Business Information Security Lead (Remote)

Posted Yesterday
Be an Early Applicant
2 Locations
In-Office or Remote
100K-155K Annually
Senior level
Food
The Role
Serve as the security lead for a DigiTech value stream: consult on initiatives, identify and remediate security risks, perform assessments and audits, track compliance and metrics, coach product teams, present prioritized remediation plans, and act as the primary security escalation and advisor to business stakeholders.
Summary Generated by Built In

ARE YOU A CURRENT US FOODS EMPLOYEE? PLEASE APPLY DIRECTLY THROUGH OUR INTERNAL WORKDAY CAREER SITE

Join Our Community of Food People!

At US Foods®, innovation and technology is our superpower. By expanding our digital ecosystem and leading with a customer-first mindset, we’re delivering technology that empowers our customers and simplifies business. As we transform the digital landscape of the foodservice industry, we’re outpacing our competitors faster than ever before.
We believe diversity is the cornerstone of creativity and innovation—and we foster an open, inclusive, flexible work environment that supports our transformation.
This position is responsible for supporting the Digital and Technology (DigiTech) value stream in the delivery of their initiatives and guiding the value stream through the needed actions to ensure security policies and best practices are met. With support from Information & Cyber Security leadership, this role assesses and validates the assurance of the security program, monitors progress, enforces resolution of outstanding issues, and focuses on strong risk management and corporate resiliency through a deep partnership and understanding of the Value Stream mission.

The work for the Business Information Security Lead position is completely remote anywhere in the United States except Hawaii or United States Territories. 

RESPONSIBILITIES

  • Consult on key business initiatives ensuring comprehensive end-to-end identification and risk management

  • Help execute the security program in collaboration with Value Stream partner by identifying and remediating risks in accordance with security policies and standards

  • Understand business requirements for Value Stream partner and provide security expertise to decision making and road mapping

  • Help Value Stream partner understand the need for security as it relates to their line of business and potential impacts, whether regulatory or possible cyber-attacks

  • Act as single point of contact in security for the and provide escalation path for significant security concerns and inquiries

  • Perform audits, assess risks, and manage/enforce remediation of issues found in security assessments, penetration tests, and internal discovery as related to Value Stream partner

  • Provide visibility into current security compliance status through defined set of metrics, benchmarking and providing detailed guidance on vulnerabilities

  • Present monthly to Value Stream Lead, sharing prioritized gap analysis, remediation plans and areas of success

  • Coach Product Teams to mature their understanding and use of security tools and information

  • Understand and articulate impacts to value stream partners in strategy and roadmap conversations within the Information and Cyber Security Team

SUPERVISION:

  • N/A

RELATIONSHIPS

  • Internal:  Information and Cyber Security Team, DigiTech Value Streams, Internal and external audit, Security Engineering, Security Architecture, Cloud/DevSecOps, Data, IT PMO and Product Teams

  • External: Technology vendors, including software and service providers; customer risk management representative, relevant managed security services, and professional services vendors, value stream vendors

WORK ENVIRONMENT

  • This role has been segmented as "Remote " meaning works remotely. Can live anywhere in continental US and Alaska. Travel as needed for business.  

MINIMUM QUALIFICATIONS

  • At least 5+ years of information security experience

  • Broad foundational knowledge in many information and cyber security domains with priority given to security risk management and application security

  • Familiarity with compliance requirements (PCI, HIPAA, SOX, etc) and with security frameworks such as NIST CSF, ISO 27001, CIS, etc

  • Demonstratable experience in building positive working relationships with leaders and associates across multiple areas of the business

  • Must have the ability to work independently and make decisions that reflect the policies of the Information and Cyber Security Team

  • Experience measuring and tracking cybersecurity risks, issues, and exceptions

  • Ability to present complex security topics to a variety of audiences, including senior technical leaders.

  • Ability to advise, collaborate, and work in a team environment enabling others to trust your input and seek your guidance

  • Ability to influence without authority to drive desired outcomes

  • Experience executing security compliance plans, vulnerability management programs, risk management lifecycle, and/or security assessment/governance processes

  • Track record of acting with integrity, taking pride in work, seeking to excel, being curious and adaptable, and communicating effectively

  • Proactive self-development, staying current on evolving threat landscape, security trends/best practices, and dynamic regulatory requirements

Education

  • Bachelor’s degree from an accredited college/university OR equivalent professional experience required

Related Experience/Requirements:

  • Experience developing, measuring, and tracking key performance metrics, preferably in a cybersecurity program

  • Highly organized, efficient, and attention to detail

  • Demonstrable track record of successful development of resources, mentoring, and career guidance

  • Strong written and verbal skills enabling effective communication with different levels of leadership

Certifications/Training

  • Preferred but not required: SANS GSEC, GCIA (or related), CISSP

This role may also receive annual incentive plan bonus. ​

​Benefits for this role may include health insurance, pre-tax spending accounts, retirement benefits, paid time off, short-term and long-term disability, employee stock purchase plan, and life insurance. To review available benefits, please click here: https://www.usfoods.com/careers/benefits.html.

