IT Security Engineer
Listed on 2026-06-07
-
IT/Tech
Cybersecurity, Information Security
About Us
Join us at Win Co Foods, where we're more than just a grocery retailer - we're a growing family of over 140 supermarkets in 10 states with over 22,000 employee owners. Our purpose is to make the lives of our customers and employee owners better by offering the lowest possible prices to feed their families. Currently, Win Co is the second largest Employee-Owned company in the United States.
With more than 500 millionaire employee-owners in our Employee Stock Ownership Plan (ESOP). Our benefits, including top-tier medical plans and tuition support set us apart. In your role, you'll be instrumental in making a real impact in the communities we serve, embodying our purpose every day.
Job Summary
Design, implement and support information security solutions for Win Co Food’s technology environment. Actively monitor current threats and counter-measures, recommend and implement improvements to security architecture and security technology. Ensure ongoing regulatory compliance and the protection of Win Co Food’s payment systems, computer systems, network devices and sensitive data. Collaborate with cross-functional teams to cultivate Win Co Food’s security culture. Consistently provide friendly and engaging customer service to internal and external customers.
Perform related work.
Typical Duties and Responsibilities
- Maintain an atmosphere of friendly, enthusiastic customer service with an emphasis on taking care of the customer. Provide exceptional customer service by telephone, email, and in person.
- Work with other Information Technology (IT) teams to ensure logical and physical security of all systems and data.
- Identify security gaps or weaknesses, and recommend solutions to reduce risk to the company.
- Lead initiatives to implement new security solutions. Identify vendors, evaluate tools and implement the solution(s).
- Establish vulnerability-scanning procedures and work with the necessary teams to prioritize and install patches and security fixes based upon risk and impact.
- Act as the subject matter expert for IT Security on company technology projects lead by other teams.
- Develop security protection goals, objectives and metrics consistent with enterprise best practices.
- Produce periodic reports on security metrics and incidents.
- Perform log and event analysis of systems and security technologies to identify anomalies and suspicious activity.
- Develop monitoring and alerting for security technologies including IDS/IPS, firewall, vulnerability scanning, security logging and event management.
- Respond to security incidents and coordinate response, containment, forensics and mitigation.
- Conduct information security investigations and threat assessments.
- Perform maintenance, configuration and support of IDS/IPS, firewall, web proxy, vulnerability scanning, SIEM, and other security technologies.
- Promote security awareness across the organization through end-user training, knowledge transfer, and documentation of threats and vulnerabilities.
- Actively research and communicate current threats and attack vectors to IT management.
- Develop, document and update IT security procedures and policies.
- Perform on‑call support for security events.
- Perform other projects and duties as needed and assigned.
Requirements
Education:
- Associates degree in IT, Computer Science, or related field AND five (5) years of IT Security or Engineering experience OR equivalent combination (seven (7) years) of education, training, and/or experience demonstrating considerable knowledge of IT security.
Experience:
- At least five (5) years direct experience working in an enterprise technology environment in a security or engineering role.
- Demonstrating technical working knowledge of design considerations for Firewall, LAN, WAN, WLAN, VPN, Windows Server, Active Directory, DMZs, Certificate (PKI) Infrastructure, Unix/Linux, Virtual Infrastructure, and network protocols.
- Implementing and managing enterprise security solutions such as antivirus, encryption methodologies, IPS/IDS, Web Content Filtering, Identity and Access Management, email security, and monitoring and alerting.
- Demonstrating familiarity with security tools used for penetration testing,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).