All jobs
Yum! Brands logo
Yum! Brands

160 open roles

Cyber Security SR Engineer II

Full-time
Senior
$118k to $148k USD / year
Posted 1 week ago
Apply on company siteYou’ll apply directly with the employer on Oracle Recruiting.
Added to ZestAmigo
Last seen on employer site

Where you can work

Remote

Open to candidates in United States

Locations named in the listing

  • Plano, Texas, United States
  • Louisville, Kentucky, United States
View location wording from the posting
  • United States
  • Plano, TX, United States
  • Louisville, KY, United States

Employer description

Position Summary

The Cyber Security SR Engineer II is a senior-level Active Directory Entra ID SR Engineer professional responsible for supporting, administering, and enhancing Yum's Microsoft Entra ID (Azure Active Directory) environment. This role contributes to the security, governance, and operational effectiveness of enterprise identity services across cloud and hybrid infrastructures.

The successful candidate works independently on most assignments, analyzes and resolves moderately complex to complex identity and access challenges, contributes to process improvements, and partners closely with infrastructure, cloud, security, and business teams to support enterprise security objectives. This position aligns with Level 8 expectations within the Yum Technology Job Leveling Framework, serving as a senior individual contributor who is continuing to expand technical expertise and influence.

Responsibilities

Identity & Access Management

  • Administer and support Microsoft Entra ID and hybrid Active Directory environments.
  • Support identity lifecycle management processes including onboarding, transfers, and offboarding.
  • Configure and maintain role-based access controls (RBAC).
  • Administer and support:
  • Conditional Access Policies
  • Multifactor Authentication (MFA)
  • Passwordless Authentication
  • Identity Protection
  • Access Reviews
  • Group Policy
  • Security Hardening
  • Assessment reviews and mitigation
  • Automate processes
  • Develop new process
  • Run existing process and collections
  • Troubleshoot complex authentication, access, and identity-related issues.

Security Operations & Engineering

  • Implement and maintain identity security controls to protect enterprise user and privileged accounts.
  • Investigate identity-related security findings and assist with remediation activities.
  • Participate in security assessments, penetration testing remediation efforts, and vulnerability reduction initiatives.
  • Contribute to the evaluation and testing of emerging IAM technologies and capabilities.
  • Support secure integration of applications with enterprise identity platforms.

Governance, Risk & Compliance

  • Support compliance assessments and control validation activities.
  • Participate in access certification and entitlement review processes.
  • Assist with evidence collection and audit activities related to:
  • NIST
  • PCI-DSS
  • CIS Controls
  • Cybersecurity Framework (CSF)
  • Internal assessment processes
  • Vender assessment process
  • Ensure identity management processes align with corporate security policies and standards.

Automation & Process Improvement

  • Develop and maintain automation solutions using PowerShell and Microsoft Graph.
  • Identify opportunities to improve operational efficiency and enhance security through automation.
  • Assist in developing operational monitoring, reporting, and alerting capabilities.
  • Contribute to process documentation and standardization efforts.

Collaboration

  • Partner with Infrastructure, Cyber Security, Cloud Engineering, HR, and Application teams to support IAM initiatives.
  • Provide technical input during security reviews and project engagements.
  • Share knowledge and best practices with team members.
  • Build effective relationships across teams to support successful delivery of IAM services.
  • Clearly communicate technical issues, risks, and recommendations to stakeholders

Qualifications

Education

  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related field.
  • Equivalent professional experience may be considered in lieu of degree requirements.

Experience

  • 4-7 years of cybersecurity, systems engineering, IAM, or related experience.
  • 10 years of Microsoft Entra ID / Azure Active Directory Engineering and Administration experience.
  • Experience supporting hybrid identity environments.
  • Experience working within enterprise Microsoft 365 environments.
  • Experience with security controls, access governance, or audit activities.
  • Experience scripting or automating administrative tasks using PowerShell.
  • Experience Active Directory Group Policy administration and design
  • Experience Active Directory tiering design and administration
  • Experience with Active Directory hardening

Technical Skills

Experience with several of the following:

  • Microsoft Entra ID HPA administration
  • Active Directory HPA administration
  • Active Directory Group Policy
  • Active Directory permission assignments
  • Active Directory Tiering
  • Active Directory PowerShell scripting and automation
  • Azure/Microsoft Cloud Security
  • Microsoft Graph
  • Conditional Access
  • MFA and Passwordless Authentication
  • PIM

Preferred Certifications

  • Microsoft Certified: Azure Security Engineer Associate (AZ-500)
  • Security+, CISSP, CCNA or equivalent security certification

Salary Range: $117,800 to $147,600 annually + bonus eligibility. This is the expected salary range for this position. Ultimately, in determining pay, we’ll consider the successful candidate’s location, experience, and other job-related factors.

Track this application

Keep your own notes. Only you can mark an application as sent.

Report a problem with this listing

Sign in to report this listing.

More at Yum! Brands

Hybrid · Full-time · Manager

Woking, England, United Kingdom +1 more

Posted 9 months ago

Source: Oracle Recruiting