Jobs · Information Technology · Texas

Manager of Digital Security-Austin, Dallas or San Antonio, TX

H-E-B · San Antonio, TX · 4 wk ago
On-siteInformation TechnologyFull-time

Location: San Antonio, Austin or Dallas, TX (Hybrid)

About the Role

As a Manager of Application Security Engineering, you'll provide leadership and oversight to a team that consults and collaborates with internal business partners and external vendors to collect requirements, build and test specifications, and implement documented innovative technical solutions for security requirements. You will manage a team(s) that may include multiple related departments, influence short-term strategic plans, and make final decisions on administrative or operational matters to ensure effective achievement of objectives. This role involves resource allocation, prioritization, financial responsibility, and participation in strategic decision-making based on company goals.

Responsibilities

  • Directs and controls the activities of a broad functional area through several departments, including planning, staffing, budget attainment, and implementing changes to methods.
  • Performs individual tasks related to the function as needed.
  • Makes decisions with serious impact on the overall success or failure of the Digital function; erroneous decisions may cause critical delays or modifications to projects, leading to substantial expenditure of time, resources, and financial costs.
  • Resolves complex issues, often cross-functional, with significant business impact.
  • Influences and implements the vision and strategic plans within the department.
  • Works on complex issues requiring in-depth knowledge of the department.
  • Participates in developing methods, techniques, and evaluation criteria for projects, programs, and personnel.
  • Ensures budgets and schedules meet requirements.
  • Manages one or multiple work groups or units, coordinating technical staff and vendors.
  • Oversees production or services with high complexity and business impact.
  • Handles hiring, staffing, firing, promotions, demotions, transfers, discipline, and approves raises.
  • Develops and trains teams to achieve department goals, delegates tasks, and manages communications with stakeholders.
  • Provides leadership, coaching, and effective feedback; ensures teams understand the connection between their work and operational objectives.
  • Recommends changes aligned with business strategy.
  • Ensures teams maintain sufficient technical knowledge and identifies training requirements.
  • Assists in developing budgets and goals, ensuring alignment with H-E-B/Digital objectives.
  • Ensures technology decisions align with H-E-B direction, focusing on total cost of ownership, third-party models, cross-functional skill development, and customer relationships.
  • Identifies opportunities to improve the team's leadership and technical skills.
  • Ensures automation, infrastructure deployment, maintenance, monitoring, security, and compliance using industry and enterprise best practices.

Requirements

  • 7+ years of experience working in Security roles.
  • 5+ years of experience leading Application Security teams.
  • Experience with architecture design decisions.
  • Expert understanding of application security principles and best practices.
  • Highly proficient with security assessment tools and techniques.
  • In-depth knowledge of common web application vulnerabilities such as OWASP Top 10.
  • Nice to have experience with NIST, PCI, or HIPAA.
  • Stay abreast of the latest security threats, tools, and innovations.

Skills

  • Assists senior management in defining organizational goals and strategic plans; objectives are assessed from a long-term perspective.
  • Working understanding of log analysis, application performance monitoring, API security, container security, AWS cloud security, Agile and other project management methodologies, PCI DSS, HIPAA, and other industry regulations.
  • Advanced skills in AWS, Azure, or Google Cloud Platform; Terraform, CloudFormation, Pulumi, or Ansible; Python, Golang, PowerShell, Perl, or Shell script.
  • Advanced skills in Linux-based and Windows Server operating systems management, secrets management, and vaulting technologies.
  • Advanced skills using APIs to optimize tasks and achieve automation.
  • Advanced skills in cloud resources: virtual networking, access controls (security groups, ACLs), service endpoints, application/network load balancing, API gateways, service principals, functions/serverless, storage buckets, containers, block storage, file shares.
  • Advanced leadership and management skills.

Qualifications

  • Bachelor’s degree in a relevant field or equivalent work experience leading successful projects and coaching/mentoring others in the functional area.
  • One or more professional security certifications (e.g., CISSP, CISA, CEH, GIAC, cloud certifications from AWS, Azure, or GCP).

Working Conditions

  • Function in a fast-paced environment.
  • Work extended hours; sit for extended periods.

Similar jobs