Compensation depends on relevant experience and/or education, specific skills, function, geographic location, and other factors as applicable by law (for example: state or local minimum wage thresholds).  The expected base rate for this role is between

$100,000 - $155,000

***EOE – Race/Color/Religion/Sex/Sexual Orientation/Gender Identity/National Origin/Age/Genetic Information/Protected Veteran/Disability Status***

Skills Required

  • At least 5+ years of information security experience
  • Broad foundational knowledge in information and cyber security domains, prioritizing security risk management and application security
  • Familiarity with compliance requirements (PCI, HIPAA, SOX) and security frameworks (NIST CSF, ISO 27001, CIS)
  • Demonstrable experience building positive working relationships across business areas
  • Ability to work independently and make decisions aligned with security policies
  • Experience measuring and tracking cybersecurity risks, issues, and exceptions
  • Ability to present complex security topics to varied audiences including senior technical leaders
  • Ability to advise, collaborate, and work in a team environment
  • Ability to influence without authority to drive outcomes
  • Experience executing security compliance plans, vulnerability management programs, risk management lifecycle, and/or security assessment/governance processes
  • Bachelor's degree or equivalent professional experience
  • Experience developing, measuring, and tracking key performance metrics for a cybersecurity program
  • Highly organized with strong attention to detail
  • Demonstrable track record of mentoring and career guidance
  • Strong written and verbal communication skills
  • SANS GSEC, GCIA (or related), CISSP

US Foods Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about US Foods and has not been reviewed or approved by US Foods.

  • Healthcare Strength Medical, dental, and vision coverage with multiple plan options and day-one eligibility in many roles is highlighted as a relative strong point. Union agreements and company materials reinforce that health coverage is a core part of the total rewards package.
  • Strong & Reliable Incentives Incentives such as overtime, case/stop pay, and uncapped commissions often boost earnings in delivery, warehouse, and sales roles. Earnings can rise notably when hours are heavy or targets are met.
  • Retirement Support A 401(k) plan is standard, and recent union contracts add pension coverage in some locations. Together these programs support longer-term financial security.

US Foods Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Rosemont, IL
22,022 Employees

What We Do

US Foods is one of America’s great food companies and a leading foodservice distributor, partnering with approximately 300,000 restaurants and foodservice operators to help their businesses succeed. With 28,000 associates and more than 70 locations, US Foods provides its customers with a broad and innovative food offering and a comprehensive suite of e-commerce, technology and business solutions. US Foods is headquartered in Rosemont, IL, and generates more than $28 billion in annual revenue. Visit usfoods.com to learn more. ------------ Rules of Engagement Statement: We are proud to support community engagement on the US Foods LinkedIn page, and we're excited to see your comments, photos and videos. Please note that the views expressed by the community do not necessarily reflect those of US Foods. Before posting, please take a moment to read our rules for community content. We reserve the right to remove content that violates these rules. 1. Don't break the law. Content that appears to break the law or that advocates for breaking the law also is not permitted. 2. Be polite and courteous to everyone, even those you disagree with. This also means you may not post anything that is threatening, harassing, abusive, bullying, discriminatory, profane, sexually explicit, obscene, violent, gruesome, or similarly objectionable. 3. Stay on topic for this community and dialogue. Off-topic content may include but is not limited to irrelevant or out of context material, spam, promotional content, and links to third-party sites. 4. Follow LinkedIn's Terms and Conditions. 5. All posts must be by a real person and from a real profile. Content from fake or anonymous profiles is not permitted. 6. Our employees must also follow all of our applicable policies and guidelines, including but not limited to our Code of Conduct and Electronic Social Networking Policy

Similar Jobs

BlackLine Logo BlackLine

Artificial Intelligence Engineer

Cloud • Fintech • Information Technology • Machine Learning • Software • App development • Generative AI
Remote or Hybrid
USA
1810 Employees
128K-160K Annually

Motive Logo Motive

Head of Analyst Relations

Artificial Intelligence • Fintech • Hardware • Information Technology • Sales • Software • Transportation
Easy Apply
Remote
United States
4000 Employees
171K-236K Annually

Liberty Mutual Insurance Logo Liberty Mutual Insurance

Technical Director, Commercial Auto

Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Remote or Hybrid
8 Locations
40000 Employees
106K-197K Annually

Enverus Logo Enverus

Owner Relations Agent - 25270

Big Data • Information Technology • Software • Analytics • Energy
In-Office or Remote
3 Locations
1800 Employees
43K-58K Annually

Similar Companies Hiring

McCain Foods Thumbnail
Food • Retail • Agriculture • Manufacturing
Florenceville-Bristol, NB
20000 Employees
Munchkin, Inc. Thumbnail
Consumer Web • eCommerce • Food • Kids + Family • Design • Manufacturing
Milton, Ontario
325 Employees
Amalgamated Sugar Thumbnail
Food • Greentech • Agriculture • Industrial • Manufacturing
Boise, Idaho
768 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account