Walgreens is a leading drugstore retail chain in the United States, operating over 8,000 stores in all 50 states, the U.S. Virgin Islands, and Puerto Rico. Founded in 1901, Walgree
Senior Cyber Security Specialist II
Location
Illinois
Posted
16 days ago
Salary
$127.5K - $204K / year
Seniority
Senior
Job Description
Senior Cyber Security Specialist II
Walgreens
Title: Senior Cyber Security Specialist II Location: IL-DEERFIELD Job Summary This role supports Walgreens’ Threat Detection and Response function, with a focus on leading complex security investigations, advancing enterprise detection capabilities, and improving incident response effectiveness across hybrid environments. As a senior-level individual contributor, you will serve as a technical escalation point for high-impact and complex security incidents, owning investigations end to end from triage through root cause analysis, containment, remediation, and post-incident improvement. This role requires deep hands-on expertise, strong judgment, and the ability to operate independently in ambiguous and time-sensitive situations. You will help shape detection strategy by building and tuning detection logic, proactively hunting for threats, and using automation to improve response speed, consistency, and scalability. This work spans hybrid infrastructure, cloud environments, applications, identity systems, endpoints, and enterprise platforms, using log analysis, behavioral signals, threat intelligence, and attacker TTPs to identify and mitigate risk. Key responsibilities include: - Designing, implementing, and tuning detection logic across enterprise and cloud environments - Leading complex incident response efforts and driving investigations through resolution - Conducting proactive threat hunting and converting findings into actionable detections - Developing automation to improve detection, enrichment, triage, and response workflows - Partnering with security, engineering, infrastructure, and business teams to improve logging, telemetry, and observability - Identifying gaps in detection coverage, tooling, processes, and response procedures, and driving improvements - Providing technical guidance, mentoring team members, and contributing to overall team capability through knowledge sharing, documentation, and tabletop exercises - Communicating technical findings clearly to both technical and non-technical audiences, including leadership when needed Success in this role requires the ability to take ownership, make sound decisions under pressure, and independently drive outcomes across complex security scenarios. The ideal candidate is hands-on, technically strong, comfortable navigating ambiguity, and able to influence improvements that strengthen Walgreens’ overall security posture. Location Requirement: This is a hybrid role based in Deerfield, IL, with 4 days onsite and 1 day remote. Work Authorization: Work visa sponsorship is not available for this role. Job Responsibilities - Leads threat detection by identifying threats at the first phase of an attack or compromise. Detects threat actor activity including exploitation and risk to critical systems. - Monitors specific cyber threat actors to understand their tactics and techniques. - Utilizes data analysis, threat intelligence and cutting-edge security technologies to find unusual behavior and malicious activity. - Leads the hunt for hidden and unidentified threats to the organization’s cyber environment. - Tracks down the malicious agents who are already in a network and removes them from the environment once discovered. - Works with security monitoring tools such as firewalls, data loss prevention, network intrusion detection and antivirus software. - Uses a hypothesis-driven approach and behavioral analysis to uncover connections and correlations between potential cyber threats. - Reviews audit logs to identify unusual behavior in the network and endpoint devices. Documents findings and incident investigations. Provides feedback and training to improve security controls. - Leads in assessing network vulnerabilities and identifying critical security flaws by testing and validating the security of the network and/or testing the network to understand where vulnerabilities exist and where corrections are needed About Walgreens Founded in 1901, Walgreens (www.walgreens.com) has a storied heritage of caring for communities for generations and proudly serves nearly 9 million customers and patients each day across its approximately 8,500 stores throughout the U.S. and Puerto Rico, and leading omni-channel platforms. Walgreens has approximately 220,000 team members, including nearly 90,000 healthcare service providers, and is committed to being the first choice for retail pharmacy and health services, building trusted relationships that create healthier futures for customers, patients, team members and communities. External Basic Qualifications - Bachelor’s degree and at least 5 years of Information/Cyber Security experience OR a High School Diploma/GED and at least 7 years of Information/Cyber Security experience - Experience presenting to and interacting with the Executive level. - At least 4 years of Cyber Security experience in at least three of the following: Active threat hunting (open source or commercial tooling), Intrusion analysis, Managed or enterprise information security services, Incident response, Endpoint forensics (Windows, MAC, or