Costco

Incident Response Security Engineer

Costco$150K — $225K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years in Information Security; 5+ years in SIEM and Incident Response/Threat Hunting.
  • Certifications: GREM, GCIA, GCIH, CISSP, GISP, GCWIN, GCFA.
  • Expertise with SIEM, Log Analytics, and SOAR procedures.
  • Strong knowledge of application security, common vulnerabilities, and penetration testing.
  • Proficient scripting experience in Python, PowerShell, or similar languages.
  • Deep understanding of Cyber-Attack stages in the Costco network aligned with MITRE ATT&CK.
  • Solid grasp of network security architecture and protocols like TCP/IP, DNS, DHCP, LDAP.

Responsibilities

  • Provide security and technical expertise for developing security solutions.
  • Analyze security policies for controlling system access.
  • Identify and address security issues impacting compliance requirements.
  • Develop detection mechanisms for security incidents to enhance compliance.
  • Validate system configurations to protect information systems from breaches.
  • Implement best practices for information security standards and policies.
  • Create and maintain incident handling procedures and documentation.

Benefits

  • Paid time off
  • Comprehensive health benefits including medical, dental, vision, and behavioral health
  • Health care reimbursement and dependent care assistance plans
  • Short-term and long-term disability insurance
  • Life insurance and AD&D insurance
  • 401(k) plan
  • Stock purchase plan for eligible employees.
Full Job Description
Security Engineers develop, design, implement, and integrate security systems used to safeguard enterprise assets against cyber attack. Security Engineers drive innovation, influence delivery, and maximize performance. They deliver high quality artifacts, develop and run security tests and continuously tune security tools for optimization. Security Engineers identify gaps and inefficiencies and work with the business to implement solutions based on their requirements.

If you want to be a part of one of the worldwide BEST companies "to work for", simply apply and let your career be reimagined.

