Senior Principal Engineer leading information security initiatives for Cencora, safeguarding infrastructure and intellectual property. Advise leadership on risk management and compliance, driving security policies and standards.
Responsibilities
Analyze trends, news, and changes in the threat and compliance landscape; advise leadership and execute plans for risk mitigation and compliance.
Lead and coordinate responses to information system security incidents, including investigation, countermeasures, and recovery; engage with third-party responders.
Recommend and oversee implementation of security controls throughout the acquisition, development, and change management lifecycle of information systems.
Provide technical leadership on large-scale, complex, and highly analytical security projects.
Plan and lead upgrades to security tools and measures to protect information systems and networks.
Develop methodologies for monitoring and responding to security events; lead remediation efforts for cybersecurity incidents.
Guide network and system administrators in maintaining infrastructure security, improving performance, and automating administration from a security perspective.
Mentor and coach ISO Engineers, providing technical guidance and oversight.
Ensure service-level agreements (SLAs) are maintained to uphold security controls.
Lead the implementation of enterprise-wide security policies, procedures, and standards across diverse platforms and applications.
Interface with business and IT leaders to communicate security issues and respond to requests for information and support.
Refine and enforce security policies and standards to meet internal and external compliance requirements.
Collaborate with senior technical executives and IT teams to design and implement security systems that protect both physical and intangible assets.
Review technical and functional design documents; build, maintain, and implement cybersecurity, data security, and cloud security solutions.
Advise business and technical teams on the potential impacts of changes to the security environment.
Deliver security briefings to inform leadership of critical issues affecting the enterprise.
Analyze and generate insights from security metrics and KPIs for executive-level reporting.
Responds to security alerts and escalates critical incidents to correct support teams and participates in incident response exercises.
Serves as a subject matter expert (SME) for product research and development teams, working closely with software engineers, product management and development, and divisional and corporate information systems.
Requirements
Bachelor’s Degree in Computer Science, Information Technology or any other related discipline or equivalent related experience.
Eight (8) or more years of directly-related or relevant experience, preferably in information security.
Azure Security Engineer Certification
Certified Cloud Security Professional (CCSP)
Certification in Information Security Strategy Management (CISM)
Certified Information Systems Security Professional (CISSP)
CompTIA Security + Certification
Systems Security Certified Practitioner (SSCP)
Knowledge of Microsoft Office Suite
Programming and Development Languages - JavaScript, HTML/CSS, Python, SQL
Enterprise Services Manager leading the Technical Account Management team at Proofpoint. Responsible for maximizing customer value of products and services while ensuring high customer satisfaction.
Information Systems Security Engineer providing technical solutions and support for Department of Defense systems. Leveraging industry knowledge to increase operational efficiencies focusing on classified data systems.
Network Security Architect at Dell influencing security culture and designing secure network environments. Collaborating across teams and developing strategies for modern network security.
Senior Enterprise Security Engineer performing security assessments and threat modeling for Salesforce systems. Collaborating with teams and defining security standards across diverse technology environments.
Fullstack Software Engineer focusing on security to ensure resilience and data protection at health tech company Alan. Involved in building foundational security and authentication systems.
Security Engineer building trust foundations for bare - metal platforms at OpenAI. Designing and operating core security infrastructure for reliable compute platforms across global infrastructure.
Cybersecurity Consultant involved in deploying security tools and supporting compliance projects in Andorra. Working with cross - functional teams to enhance cybersecurity measures and documentation.
Microsoft Success Manager helping partners grow secure, scalable Microsoft practices across ANZ. Championing Microsoft security solutions and supporting partner success strategies in the region.
Assistant AVP overseeing a 5 - member team for Access Management services in Pune and Mumbai, ensuring high standards of service delivery and compliance.
Own global security systems infrastructure for QVC, managing access control and networked security systems across multiple regions. Collaborate with IT to ensure security and technology initiatives meet organizational needs.