Linux), Malware analysis, Penetration testing, Network defense, Threat hunting, Information security consulting - Experience establishing & maintaining relationships with individuals at all levels of the organization, in the business community & with vendors. - Experience analyzing and reporting data in order to identify issues, trends, or exceptions to drive improvement of results and find solutions. - At least 2 years of experience contributing to financial decisions in the workplace. - At least 2 years of direct leadership, indirect leadership and/or cross-functional team leadership. - Willing to travel up to/at least 10% of the time for business purposes (within state and out of state). Preferred Qualifications - Bachelor’s degree and at least 5 years of Information/Cyber Security experience OR a High School Diploma/GED and at least 7 years of Information/Cyber Security experience - Experience presenting to and interacting with the Executive level. - At least 4 years of Cyber Security experience in at least three of the following: Active threat hunting (open source or commercial tooling), Intrusion analysis, Managed or enterprise information security services, Incident response, Endpoint forensics (Windows, MAC, or Linux), Malware analysis, Penetration testing, Network defense, Threat hunting, Information security consulting - Experience establishing & maintaining relationships with individuals at all levels of the organization, in the business community & with vendors. - Experience analyzing and reporting data in order to identify issues, trends, or exceptions to drive improvement of results and find solutions. We will consider employment of qualified applicants with arrest and conviction records. Job Function Information Technology Common Location 200 WILMOT RD,DEERFIELD,IL,60015-04620-00001-2 Pay Grade ID CORP-F3 Pay Type Salaried Start Rate 127500 Max Rate 204000
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
IT Security Intern
ViantWe offer market competitive compensation. Potential salary range for this role is $110k-$130k. Actual pay will be determined based on experience, qualifications, geographic location, and other job-related factors permitted by law.
Role Description Under the supervision of the IT Security Manager, the IT Security Intern is responsible for the analysis, design, implementation, and ongoing management of security controls. The IT Security Intern is instrumental in maintaining the integrity and confidentiality of our information assets, safeguarding against emerging threats and vulnerabilities to protect Viant. At Viant, innovation is integral to our strategy and culture. The IT Security Intern is encouraged to bring innovative solutions to the table, continuously enhancing our security posture. This role actively contributes to the exploration and implementation of cutting-edge technologies and methodologies, keeping our cybersecurity defenses resilient in the face of evolving threats. As an IT Security Intern at Viant, you will have the chance to expand your expertise in cybersecurity, collaborate with a diverse team of professionals, and take on challenging projects that contribute to the organization's overall success. We foster a culture that values continuous learning and provides the resources and support for career advancement. In addition, you will work closely with various departments across Viant, building collaborative relationships while enhancing your technical expertise and personal development. As a member of the Viant IT team, you’ll uphold the company’s core values—integrity, accountability, and excellence—while playing a key role in driving technological advancements and achieving organizational success. This role will be remote. Qualifications - In process or completed bachelor’s degree in security, cybersecurity or a related computer science degree. - Preferred CySa+, Security+, PenTest+ certification. Requirements - 2-5 years of cybersecurity experience working in a global organization. - 2-3 years in medical environment is preferred. - Advanced understanding of cybersecurity principles, protocols, and best practices. - In-depth knowledge of networking, firewalls, routing, switching, and wireless technologies. - Experience with intrusion detection systems, network forensics, and endpoint security solutions. - Expertise in designing, configuring, and managing security controls. - Ability to conduct proactive research on emerging security threats and vulnerabilities. - Strong analytical, problem-solving, and troubleshooting skills. - Excellent verbal and written communication skills to interact with diverse stakeholders. - Capacity to work independently and as part of a team in a fast-paced environment. - Proven experience in coordinating with counterparts in a distributed organization. - Stay up-to-date with the latest developments in cybersecurity. - Travel: Up to 15% of the time or as needed. - Physical Requirements: Work in an office environment with varying amounts of walking, sitting, standing, twisting, and turning. - Long periods of time working on a computer, using hands and fingers extensively. - Able to lift 15 pounds, bending, lifting on occasion. Benefits - Market competitive compensation. - Potential salary range for this role is $19.00–$21.00 hourly wage. - Actual pay will be determined based on experience, qualifications, geographic location, and other job-related factors permitted by law.
