The Walt Disney Company Sr Security Engineer in Seattle, Washington
The Global Information Security (GIS) group provides services and solutions to protect the value and use of Disney’s information through risk evaluation, collaboration, standardization, enforcement, and education across the enterprise. We protect the brand and reputation while enabling and supporting business objectives. GIS teams are located in Seattle, Burbank, and Orlando.
In order to ensure that our services keep TWDC secure, we follow an ongoing, iterative process, including continued reevaluation of our services over time to address emerging threats as well as changes in business and technology. This process includes:
Analysis of known and emerging threats to determine risks against TWDC assets
Creation, maintenance, governance and communication of security policies and standards across TWDC
Assessment and audit of compliance against the security policies and standards
Assurance that TWDC assets are effectively managed and monitored to meet TWDC security criteria
We look add people to our team who are focused on delivery, prioritize data-driven decisions over opinions, are continuous learners, passionate about information security and love their work.
This role will provide Operational Security support to The Walt Disney Studios with the mission of protecting Studios’ Pre-Release Content. The Sr Security Engineer is responsible for:
Provides situation based support, using in-depth knowledge of TWDC technology, to ensure systems are designed in accordance with and are aligned with Company information security policies and standards.
Balances operational work 30% of the day, 70% project deliverables to help meet assigned team deliverables.
Contributes to the design, implementation, and documentation of new security tools.
Collaborates with other internal information technology teams (networking, cloud, traditional architecture, developers, and data scientists) to support internal and external systems.
information security tools, such as the SIEM (Logstash, Splunk, GrayLog, etc.);
Clearly documents designed automation and system relationships and operational guidelines.
Ability to create security operations processes and workflows.
Contributes and participates in the Information Security Team daily stand-ups and other meetings as necessary.
Participates in regular reporting, maintaining accountability and transparency within the Information Security Team.
Remains current on industry trends in cyber risk with industry standards (ISO 27001/2, NIST, CIS) and regulatory requirements.
Creates, reviews and presents reports, position papers, assessment recaps to team (peers) and next level of leadership within team.
Executes advanced risk and threat analysis activities, leveraging learnings from external and internal cyber trends and incidents.
Researches, learns and assesses new technologies.
Documents issues, solutions and project status.
Assists with the maintenance of metrics and scorecards in support of the information security program.
Basic Qualifications :
3 Years experience, information security tools administration.
Detailed understanding of TCP/IP and related communication protocols, Windows authentication mechanisms (Kerberos, NTLM, AD), networking
Demonstrated experience in creating conceptual, logical security diagrams.
Experience with both commercial and open source security and vulnerability detection tools (e.g., Tenable, Qualys, Aquasec, Prisma).
Multiple scripting languages in your toolbox (e.g., Python, GO, Perl, Swift)
Information security technology/compliance experience (e.g., Sarbanes-Oxley, NERC CIP, MPAA Content Security, PCI, PII, GDPR)
Ability to manage multiple priorities and work effectively in a fast-paced, high volume, results driven environment
Excellent written and verbal communication skills including documentation and reporting
Exceptional analytical and problem-solving skills
Ability to establish credibility and working relationships with a wide range of personnel including operations, management and legal staff
Strong organizational and time management skills
Professional Certifications: CEH, ITIL, CISSP, GSEC, GPEN, Security Preferred Qualifications:
4 years experience in a dedicated information security operational role.
Knowledge and experience with diverse IT architectures and enterprise IT data centers, external hosted services and cloud computing environments. Knowledge and experience with physical and virtual server configurations and implementations.
Required Education :
BA/BS in business or computer science or appropriate work experience
Additional Information :
Job ID: 865781BR
Job Posting Company: The Walt Disney Company (Corporate)
The Walt Disney Company and its Affiliated Companies are Equal Employment Opportunity employers and welcome all job seekers including individuals with disabilities and veterans with disabilities. If you have a disability and believe you need a reasonable accommodation in order to search for a job opening or apply for a position, email Candidate.Accommodations@Disney.com with your request. This email address is not for general employment inquiries or correspondence. We will only respond to those requests that are related to the accessibility of the online application system due to a disability.
The Walt Disney Company
- The Walt Disney Company Jobs