEx Dataworks EU
  • Kategoria: Professional
  • Rodzaj zatrudnienia: Pełny etat
  • Podtyp pracownika: Regular
  • Zaplanowane godziny pracy w tygodniu: 40
  • Data zakończenia publikacji:
  • Pracownik zdalny: Nee
  • Lokalizacja: 43 Mogilska, Krakow, Województwo małopolskie 31-545, Poland
Udostępnij pracę

Opis

Cyber Security Lead is a leading role at Fedex Dataworks Poland, responsible for the security of solutions implemented in the new FedEx data-driven e-commerce platform fdx (www.fdx.com).

What you'll do:

  • Lead, support and educate Dataworks engineering teams in designing secure solutions.

  • Lead and support Dataworks engineering teams on staying complainant with InfoSec standards and processes.

  • Track and Coordinate with Dataworks engineering teams to mitigate or remediate security issues.

  • Coordinate efforts between Dataworks and FedEx Enterprise Information Security and Compliance.

  • Be responsible for assisting Dataworks engineering teams to resolve vulnerabilities detected by DAST, SAST, and other scanning tools in a timeframe that meets compliance and enterprise requirements.

  • Research, design, and recommend countermeasures to prevent or detect system compromise.

  • Make recommendations concerning cyber intelligence solutions to prevent internal and external attacks and attempts to infiltrate the fdx system.

  • Coordinate with the enterprise to implement and support technologies deployed across application, network/perimeter, data, endpoint, identity & access, and mobility domains.

  • Provide general guidance to management concerning risk to the business caused by security exposures.

  • Researches attempted or successful efforts to compromise system security and propose countermeasures.

What you'll need:

  • Bachelor's degree in computer science, information systems and/or equivalent formal training or work experience.

  • 5 to 7 years of experience in IT information security.

  • Experience in Cloud platforms, Software Development, DevSecOps, and Data Engineering.

  • Experience working with CI/CD pipelines.

  • Prior experience working within security controls frameworks, for example NIST, CSA, ISO27001, etc.

  • Prior experience in secure coding.

  • Prior experience working with software development teams.

  • Knowledge in Infrastructure as code (IaC) e.g. Terraform.

  • Experience working with containerized applications.

  • Experience working in organizations subject to regulations such as PCI, SOX, or HIPPA.

  • Strong written and verbal communication skills.

  • Leadership skills.