Application Security Architect
Kroger General Office
Cincinnati, OH
Company Name : Kroger General Office
Position Type : Employee
FLSA Status : Exempt
Line of Business :
See what life is like at Kroger Technology
Additional Technology Information :
Provide assistance in establishing strategic guidance and development of application security architecture
Directly partner with the Kroger software engineering organizations to provide secure development subject matter expertise
Mentor and train other team members and software engineering organizations on secure software design techniques and coding standards
Knowledge of Infrastructure as Code (IAC), Java, Python, and a desire to dive deep into application security is a plus
Position Summary
Responsible for the planning, design and build of security architectures to ensure strong security posture, compliance with regulations, and safeguard customer's data.
Manage information systems security, including disaster recovery, database protection, and software development. Demonstrate the company's core values of respect, honesty, integrity, diversity, inclusion and safety.
Essential Job Functions
Oversee Identity and Access management, cloud security, cryptography, logging and alerting, security operations, malware detection, incident response, vulnerability scanning, penetration testing, security architecture, and digital forensics
Guide the implementation of network and computer security and ensures compliance with corporate cybersecurity policies and procedures
Assist with the monitoring of all security systems and their corresponding or associated software, including firewalls, intrusion detection systems, cryptography systems, and anti-virus software
Monitor server and firewall logs, scrutinize network traffic, establish and update vulnerability scans
Analyze and resolve complex security breaches and vulnerability issues in a timely and accurate fashion, and conduct user activity audits where required
Manage and ensure the security of databases and data transferred both internally and externally
Oversee penetration testing of all systems in order to identify system vulnerabilities; design, implement, and report on security system and end user activity audits
Develop new and modify existing security policies and procedures to maintain compliance
Evaluate existing and recommend new and emerging security technologies
Conduct research on emerging products, services, protocols, and standards in support of security enhancement and development efforts
Communicate important updates with key stakeholders across the organization
Coach and mentor other members of the security engineering team
Must be able to perform the essential job functions of this position with or without reasonable accommodation
Minimum Position Qualifications
Bachelor's Degree in computer science, information systems, or related technical field
8+ years of experience in a related security field
Any experience in one or more of the common languages (e.g., Perl, Python, Ruby, shell scripting)
Proven ability to design and build scalable, high volume, and low latency applications
Advanced knowledge of network and web related protocols (e.g., TCP / IP, UDP, IPSEC, HTTP, BGP and other routing protocols)
Desired Previous Experience / Education
Master's Degree in computer science, information systems, or related technical field
Education Level :
Full-time