Dairy Farmers of America

Information Security Engineer II

Dairy Farmers of America$88K — $105K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in IT, Computer Science, or related field (or equivalent experience)
  • 3+ years of experience in vulnerability management
  • Expertise in managing the full vulnerability lifecycle
  • Experience coordinating remediation efforts across IT, applications, and OT teams
  • Proficiency in developing vulnerability metrics and dashboards
  • Familiarity with security frameworks like NIST-800-53
  • Knowledge of OT, ICS, or manufacturing environments preferred

Responsibilities

  • Own execution and improvement of the Vulnerability Threat Management (VTM) program
  • Identify, analyze, prioritize, and track vulnerabilities across various systems
  • Analyze vulnerabilities considering exploitability and business impact
  • Coordinate remediation efforts with cross-functional teams
  • Apply risk-based management in constrained environments
  • Develop and maintain dashboards and metrics for risk reduction
  • Evaluate and enhance vulnerability management tools and processes

Benefits

  • Collaborative work environment with cross-functional teams
  • Continuous professional development opportunities
  • Focus on innovative technologies in vulnerability management
  • Opportunities for process automation and improvement
  • Supportive culture for risk reduction and operational excellence
Full Job Description
Collaborate with the Information Security team and IT, OT, and asset owners to reduce cyber risk by identifying, prioritizing, and remediating vulnerabilities across the Cooperative's IT and Operational Technology (OT) environments, including manufacturing systems, industrial control systems (ICS), and plant networks.

Job Duties and Responsibilities:
  • Own day-to-day execution and continuous improvement of the Vulnerability Threat Management (VTM) program
  • Identify, analyze, prioritize, and track vulnerabilities across endpoints, servers, network devices, cloud workloads, Webservers and OT/manufacturing assets
  • Analyze vulnerability data in the context of exploitability, asset criticality, business impact, and OT safety and availability constraints
  • Coordinate remediation efforts with IT infrastructure, application owners, plant engineers, and operations teams, ensuring clear ownership and tracking
  • Apply risk-based vulnerability management in environments where patching may be constrained by uptime, safety, regulatory, or vendor limitations
  • Develop and maintain vulnerability dashboards, KPIs, and executive-level metrics to measure risk reduction and remediation effectiveness
  • Ensure vulnerability management processes align with internal security standards, policies, and risk management practices
  • Evaluate and continuously improve vulnerability management tooling, scanning coverage, asset visibility, and data quality
  • Collaborate with cross-functional teams to promote secure configuration, patching best practices, and sustainable risk reduction
  • Identify and implement automation opportunities to improve remediation efficiency, workflow integration, and reporting accuracy
  • The requirements herein are intended to describe the general nature and level of work performed by employee, but is not a complete list of responsibilities, duties, and skills required. Other duties may be assigned.


Minimum Requirements:

Education and Experience
  • Bachelor's degree in information technology, Computer Science or related field preferred, or equivalent combination of education, certifications, and hands-on vulnerability management experience may be considered in lieu of a degree
  • 3 or more years' experience with a strong focus on vulnerability management, specifically experience:
    • managing the full vulnerability lifecycle
    • interpreting vulnerability data using CVEs, CVSS, exploitability, and threat intelligence
    • coordinating remediation across infrastructure, endpoint, network, application, and cloud teams
    • developing and maintaining vulnerability metrics, dashboards, and executive-level reporting
    • aligning vulnerability management activities with security frameworks such as NIST-800-53
    • supporting enterprise vulnerability scanning platforms
    • managing external service providers
    • working with Operation Technology devices in manufacturing
    • implementing and managing enterprise vulnerability scanning platforms
    • integrating vulnerability management with ticketing, workflow, or ITSM platforms
    • leveraging Microsoft Defender for Endpoint for vulnerability and exposure management
    • working in the Dairy, Food and Beverage or Consumer Products industry
  • Exposure to OT, ICS, or manufacturing environments preferred


Knowledge, Skills, and Abilities
  • Vulnerability lifecycle management: discovery, analysis, prioritization, remediation, and risk acceptance
  • Risk-based vulnerability prioritization using CVEs, CVSS, exploitability, and threat intelligence
  • Vulnerability exception handling and compensating control assessment
  • Vulnerability aging, SLA management, and remediation tracking
  • Understanding of secure configuration, patching, and baseline compliance
  • Familiarity with hybrid and cloud environments (Azure, AWS, or equivalent)
  • Knowledge of endpoint and server hardening best practices
  • Skill in critical thinking, analysis, mathematical calculations, and statistical evaluations
  • Able to translate technical vulnerabilities into business and operational risk
  • Able to communicate clearly and effectively, both verbally and in writing
  • Able to apply technology solutions to business problems
  • Able to work with accuracy and attention to detail
  • Able to work in collaboration effectively and foster good teamwork
  • Able to present ideas using language that is relatable to business and end-users
  • Able to consider impact of actions and decisions on employees, coworkers, and customers
  • Able to multi-task and problem solve
  • Able to work independently and as part of a team
  • Able to prioritize and meet deadlines
  • Able to promote a team environment
  • Able to present to diverse audiences from front line team members to senior management
  • Able to perform task and duties without constant supervision
  • Able to read, write, and speak English


About Dairy Farmers of America

Dairy Farmers of America Inc. is a national milk marketing cooperative in the United States. DFA markets members' raw milk and sells milk and derivative products to wholesale buyers both domestically and abroad. Net sales in 2016 were $13.5 billion, representing about 22 percent of raw milk production in the United States.
Learn more about Dairy Farmers of America
Industry
Founded
1967

Similar Jobs

More Jobs at Dairy Farmers of America

More Information Technology Jobs

Find similar Information Security Engineer II jobs: