Information Security Analyst
Information security analyst job in Memphis, TN
WHAT YOU WILL DO
Support a complex security architecture that includes but not limited to: Next generation firewalls, web filtering, e-mail security, DLP, Identity Access Management, Vulnerability management, Endpoint Protection, SIEM and forensic analysis
Design and implement network security controls for multiple locations
Lead large and complex projects while managing resources effectively.
Develop and maintain appropriate Information Security technical documentation as well as providing reviews and updates of existing policies and procedures.
Identify opportunities and recommend solutions for improving service, efficiency and effectiveness.
Provide inputs for formulating security architecture recommendations and design of security services.
Enforce the organization's security policies and mitigate security risks to preserve the confidentiality, integrity and availability of business services
Provide IT support for end users as needed
Requirements:
BS degree in Information technology, computer science or relevant field preferred
A minimum of 2 years' experience in a role as an IT Security professional
Information Security Certifications like CISSP, GCIH, CCNA, Security+, CEH a plus
Experience with supporting end users in a technical support role
Experience with implementing security solutions in an enterprise environment
Experience with network security management (Firewalls, Switches, IDS/IPS; VLAN, ACLs, NAC, SDWAN)
Experience with security frameworks like NIST 800-171, ISO 27002 & CIS
Experience with SOX audit and compliance requirement functions
Strong written, oral, interpersonal and organizational skills; attention to detail; highly collaborative; ability to and interested in interacting with individuals at all levels of the organization
Working knowledge of various privacy, risk and security standards and practices
Experience in Cloud security (Azure & AWS) as plus
Auto-ApplySenior IT Security Analyst
Information security analyst job in Memphis, TN
Salary Range: $105,628-$177,513 The Sr. IT Security Analyst is responsible for assessing information risk and facilitates remediation of identified vulnerabilities for IT security and IT risk across the enterprise. Assesses information risk and facilitates remediation of identified vulnerabilities with the Bank network, systems and applications. Reports on findings and recommendations for corrective action. Performs vulnerability assessments as assigned utilizing IT security tools and methodologies. Performs assessments of the IT security/risk posture within the IT network, systems and software applications, in addition to assessments within the Vendor Management Program. Identifies opportunities to reduce risk and documents remediation options regarding acceptance or mitigation of risk scenarios. Facilitates and monitors performance of risk remediation tasks, changes related to risk mitigation & reports on findings. Maintains oversight of IT and vendors regarding the security maintenance of their systems and applications. The IT Security/Risk Analyst assists in all IT audits, IT risk assessments and regulatory compliance.
Responsibilities
* Management of IT security and IT risk (e.g., data systems, network and/or web) across the enterprise.
* Address questions from internal and external audits and examinations.
* Develop policies, procedures and standards that meet existing and newly developed policy and regulatory requirements.
* Facilitate IT security/risk training curriculum.
* Serve as project manager/lead within IT security projects.
* Promote awareness of applicable regulatory standards, upstream risks and industry best practices across the organization.
This position requires regular, predictable and timely attendance at work to meet department workload demands.
Qualifications
* Bachelor's Degree, Information Systems, Computer Science, Information Security or related field required.
* 7-10 years IT security or information security experience with a proven ability to engage with Senior Management and implement information security solutions.
* 4+ years experience in administering IT security controls in an organization.
* Thorough understanding of Information Security principles, frameworks, as well as industry standards & practices such as CIS and SOGP. Understanding confidentiality, integrity, and availability tried. Experience with SOX, JSOX, ISO 27001, CTPAT, TISAX, or NIST a plus
* Knowledge of technical infrastructure, networks, databases and systems in relation to IT Security and IT Risk.
* Experience with security tools such as SIEM, firewall, EDR, EPP, NDR, vulnerability management, Secure email gateway, and DNS filtering. Experience with Cisco security suites, Splunk, Palo Alto, Fortigate, and Rapid 7 a plus.
* Ability to secure and respond to threats in a multi-cloud environment including configuring and maintaining cloud security posture management.
* Strong understating of with Microsoft operating systems, Linux operating systems, Microsoft Azure, Google Computing Platform, and mobile devices. Experience with application security a plus.
* Experience with Data classification and data loss prevention.
* Certified Information Systems Security Professional (CISSP), or related certification.
* Project management skills preferred.
* Windows workstation and server administration experience preferred.
* Prior experience performing security reviews and risk assessments preferred.
The above statements are intended to describe the general nature of work being performed. They are not to be construed as an exhaustive list of all responsibilities, duties and skills required.
Benefits
Yusen offers a generous Employee Benefits Package including:
* Medical, Dental, and Vision beginning the 1st of the month following start date
* 401k with a company match
* Standard 10 days PTO
* Eligible for bonus plan
* Flexible Spending Accounts, Life and Accidental Death & Dismemberment Insurance, Short & Long Term Disability, Tuition Assistance Program, Commuter Benefits, vacation, and much more
Any and all benefits offered are subject to the eligibility requirements, terms, and provisions set forth in the respective policies and plan documents, which you may request from Human Resources.
About Yusen Logistics (Americas)
Yusen Logistics is working to become the world's preferred supply chain logistics company. Our complete offer is designed to forge better connections between businesses, customers and communities - through innovative supply chain management, freight forwarding, warehousing and distribution services. As a company we're dedicated to a culture of continuous improvement, ensuring everyone who works with us is committed, connected and creative in making us the world's preferred choice.
************************
Yusen Logistics (Americas) Inc. values each individual employee and is committed to a diverse and inclusive workforce by providing equal employment opportunities for all applicants without regard to race, religion, color, sex, national origin, citizenship status, uniform service member status, age, disability, sexual and gender orientation, genetic information, or any other protected status in accordance with all applicable federal, state and local laws.
Los Angeles County Only: Yusen Logistics (Americas) Inc. will consider qualified applicants with a criminal history pursuant to the California Fair Chance Act. You do not need to disclose your criminal history or participate in a background check until a conditional job offer is made to you. After making a conditional offer and running a background check, if Yusen Logistics (Americas) Inc. is concerned about conviction that is directly related to the job, you will be given the chance to explain the circumstances surrounding the conviction, provide mitigating evidence, or challenge the accuracy of the background report. Find out more about the Fair Chance Act by visiting the Civil Right's Department Fair Chance Act webpage.
Auto-ApplyLead Cloud Security Analyst
Information security analyst job in Memphis, TN
Are you passionate about technology and interested in joining a community of collaborative colleagues who respectfully and courageously seek to challenge the status quo? If so, read on to learn more about an exciting opportunity with Deloitte Technology US (DT - US). We are curious and life-long learners focused on technology and innovation.
Recruiting for this role ends on 11/26/2025.
Work you'll do
As a Lead Cloud Security Analyst, you are an advanced individual contributor pivotal to bridging Deloitte's cybersecurity expertise and cloud engineering execution. This highly visible role is focused on influential, hands-on contributions-championing embedded collaboration, addressing complex risks, and guiding strategic alignment between cyber and infrastructure domains. You'll serve as a thought leader, technical consultant, and trusted advisor across teams, delivering best-in-class solutions and supporting dynamic business needs.
Key Responsibilities
Technical Leadership & Advanced Execution
+ Lead Embedded Collaboration:Drive the flexible embedding of security and infrastructure resources-proactively advising, aligning, and executing as project needs evolve. Serve as the go-to analyst across high-impact domains, facilitating rapid adaptation as priorities shift.
+ Expert Solution Architecture Support:Collaborate closely with architecture, engineering, and network teams on cloud architecture, micro-segmentation, agent scanning, and burn-down strategies. Provide deep technical expertise to shape scalable, secure solutions from initial design through delivery.
+ Risk Assessment and Remediation:Conduct comprehensive risk reviews for cloud and infrastructure solutions, identifying gaps, potential rework triggers, and opportunities for proactive remediation. Serve as a first-line subject matter expert in incident response, vulnerability management, and security control implementation.
+ Continuous Alignment & Best Practices:Drive rigorous ongoing feedback loops with embedded teams to ensure day-to-day cyber alignment, minimize project drift, and reduce rework. Capture and share lessons learned, helping to formalize best practices and improve organizational knowledge.
Strategic Influence & Cross-Team Partnership
+ Tailor Embedding Models:Assess and recommend embedding intensity across teams (e.g., full-time support for firewall/critical ops, periodic or architecture-phase-only engagement for other domains). Provide consultative input on workforce planning, workload balancing, and talent optimization.
+ Mentor and Guide Peers:Model collaborative behaviors and help mentor less experienced analysts, reinforcing Deloitte's culture of learning, agility, and business partnership.
+ Facilitate Stakeholder Communication:Proactively communicate risks, priorities, and achievements to senior stakeholders. Translate technical challenges into actionable business guidance, advocating for security and resilience.
The team
Deloitte Technology US (DT - US) helps power Deloitte's success, which serves many of the world's largest, most respected organizations. We develop and deploy cutting-edge internal and go-to-market solutions that help Deloitte operate effectively and lead in the market. Our reputation is built on a tradition of delivering with excellence.
The ~3,000 professionals in DT - US deliver services including:
+ Cyber Security
+ Technology Support
+ Technology & Infrastructure
+ Applications
+ Relationship Management
+ Strategy & Communications
+ Project Management
+ Financials
Cyber Security
Cyber Security vigilantly protects Deloitte and client data. The team leads a strategic cyber risk program that adapts to a rapidly changing threat landscape, changes in business strategies, risks, and vulnerabilities. Using situational awareness, threat intelligence, and building a security culture across the organization, the team helps to protect the Deloitte brand.
Areas of focus include:
+ Risk & Compliance
+ Identity & Access Management
+ Data Protection
+ Cyber Design
+ Incident Response
+ Security Architecture
+ Business Partnership
Required Qualifications:
+ Bachelor's Degree or equivalent in Computer Science, Cybersecurity, IT, or related field.
+ Minimum 5 years' hands-on experience in cloud engineering, cybersecurity, or infrastructure-ideally in large-scale, cross-functional environments.
+ Ability to travel 10%, on average to support embedded team collaboration across domains periodically as required.
+ Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future
Preferred Qualifications:
+ Advanced experience with Azure, AWS, and/or Google Cloud Platform, including architecture and automation.
+ Hands-on expertise with DevOps and CI/CD tools such as Azure DevOps, Jenkins, Jira, Bamboo, TFS, and TeamCity.
+ Proven experience with micro-segmentation solutions, including policy design, deployment, and tuning.
+ Practical working knowledge of Docker containers and microservices architecture.
+ Proficiency with configuration management tools (Ansible, Chef, Puppet) and packaging programs (MSI, rpm, etc.).
+ Familiarity with both SQL and NoSQL databases and cloud/hybrid application architectures.
+ Strong understanding of networking, firewalls, load balancers, and network traffic analysis tools (e.g., Wireshark).
+ Experience with virtualization technologies such as VMware and Hyper-V.
+ Deep knowledge of security controls, best practices for resilient operations, and frameworks like zero trust, NIST, and CIS.
+ Recognized technical authority in at least one major cloud platform (Azure, AWS, GCP) and strong proficiency with DevOps, automation, and security frameworks (Zero Trust, NIST, CIS).
+ Demonstrated expertise in designing, implementing, and securing cloud infrastructure and security architectures.
+ Strong proficiency with DevOps, automation, and security frameworks (Zero Trust, NIST, CIS).
+ Exceptional technical, analytical, documentation, and communication skills for stakeholder and cross-team influence.
+ Understanding of Infrastructure as Code, Automation, and Orchestration.
+ Demonstrated ability to mentor peers, lead process improvements, and contribute to organizational best practices.
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $97,600-$200,600.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
Information for applicants with a need for accommodation: ************************************************************************************************************
EA_ExpHireRITM9656376
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
IT Cyber Security Specialist
Information security analyst job in Stanton, TN
IT Cyber Security Specialist- Battery Manufacturing Introduction to BlueOval SK At BlueOval SK, we will lead the transformation of the electric vehicle (EV) battery business through partnership (Joint Venture formed by Ford and SK On) to provide products and processes to increase our customers' experience. As the future of BlueOval SK, you will help lead the battery revolution by working alongside our teams as we build the batteries required for electric vehicle business excellence.
Ford and SK On are investing billions in Kentucky and Tennessee including building three state-of-the art battery manufacturing facilities between the two campuses at BlueOval City in Tennessee and Blue Oval SK Battery Park in Kentucky. These brand-new advanced manufacturing facilities will use Ford's 100-years of automobile manufacturing expertise and SK On's 30+ years of electric vehicle battery expertise to become the world's best battery manufacturer.
The IT Cyber Security Specialist at Blue Oval SK - Blue Oval City in Stanton, Tennessee will work as a part of a team to protect important information assets from cyber-attacks and maintain sensitive and confidential information.
Key Areas of Responsibility:
* Safeguards information system assets by identifying and solving potential and actual security problems.
* Protects system by defining access privileges, control structures, and resources.
* Recognizes problems by identifying abnormalities; reporting violations.
* Implements security improvements by assessing current situation; evaluating trends; anticipating requirements.
* Determines security violations and inefficiencies by conducting period audits.
* Upgrades system by implementing and maintaining security controls.
* Keeps users informed by preparing performance reports; community system status.
* Maintains quality service by following organization standards.
* Maintains technical knowledge by attending educational workshops; reviewing publications.
* Contributes to team effort by accomplishing related results as needed.
* Security systems operation/management
* Security systems trouble shooting
* Test new security IT system.
* Install security system.
* Maintain security IT system
* Basic knowledge of cyber security
* Knowledge of networking fundamentals (TCP/IP, Network Layers, etc.)
* Knowledge of windows and Linux command skill
Minimum Requirements
* Bachelor's degree in computer science or closely related field
* 3 + years direct hands-on experience with incident management and response
* Proficiency in problem-solving, analytical thinking, and penetration testing methodologies
* Advanced certifications such as SANS GIAC/GCIA/GCIH, CISSP or CASP and / or SIEM - specific training and certification.
* Advanced understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth and common security elements.
* Hands-on experience analyzing high volumes of logs, network data (e.g. netflow, FPC), and other attack artifacts in support of incident investigations
* Experience with vulnerability scanning solutions
* Proficiency with any of the following; Anti-Virus, HIPS, ID/PS, Full Packet Capture, Host-Based Forensics, Network Forensics, and RSA Security.
* In-depth knowledge of architecture, engineering, and operations of at least one enterprise SIEM platform (e.g. Nitro/McAfee Enterprise Security Manager, ArcSight, QRadar, LogLogic, Splunk).
* Experience developing and deploying signatures (e.g. YARA, Snort, Suricata, HIPS)
* Understanding of mobile technology and OS (i.e. Android, iOS, Windows), VMware technology, and Unix and basic Unix commands.
* Experience in IT security solution operation
* Experience in IT Network operation
* Experience in operating endpoint security solutions.
Preferred Qualifications
* Bachelor's degree in Computer Science or cybersecurity related field.
* Master's degree in cybersecurity, or related field is a plus.
* Holds certifications such as: CISSP, CISA, ISO 27001
* Up to date on current cybersecurity trends, threat landscape and security solutions.
About BlueOval SK
At BlueOval SK, we will lead the transformation of the electric vehicle (EV) battery business through partnership (Joint Venture formed by Ford and SK On) to provide products and processes to increase our customers' experience. As the future of BlueOval SK, you will help lead the battery revolution by working alongside our teams as we build the batteries required for electric vehicle business excellence. We have a wide variety of opportunities for you to accelerate your career.
The Opportunity
Ford and SK On are investing billions in Kentucky and Tennessee including building three state-of-the art battery manufacturing facilities between the two campuses at BlueOval City in Tennessee and BlueOval SK Battery Park in Kentucky. These brand-new advanced manufacturing facilities will use Ford's 100-years of automobile manufacturing expertise and SK On's 30+ years of electric vehicle battery expertise to become the world's best battery manufacturer.
For more information about BlueOval SK plans, please Follow this link.
What you'll receive in return:
As part of the BlueOval SK family, you'll enjoy excellent compensation and a comprehensive benefits package that includes generous paid time off (PTO), retirement contributions, incentive compensation and much more. You'll also experience exciting opportunities for professional and personal growth and recognition. If you have what it takes to help us lead the transformation of the EV battery business, we'd love to have you join us.
Benefits Include:
* 401k plan with retirement planning services
* 401k company matching after completing three months of service
* Medical and prescription drug coverage
* Dental and vision coverage
* Preventative Care
* Eligibility for great ancillary benefits including: Flexible Spending Accounts (FSAs), Short-Term Disability (STD) and Long-Term Disability (LTD), Employee Basic Life and Accidental Death Dismemberment (AD&D) insurance, and Employee Supplemental Life Insurance
* Access to Paid Time Off (PTO) after completing probationary period and Emergency PTO
* Parental Leave
* Access to Ford Vehicle Discount Program
* Climate-controlled working environment
* For a full list of benefits, visit our website:
* ************************************
Candidates for positions with BlueOval SK must be legally authorized to work in the United States. BlueOval SK does not sponsor employment VISAs for candidates at this time. Verification of employment eligibility will be required at the time of hire.
We are an Equal Opportunity Employer committed to a culturally diverse workforce. All qualified applicants will receive consideration for employment without regard to race, religion, color, age, sex, national origin, sexual orientation, gender identity, disability status or protected veteran status.
Auto-ApplyIT Cyber Security Specialist
Information security analyst job in Stanton, TN
IT Cyber Security Specialist- Battery Manufacturing
Introduction to BlueOval SK
At BlueOval SK, we will lead the transformation of the electric vehicle (EV) battery business through partnership (Joint Venture formed by Ford and SK On) to provide products and processes to increase our customers' experience. As the future of BlueOval SK, you will help lead the battery revolution by working alongside our teams as we build the batteries required for electric vehicle business excellence.
Ford and SK On are investing billions in Kentucky and Tennessee including building three state-of-the art battery manufacturing facilities between the two campuses at BlueOval City in Tennessee and Blue Oval SK Battery Park in Kentucky. These brand-new advanced manufacturing facilities will use Ford's 100-years of automobile manufacturing expertise and SK On's 30+ years of electric vehicle battery expertise to become the world's best battery manufacturer.
The IT Cyber Security Specialist at Blue Oval SK - Blue Oval City in Stanton, Tennessee will work as a part of a team to protect important information assets from cyber-attacks and maintain sensitive and confidential information.
Key Areas of Responsibility:
Safeguards information system assets by identifying and solving potential and actual security problems.
Protects system by defining access privileges, control structures, and resources.
Recognizes problems by identifying abnormalities; reporting violations.
Implements security improvements by assessing current situation; evaluating trends; anticipating requirements.
Determines security violations and inefficiencies by conducting period audits.
Upgrades system by implementing and maintaining security controls.
Keeps users informed by preparing performance reports; community system status.
Maintains quality service by following organization standards.
Maintains technical knowledge by attending educational workshops; reviewing publications.
Contributes to team effort by accomplishing related results as needed.
Security systems operation/management
Security systems trouble shooting
Test new security IT system.
Install security system.
Maintain security IT system
Basic knowledge of cyber security
Knowledge of networking fundamentals (TCP/IP, Network Layers, etc.)
Knowledge of windows and Linux command skill
Minimum Requirements
Bachelor's degree in computer science or closely related field
3 + years direct hands-on experience with incident management and response
Proficiency in problem-solving, analytical thinking, and penetration testing methodologies
Advanced certifications such as SANS GIAC/GCIA/GCIH, CISSP or CASP and / or SIEM - specific training and certification.
Advanced understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth and common security elements.
Hands-on experience analyzing high volumes of logs, network data (e.g. netflow, FPC), and other attack artifacts in support of incident investigations
Experience with vulnerability scanning solutions
Proficiency with any of the following; Anti-Virus, HIPS, ID/PS, Full Packet Capture, Host-Based Forensics, Network Forensics, and RSA Security.
In-depth knowledge of architecture, engineering, and operations of at least one enterprise SIEM platform (e.g. Nitro/McAfee Enterprise Security Manager, ArcSight, QRadar, LogLogic, Splunk).
Experience developing and deploying signatures (e.g. YARA, Snort, Suricata, HIPS)
Understanding of mobile technology and OS (i.e. Android, iOS, Windows), VMware technology, and Unix and basic Unix commands.
Experience in IT security solution operation
Experience in IT Network operation
Experience in operating endpoint security solutions.
Preferred Qualifications
Bachelor's degree in Computer Science or cybersecurity related field.
Master's degree in cybersecurity, or related field is a plus.
Holds certifications such as: CISSP, CISA, ISO 27001
Up to date on current cybersecurity trends, threat landscape and security solutions.
About BlueOval SK
At BlueOval SK, we will lead the transformation of the electric vehicle (EV) battery business through partnership (Joint Venture formed by Ford and SK On) to provide products and processes to increase our customers' experience. As the future of BlueOval SK, you will help lead the battery revolution by working alongside our teams as we build the batteries required for electric vehicle business excellence. We have a wide variety of opportunities for you to accelerate your career.
The Opportunity
Ford and SK On are investing billions in Kentucky and Tennessee including building three state-of-the art battery manufacturing facilities between the two campuses at BlueOval City in Tennessee and BlueOval SK Battery Park in Kentucky. These brand-new advanced manufacturing facilities will use Ford's 100-years of automobile manufacturing expertise and SK On's 30+ years of electric vehicle battery expertise to become the world's best battery manufacturer.
For more information about BlueOval SK plans, please Follow this link.
What you'll receive in return:
As part of the BlueOval SK family, you'll enjoy excellent compensation and a comprehensive benefits package that includes generous paid time off (PTO), retirement contributions, incentive compensation and much more. You'll also experience exciting opportunities for professional and personal growth and recognition. If you have what it takes to help us lead the transformation of the EV battery business, we'd love to have you join us.
Benefits Include:
401k plan with retirement planning services
401k company matching after completing three months of service
Medical and prescription drug coverage
Dental and vision coverage
Preventative Care
Eligibility for great ancillary benefits including: Flexible Spending Accounts (FSAs), Short-Term Disability (STD) and Long-Term Disability (LTD), Employee Basic Life and Accidental Death Dismemberment (AD&D) insurance, and Employee Supplemental Life Insurance
Access to Paid Time Off (PTO) after completing probationary period and Emergency PTO
Parental Leave
Access to Ford Vehicle Discount Program
Climate-controlled working environment
For a full list of benefits, visit our website:
************************************
Candidates for positions with BlueOval SK must be legally authorized to work in the United States. BlueOval SK does not sponsor employment VISAs for candidates at this time. Verification of employment eligibility will be required at the time of hire.
We are an Equal Opportunity Employer committed to a culturally diverse workforce. All qualified applicants will receive consideration for employment without regard to race, religion, color, age, sex, national origin, sexual orientation, gender identity, disability status or protected veteran status.
Auto-ApplyIT Manager - Information Security
Information security analyst job in Memphis, TN
This position manages a team of AutoZoners in the development, implementation, and support of AutoZone's existing and new software applications and hardware platforms that provide security controls. The IT Security Manager will be responsible for developing and implementing robust security measures, managing a team of security engineers, and ensuring the overall security of systems, networks, and data
* Manage and lead a team of IT AutoZoners that includes assigning/monitoring work, providing feedback, coaching and development, counseling, and salary administration.
* Manages and tracks the progress of multiple projects. Performs project management and administration that includes work plans, resource planning and control, writing status reports, and preparing annual budgets.
* Communicates status of activities with teams, peers, management, and business partners
* Builds relationship with key business partners to identify and resolve business issues
* Selects, develops, and motivates assigned staff.
* At least ten years security and / or cyber risk management experience in a large enterprise environment, including formal leadership responsibilities.
People leadership/supervisory skills.
* Problem solving and analytical skills.
* Presentation, facilitation and writing skills.
* Project management - estimating, planning, controlling, and execution.
* Advanced knowledge of one or more of the following technical areas:
* LDAP and directory administration (Ping Identity)
* SAP Security
* SSO/SAML/OIDC
* PAM administration (CyberArk)
* Multi-factor authentication (MFA)
* Identity Governance & Administration (IGA)
* Bachelor's degree in Computer Science or related field.
* Preferred: Understanding of, and experience with, scripting or coding languages.
* Preferred: Security credentials such as Certified Information Systems Security Professional (CISSP)
Security Engineer - Secure Software Development
Information security analyst job in Memphis, TN
By joining Sedgwick, you'll be part of something truly meaningful. It's what our 33,000 colleagues do every day for people around the world who are facing the unexpected. We invite you to grow your career with us, experience our caring culture, and enjoy work-life balance. Here, there's no limit to what you can achieve.
Newsweek Recognizes Sedgwick as America's Greatest Workplaces National Top Companies
Certified as a Great Place to Work
Fortune Best Workplaces in Financial Services & Insurance
Security Engineer - Secure Software Development
Security Engineer - Secure Software Development
**PRIMARY PURPOSE OF THE ROLE:** To manage the implementation of security measures to protect company data, networks, and computer systems. To focus on executing security fundamentals for threat detection, investigation, and response efforts.
**ARE YOU AN IDEAL CANDIDATE?** We are looking for enthusiastic candidates who thrive in a collaborative environment, who are driven to deliver great work, are customer-oriented and are naturally empathetic.
**ESSENTIAL RESPONSIBLITIES MAY INCLUDE**
+ Engineers, implements and monitors security measures for the protection of computer systems, networks and information.
+ Identifies and defines system security requirements.
+ Designs computer security architecture and develops detailed cyber security designs.
+ Prepares and documents standard operating procedures and protocols.
+ Configures and troubleshoots security infrastructure devices.
+ Develops technical solutions and new security tools to assist in mitigating security vulnerabilities and automating repeatable tasks.
+ Leads IT groups and business units as necessary in troubleshooting compatibility issues between security tools and business or productivity programs.
+ Performs analysis of suspected malicious code and other software or programs and provides written or verbal analysis to management.
+ Analyzes client and customer needs as required and provides clear and concise reports to leadership.
+ Works closely with management on assigned projects from inception through implementation ensuring adequate internal communication and user involvement is maintained.
**QUALIFICATIONS**
Eight (8) years of encryption technologies/algorithms, digital forensics, network topologies, and access controls experience or equivalent combination of educated and experience required.
**Skills & Knowledge**
+ Knowledge of TCP/IP services
+ Knowledge of audit and compliance
+ Knowledge of vulnerability management
+ Knowledge of penetration testing
+ Knowledge of various operating systems
+ Knowledge of desktop productivity software
+ Knowledge of Carbon Black Protection
+ Knowledge of Symantec Endpoint Protection and host data loss prevention
+ Knowledge of information technology security frameworks
+ Excellent oral and written communication skills, including presentation skills
+ PC literate, including Microsoft Office products
+ Analytical and interpretive skills
+ Strong organizational skills
+ Excellent interpersonal skills
+ Ability to create and complete comprehensive, accurate and constructive written reports
+ Ability to work in a team environment
+ Ability to meet or exceed Performance Competencies
**Proficient in Snyk for Application Security:** Demonstrated expertise in integrating Snyk into CI/CD pipelines to proactively identify and remediate vulnerabilities in open-source dependencies, container images, and infrastructure as code. Skilled in leveraging Snyk's developer-first tools to maintain secure codebases, enforce security policies, and ensure compliance with industry standards. Experienced in configuring automated scans, interpreting results, and collaborating with development teams to implement effective remediation strategies, contributing to a robust DevSecOps culture.
**TAKING CARE OF YOU**
+ Career development and promotional growth opportunities
+ A diverse and comprehensive benefits offering including medical, dental vision, 401K, PTO and more
\#LI-TS1
Work environment requirements for entry-level opportunities include -
Physical: Computer keyboarding
Auditory/visual: Hearing, vision and talking
Mental: Clear and conceptual thinking ability; excellent judgement and discretion; ability to meet deadlines
Travels as required
The statements contained in this document are intended to describe the general nature and level of work being performed by a colleague assigned to this description. They are not intended to constitute a comprehensive list of functions, duties, or local variances. Management retains the discretion to add or to change the duties of the position at any time.
Sedgwick is an Equal Opportunity Employer and a Drug-Free Workplace.
**If you're excited about this role but your experience doesn't align perfectly with every qualification in the job description, consider applying for it anyway! Sedgwick is building a diverse, equitable, and inclusive workplace and recognizes that each person possesses a unique combination of skills, knowledge, and experience. You may be just the right candidate for this or other roles.**
**Sedgwick is the world's leading risk and claims administration partner, which helps clients thrive by navigating the unexpected. The company's expertise, combined with the most advanced AI-enabled technology available, sets the standard for solutions in claims administration, loss adjusting, benefits administration, and product recall. With over 33,000 colleagues and 10,000 clients across 80 countries, Sedgwick provides unmatched perspective, caring that counts, and solutions for the rapidly changing and complex risk landscape. For more, see** **sedgwick.com**
Sr. Security Engineer
Information security analyst job in Memphis, TN
Our client, a large international Information Security Consulting organization, has asked to find a Senior-Level security expert to lead a major SIEM migration. This is a highly visible role with mission critical responsibilities because you will play an integral part of a major multi-year SOC transformation. STRONG SPLUNK UNDERSTANDING IS CRITICAL FOR THIS ROLE.
Responsibilities of the SIEM Security Engineer:
· Architect and manage SIEM technologies, specifically with ArcSight
· Lead a s major SIEM migration into a Splunk environment (complete data migration).
· Develop, tune, and maintain tools to automate analysis capabilities with host and log-based security event analysis
· optimize event ingestion, reporting and alerting
· Create signatures, rule sets, and content analysis definitions for a variety of security detection capabilities
· Manage project tasks, reporting, and customer meetings
Requirements
Requirements of the SIEM Security Engineer:
· Splunk Web Framework (reports/dashboards/etc.)
· Command line and console-based troubleshooting
· Custom parser creation for events in Syslog, ODBC, ad flat file formats
· Splunk App creation and scripting experience (Python)
· Relevant certifications such as CCNP, CCNA, SANS, CISSP, etc.
· Experience supporting large scale SIEM migrations and project task management
· Expert level knowledge of installing, deploying, documenting, and troubleshooting network perimeter security technologies such as firewalls, proxy servers, intrusion prevention/detection (IDS/IPS), antivirus, antimalware, anti-spam and unified threat management (UTM).
· A solid understanding of networking/distributed computing environment concepts; understands principles of routing, client/server programming, the design of consistent network-wide file system layouts.
Benefits A full and competitive benefits package is available with this role.
Physical Security Systems Engineer
Information security analyst job in Memphis, TN
xAI's mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company's mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All engineers are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates.
About the Role
As a Physical Security Systems Engineer at xAI, you'll design, implement, and maintain advanced security systems to safeguard our facilities, assets, and personnel. Working onsite in Memphis, Tennessee, you'll tackle complex challenges, leveraging your deep expertise in security technologies to strengthen our infrastructure at a fast-scaling company. Expect to dive into system optimization, ensure robust protection, and travel regularly to xAI sites to support our mission of accelerating human scientific discovery through AI.
This is an in-person role based in Memphis, Tennessee, with regular travel required to all xAI sites.
Responsibilities
Develop detailed design plans for the installation of physical security systems including access control, surveillance cameras, intrusion detection, and alarm systems.
Collaborate with InfoSec, IT and facility management teams to integrate security hardware with existing systems across locations.
Manage health and configuration of security network infrastructure
Regularly assess the performance of installed security systems and make necessary adjustments or upgrades.
Conduct preventive maintenance to ensure all security equipment is in optimal working condition.
Diagnose and resolve hardware issues promptly to minimize downtime and security risks.
Keep detailed records of all service and maintenance activities.
Participate in or lead security audits to identify vulnerabilities in physical security measures.
Recommend and implement solutions to address identified security gaps.
Liaise with vendors for procurement of security hardware, ensuring compliance with organizational standards and budget constraints.
Manage relationships with external contractors for installation and maintenance services.
Train security and facility staff on the use of new security systems.
Ensure all security hardware installations meet local, state, and federal regulations.
Maintain up-to-date documentation on system configurations, maintenance schedules, and security incident responses.
Required Qualifications
Minimum of 5 years in a role focused on physical security systems design.
Proven experience with CCTV, access control, and intrusion detection systems.
Experience using CAD software and reading architectural drawings
Experience using Bluebeam software
Preferred Qualifications
Bachelor's degree in Electrical Engineering, Computer Science, or related field; or equivalent experience in security systems.
Ability to interpret security objectives, develop project schedules and manage adherence to established timetables.
Familiarity with Genetec software is a plus.
Proficiency in hardware troubleshooting and system diagnostics.
Experience configuring security and network architecture in integrated security systems.
Familiarity with current security technology trends and innovations.
Certifications such as CPP (Certified Protection Professional) or PSP (Physical Security Professional) are highly desirable.
Excellent problem-solving abilities and attention to detail.
Strong communication skills for effective collaboration with team members and stakeholders.
Ability to work under pressure in a dynamic environment on highly condensed timelines.
Regular sitting at a desk or computer for extended periods, typing and writing. Occasionally walking, around the facility and standing.
xAI is an equal opportunity employer.
California Consumer Privacy Act (CCPA) Notice
Auto-ApplyIT Security Engineer
Information security analyst job in Memphis, TN
**_This position follows our hybrid workstyle policy: Expected to be in a Raymond James office location a minimum of 10-12 days a month._** **_Please note: This role is not eligible for Work Visa sponsorship, either currently or in the future._** **Responsibilities:**
+ Strong MS Active Directory; MS Entra ID and AWS experience required
+ Strong communication and collaboration skills are required, with the ability to work independently and as part of a team.
+ Support and maintain Active Directory; Entra ID and DNS/DHCP/IPAM system-based processes.
+ Assist in defining and implementing AD; Entra ID and DNS/DHCP/IPAM support procedures.
+ Work on Operational Engineering Tasks - Tickets; Incidents; Change Requests; Vulnerabilities; Maintenance Tasks.
+ Provide technical input on IAM technologies, policies, and compliance requirements.
+ Participate in IAM-related projects using established methodologies and contribute to project deliverables.
+ Participate in Enterprise Disaster Recovery Exercises; and On-Call rotations with the IAM-IGA Team.
+ Recommend and implement technical improvements to enhance security and operational efficiency.
+ Collaborate with stakeholders to understand business requirements and translate them into technical solutions.
+ Develop and maintain system documentation, including flow charts, diagrams, and specifications.
+ Document current and future state processes and assist in planning transitions.
+ Support AD, Entra ID and DNS / DHCP / IPAM system-based processes:
+ Define and implement support procedures.
+ Manage business requirements and process documentations.
+ Write/review system specifications, output requirements, flowcharts and technical diagrams.
**Required Technical skillsets:**
+ Minimum 5 years working experience with Active Directory, Entra ID, AWS, and DNS / DHCP / IPAM.
+ Proven hands-on experience with IAM (Hybrid & Cloud environments), AWS and related tools/technologies.
+ Proven hands-on experience with networking solutions such as DNS / DHCP / IPAM.
+ Strong and proven scripting and automation skills using PowerShell, etc.
+ Enterprise level experience is required - Financial Services experience is preferred.
+ Additional skills - Event/log analysis and troubleshooting; System monitoring and event analysis.
Analyst IT Report -Technology Development
Information security analyst job in Memphis, TN
Destination 2025, our 10-year strategic plan, is designed not only to improve the quality of public education, but also to create a more knowledgeable, productive workforce and ultimately benefit our entire community. What will success look like in 2025?
By 2025, 80 percent of seniors will be on track to learn in a postsecondary classroom or enter the workforce straight out of high school; 90 percent of students will earn their high school diploma on time; and every student will enroll in a postsecondary opportunity college or career-ready.
We believe:
Proficiency in literacy is the foundation of all learning, and we are committed to making that a top priority for students.
As we raise expectations of our students, innovative and varied practices are needed in the classroom to provide students with learning experiences that will prepare them for life after graduation.
Successful teachers and leaders are the drivers for student success. That means continuing to provide educators with the support and tools needed to make classroom teaching impactful.
Although 2025 is in the future, the work is happening to produce engaged and prepared students.
By devoting time and other resources to schools, community members can have a direct impact on student achievement.
How will we get there?
Teachers, parents and community leaders have worked with us to develop the high-leverage priorities to focus all of our efforts and resources over the next 10 years - early literacy, post-secondary readiness, teacher and staff development, high quality schools and community engagement.
Job Description
Purpose and Scope 1. Work with the Leadership and Department to gather requirements to design, develop, test and deploy reports and strategic and operational dashboards.
2. Responsible for day-to-day designs, developments, monitoring and support of assigned reports and dashboards.
3. Develops Excel, SQL, or application specific reports.
4. Pulls data from various data sources and combine into a single report, either via Data Warehouse or through direct integration.
5. Builds reports to help identify data patterns to scrub/clean data and maintain good data hygiene.
6. Provide database development expertise (stored procedures, views etc.) for application development, design, implementation, verification, debugging, optimizing and maintenance of SQL Server database objects and process for the application, reporting and interface modules
7. Perform report development with strong stored procedure skills utilizing SQL Server 2008 R2, 2005, 2000
8. Design code and test SQL Server reporting services components (user interface, Stored Procedures, Tables etc.)
9. Experience in complete development lifecycle from requirements through deployment and maintenance
10. Provides end-user training on report writing software and support users in ad-hoc report creation.
11. Develops and applies solutions to complex problems which require the regular use of ingenuity and creativity and competency in SQL and EXCEL.
12. Converses with management to determine type, scope, and purpose of analyses. May lead a team in the effort. Works with other analysts and management to complete assigned project work.
13. Deals with complex problems and provides solutions that are innovative and ingenious, achieving quality and work process improvements.
14. May ensure that the workgroup's goals and activities are in sync with and support the broader goals and objectives of the organization; and that the execution of responsibilities are in accordance to lawful and ethical standards.
15. Directs and assists in the preparation and maintenance of a variety of narrative and statistical repmis, records, correspondence, and files related to assigned service, activities, and operations; provides for appropriate research and compiles reports, as needed.
16. Performs other related duties as assigned or directed.
Qualifications
Essential Job Functions Delivers at a high level of competency Information Technology software development. Assesses and performs analysis on data, and prepares data to facilitate Technical Services functions of organization. Responsibilities require understanding of both theory and practice. Minimum Qualifications Graduation from an accredited college or university with a Bachelor's Degree in Computer Science plus an additional four (4) years related experience, or equivalent, for a total education/experience of 8 years. Prefer experience with MS SQL Server 2008 R2, 2005 Reporting Services, Integration Services. Prefer 2+ years' experience in use and application of stored procedures, DTS package, SSIS package, and Crystal reports. Experience with multi-dimensional Data Sources, reporting tool such as MS Reporting services, Tableau preferred.
Degree Equivalency Formula:
Bachelor's Degree= 4 years plus required years of experience.
Master's Degree= 2 years plus required years of experience. Where Master's degrees are required, years for Bachelor's Degrees must be included. Knowledge, Skills, and Abilities Basic understanding and familiarity with database structure (particularly SQL).
Strong analytic and problem-solving skills, with the ability to swiftly and accurately understand complex data and perform analysis
Skill in developing data-supported solutions and using fact-based logic; ability to translate complex analysis in easy-to-understand manner and present to a broad audience
Strong written and verbal communication skills
Outstanding leadership skills and ability to build high-performing teams through both recruitment and selection and professional development
Ability to tackle the operational challenges of the merged school district in a complex, changing political and educational environment
Ability to manage daily administrative tasks without losing sight of long-term goals and planning
Additional Information
Why Memphis?
Shelby County
Schools-one of the 25 largest school districts in the nation-is located in
Memphis, TN, a
city
known for its great food, original music, professional sports, high-quality
arts in the most affordable urban setting in the nation
. Not only that, but Memphis is a hotbed and national leader
for groundbreaking work in education.
Benefits
:
SCS
benefits include the following:
State
retirement plan
Paid
holidays
Paid
vacation
Paid
sick days
Heath
Care Insurance (e.g. Medical, Dental)
IT Project Cost Analyst
Information security analyst job in Memphis, TN
The IT Cost Analyst is responsible for the financial planning, budgeting, forecasting, and analysis of IT spend and expense within our organization. This role collaborates between technology and finance, ensuring that IT initiatives are managed cost-effectively, aligned with business objectives, deliver measurable returns on investment, and meet corporate finance expectations. The successful candidate will provide analytical support to project management teams and be a subject matter expert on the creation of technology implementation costs driven by IT projects.
Key Responsibilities:
• IT Project Budget Development & Management:
o Collaborate with IT project managers to create detailed project budgets.
o Effectively monitor spending throughout the project lifecycle.
o Track actual expenditures versus forecasted budgets and provide variance analysis.
• IT Spend & Reporting:
o Prepare financial reports that summarize the status of IT projects.
o Conduct ROI, cost-benefit, and risk analyses to support decision-making processes.
o Assist in forecasting project expenses.
• IT Expense Cost Control & Optimization:
o Identify areas for cost reduction and recommend opportunities to optimize financial resources.
• Stakeholder Collaboration & Communication:
o Work closely with cross-functional teams, including IT, finance, and operations, to ensure the integration of financial planning with project execution.
o Communicate complex financial insights understandably to non-financial stakeholders.
• Process Improvement & Compliance:
o Assist in developing and continuously improving IT cost identification processes and tools used in IT project management.
o Ensure all IT project budget activities comply with internal policies and external regulatory requirements.
Qualifications:
Education
o Bachelor's degree in Finance, Accounting, Business, Information Technology, or a related field.
Experience
o 3+ years of experience in financial analysis, budget management, or project control, preferably within an IT or technology-focused environment.
o Proven experience working with medium to large IT project budgets.
Technical Skills & Tools
o Advanced knowledge of Microsoft Excel.
o Experience with data visualization tools is beneficial.
Core Competencies
o Strong analytical and problem-solving skills.
o Excellent communication and presentation abilities.
o High attention to detail and strong organizational skills.
o Ability to work collaboratively, manage multiple projects, and meet deadlines.
o A proactive mindset that can identify financial risks and implement mitigation strategies.
Auto-ApplyInformation Security Engineer
Information security analyst job in Memphis, TN
not eligible for sponsorship** **Locations: Onsite in Memphis, TN; Maryville, TN; Birmingham, AL; Lafayette, LA; New Orleans, LA; Charlotte, NC; Raleigh, NC; or Dallas, TX.** The Cyber Security Engineer - Threat Management is a mid-level Cyber Security Engineer responsible for second level security event/incident response along with the collection, analysis, and dissemination of cyber threat intelligence. These capabilities will include timely collection of advanced warning of impeding IT vulnerabilities or threats, a thorough correlation, analysis, and storage of threat intelligence information, and operational support of the incident response process. The candidate They will deliver and sustain the enterprise management strategy and solutions from a governance, process, discipline and technology standpoint, to support enterprise environments and our presence in various cloud instances and on-premises data centers covering threats / FIM / configuration management / incident response / vulnerability management. Secondary roles include IPS, EDR, TIP tools, and other information security solutions.
Essential Functions of the Job:
+ Responding to SOC alerts performing an analysis, and containment of security events.
+ Provide tier II support for escalated security incidents.
+ Support the Cyber Incident Response Team (CIRT) in the effective detection, analysis, and containment of attacks.
+ Operate the configuration management program to track configuration drift over time, working with asset custodians to correct any configuration deviation from baseline.
+ Operate the File Integrity Management program to track changes to file systems on critical systems.
+ Operate the processes necessary to collect threat intelligence, analyze the data for patterns and actionable information, and create intelligence products for other teams to consume using MITRE ATT&CK Framework.
+ Identifies security risks and exposures, determines the causes of security violations and suggests procedures to halt future incidents.
+ Integrate appropriate systems and logs into the global threat management platform or Security Event and Incident Management system to properly protect critical assets.
+ Design, test and develop specific content and alerting to identify threats against critical assets.
+ Document incident response playbooks for new threat content and alerts.
+ Maintain an understanding of attacks, vectors and emergent threats.
+ Obtain and share cyber security intelligence with security partners, vendors and law enforcement as necessary.
+ Produce weekly and monthly operational metrics.
+ Work with vendors and internal customers to respond to escalations.
+ Recommends Preventative Security Actions.
+ Recommends Corrective Security Actions.
+ Comprehension of basic banking systems.
**Job Requirements:**
+ High School Graduate or Equivalent.
+ Bachelor's Degree Preferred but not required in Computer Engineering/Computer Science or related field.
+ CISSP, GSEC, GCIH, CEH or other security certifications preferred, but not required.
+ Three year minimum working in cyber threat or information security.
**Knowledge and Skills Requirements:**
+ Familiar with compliance regulations such as SOX, PCI-DSS, GLBA, and Federal Banking regulations.
+ Proficient with cloud security and monitoring capabilities in Azure
+ Proficient with Incident Response in Azure
+ Proficient with configuration management scanning tools.
+ Knowledgeable with Tripwire or other file integrity management tools.
+ Excellent team skills and integrity in a professional environment.
+ Ability to Map threats and vulnerabilities to MITRE.
**About Us**
First Horizon Corporation is a leading regional financial services company, dedicated to helping our clients, communities and associates unlock their full potential with capital and counsel. Headquartered in Memphis, TN, the banking subsidiary First Horizon Bank operates in 12 states across the southern U.S. The Company and its subsidiaries offer commercial, private banking, consumer, small business, wealth and trust management, retail brokerage, capital markets, fixed income, and mortgage banking services. First Horizon has been recognized as one of the nation's best employers by Fortune and Forbes magazines and a Top 10 Most Reputable U.S. Bank. More information is available at ******************** (https://urldefense.com/v3/\_\_https:/********************/\_\_;!!Cz2fjcuE!hpq9hPnrucZCPIAVPojVESItIq-FPzhurNdCrQ3JE8Rkx3gMd70nIk6\_kmPxl66\_oJCEsXs0gNunPowMAMHCmBYPOtUxUGI$) .
**Benefit Highlights**
- Medical with wellness incentives, dental, and vision
- HSA with company match
- Maternity and parental leave
- Tuition reimbursement
- Mentor program
- 401(k) with 6% match
- More -- FirstHorizon.com/First-Horizon-National-Corporation/Careers/Our-Benefits
**Follow Us**
Facebook (******************************************
X formerly Twitter
LinkedIn (***************************************************
Instagram
YouTube (**********************************************************
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws.
For further information, please review the Know Your Rights (**************************** notice from the Department of Labor.
IT Project Cost Analyst
Information security analyst job in Memphis, TN
The IT Cost Analyst is responsible for the financial planning, budgeting, forecasting, and analysis of IT spend and expense within our organization. This role collaborates between technology and finance, ensuring that IT initiatives are managed cost-effectively, aligned with business objectives, deliver measurable returns on investment, and meet corporate finance expectations. The successful candidate will provide analytical support to project management teams and be a subject matter expert on the creation of technology implementation costs driven by IT projects.
Key Responsibilities:
* IT Project Budget Development & Management:o Collaborate with IT project managers to create detailed project budgets.o Effectively monitor spending throughout the project lifecycle.o Track actual expenditures versus forecasted budgets and provide variance analysis.
* IT Spend & Reporting:o Prepare financial reports that summarize the status of IT projects.o Conduct ROI, cost-benefit, and risk analyses to support decision-making processes.o Assist in forecasting project expenses.
* IT Expense Cost Control & Optimization:o Identify areas for cost reduction and recommend opportunities to optimize financial resources.
* Stakeholder Collaboration & Communication:o Work closely with cross-functional teams, including IT, finance, and operations, to ensure the integration of financial planning with project execution.o Communicate complex financial insights understandably to non-financial stakeholders.
* Process Improvement & Compliance:o Assist in developing and continuously improving IT cost identification processes and tools used in IT project management.o Ensure all IT project budget activities comply with internal policies and external regulatory requirements.
Qualifications:
Educationo Bachelor's degree in Finance, Accounting, Business, Information Technology, or a related field.
Experienceo 3+ years of experience in financial analysis, budget management, or project control, preferably within an IT or technology-focused environment.o Proven experience working with medium to large IT project budgets.
Technical Skills & Toolso Advanced knowledge of Microsoft Excel.o Experience with data visualization tools is beneficial.
Core Competencieso Strong analytical and problem-solving skills.o Excellent communication and presentation abilities.o High attention to detail and strong organizational skills.o Ability to work collaboratively, manage multiple projects, and meet deadlines.o A proactive mindset that can identify financial risks and implement mitigation strategies.
Cyber Cloud Security Services Sales Engineer
Information security analyst job in Memphis, TN
Cloud Security Managed Service Sales Engineer Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success..
The team
Our Cyber Strategy & Transformation offering develops and transforms cyber programs in line with a client's strategic objectives, regulatory requirements, and risk appetite. It keeps the enterprise a step ahead of the evolving threat landscape and gives stakeholders confidence in the organization's cyber posture. Includes design of the cyber organization, governance, and risk assessments.
Recruiting for this role ends on 5/29/2026.
Work you'll do
As a Cloud Security Sales Engineer you will be on the forefront of client solution and service design within our Cloud Security Program. You should possess a deep understanding of the Cloud Security landscape. Experience with the sales and pursuit process is a plus, as is the ability to assess client needs for optimal service recommendations for the near-term and long-term.
Sales Engineering responsibilities include:
+ Developing an in-depth knowledge of the Cloud Security product
+ Articulating the technical value proposition, differentiators, and capabilities of the product to prospective clients and partners
+ Demonstrating the product to technical and non-technical client audiences at the executive and/or technical level
+ Independently coordinating all aspects of technical product evaluations, from demos and installations to helping prospective clients interpret the security related insights provided by our offering
+ Working with client executive partners, product management and other sales stakeholders to scope potential opportunities, construct sales proposals and help coordinate the pre-sales / sales process
+ Helping with some post-implementation support for key clients to ensure that clients are onboarded satisfactorily
+ Working with product management / product development team to communicate feedback and champion customer requirements for incorporation into the roadmap
Required Qualifications:
+ 7+ years of experience in security information and/or technology engineering
+ 2+ years of hands-on experience with Cloud Security technologies and products / tools with at least one or more of the 3 major Cloud Platform (AWS, Azure or GCP)
+ 2+ years of experience working with alliance vendors such as Crowdstrike, Splunk, Wiz, etc
+ 2+ years of experience driving sales within the cyber/cloud security market, including lead generation, sales cycle management, and proposal development
+ 2+ years of demonstrated experience working with Microsoft applications including PowerPoint, Word, and/or Excel
+ At least 1 year of experience coordinating multi-faceted sales strategies for strategic opportunities, including navigating complex stakeholder environments and leveraging funding mechanisms and software resell to improve win probability
+ Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
+ Limited immigration sponsorship may be available.
Preferred:
+ 4+ years working with Cloud Security providers and vendors
+ At least 1 year of experience working in a cyber-related professional services environment
+ 2+ years of demonstrated analytical and problem-solving skills
+ Bachelor of Science with a concentration in computer science, information systems, information security, cloud security, identity, decision sciences, risk management, engineering (mechanical, electrical, industrial) or other business/technology disciplines or equivalent work experience
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $ 144,200 -$265,600 .
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
Information for applicants with a need for accommodation: ************************************************************************************************************
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
IT Manager - Information Security
Information security analyst job in Memphis, TN
This position manages a team of AutoZoners in the development, implementation, and support of AutoZone's existing and new software applications and hardware platforms that provide security controls. The IT Security Manager will be responsible for developing and implementing robust security measures, managing a team of security engineers, and ensuring the overall security of systems, networks, and data
**Responsibilities**
+ Manage and lead a team of IT AutoZoners that includes assigning/monitoring work, providing feedback, coaching and development, counseling, and salary administration.
+ Manages and tracks the progress of multiple projects. Performs project management and administration that includes work plans, resource planning and control, writing status reports, and preparing annual budgets.
+ Communicates status of activities with teams, peers, management, and business partners
+ Builds relationship with key business partners to identify and resolve business issues
+ Selects, develops, and motivates assigned staff.
**Qualifications**
+ At least ten years security and / or cyber risk management experience in a large enterprise environment, including formal leadership responsibilities.People leadership/supervisory skills.
+ Problem solving and analytical skills.
+ Presentation, facilitation and writing skills.
+ Project management - estimating, planning, controlling, and execution.
+ Advanced knowledge of one or more of the following technical areas:
1. LDAP and directory administration (Ping Identity)
2. SAP Security
3. SSO/SAML/OIDC
4. PAM administration (CyberArk)
5. Multi-factor authentication (MFA)
6. Identity Governance & Administration (IGA)
+ Bachelor's degree in Computer Science or related field.
+ Preferred: Understanding of, and experience with, scripting or coding languages.
+ Preferred: Security credentials such as Certified Information Systems Security Professional (CISSP)
**About Autozone**
Since opening our first store in 1979, AutoZone has grown into a leading retailer and distributor of automotive parts and accessories across the Americas. Our customer-first mindset and commitment to Going the Extra Mile define who we are, for both our customers and AutoZoners. Working at AutoZone means being part of a team that values dedication, teamwork, and growth. Whether you're helping customers or building your career, we provide tools and support to help you succeed and drive your future.
**Benefits at AutoZone**
AutoZone offers thoughtful benefits programs with one-on-one benefits guidance designed to improve AutoZoners' physical, mental and financial well-being.
**All AutoZoners (Full-Time and Part-Time):**
+ Competitive pay
+ Unrivaled company culture
+ Medical, dental and vision plans
+ Exclusive discounts and perks, including an AutoZone in-store discount
+ 401(k) with company match and Stock Purchase Plan
+ AutoZoners Living Well Program for free mental health support
+ Opportunities for career growth
**Additional Benefits for Full-Time AutoZoners:**
+ Paid time off
+ Life, and short- and long-term disability insurance options
+ Health Savings and Flexible Spending Accounts with wellness rewards
+ Tuition reimbursement
Minimum age requirements may apply. Eligibility and waiting period requirements may apply; benefits for AutoZoners in Puerto Rico, Hawaii, or the U.S. Virgin Islands may differ. Learn more about all that AutoZone has to offer at Careers.AutoZone.com.
We proudly support Veterans, Active-duty Service Members, Reservists, National Guard and Military Families. Your experience is highly valued, and we encourage you to apply to join our team.
**Online Application:**
An online application is required. Click the Apply button to complete your application. For step-by-step instructions on how to apply visit careers.autozone.com/candidateresources.
AutoZone, and its subsidiary, ALLDATA are equal opportunity employers. All applicants will be considered for employment without attention to age, race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status, or any other legally protected categories.
**Job Identification** 16152
**Job Schedule** Full time
AutoZone, and its subsidiary, ALLDATA are equal opportunity employers. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status, or any other legally protected categories.
Physical Security Systems Engineer
Information security analyst job in Memphis, TN
xAI's mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company's mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All engineers are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates.
About the Role
As a Physical Security Systems Engineer at xAI, you'll design, implement, and maintain advanced security systems to safeguard our facilities, assets, and personnel. Working onsite in Memphis, Tennessee, you'll tackle complex challenges, leveraging your deep expertise in security technologies to strengthen our infrastructure at a fast-scaling company. Expect to dive into system optimization, ensure robust protection, and travel regularly to xAI sites to support our mission of accelerating human scientific discovery through AI.
This is an in-person role based in Memphis, Tennessee, with regular travel required to all xAI sites.
Responsibilities
Develop detailed design plans for the installation of physical security systems including access control, surveillance cameras, intrusion detection, and alarm systems.
Collaborate with InfoSec, IT and facility management teams to integrate security hardware with existing systems across locations.
Manage health and configuration of security network infrastructure
Regularly assess the performance of installed security systems and make necessary adjustments or upgrades.
Conduct preventive maintenance to ensure all security equipment is in optimal working condition.
Diagnose and resolve hardware issues promptly to minimize downtime and security risks.
Keep detailed records of all service and maintenance activities.
Participate in or lead security audits to identify vulnerabilities in physical security measures.
Recommend and implement solutions to address identified security gaps.
Liaise with vendors for procurement of security hardware, ensuring compliance with organizational standards and budget constraints.
Manage relationships with external contractors for installation and maintenance services.
Train security and facility staff on the use of new security systems.
Ensure all security hardware installations meet local, state, and federal regulations.
Maintain up-to-date documentation on system configurations, maintenance schedules, and security incident responses.
Required Qualifications
Minimum of 5 years in a role focused on physical security systems design.
Proven experience with CCTV, access control, and intrusion detection systems.
Experience using CAD software and reading architectural drawings
Experience using Bluebeam software
Preferred Qualifications
Bachelor's degree in Electrical Engineering, Computer Science, or related field; or equivalent experience in security systems.
Ability to interpret security objectives, develop project schedules and manage adherence to established timetables.
Familiarity with Genetec software is a plus.
Proficiency in hardware troubleshooting and system diagnostics.
Experience configuring security and network architecture in integrated security systems.
Familiarity with current security technology trends and innovations.
Certifications such as CPP (Certified Protection Professional) or PSP (Physical Security Professional) are highly desirable.
Excellent problem-solving abilities and attention to detail.
Strong communication skills for effective collaboration with team members and stakeholders.
Ability to work under pressure in a dynamic environment on highly condensed timelines.
Regular sitting at a desk or computer for extended periods, typing and writing. Occasionally walking, around the facility and standing.
xAI is an equal opportunity employer.
California Consumer Privacy Act (CCPA) Notice
Information Security Engineer
Information security analyst job in Memphis, TN
not eligible for sponsorship Locations: Onsite in Memphis, TN; Maryville, TN; Birmingham, AL; Lafayette, LA; New Orleans, LA; Charlotte, NC; Raleigh, NC; or Dallas, TX. The Cyber Security Engineer - Threat Management is a mid-level Cyber Security Engineer responsible for second level security event/incident response along with the collection, analysis, and dissemination of cyber threat intelligence. These capabilities will include timely collection of advanced warning of impeding IT vulnerabilities or threats, a thorough correlation, analysis, and storage of threat intelligence information, and operational support of the incident response process. The candidate They will deliver and sustain the enterprise management strategy and solutions from a governance, process, discipline and technology standpoint, to support enterprise environments and our presence in various cloud instances and on-premises data centers covering threats / FIM / configuration management / incident response / vulnerability management. Secondary roles include IPS, EDR, TIP tools, and other information security solutions.
Essential Functions of the Job:
* Responding to SOC alerts performing an analysis, and containment of security events.
* Provide tier II support for escalated security incidents.
* Support the Cyber Incident Response Team (CIRT) in the effective detection, analysis, and containment of attacks.
* Operate the configuration management program to track configuration drift over time, working with asset custodians to correct any configuration deviation from baseline.
* Operate the File Integrity Management program to track changes to file systems on critical systems.
* Operate the processes necessary to collect threat intelligence, analyze the data for patterns and actionable information, and create intelligence products for other teams to consume using MITRE ATT&CK Framework.
* Identifies security risks and exposures, determines the causes of security violations and suggests procedures to halt future incidents.
* Integrate appropriate systems and logs into the global threat management platform or Security Event and Incident Management system to properly protect critical assets.
* Design, test and develop specific content and alerting to identify threats against critical assets.
* Document incident response playbooks for new threat content and alerts.
* Maintain an understanding of attacks, vectors and emergent threats.
* Obtain and share cyber security intelligence with security partners, vendors and law enforcement as necessary.
* Produce weekly and monthly operational metrics.
* Work with vendors and internal customers to respond to escalations.
* Recommends Preventative Security Actions.
* Recommends Corrective Security Actions.
* Comprehension of basic banking systems.
Job Requirements:
* High School Graduate or Equivalent.
* Bachelor's Degree Preferred but not required in Computer Engineering/Computer Science or related field.
* CISSP, GSEC, GCIH, CEH or other security certifications preferred, but not required.
* Three year minimum working in cyber threat or information security.
Knowledge and Skills Requirements:
* Familiar with compliance regulations such as SOX, PCI-DSS, GLBA, and Federal Banking regulations.
* Proficient with cloud security and monitoring capabilities in Azure
* Proficient with Incident Response in Azure
* Proficient with configuration management scanning tools.
* Knowledgeable with Tripwire or other file integrity management tools.
* Excellent team skills and integrity in a professional environment.
* Ability to Map threats and vulnerabilities to MITRE.
About Us
First Horizon Corporation is a leading regional financial services company, dedicated to helping our clients, communities and associates unlock their full potential with capital and counsel. Headquartered in Memphis, TN, the banking subsidiary First Horizon Bank operates in 12 states across the southern U.S. The Company and its subsidiaries offer commercial, private banking, consumer, small business, wealth and trust management, retail brokerage, capital markets, fixed income, and mortgage banking services. First Horizon has been recognized as one of the nation's best employers by Fortune and Forbes magazines and a Top 10 Most Reputable U.S. Bank. More information is available at *********************
Benefit Highlights
* Medical with wellness incentives, dental, and vision
* HSA with company match
* Maternity and parental leave
* Tuition reimbursement
* Mentor program
* 401(k) with 6% match
* More -- FirstHorizon.com/First-Horizon-National-Corporation/Careers/Our-Benefits
Follow Us
Facebook
X formerly Twitter
LinkedIn
Instagram
YouTube
Cloud Security Architect - Manager
Information security analyst job in Memphis, TN
Cloud Security Architect - Manager Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities? If so, Deloitte & Touche LLP could be the place for you. Traditional security programs have often been unsuccessful in unifying the need to both secure and support technology innovation required by the business. Join Deloitte's Cloud Cyber Services team and become a member of the largest group of cybersecurity professionals worldwide.
Recruiting for this role ends on 12/31/2025
Work you'll do
Deloitte has an opening for a Cloud Security Architect (Manager) The cloud security architect plays an integral role in defining and assessing the client organization's cloud security strategy, architecture and practices. This individual's primary function is to provide cloud security planning, deployment and review expertise to project teams and client organizations in the Cyber space. Responsibilities include:
* Lead the overall delivery of Cloud Cyber Risk projects in a project manager and or architect role, overseeing the activities of onsite and offshore engineers and architects across 8 key cyber domains: Governance, Identity, Application Security, PaaS security, Infrastructure security, Security Monitoring, Resilience and Data protection
* Assist in business development activities such as defining scope of services, building resource estimates and related pricing, packaging proposals and supporting the delivery of the proposal to the client for AWS, GCP, Azure and/or Oracle Cloud services
* Function as the primary client day to day interface building rapport and trust with the client
* Function as an expert in CNAPP, CWPP and CSPM technologies and security risk frameworks relevant to cloud as well as the industry leading benchmarks
* Review and oversee the generation of all project deliverables such as assessment reports, system designs/ architectures and risk/security recommendations
* Maintain strong domain knowledge of multi-hyperscaler cloud solutions and security concepts and technologies
* Assist clients with security frameworks, cloud configuration standards and resolving cloud vulnerabilities
* Lead the execution of cloud security engagements during different phases of the lifecycle - assess, design, and implementation.
