Architect Iii, Security

Architect Iii, Security
Company:

Pilot Travel Center


Details of the offer

Company Description Pilot Company is an industry-leading network of travel centers with more than 30,000 team members and over 750 retail and fueling locations in 44 states and six Canadian provinces. Our energy and logistics division serves as a top supplier of fuel, employing one of the largest tanker fleets and providing critical services to oil operations in our nation's busiest basins. Pilot Company supports a growing portfolio of brands with expertise in supply chain and retail operations, logistics and transportation, technology and digital innovation, construction, maintenance, human resources, finance, sales and marketing.
Founded in 1958 by Jim A. Haslam II and currently led by CEO Adam Wright, our founding values, people-first culture and commitment to giving back remains true to us today. Whether we are serving guests, a fellow team member, or a trucking company, we are dedicated to fueling people and keeping North America moving.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status or any other characteristic protected under applicable federal, state or local law.
Job Description As a Digital Security Architect, you will play a pivotal role in fortifying the security of our digital assets, which include mobile applications, websites, backend APIs, and business services and integrations. Your primary responsibility will be to oversee the end-to-end security of our digital products, mitigate digital fraud, and develop a comprehensive cybersecurity roadmap for our Digital ecosystem. You will be responsible for proactively addressing security concerns, collaborating seamlessly with cross-functional teams, and staying current with evolving threats and the security landscape.
Assume overall responsibility for the security architecture and posture of digital applications and systems within the digital domain, to include: the development lifecycle, initial design, development, testing, deployment, and ongoing maintenance. Develop and maintain a robust security architecture that aligns with Pilot Flying J's goals and industry best practices, ensuring that the security architecture supports both current and future Digital development initiatives... Conduct (or coordinate) comprehensive threat modeling exercises to identify potential security risks and vulnerabilities across all Digital products, both frontend and backend, and provide actionable recommendations for mitigating identified threats. In concert with development and operation teams, seamlessly integrate security practices into every stage of the Software Development Life Cycle (SDLC). Partner with the Cybersecurity team to conduct regular security testing, including penetration testing, vulnerability assessments, and security scans. Assist the Cybersecurity team in tailoring incident responses specific to Digital threats and incidents, determine root causes of security events involving digital assets, and recommend mitigation strategies. Ensure that digital applications and systems comply with relevant industry standards, regulations, and best practices (e.g., PCI DSS, OWASP, SSDF), while also continuously monitoring changes in compliance & security requirements and adapting security strategies accordingly. Collaborate closely with cross-functional teams, including Digital Products, Digital Development, Frontend Design/UI/UX, PMO, DevOps, IT Ops, SecOps, Enterprise Architecture, Fraud Prevention, etc. Engage in ongoing communication to align security efforts with business goals, user experience, and fraud prevention strategies. Collaborate with observability team on planning, configuring, and maintaining proactive monitoring and alerting mechanisms. Model behaviors that support the company's common purpose; ensure guests and team members are supported at the highest level Ensure all activities are in compliance with rules, regulations, policies, and procedures #LI-CR1
Qualifications Minimum of 3 years in security architecture required or equivalent combination of education and experience, with 3 years in digital development preferred. Bachelor's or Master's degree in Information Security (IS), Computer Science, or a related field, or equivalent corporate experience. Industry-recognized certifications such as CISSP, CISM, or GDSAor CEH are preferred. Knowledgeable or experienced in application development using different languages and paradigms. Experience working directly with: Native mobile application development (iOS, Swift, Android, Java, Kotlin, Xcode, Android Studio), Web development (.NET Framework, Node.js, CSS, JavaScript, HTML, IIS, React) Backend/API development (.NET Framework, .NET Core, Integration platforms such as MuleSoft and AWS API Gateway) & Cloud platform (AWS, Azure, Google Cloud) teams CIAM Platform (Ping, Okta, etc.) teams DevOps &CI/CD (Jenkins, GitHub Actions, CloudBees, AzureDevOps, etc.) teams Proven experience in Digital security architecture and secure SDLC. Strong knowledge of industry standards and best practices. Strong data, metrics, and system log collection, analysis, and assessment skills are preferred. Excellent communication and collaboration skills. Ability to balance security requirements with business objectives. Additional Information Nation-wide Medical Plan/Dental/Vision
401(k) and Flexible Spending Accounts
Adoption Assistance
Tuition Reimbursement
Onsite Gym and Cafeteria
Weekly Pay
All your information will be kept confidential according to EEO guidelines

26116


Source: Grabsjobs_Co

Requirements

Architect Iii, Security
Company:

Pilot Travel Center


Software Engineer

Requisition Id 12823 *This is a temporary 24-month position. The appointment length will be up to 24 months with the potential for extension. Initial appo...


From Oak Ridge National Laboratory - Tennessee

Published a month ago

Data Analyst Ii

About FedEx Supply Chain FedEx Supply Chain, a subsidiary of FedEx Corp. (NYSE: FDX), is a leader in the third-party logistics industry offering a diverse se...


From Fedex Ground - Tennessee

Published a month ago

Scientific Software Developer Automation And Software

Job summary Seeking a Scientific Software DeveloperFocus on developing and maintaining scientific software and data infrastructureProvide training and suppor...


From Oak Ridge National Laboratory - Tennessee

Published a month ago

Hpc Linux Engineer

COMPANY OVERVIEW XCEL Engineering, Inc. is an award-winning small business that provides trusted information technology, engineering, consulting and project ...


From Xcel Engineering - Tennessee

Published a month ago

Built at: 2024-05-06T12:16:29.190Z