Cyber Security Instructor
California Institute of Applied TechnologyThe California Institute of Applied Technology (CIAT) is a technical college located in National City, California, offering an array of IT degrees and certifica
Role Description Are you passionate about positively changing the lives of others? California Institute of Applied Technology (CIAT) is growing and seeking educators and professionals with a passion for mentoring others. If this is you, please contact us! CIAT prepares students for professional success by offering practical training in today’s most competitive technology fields to make sure students are job-ready. With a large selection of courses, flexible schedules, and an online campus, we aim to empower the working student. We are laser-focused on student success, whether just starting out, making a career change, or transitioning into civilian life, CIAT prepares students for success! Teaching - Available to teach synchronous online courses via Microsoft Teams - Plan and organize instruction in ways that maximize student learning and engagement - Modify, where appropriate, instructional methods and strategies to meet diverse student’s needs - Employ appropriate teaching and learning strategies to communicate subject matter to students - Current certifications in subjects taught - Lead applicable certification test preparation sessions once a term - Provide regular student support sessions when needed Curriculum Development - Responsible for updating applicable course shells, master templates including syllabus, exams banks, discussion questions, assignments, and assessments - Contribute to the selection and development of instructional materials in accordance with course objectives - Contribute to maintaining currency of curriculum, syllabi, and textbooks - Review training material/deliverables and provide recommendations on the accuracy of and relevancy of content of curriculum and performance support tools (i.e., canvas, design plans, and other related material) Mastery of Subject Matter - Demonstrate a thorough and accurate knowledge of their field or discipline - Connect their subject matter with related fields - Stay current in their subject matter through professional development, through involvement in professional organizations, and attending professional meetings, conferences or workshops Adhering to College Policies and Procedures - Ensure Student Database is fully updated and accurate at all times regarding student grade record information - Maintain compliance with accreditation related to instructional and the quality of education, scheduled class hours requirements and CIAT policies and procedures - Promote collaboration with other staff members and participate in the implementation of new projects, ideas, etc. - Adhere to the CIAT business casual attire. Please refer to the CIAT Employee Handbook for the complete policy Qualifications - Appropriate credential, license or certification: - Required: CompTIA Security+ - Highly recommended: CompTIA Pentest+ or CySA+, or CISSP or CGRC, or CEH - Information Technology Instructors must provide official transcripts of bachelor's (or higher) degree and active/current certification on the subject being taught - General Education Instructors must provide official transcripts of bachelor's and master's (or higher) degrees that include at least 18 units on the subject being taught - At least three years’ experience in the respective field OR two years of teaching experience - Advanced subject matter expertise preferred with a commitment to ongoing professional development and staying current with developments in the field - Synchronous online teaching experience preferred - Curriculum development experience preferred - Effective presentation skills - High level of flexibility, creativity and dependability - Good working knowledge of MS Office applications including Microsoft Teams, Word, Excel, and PowerPoint as well as learning technologies such as Canvas - Work independently with minimal supervision - Ability to multitask - Problem solve rapidly and effectively, in a timely manner - Able to work assigned schedule if needed depending on schedule and coverage - Works with a sense of urgency, while engaging and listening to coworkers from other departments - Ability to work collaboratively with colleagues, academic departments, and administration to support student success, achieve institutional goals and contribute to a positive and inclusive culture - Commitment to fostering an inclusive and supportive learning environment that respects the diversity of students' backgrounds, experiences, and perspectives - Knowledge of current trends, best practices, and didactic approaches in higher education - Demonstrated ability to deliver engaging and effective lesson plans that meet the diverse needs of students - Strong communication skills, both verbal and written, with the ability to effectively convey information and interact with students, colleagues, and others - Possess high ethical standards, being an example of professionalism to others - Compliance with all college policies, procedures, and regulations, including those related to academic integrity, student conduct, and instructional delivery - Must be able to embody CIAT’s mission, vision and values Requirements - This is a full-time position. Days and hours of work are usually Monday through Saturday, including evenings. Working on Sundays may also be required. - This position has no supervisory responsibilities. - This is a remote position. Work must be conducted in locations that have been approved by the company. Company authorization is necessary for relocation or work from other locations, even if temporarily. Benefits - Values such as integrity, excellence, customer service, teamwork and mutual respect are some of those that remain constant, regardless of