Jobs and Careers
AM

Lead Application Security Engineer

AmerisourceBergen
USA - TX - Remote, United StatesRemotefull_timeVerifiedPosted 14 Jun 2024

About the role

Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!

What you will be doing

Summary:

This role is responsible for leading and overseeing the planning, execution, and management of multi-faceted projects related to risk management, mitigation and response, compliance, control assurance, and user awareness. Lead Engineers collaborate closely with other parts of the security team, customers, corporate IT, product, and engineering teams to design effective defense controls that limit threats and improve the company’s security posture. They develop and manage security strategies, initiatives, and policies/standards, ensuring the effectiveness of solutions, providing security-focused consultative services to the organization, and providing expertise and assistance to ensure the company’s infrastructure and information assets are protected. They review security violation reports and investigate security exceptions and update, maintain and document security controls. They provide subject matter expertise to the business and internal IT groups, and product research and development teams, working closely with software engineers.

    Primary Duties and Responsibilities:

    • Oversees the maintenance of service-level agreements (SLAs) to ensure that security controls are upheld

    • Leads implementation of enterprise-wide security policies, procedures, and standards across multiple platform and application environments to meet compliance responsibilities

    • Interfaces with business and IT leaders communicating security issues and responding to requests for assistance and information

    • Develops, refines, and implements security policies, procedures, and standards across multiple platforms and application environments to meet internal and external compliance responsibilities

    • Coordinates with other senior technical executives in testing, development, and other IT teams to design, develop and implement security systems that protect company physical and intangible assets effectively

    • Reviews technical/functional design documents, build, maintain and implement cybersecurity, data security, and cloud security solutions

    • Consults with other business and technical staff on potential business impacts of proposed changes to the security environment

    • Provides security briefings to advise on critical issues that may affect the enterprise

    • Analyzes and generates insights from the metrics and KPIs gathered for executive review

    • Provides technical support to the network administrators and system administrators, monitors and maintains the current infrastructure, improves system performance, and automates system administration from security perspective

    • Provides technical guidance, coaching, and mentorship to Engineers I/II/III in executing their tasks & responsibilities

    • Monitors and analyzes emerging cyber threats, vulnerabilities, and exploits relevant to the company’s infrastructure and products

    • Works closely with information security and line of business management to identify, formulate and implement information security solutions and controls and to maintain and configure security tooling

    • Coordinates with systems and network engineers to ensure servers and network devices conform to security standards and that security devices and controls are working as designed

    • Communicates advanced information security concepts with clients, peers, and all levels of management and vendors effectively

    • Researches and deploys various tools to help with Cyber Operations, Threat Hunting, Vulnerability Management and Offensive Security, Email Security, Mobile, IoT, Distribution centers and Cloud arenas

    • Responds to security alerts and escalates critical incidents to correct support teams and participates in incident response exercises

    • Serves as a subject matter expert (SME) for product research and development teams, working closely with software engineers, product management and development, and divisional and corporate information systems

    What your background should look like 

    Education:

    • Bachelor’s Degree in Computer Science, Information Technology or any other related discipline or equivalent related experience.

    Preferred Certifications:

    • Azure Security Engineer Certification

    • Certifi

    Apply for this role

    Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

    Apply Now →Generate Application Kit

    Free account required — sign up in 30s

    Company

    AmerisourceBergen

    View company profile →