Responsibilities:
Job Summary: As a Manager of Digital Security (Run time), you'll provide leadership and oversight to a team that consults and collaborates with internal business Partners and external vendors to gather requirements, define security standards, build and test solutions, and implement innovative security capabilities. This role is responsible for leading teams that secure and govern H-E-B's cloud and application environments, ensuring the cloud estate is continuously measured against established security standards, security drift is identified and remediated, and workloads operate within defined security boundaries. Participates with other senior leaders to influence strategic priorities, security roadmaps, and operational objectives.
Location: San Antonio, Austin or Dallas, TX (Hybrid)
Key Responsibilities & Essential Functions:
- Manages one or multiple work groups or units in several different areas or a large functional unit; leads / manages daily coordination of technical staff and vendors
- Manages production or services of one or more departments or areas, with a high level of complexity and business impact
- Hires / maintains staffing / fires/ promotes / demotes / transfers / disciplines approves raises; manages / develops / trains teams to achieve department goals; develops / delegates tasks to complete projects; manages communications with stakeholders
- Leads / coaches / provides effective feedback; provides day-to-day technical leadership; communicates connection between Partners and impact to operational objectives
- Recommends changes in alignment with business strategy
- Provides leadership and expertise; participates in cross-functional initiatives; ensures Partners maintain sufficient technical knowledge; identifies training requirements
- Assists in developing budgets and goals
- Ensures goal setting and accomplishments align with H-E-B / Digital objectives, and technology decisions align with H-E-B direction and focus on total cost of ownership, maximization of third-party model, promoting cross-functional skill development of Partners, and customer relationships
- Identifies opportunities to improve team's leadership and technical skills
The responsibilities and essential functions outlined above describe the general nature and level of work assigned to this position. This is not an exhaustive list of all duties, responsibilities, and skills required. Duties and responsibilities may be modified at any time based on business needs. Employees may be required to perform other job-related tasks as requested by their supervisor, subject to reasonable accommodations.
Qualifications & Key Requirements:
7+ years of Cyber Security leadership experience, guiding teams that deliver measurable improvements in security posture, cloud security, vulnerability management, and enterprise risk reduction.
- Experience leading cloud security programs and teams across AWS, GCP, and/or Azure, including governance, risk management, and security architecture.
- Hands-on experience with Wiz or similar Cloud Security Posture Management (CSPM) platforms, including security assessments, risk prioritization, remediation tracking, and partnering with engineering teams to drive findings to resolution.
- Expertise securing cloud-native environments, including containers, Kubernetes, serverless technologies, and virtual machines, with a strong understanding of workload protection and vulnerability management.
- Experience implementing and enforcing security controls within Infrastructure as Code (IaC) and CI/CD pipelines using policy-as-code and automated security guardrails.
- Strong knowledge of cloud identity, access management, and data security, including least-privilege access, entitlement management, sensitive data discovery, and protection of cloud-based workloads and services.
Knowledge/Skills/Abilities:
- Assists senior management in defining organizational goals and strategic plans.
- Objectives are defined in collaboration with senior management and results assessed from a relatively long-term perspective. Erroneous decisions will have a long-term effect on the company's success.
- Working understanding of log analysis, application performance monitoring, API security, container security, AWS cloud security, Agile and other project management methodologies, PCI DSS, HIPAA, and other industry regulations
- Advanced skills in AWS, Azure, or Google Cloud Platform; Terraform, CloudFormation, Pulumi, or Ansible; Python, Golang, PowerShell, Perl, or Shell script
- Advanced skills in Linux-based and Windows Server operating systems management, secrets management, and vaulting technologies
- Advanced skills using APIs to optimize tasks / achieve automation
- Advanced skills in cloud resources: virtual networking, access controls (security groups, ACLs), service endpoints, application / network load balancing, API gateways, service principals, functions / serverless, storage buckets, containers, block storage, file shares
- Advanced leadership / management skills
Education:
- Bachelor in a relevant field of education or work experience leading successful projects and coaching/mentoring others in functional area.
Licenses/Certifications:
- One more professional security certifications e.g -CISSP, CISA, CEH, GIAC, cloud certifications from AWS, Azure, or GCP
Physical Demands & Working Conditions:
- Function in a fast-paced environment
- Work extended hours; sit for extended periods
The work environment characteristics described here are representative of those a Partner encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
JDSECURITY