Application Security Architect
Company Name : Kroger General Office
Position Type : Employee
FLSA Status : Exempt
Line of Business :
See what life is like at Kroger Technology
Additional Technology Information :
- Provide assistance in establishing strategic guidance and development of application security architecture
- Directly partner with the Kroger software engineering organizations to provide secure development subject matter expertise
- Mentor and train other team members and software engineering organizations on secure software design techniques and coding standards
- Knowledge of Infrastructure as Code (IAC), Java, Python, and a desire to dive deep into application security is a plus
Position Summary
Responsible for the planning, design and build of security architectures to ensure strong security posture, compliance with regulations, and safeguard customer's data.
Manage information systems security, including disaster recovery, database protection, and software development. Demonstrate the company's core values of respect, honesty, integrity, diversity, inclusion and safety.
Essential Job Functions
- Oversee Identity and Access management, cloud security, cryptography, logging and alerting, security operations, malware detection, incident response, vulnerability scanning, penetration testing, security architecture, and digital forensics
- Guide the implementation of network and computer security and ensures compliance with corporate cybersecurity policies and procedures
- Assist with the monitoring of all security systems and their corresponding or associated software, including firewalls, intrusion detection systems, cryptography systems, and anti-virus software
- Monitor server and firewall logs, scrutinize network traffic, establish and update vulnerability scans
- Analyze and resolve complex security breaches and vulnerability issues in a timely and accurate fashion, and conduct user activity audits where required
- Manage and ensure the security of databases and data transferred both internally and externally
- Oversee penetration testing of all systems in order to identify system vulnerabilities; design, implement, and report on security system and end user activity audits
- Develop new and modify existing security policies and procedures to maintain compliance
- Evaluate existing and recommend new and emerging security technologies
- Conduct research on emerging products, services, protocols, and standards in support of security enhancement and development efforts
- Communicate important updates with key stakeholders across the organization
- Coach and mentor other members of the security engineering team
- Must be able to perform the essential job functions of this position with or without reasonable accommodation
Minimum Position Qualifications
- Bachelor's Degree in computer science, information systems, or related technical field
- 8+ years of experience in a related security field
- Any experience in one or more of the common languages (e.g., Perl, Python, Ruby, shell scripting)
- Proven ability to design and build scalable, high volume, and low latency applications
- Advanced knowledge of network and web related protocols (e.g., TCP / IP, UDP, IPSEC, HTTP, BGP and other routing protocols)
Desired Previous Experience / Education
Master's Degree in computer science, information systems, or related technical field
Education Level :