* Lead engagements to perform technical health checks for cloud platforms/environments prior to broader deployments.
* Oversee technical support for AWS, GCP, Azure and/or Oracle cyber services and resolve service-related issues through research and troubleshooting and working with vendors.
* Conduct cloud security analysis, recommendations and configurations of prospective clients' platforms and environments based on Deloitte's Cloud Cyber Risk Framework.
* Perform technical health checks for these cloud platforms/environments prior to broader deployments including DevSecOps and CI/CD pipelines
* Experience with and leading use of leading cyber tooling for cloud such as Wiz and Snyk
* Assist clients with transitions to using cloud services such as tenant setup and service configuration, focused on cloud cyber risk mitigation. Additional technologies include: MFA, SSO, Conditional Access, PIM, Security Operations tooling and scanning solutions
* Assist clients with the deployment of third-party technologies to assist in securing the cloud platform such as firewall, WAF, PAM and cloud workload protection.
* Assist clients with configuration and delivery of cloud security and compliance reports.
* Provide technical support for AWS, Azure, GCP, Oracle, Wiz, Snyk and third-party security services and resolve service-related issues through research and troubleshooting and working with third-party vendors.
* Implementation of industry leading practices around Azure, AWS, GCP, Wiz, Snyk and cloud security services for clients.
* Designing and developing cloud-specific security policies, standards and procedures e.g., tenant, management group and subscription management and configuration, identify management and access control, firewall management, auditing and monitoring, security incident and event management, data protection (DLP, encryption), user and administrator account management, SSO, conditional access controls and password/key management.
* Troubleshooting system level problems in a multi-vendor, multi-protocol network environment.
* Documenting platform technical issues, analysis, client communication, and resolution as part of cyber risk mitigation steps.
* Executing on cloud security engagements during different phases of the lifecycle - assess, design, and implementation & post implementation reviews.
* Implementing industry leading practices around cyber risks and cloud security for clients.
* Provide internal cloud and devsecops security technical training to Advisory personnel as needed.
* Acting as a subject matter specialist on cloud cyber risk for the cloud platforms.
* Manage to Point-of-Views (PoVs) on providing leading practices to our clients on the cyber challenges they face.
* Contribute to eminence activities, such as whitepapers pertaining to cloud security capabilities.
* Support talent process in the manager role such as for recruiting and coaching.
The Team
Deloitte's Cloud Cyber Risk team helps complex organizations more confidently pursue their growth, innovation and performance agendas through proactive management of the associated cyber risks. Our professionals provide advisory and implementation services that integrate risk, regulatory, and technology skills to help clients transform their legacy programs into proactive Secure.Vigilant.Resilient.TM cyber risk programs. Join the team developing the future state of cyber risk solutions.
Required:
* 6+ years of experience in technical consulting, client problem solving, architecting and designing solutions in a consulting role with project leadership and/or architect experience in AWS, GCP, Azure, Oracle, Wiz and/or Snyk; with a security focus strongly preferred
* 2+ years of hands-on technical experience designing and implementing security solutions for leading Cloud service providers across SPI models and environments (Public, Private, Hybrid)
* 2+ years working experience designing cloud security architectures and strategies for enterprises
* 2+ years working with Cloud security industry standards such as Cloud Security Alliance (CSA), ISO/IEC 27017 and NIST CSF
* 2+ years working experience with Cloud security technologies/vendors (e.g., IAM, SIEM, IDS) and/or providers (e.g., Okta, CipherCloud, AlertLogic), a big plus
* 2+ years working with Cloud orchestration and automation (Continuous Integration and Continuous Delivery (CI/CD)) in single and multi-tenant environments
* 3+ years working with CNAPP, CSPM or CWPP technologies or planning for large-scale deployments of these technologies
* BA/BS Degree preferably in a Technical field (ex. Computer Science, Cyber Security, Information Security, Engineering, Information Technology)
* Limited sponsorship may be available
Additional Requirements:
* Ability to travel up to 80%, on average, based on the work you do and the clients and industries/sectors you serve
* Locations include: Houston, Dallas, Cleveland, Detroit, St. Louis, Pittsburgh, Boston, Charlotte, Atlanta, Miami, Memphis, Denver, Phoenix, Salt Lake City, Los Angeles, San Diego, San Franciso, Seattle. Must be within a reasonable commute and willing to work part-time in the Deloitte and/or client offices.
Preferred:
* Previous Consulting or Big 4 experience preferred.
* Industry or Vendor Security Certifications such as CCSP or other cloud architect domains
* Experience with Virtualization including security for at least one or more of the following: Compute, Network, Storage, End-point, Application
* Experience designing IAM technologies and services
* Experience or strong working knowledge of managing enterprise security infrastructure and perimeter security appliances - e.g., firewalls, intrusion prevention systems (IPSs), web application firewalls (WAFs), endpoint protection, SIEM and log management technology
* Experience with Azure data, analytics, or AI/ML services (Azure SQL, HDInsight, Databricks, Data Factory, Data Lake Storage, Azure Analysis Services, Synapse Analytics, Azure Machine Learning, etc.)
* Understanding of industry security standards, guidelines and regulatory/compliance requirements related to information security and cloud computing such as ISO 27001, ISO 27018, NIST CSF, NIST 800-53, PCI DSS, SOC2, HIPAA, PCI, SOX, GLBA, etc.
'Information for applicants with a need for accommodation: ************************************************************************************************************
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $144,200 to $265,600
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
Recruiting tips
From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters.
Benefits
At Deloitte, we know that great people make a great organization. We value our people and offer employees a broad range of benefits. Learn more about what working at Deloitte can mean for you.
Our people and culture
Our inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ideas and perspectives, and bring more creativity and innovation to help solve our clients' most complex challenges. This makes Deloitte one of the most rewarding places to work.
Our purpose
Deloitte's purpose is to make an impact that matters for our people, clients, and communities. At Deloitte, purpose is synonymous with how we work every day. It defines who we are. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities. Learn more.
Professional development
From entry-level employees to senior leaders, we believe there's always room to learn. We offer opportunities to build new skills, take on leadership opportunities and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career.
As used in this posting, "Deloitte" means Deloitte & Touche LLP, a subsidiary of Deloitte LLP. Please see ************************* for a detailed description of the legal structure of Deloitte LLP and its subsidiaries. Certain services may not be available to attest clients under the rules and regulations of public accounting.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
Qualified applicants with criminal histories, including arrest or conviction records, will be considered for employment in accordance with the requirements of applicable state and local laws, including the Los Angeles County Fair Chance Ordinance for Employers, City of Los Angeles's Fair Chance Initiative for Hiring Ordinance, San Francisco Fair Chance Ordinance, and the California Fair Chance Act. See notices of various fair chance hiring and ban-the-box laws where available. Fair Chance Hiring and Ban-the-Box Notices | Deloitte US Careers
Requisition code: 316853
Job ID 316853
Systems Engineer, Information Security -Third Party Risk Management
Information security analyst job in Memphis, TN
This position is responsible for the development, maintenance, and execution of AutoZone's Third Party Risk Management (TPRM) program. Primary responsibilities include program management of the TPRM lifecycle, to include conducting due diligence, assessing and monitoring the security posture of third-party vendors and partners, contract risk analysis, and driving risk mitigation efforts. This also includes teaching domain expertise, providing technical guidance and mentoring, supporting internal business partners, resolving problems, and training as required.
* Participate in any and potentially all roles of the third party risk management life cycle. Roles may vary by project and assignment. This may include, but is not limited to:
* Responsible for the assessment of third-party security controls, services, and architecture to ensure they meet AutoZone's security requirements.
* Identify security concerns and mitigating controls; identify, document, and manage risks to AutoZone data, systems, and processes arising from third-party relationships.
* Accurate work planning and execution; accurate project and time tracking.
* Teaching, coaching, and technical mentoring on third party risk management subject matter to less senior analysts and business stakeholders.
* Typically four to seven years' experience in a third party risk management, vendor management, or cyber risk management role in a mid- to large-enterprise environment.
* Solid task estimation, planning and execution skills.
* Solid problem solving, domain technical and analytical skills.
* Solid skills in risk assessment methodologies and vendor evaluation techniques.
* Solid knowledge of one or more of the following functional areas
o Third Party Risk Management Program implementation and operations, including vendor onboarding, due diligence, continuous monitoring, and offboarding.
o Understanding of common security domains such as Infrastructure and Network Security, Application Security, and Data Protection to effectively evaluate vendor security controls.
o Knowledge of relevant industry standards and compliance frameworks (e.g., SOC 2, ISO 27001, NIST, PCI DSS).
o Formal Risk Management experience, including risk identification, scoring, and reporting.
* Preferred: Experience with OneTrust, Ariba Contract Management, BitSight Continuous Monitoring
* Preferred: Bachelor's degree in Computer Science, Information Systems, or a related field.
* Preferred: Understanding of, and experience with, scripting or coding languages and generative AI to assist in process automation.