ROLE
  • Provides security and technical expertise to support the development of security objects to satisfy business requirements.
  • Analyzes and administers security policies to control physical and virtual system access.
  • Identifies and investigates security issues and develops security solutions that address compliance requirements that can/ do impact security.
  • Identifies, develops, and implements mechanisms to detect security incidents in order to enhance compliance and support of the security standards and procedures.
  • Assesses business role requirements, reviews authorization roles, and supports authorizations.
  • Demonstrates a comprehensive skill set with testing authorizations for multiple environments and coordinates testing with business/technical users.
  • Validates system configurations to ensure the safety of information systems assets and protects information systems from intentional or inadvertent access or destruction.
  • Implements best practice when applying knowledge of information systems security standards/practices (e.g.access control and system hardening, system audit and log file monitoring, security policies, and incident handling).
  • Designs and coordinates activities/engagements with other departments (loss prevention, legal, networking, etc).
  • Identifies security gaps that expose Costco to potential exploit and develop short-and long-term prioritized remediation to address those gaps.
  • Develops and executes security controls, defenses, and countermeasures to intercept and prevent internal/external data infiltrations.
  • Determines strategy and protocol for network behavior, analysis techniques, and tool implementation.
  • Identifies and resolves problems often anticipating issues before they occur or before they grow; develops and evaluates options; and implements solutions that support the business.
  • Provides subject matter expertise in systems security policies, standards/practices, protocols, and technologies.
  • Configures, deploys, maintains, and supports security tools.
  • Protects confidentiality, integrity, and availability of information from being disclosed to unauthorized parties.
  • Creates dashboards, configures alerts, implements and supports security software platforms, and monitors tools/apps.
  • Identifies opportunities for streamlining, and increasing effectiveness through continuous process improvement.
  • Implements practices, processes, and procedures consistent with Costco's information security policy and IT standards.
  • Develops and documents security events and incident handling procedures into Playbooks.
  • Ensures that incident documentation is comprehensive, accurate, and complete.
  • Triages, prioritizes, investigates, and coordinates security events and incident handling activities.
  • Collaborates with business partners, project teams, and team members to build secure solutions that protects data and enables the business with tools and processes that make sense and adapt to changing business needs both on-premises and in the cloud.
  • Works with internal and external auditors.
  • Designs, configures and maintains various degrees of security.
  • Monitors, analyzes, and remediates cybersecurity events by adhering to defined security operating procedures {SOP's} and playbooks, manually creating/escalating cases and following up as appropriate; working incident tickets and providing remediation within SLA; consistently documenting analytical steps during alert research and remediation in the case and ensuring data needed for further triage/investigation is available for escalation if needed; makes regular updates to SOPs, ensuring all documentation is up-to-date.
  • Triages security alerts detected by SIEM and other detection applications; analyzing available data to determine if an alert is a true positive; scoping the alert to identify what systems are impacted and escalating to Incident Response as appropriate; working closely with Incident Response with escalated cases; ensure stakeholders are updated; proactively looking for threats and identifying new rules that need to be created and old rules needing to be tuned.
  • Leverages appropriate security tools (i.e SIEM, Firewalls, IDS/IPS, EDR, AV, etc); and understanding different types of attacks that can occur. Using that understanding to develop, design, implement, and/or integrate security solutions/systems.
  • Models compliance with company policies and procedures and supports company mission, values, and standards of ethics and integrity by incorporating these into the development and implementation of business plans; using the Open-Door Policy; and demonstrating and assisting others with how to apply these in executing business processes and practices; Models Costco's culture and values while demonstrating the aptitude and capability to learn new tools and performing responsibilities with the highest standards of ethics and integrity and using that understanding to develop, design, implement, and/or integrate security solutions/systems.
  • Creates and runs commands and executing scripts; and communicates with stakeholders during event troubleshooting and research.
  • Provides and supports the implementation of business solutions by building relationships and partnerships with key stakeholders; identifying business needs; determining and carrying out necessary processes and practices; monitoring progress and results; recognizing and capitalizing on improvement opportunities; and adapting to competing demands, organizational changes, and new responsibilities.
  • Builds strong relationships with business partners and sibling teams across the Information Security organization while promoting diversity and inclusion amongst the team, creating trusting relationships with team members and business partners; SME for other Engineers on collaborative teams to provide expert knowledge on an ongoing basis.
  • Records information in appropriate ticket/case management system to capture work performed, handling Incident Response methodologies.
  • Collaborates with other Cyber Security team members effectively, serves as a SME for security operations for multiple technologies.

REQUIRED
  • 10+ years in Information Security including 5+ years in the SIEM and 5+ years in Incident Response/Threat Hunting.
  • Certified in the following: GREM, GCIA, GCIH, CISSP, GISP, GCWIN, GCFA.
  • Expertise with SIEM and Log Analytics, SOAR, R policies and procedures.
  • Demonstrated knowledge of application security controls, common vulnerabilities, and penetration testing methodologies, technical expert with analytical skills, including the gathering and analyzing of facts formulating objective conclusions modified by subjective and experience-based qualifiers with appropriate, defining problems, and promoting solutions.
  • Experienced with scripting in python, powershell, or similar language.
  • Strong understanding of the different stages of a Cyber-Attack and how those attacks could be executed in the Costco network, aligning solutions with the MITRE ATT&CK Matrix.
  • Parse and manipulate data to allow for data normalization or allow for search or easier representations for use.
  • Demonstrated strong knowledge of network security architecture concepts including topology, protocols, components, and principles, network services and protocols interactions that provide network communication, knowledge of network protocols such as TCP/IP, Domain Name System (DNS), Dynamic Host Configuration (DHCP), and Directory services (LDAP).
  • GSEC (GIAC Security Essentials).
Recommended
  • Bachelor's degree in Computer Science or Computer Security/Forensics.
  • Proficient in Google Workspace applications, including Sheets, Docs, Slides, and Gmail.

Required Documents
• Cover Letter
• Resume

California applicants, please click here to review the Costco Applicant Privacy Notice.

Pay Ranges:

Level SR - $150,000 - $190,000, Bonus and Restricted Stock Unit (RSU) eligible

Level Staff - $180,000 - $225,000, Bonus and Restricted Stock Unit (RSU) eligible

We offer a comprehensive package of benefits including paid time off, health benefits - medical/dental/vision/hearing aid/pharmacy/behavioral health/employee assistance, health care reimbursement account, dependent care assistance plan, short-term disability and long-term disability insurance, AD&D insurance, life insurance, 401(k), stock purchase plan to eligible employees.

About Costco

Costco is a membership warehouse club, dedicated to bringing their members the best possible prices on quality brand-name merchandise. With hundreds of locations worldwide, Costco provides a wide selection of merchandise, plus the convenience of specialty departments and exclusive member services, all designed to make your shopping experience a pleasurable one. The company's first location, opened in 1976 under the Price Club name, was in a converted airplane hangar on Morena Boulevard in San Diego. Originally serving only small businesses, the company found it could achieve far greater buying clout by also serving a selected audience of non-business members. With that change, the growth of the warehouse club industry was off and running. In 1983, the first Costco warehouse location was opened in Seattle. Costco became the first company ever to grow from zero to $3 billion in sales in less than six years. When Costco and Price Club merged in 1993, the combined company, operating under the name PriceCostco, had 206 locations generating $16 billion in annual sales.

Costco Careers

Joining the Costco team presents a unique opportunity to be part of one of the largest wholesale membership warehouses in the world. At Costco, we are committed to providing our employees with a path to career growth and a dynamic workplace culture that values innovation, leadership, and diversity.

Work You'll Do

Embark on a professional journey with Costco and play a pivotal role in our mission to continually enhance the Costco shopping experience. You'll find yourself working in a high-energy environment where your skills will be honed and your abilities pushed to new heights.

Explore Job Opportunities

Costco offers a variety of job opportunities that cater to a range of skills and interests, from in-warehouse positions to corporate roles. Each position at Costco is designed to help you build a solid professional foundation, with ample room for growth and advancement.

Internship Programs

Kickstart your career with a Costco internship. Our internships provide invaluable workplace experience and a chance to see what it truly means to be part of a team that prioritizes quality and community. Interns at Costco gain hands-on experience that is not only rewarding but also integral to their professional development.

Professional Growth and Development

Costco is deeply invested in the professional growth of our employees. We offer robust training programs, leadership workshops, and opportunities for advancement. Our commitment to career growth ensures that our team members are always equipped to take on new challenges.

Benefits and Culture

The benefits at Costco go beyond the basics. We offer a competitive benefits package that includes health, vision, dental, and life insurance, as well as a 401(k) plan with a generous company match. More importantly, our company culture is built on a foundation of respect, integrity, and dedication to diversity and innovation.

Join Our Team

If you're looking for a career that offers job security, excellent benefits, and an opportunity to grow both personally and professionally, consider joining the Costco team. Explore our open positions, tailor your resume, and prepare for an interview where you can showcase your unique skills and passion for excellence.

Stay Connected

Keep up to date with all things related to Costco careers by joining our network. Follow us on our careers page, connect with us on professional networking sites, and stay informed about upcoming hiring events and career opportunities.

Apply Now

Ready to take the next step in your career? Search for open positions that match your skills and interests on our jobs page. At Costco, we are always looking for passionate, curious, and solution-driven team players who are ready to make a difference.

Costco Jobs – Where Careers Soar

At Costco, we don’t just offer jobs; we offer career paths. The vast opportunities for growth, coupled with our exceptional culture and benefits, make Costco not just a place to work, but a place to build a lasting career.
Learn more about Costco
Size
288,000 employees
Market Cap
$201.7 billion
Industry
Net Income
$4.3 billion
Founded
1983
5 Year Trend
+12%
Revenue
$178.6 billion
NASDAQ

Similar Jobs

More Jobs at Costco

More Information Technology Jobs

Find similar Incident Response Security Engineer jobs: