Senior Security Engineer

Posted 6 Days Ago
Be an Early Applicant
2 Locations
In-Office
Senior level
Food
The Role
Leads security operations engineering across enterprise, cloud, and hybrid environments. Responsibilities include threat hunting, detection engineering, SIEM/SOAR/EDR platform administration, incident response, security validation, log pipeline maintenance, infrastructure-as-code, CI/CD automation, scripting, SOAR playbooks, and AI workflow integration. Serves as a Tier 2 escalation point, mentors analysts, supports red team engagements, and provides cybersecurity strategy and technical leadership.
Summary Generated by Built In

Welcome to Gordon Food Service! We are excited that you are thinking about opportunities with us, and we have an amazing story to share. See below for a quick glance of who we are and the impact you could have on the food service industry. There's a seat at our table for you...

Position Summary:


The Senior Cybersecurity Engineer is a core technical leader within our Security Operations (SecOps) team, responsible for designing, automating, and maintaining the organization’s enterprise security architecture. Operating in a high-impact, low-friction environment, this role directly drives threat hunting, detection engineering, security validation, and tool automation across enterprise, cloud, and hybrid environments. This role balances deep platform infrastructure operations with modern automation techniques (CI/CD, Infrastructure-as-Code, AI workflows) to maximize defensive coverage and empower SOC analyst operations.


What you will do:


Security Strategy and Leadership:

  • Provide strategic leadership in the development and execution of cybersecurity strategies, policies, and frameworks.
  • Collaborate with senior stakeholders to align cybersecurity initiatives with organizational goals and objectives.
  • Stay updated with emerging cybersecurity trends, threats, and technologies to provide expert guidance and recommendations.

Threat Hunting & Threat Intelligence:

  • Lead the SecOps threat hunting program across multi-platform operating systems, enterprise cloud environments, virtualized infrastructure, and network environments.Correlate open-source and proprietary threat intelligence (TTPs) into proactive, baseline, and reactive threat hunts.Maintain and expand automated hunt dashboards and threat hunting automation frameworks.

Security Architecture and Engineering:

  • Aid in designing, implementing, and maintaining secure network architectures and infrastructure.
  • Maintain log ingestion pipelines, custom parsers, data normalization models, feed integrations, and overall platform health of the SIEM/SOAR environment.
  • Collaborate with cross-functional teams to evaluate and select security technologies and solutions.

Incident & Operational Response:

  • Act as the Tier 2 technical escalation point and mentor for Security Analysts.Participate in critical Incident Response efforts, root-cause investigations, and the SecOps On-Call rotation.Conduct detailed investigations of security incidents, perform root cause analysis, and implement remediation measures.

Detection Engineering & Security Validation:

  • Design, build, and tune custom detections in vendor-neutral rule languages and native SIEM/SOAR/EDR logic to eliminate false positives while maintaining robust detection posture.
  • Execute automated and manual threat emulation/attack chains using open-source testing frameworks to continuously validate log ingestion, rule efficacy, and security controls.Support external Red Team engagements and remediate identified visibility and control gaps.Security Automation & Infrastructure-as-Code (IaC):
  • Build and manage Infrastructure-as-Code (IaC) configurations via version-controlled CI/CD pipelines for security workspaces and validation environments.
  • Write, maintain, and integrate custom automation scripts (e.g., Python, PowerShell) and SOAR playbooks to streamline analyst triage and system workflows.Assist in developing, tuning, and integrating modern AI agent platforms and operational workflows into core SecOps pipelines.

When you will work:


  • Monday to Friday, 8am to 5pm
  • Hybrid schedule, 4 days in office in Wyoming, MI or Atlanta, GA with 1 day remote

What you’ll bring to the table:


  • Bachelor’s Degree in Computer Science, Information Systems, or a related field required.
  • Five to eight years previous related experience or an equivalent combination of education, training, and experience.
  • Professional certifications such as CISSP, CISM, GIAC, or CCSP are preferred.
  • Proficiency with engineering and administering Enterprise SIEM, SOAR, EDR, and NDR platforms.
  • Extensive knowledge of cybersecurity principles, technologies, and best practices.
  • Expertise with writing custom detection logic, complex queries, and log normalization.
  • Strong understanding of enterprise IT infrastructure: Windows, Linux, Enterprise Cloud (IaaS/PaaS), Identity & Access Management (IAM), and Enterprise Networking.
  • Experience writing automation scripts in Python, PowerShell, or Bash.Proficiency in security incident response, including forensic analysis, malware analysis, and threat intelligence.
  • Demonstrated experience with threat hunting frameworks (e.g., MITRE ATT&CK) and security validation tools.
  • Excellent leadership and communication skills, with the ability to effectively communicate complex technical concepts to stakeholders at all levels.
  • Proven ability to lead and mentor junior team members.
  • Must have good customer service and time management skills.
  • Ability to develop solutions to a variety of complex problems, and reference established precedents and policies.

BE PART OF AN AMAZING CULTURE WHERE WHAT MATTERS TO YOU, MATTERS TO US!

Gordon Food Service values our customers and understands that their success is largely dependent upon their workforce. To demonstrate our commitment to our partnership, we will require any candidate who works for a Gordon Food Service customer to provide a letter of support from their management if they are selected for the interview process.

Equal Employment Opportunity is a matter of policy at Gordon Food Service, Inc. and we are committed to a work environment in which all individuals are treated with respect and dignity.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, status as a protected veteran, or status as a qualified individual with disability.  If you require reasonable accommodation for any part of the application or hiring process due to a disability, please submit your request to [email protected] and use the words “Accommodation Request” in your subject line. 

All Gordon Food Service locations are tobacco-free.

Gordon Food Service is a drug-free workplace and conducts pre-employment drug tests.

Skills Required

  • Bachelor’s degree in Computer Science, Information Systems, or a related field
  • Five to eight years of related experience, or equivalent education, training, and experience
  • Experience engineering and administering enterprise SIEM, SOAR, EDR, and NDR platforms
  • Extensive knowledge of cybersecurity principles, technologies, and best practices
  • Expertise writing custom detection logic, complex queries, and log normalization
  • Understanding of Windows, Linux, enterprise cloud IaaS/PaaS, IAM, and enterprise networking
  • Experience writing automation scripts in Python, PowerShell, or Bash
  • Proficiency in security incident response, forensic analysis, malware analysis, and threat intelligence
  • Experience with threat hunting frameworks such as MITRE ATT&CK and security validation tools
  • Leadership, communication, mentoring, customer service, and time management skills
  • Ability to develop solutions to complex problems using established precedents and policies
  • CISSP, CISM, GIAC, or CCSP certification
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Wyoming, Michigan
20,000 Employees
Year Founded: 1897

What We Do

We’ve grown to become the largest family-operated broadline food service distributor in North America by upholding the same business approach since 1897—being passionately committed to the people we serve. We believe in the power of good food—to bring people together and make moments special. Every product, every order, and every decision we make is inspired by the people on the other side of the plate. We distribute to foodservice operators throughout the Midwest, Northeast, Southeast and Southwest regions of the U.S. and coast to coast in Canada. Our company also operates more than 170 Gordon Food Service Stores, which are open to the public and provide the benefits of restaurant-quality products and friendly, knowledgeable service. Gordon Food Service Stores do not charge a membership fee. Gordon Food Service Stores are the primary supplier for many small foodservice operators, including: restaurants, churches, daycare providers, caterers, event planners, and other small businesses. We offer a broad range of employment opportunities throughout our corporate offices, distribution centers, and retail stores. We have a strong commitment to our employees and foster an environment that promotes internal growth, training, and career development opportunities. Gordon Food Service is an Equal Opportunity Employer and does not discriminate against any person on the basis of age, sex, race, religion, national origin, disability, or veteran status.

Similar Jobs

PagerDuty Logo PagerDuty

Senior Security Engineer

Artificial Intelligence • Cloud • Information Technology • Machine Learning • Software • Big Data Analytics • Automation
Easy Apply
Hybrid
Atlanta, GA, USA
1200 Employees
150K-252K Annually

REPAY Logo REPAY

Senior Security Engineer

Fintech • Hardware • Payments
In-Office or Remote
Atlanta, GA, USA
1000 Employees

PwC Logo PwC

Security Engineer

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
11 Locations
370000 Employees
95K-106K Annually

Samsara Logo Samsara

Senior Security Operations Engineer

Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Easy Apply
Remote or Hybrid
USA
4000 Employees
135K-228K Annually

Similar Companies Hiring

Munchkin, Inc. Thumbnail
Consumer Web • eCommerce • Food • Kids + Family • Design • Manufacturing
Milton, Ontario
325 Employees
Tastewise Thumbnail
Artificial Intelligence • Big Data • Food • Retail • Software • Generative AI • Big Data Analytics
NYC, NYC
120 Employees
Amalgamated Sugar Thumbnail
Food • Greentech • Agriculture • Industrial • Manufacturing
Boise, Idaho
768 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account