Pizza Hut

Cyber Security SR Engineer II

Pizza Hut$117K — $147K *
Plano, TX 75025In-Person
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science or related field, or equivalent work experience.
  • 5+ years of experience in cybersecurity, systems engineering, or Identity and Access Management (IAM).
  • 3+ years of experience administering Microsoft Entra ID / Azure Active Directory.
  • Proven experience with hybrid identity architectures and enterprise-scale Microsoft 365 environments.
  • Experience in audit, compliance, and governance activities.

Responsibilities

  • Engineer, administer, and support Microsoft Entra ID and hybrid Active Directory environments.
  • Design and maintain identity lifecycle management processes for onboarding, transfers, and offboarding.
  • Administer role-based access controls (RBAC) and privileged access management solutions.
  • Manage and optimize security policies including Conditional Access, MFA, Passwordless Authentication, and more.
  • Implement security controls to protect enterprise identities and privileged accounts.
  • Investigate and remediate identity-related security findings and recommendations.
  • Conduct compliance assessments and lead periodic entitlement reviews.

Benefits

  • Opportunities for professional development and continued education.
  • Access to advanced security technologies and tools.
  • Flexible work arrangements to promote work-life balance.
  • Supportive team environment with mentorship opportunities.
  • Engagement in a collaborative workspace with multiple departments.
Full Job Description
Job Description

Position Summary

The Cyber Security SR Engineer II is a senior-level Active Directory Entra ID SR Engineer professional responsible for supporting, administering, and enhancing Yum's Microsoft Entra ID (Azure Active Directory) environment. This role contributes to the security, governance, and operational effectiveness of enterprise identity services across cloud and hybrid infrastructures.

The successful candidate works independently on most assignments, analyzes and resolves moderately complex to complex identity and access challenges, contributes to process improvements, and partners closely with infrastructure, cloud, security, and business teams to support enterprise security objectives. This position aligns with Level 8 expectations within the Yum Technology Job Leveling Framework, serving as a senior individual contributor who is continuing to expand technical expertise and influence.

Responsibilities

Identity & Access Management
  • Administer and support Microsoft Entra ID and hybrid Active Directory environments.
  • Support identity lifecycle management processes including onboarding, transfers, and offboarding.
  • Configure and maintain role-based access controls (RBAC).
  • Administer and support:
    • Conditional Access Policies
    • Multifactor Authentication (MFA)
    • Passwordless Authentication
    • Identity Protection
    • Access Reviews
    • Group Policy
    • Security Hardening
    • Assessment reviews and mitigation
    • Automate processes
    • Develop new process
    • Run existing process and collections
  • Troubleshoot complex authentication, access, and identity-related issues.

Security Operations & Engineering
  • Implement and maintain identity security controls to protect enterprise user and privileged accounts.
  • Investigate identity-related security findings and assist with remediation activities.
  • Participate in security assessments, penetration testing remediation efforts, and vulnerability reduction initiatives.
  • Contribute to the evaluation and testing of emerging IAM technologies and capabilities.
  • Support secure integration of applications with enterprise identity platforms.

Governance, Risk & Compliance
  • Support compliance assessments and control validation activities.
  • Participate in access certification and entitlement review processes.
  • Assist with evidence collection and audit activities related to:
    • NIST
    • PCI-DSS
    • CIS Controls
    • Cybersecurity Framework (CSF)
    • Internal assessment processes
    • Vender assessment process
  • Ensure identity management processes align with corporate security policies and standards.

Automation & Process Improvement
  • Develop and maintain automation solutions using PowerShell and Microsoft Graph.
  • Identify opportunities to improve operational efficiency and enhance security through automation.
  • Assist in developing operational monitoring, reporting, and alerting capabilities.
  • Contribute to process documentation and standardization efforts.

Collaboration
  • Partner with Infrastructure, Cyber Security, Cloud Engineering, HR, and Application teams to support IAM initiatives.
  • Provide technical input during security reviews and project engagements.
  • Share knowledge and best practices with team members.
  • Build effective relationships across teams to support successful delivery of IAM services.
  • Clearly communicate technical issues, risks, and recommendations to stakeholders


Qualifications

Education
  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related field.
  • Equivalent professional experience may be considered in lieu of degree requirements.

Experience
  • 4-7 years of cybersecurity, systems engineering, IAM, or related experience.
  • 10 years of Microsoft Entra ID / Azure Active Directory Engineering and Administration experience.
  • Experience supporting hybrid identity environments.
  • Experience working within enterprise Microsoft 365 environments.
  • Experience with security controls, access governance, or audit activities.
  • Experience scripting or automating administrative tasks using PowerShell.
  • Experience Active Directory Group Policy administration and design
  • Experience Active Directory tiering design and administration
  • Experience with Active Directory hardening

Technical Skills

Experience with several of the following:
  • Microsoft Entra ID HPA administration
  • Active Directory HPA administration
  • Active Directory Group Policy
  • Active Directory permission assignments
  • Active Directory Tiering
  • Active Directory PowerShell scripting and automation
  • Azure/Microsoft Cloud Security
  • Microsoft Graph
  • Conditional Access
  • MFA and Passwordless Authentication
  • PIM

Preferred Certifications
  • Microsoft Certified: Azure Security Engineer Associate (AZ-500)
  • Security+, CISSP, CCNA or equivalent security certification


Salary Range: $117,800 to $147,600 annually + bonus eligibility. This is the expected salary range for this position. Ultimately, in determining pay, we'll consider the successful candidate's location, experience, and other job-related factors.

Similar Jobs

More Jobs at Pizza Hut

More Information Technology Jobs

Find similar Cyber Security SR Engineer II jobs: