- Company Name
- McCormick & Company
- Job Title
- Cybersecurity Lead Engineer -Technology and Engineering (HYBRID)
- Job Description
-
**Job Title**
Cybersecurity Lead Engineer – Technology and Engineering
**Role Summary**
Lead and design enterprise‑wide cybersecurity solutions across network, server, endpoint, cloud, and OT environments. Act as both security architect and senior engineer, delivering secure technology services, driving automation, and ensuring compliance with industry standards such as NIST and ISO 27001. Manage projects, mentor junior staff, and serve as the primary point of contact for security operations and incident response.
**Expectations**
* Serve on a global security team and report to the Sr. Manager Cybersecurity.
* Demonstrate deep expertise in at least three security technologies/capabilities (e.g., firewalls, VPN, cloud security).
* Deliver secure configurations, architecture, and automation to support business growth.
* Maintain and evolve security policies, risk assessments, and documentation.
* Participate in on‑call rotation for incident response as required.
**Key Responsibilities**
* Develop and execute security strategy and roadmap.
* Plan, coordinate, and lead network‑security projects with cross‑functional teams.
* Deploy and manage firewalls, VPNs, cloud security posture, and other security tools.
* Perform risk assessments, develop mitigation plans, and enforce baseline configurations.
* Create and maintain security diagrams, CMDB entries, and documentation.
* Draft user stories for Agile teams and document security use cases.
* Provide technical guidance, mentor analysts, and share best practices.
* Monitor daily operations, handle incidents, and manage service requests per ITIL SLAs.
* Evaluate and recommend new security technologies.
* Participate in continuous learning and professional development.
**Required Skills**
* Proven experience in network, endpoint, cloud, and OT security.
* Strong knowledge of firewalls, VPN, IDS/IPS, and secure cloud architectures.
* Familiarity with NIST, ISO 27001, and other regulatory frameworks.
* Ability to conduct risk assessments and develop mitigation strategies.
* Experience with automated security engineering and configuration management.
* Excellent communication, report writing, and stakeholder engagement.
* Leadership and mentoring capabilities.
* On‑call and incident‑response experience.
**Required Education & Certifications**
* Bachelor’s degree in Information Technology, Computer Science, or related field.
* Minimum of three cybersecurity certifications (e.g., GIAC, CCSK, OCSP, CISSP, CISM, or equivalent).