changes in our company. - We are passionate about education and student success. - We value integrity and excellence in our employees and students. - We treat ourselves and our students with dignity and respect. - We believe in and encourage innovation at our school to better help our students succeed. - We have a customer centric focus and we want people highly committed to achieving goals, where our success equals student’s success. - We are accountable for our actions and focus on improvements moving forward. - We have a growth mindset with a sincere belief that every student can do better and achieve their goals. - We expect every employee to be an example of conduct and professionalism, being a role model to students and colleagues. - We commit to fostering an inclusive and supportive learning environment that respects the diversity of students' backgrounds, experiences, and perspectives. - We foster lifelong learning and professional development. Physical Demands - Essential functions of this role require sitting for extended periods of time. - Ability to type, use a computer to search for information and input information while speaking on the phone is required. - The employee will frequently be required to use the computer, mouse and telephone to conduct the regular tasks of this role. - The employee will be required to compute simple to simple mathematical calculations as a normal part of this role. Work Environment - While performing the responsibilities of this remote position, the job holder will work in a home office environment. - Employees are expected to ensure that their home office is a safe and ergonomic working environment. - Employees must maintain data security and confidentiality in accordance with company policies and use secure connections for all work-related activities. - The company is not responsible for maintaining home office environments beyond the provision of reasonable accommodations and necessary work-related equipment. - This remote work policy is designed to comply with all relevant local, state, and federal laws. AAP/EEO Statement California Institute of Applied Technology provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, or genetics. In addition to federal law requirements, the California Institute of Applied Technology complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training. California Institute of Applied Technology expressly prohibits any form of workplace harassment based on race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, or veteran status. Improper interference with the ability of California Institute of Applied Technology’s employees to perform their job duties may result in discipline up to and including discharge. Other Duties Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time, with or without notice.
• Managing the full-cycle process through qualification, needs analysis, product demonstration, Proof of concept (PoC), negotiation and close. • Being accountable for your sales target and overachieving on that sales target. • Building customer relationships and qualifying opportunities such that the sales forecast is accurate.
Senior Corporate Security Engineer
NexthinkUnparalleled Visibility Into Issue Detection, Diagnosis, and Remediation
Company Description Nexthink is the leader in digital employee experience management software. The company provides IT leaders with unprecedented insight allowing them to see, diagnose and fix issues at scale impacting employees anywhere, with any application or network, before employees notice the issue. As the first solution to allow IT to progress from reactive problem solving to proactive optimization, Nexthink enables its more than 1,300 customers to provide better digital experiences to more than 18 million employees. Dual headquartered in Lausanne, Switzerland and Boston, Massachusetts, Nexthink has 9 offices worldwide. Job Description As a Senior Corporate Security Engineer at Nexthink, you will be responsible for the security of our internal environment. You won't just be monitoring logs; you will be architecting the security fabric that enables our rapid growth. Working in close partnership with IT, business teams and, partnering with our Cloud and Application Security teams, you will secure the identity, devices, and applications used by "Nexthinkers" worldwide. You will own the security of a complex SaaS ecosystem, and lead detection and response for the corporate environment. What You Will Do Identity-Centric Security Architecture - Contribute to the design and support the implementation of passwordless authentication and Zero Trust principles. - Manage secure provisioning and lifecycle management, ensuring least-privilege access across all business systems. - Partner with HR and IT to streamline onboarding/offboarding workflows, ensuring timely access revocation and auditability. Endpoint & Infrastructure Security - Define and enforce security baselines for our diverse fleet of endpoints (Windows, macOS) and mobile devices via MDM (Intune/Jamf). - Manage and tune EDR/XDR solutions to ensure high-fidelity detection on workstations and servers (Windows, Linux, macOS). - Secure the corporate Azure footprint, ensuring proper configuration of subscriptions, networking, and resources distinct from our production product environment. - Proactively identify and mitigate security risks in our corporate environment, conducting regular security assessments and vulnerability scans. - Coordinate vulnerability management and patch management - Collaborate with IT to automate endpoint compliance checks and remediation workflows. Security Engineering - Support the development and maintenance of Infrastructure-as-Code. - Ensure hardening and compliance of endpoints and servers. SaaS Security & Integration - Assess and secure third-party SaaS integrations (e.g., Salesforce apps, browser