IT Security Engineer III
Listed on 2026-08-15
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Systems Engineer
Overview
The Security Engineer III is a senior individual contributor responsible for designing, implementing, and continuously improving the organization's cybersecurity infrastructure and security controls. This role provides technical leadership across security engineering, identity and access management, endpoint and data protection, cloud security, compliance, and threat prevention.
The role owns the end-to-end lifecycle of security controls, from design and implementation through monitoring, validation, and continuous improvement. Working closely with Infrastructure, Applications, Retail Systems, Legal, Risk, HR, and business partners, the Security Engineer III is responsible for developing automation, integrations, and scalable solutions that enhance security effectiveness, improve efficiency, and reduce manual effort.
The role reports to our Store Support Office in Phoenix, AZ, with a hybrid work arrangement requiring in-office presence Tuesday through Thursday.
Overview of Responsibilities Security Architecture & Engineering- Design and implement enterprise security solutions across network, endpoint, cloud, identity, email, and data protection domains.
- Assess andenhancethe organization's security architecture to address emerging threats and vulnerabilities.
- Configure andmaintainsecure system settings and hardening standards, including alignment to applicable benchmarks and best practices.
- Research, evaluate, and recommend new security technologies, tools, and proof-of-concept solutions.
- Integrate security controls into infrastructure and application deployments through partnership with cross-functional teams.
- Support cloud security initiatives across Microsoft Azure and related services.
- Monitor security alerts, analyze logs, investigate threats, and coordinate remediation activities.
- Develop and implement response strategies fordetectedthreats, minimizing businessimpactand reducing risk exposure.
- Serve as an escalation point for security incidents and security-related operational issues.
- Troubleshoot and resolve security technology failures and control gaps.
- Develop automation and integrations that improve monitoring, reporting, detection, and remediation capabilities.
- Administer andmaintainidentity security controls, including SSO, SAML, SCIM, conditional access, MFA, and privileged-access management.
- Manage endpoint security technologies, including endpoint protection, privilege management, device compliance, and endpoint hardening.
- Oversee data loss prevention, email security, and information protection controls.
- Secure and enable enterprise AI/LLM adoption, including application discovery, data-egress and DLP controls for AI tools, and sanctioned-application enablement.
- Manage encryption, authentication,credential, key management, and enterprise secrets-management solutions.
- Conduct privileged account, service account, and access governance reviews.
- Support enterprise information security governance, risk, and compliance initiatives.
- Perform security assessments and recommend improvements to strengthen security posture.
- Execute recurring security controls and provide audit evidence for compliance reviews.
- Evaluate risks associated with vendors, suppliers, and third-party partners and recommend mitigation strategies.
- Assist with compliance activities aligned with applicable regulatory and security frameworks.
- Develop and maintain security policies, standards, procedures, and technical documentation.
- Lead security-focused projects and initiatives.
- Provide technical guidance and mentoring to other security team members.
- Drive security requirements through partner teams' implementation andchange-management processes.
- Deliver security awareness andbest-practiceeducationtoemployees and stakeholders.
Participate in a shared 24/7 on-call rotation as required.
#LI-LM1
Qualifications Knowledge Skills & Abilities- Bachelor's degree in Information Security, Computer Science, Engineering, Information Systems, or equivalent combination of education and experience.
- 5+ years of cybersecurity, information security, or related IT engineering experience.
- Demonstrated ownership of enterprise security platforms from design through implementation and operational support.
- Strong knowledge of security architecture, risk management, endpoint security, identity security, cloud security, and network security principles.
- Experience implementing and managing security technologies in enterprise environments.
- Strong understanding of network protocols, encryption standards, authentication technologies, and security best practices.
- Experience with security automation, scripting, API integrations, and operational efficiency initiatives.
- Knowledge of compliance and security frameworks such as NIST CSF, CIS Controls, and SOX-related controls.
- Strong analytical, troubleshooting, and problem-solving skills.
- Excellent written, verbal,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).