Senior Security Engineer
Sleep Number CorporationAbout the role
Company Overview
Sleep Number is a sleep wellness technology leader. For nearly four decades, we have placed sleep at the center of wellbeing, improving over 15 million lives with our Sleep Number smart beds. We are guided by our purpose – to improve the health and wellbeing of society through higher quality sleep. This is exemplified through our 4,000+ mission-driven team members who passionately innovate to drive value creation through our vertically integrated business model, owning the process from start to finish, including selling in our over 650 stores nationwide.
Our team members are encouraged to bring their whole selves to work, sharing their unique perspectives, backgrounds and skills with Sleep Number every day. Whether you are entering, returning or experienced in the workforce, we have a place for you. We hope you join us in creating the future through higher quality sleep.
Position Purpose
The Senior Security Engineer provides a lead role in the development of Sleep Number’s cyber defense capability. This position will define strategy and drive the implementation of solutions to protect Sleep Number against unauthorized activity. The ideal candidate has experience in Security Incident and Event Monitoring (SIEM), Vulnerability Management, Network Detection and Response, Web Application Firewalls, Cloud Security, Security Posture Management, Endpoint Detection and Response, and Zero Trust principles.
Primary Responsibilities
- Responsible for the definition and execution of the Information Security technology strategy
- Owns the integration of information security concepts into IT product roadmap such as end user computing, hosting, cloud and network
- Product owner for the cyber defense portfolio, including but not limited to:
- SIEM
- Network Detection and Response
- Vulnerability Management
- Log Collection and Analysis
- Cloud Security
- Web Application Firewall
- Cloud Security Posture Management
- Endpoint Detection and Response
- Secure Internet Services
- Design, implement and operate administrative and technical security controls
- Own the creation and implementation of security solutions on behalf of the enterprise
- Seeks methods to bring efficiencies and automation to increase the value of security controls
- Proactively engage partners across technology teams to learn about Sleep Number’s environment. Build productive working relationships.
- Participate in Incident Response analysis and investigations.
- Maintain quality documentation for meaningful consumption by others.
- Foster an environment of continuous learning, high engagement and champion diversity, inclusion, and respecting individuality of all team members
- Serve as point of contact for key vendor relationships
- Mentor and cross train team members
Key Performance Indicators
- Successful implementation of new security capabilities
- Timely management and operationalization of security capabilities
- Identification of key information technology risk
Position Requirements
- Bachelor’s degree in related field or equivalent experience required
- 10+ years of information security experience required
- Strong organizational skills with ability to thrive in a sense-of-urgency environment, navigate ambiguity, leveraging best practices, and approaching any problem as a team-player with a can-do attitude.
- Experience in administering, operating, and improving industry SIEM solutions, such as Splunk ES.
- Strong written and verbal communication skills and ability to interface with all levels of business and executive leadership.
- Demonstrated ability to influence decisions by identifying risks and opportunities
- Must be a creative problem solver, flexible, proactive, and work in a fast paced, ever-changing environment.
- Demonstrated knowledge of a broad range of technical concepts: firewall rule configuration, network segmentation, network intrusion detection and response, security vulnerability scanning, proxy services, security architecture frameworks and methods
- Demonstrated experience and Knowledge of the Splunk Common Information Model (CIM). Splunk ES
- CISSP Certification preferred
Knowledge, Skills & Abilities
Required:
- Knowledge of information security management system standards, frameworks (ISO 27001, NIST CSF), MITRE ATT&CK, Cyber Kill Chain, and industry best practices.
- Knowledge of cyber threats and counter measures
- Broad knowledge across information technology infrastructure and application domains
- Ability to manage, organize and prioritize
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s