extensions, productivity tools) to prevent data leakage and over-privileged access. - Collaborate with Legal and Compliance to vet new vendors and tools. - Configure and maintain CASB and DLP policies to safeguard sensitive corporate data without hindering productivity. Detection, Response & Automation - Lead incident response activities for corporate security events (phishing, malware, lost devices). - Develop automation scripts (Python/PowerShell) and workflows (SOAR) to automate manual security tasks, evidence collection, and response actions. - Proactively hunt for threats within the corporate network and identity providers. - Develop incident response playbooks including technology specific procedures and forensics collection Audits and Compliance - Design and implement security controls to safeguard corporate resources, including endpoints, data storage, networking, computing and identity and access management. - Support and automate evidence collection for audits. Culture & Collaboration - Act as the primary security liaison to the IT Department and business teams, helping them build security into their operations (DevSecOps for IT). - Design and deliver technical security training and awareness campaigns for engineering and business teams. Qualifications - 5-8 years of hands-on experience in Corporate Security, IT Security Engineering, or a SOC role in a cloud-first environment. - Endpoint Mastery: Experience hardening operating systems (macOS/Windows) and managing security via MDM/UEM tools. - Vulnerability management: Proven experience in helping IT and business teams patching systems and infrastructures. - Coding Skills: Proficiency in Python and Terraform for automating APIs and security workflows. - Security Ops: Proven experience with EDR tools and SIEM log analysis. - Communication: Fluent in English with the ability to explain complex risks to non-technical stakeholders. - Proven ability to influence and drive security best practices across non-security teams. - Experience with security awareness training platforms and phishing simulation tools. Bonus Points - Identity Expertise: Deep technical knowledge of Okta and Microsoft Entra ID (Authentication policy, Conditional Access, SSO, SCIM, OIDC/SAML). - Experience implementing FIDO2/WebAuthn (Passwordless). - Proficient in PowerShell. - Familiarity with compliance standards (ISO 27001/27701, SOC 2, FedRAMP) - Experience securing Cloud Infrastructure (Azure/AWS) specifically for internal/corporate workloads. Why Join Nexthink Security? - Impact: You will report directly into the CISO organization and have a tangible impact on the daily lives of employees and the safety of the company. - Opportunity to work on cutting-edge security projects, with visibility and support from executive leadership. - Technology: We use top-tier security stacks. You won't be fighting with legacy on-premise hardware; we are cloud-native. - Culture: We value "Security as an Enabler," not a blocker. You will work in a supportive, highly technical environment in our Madrid hub Additional Information We are the pioneers and trailblazers of a global IT Market Category (DEX) that is shaping the future of how the world works, giving our customers' IT Teams total digital visibility across their enterprise. Our innovative solutions integrate real-time analytics, automation, and employee feedback across all endpoints. This enables our IT teams to solve complex technical challenges, create ever more productive workplaces, and deliver happy, satisfied employees in the digital workplace. With over 1000 employees across 5 continents, Nexthink operates as One Team, connecting, collaborating and innovating to continuously grow. We call our employees 'Nexthinkers' and our commitment to diversity, inclusion, and equity is second to none. We currently have over 75 nationalities working with us, from all cultures and backgrounds, speaking many different languages. If you are looking for a change and like a nice atmosphere, lots of challenges, and having fun while working, this is a great opportunity for you! Check what we offer: - Permanent Contract and a competitive compensation package. - Health insurance through our partnership with ACKO, including OPD coverage for dental, vision, health check-ups, consultations, and pharmacy expenses. - Hybrid work model balancing office and remote work, with a structured approach for new hires to foster connections and onboarding. - Flexible Hours and unlimited vacation (employees have unlimited paid time off on top of the 22 days of holidays we offer). Plus, company-paid bank holidays (12), sick days (10-30), bereavement leave (5), and 3 days per year for volunteering. - Free access to professional training platforms to explore your interests and enhance your skills. - Stay covered against accidents, bodily injuries, and disabilities with our personal accident insurance policy, providing assurance with coverage up to three times your annual CTC. - New mothers are entitled to up to 26 weeks of maternity leave, with the flexibility to use up to 8 weeks before the expected delivery and the remaining 18 weeks after. Birth fathers can take 6 weeks of paternity leave, while adoptive parents are eligible for 26 weeks of leave for mothers and 6 weeks for fathers. - Under the Payment of Gratuity Act, receive gratuity at the rate of 15 days of basic pay for every completed year of service, provided you've been employed by the company for a minimum of 5 years. Gratuity is payable at retirement or resignation based on your last drawn basic pay. - Bonuses for referring successful hires after three months of continuous employment. Please note that not all the benefits listed above are available for temporary, contract, and internship roles. To ensure you have the most up-to-date information, we recommend checking with your Recruitment Partner.


