Summary
Yum! Brands is seeking a Security Engineer III to support its cybersecurity and IT systems. The role focuses on operating vulnerability management and penetration testing programs, reporting findings, coordinating remediation, maintaining security processes, and collaborating with internal teams and external vendors.
Responsibilities
- Configure and maintain vulnerability management and penetration testing platforms
- Plan, execute, and assess vulnerability scanning and penetration testing services
- Manage the output from vulnerability scanning and penetration testing to provide comprehensive reporting details of the vulnerabilities, their potential impact, and suggested remediations as needed
- Act as a technical specialist, providing technical support for vulnerability management initiatives and penetration testing engagements
- Collaborate across functions to ensure vulnerability management, security programs, and technical controls comply with policies, laws, and regulations
- Drive remediation efforts by partnering with system owners and developers to automate, prioritize and assist in resolving high-risk vulnerabilities
- Facilitate penetration testing engagements between external vendors and internal teams to uncover and address security weaknesses
- Create and update processes and procedures, along with supporting documentation, for the vulnerability management program
- Provide training, guidance, and mentorship to team members on vulnerability management practices and tools
- Facilitate vulnerability management reviews and audits with teams
- Stay current with emerging threats and vulnerabilities and proactively assess their potential impact on the organization
Skills
- Bachelor's degree in computer science, information security, or a related field
- 3+ years of experience in vulnerability management or related field
- Strong knowledge of vulnerability management tools and methodologies (e.g., Nessus, Qualys, Rapid7)
- Excellent analytical and problem-solving skills with the ability to tackle complex technical challenges
- Ability to solve problems in a dynamic team environment and handle multiple assignments in a timely manner
- Strong communication skills and the ability to work collaboratively with cross-functional teams
- Demonstrated initiative in improving processes, mentoring others, and expanding technical capabilities
Qualifications
Must Haves
- Bachelor's degree in computer science, information security, or a related field
- 3+ years of experience in vulnerability management or related field
- Strong knowledge of vulnerability management tools and methodologies (e.g., Nessus, Qualys, Rapid7)
- Excellent analytical and problem-solving skills with the ability to tackle complex technical challenges
- Ability to solve problems in a dynamic team environment and handle multiple assignments in a timely manner
- Strong communication skills and the ability to work collaboratively with cross-functional teams
- Demonstrated initiative in improving processes, mentoring others, and expanding technical capabilities
Benefits