Restaurant Brands International Inc.

Security Engineer II

Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in cybersecurity, security engineering, or incident response
  • Hands-on experience with EDR, SIEM, and other security tools
  • Ability to identify and drive remediation of security risks
  • Strong communication skills, able to convey technical risk to non-technical audiences
  • Bachelor's degree in Computer Science or related field, or equivalent experience

Responsibilities

  • Develop and enhance security hardening standards across all platforms
  • Collaborate with IT teams to ensure secure configurations
  • Conduct security reviews of critical enterprise technologies
  • Operate and optimize security platforms including EDR and SIEM
  • Investigate cybersecurity incidents and coordinate risk mitigation
  • Lead tabletop exercises and penetration testing activities
  • Maintain a security risk roster and document remediation options

Benefits

  • Medical/Dental/Vision coverage
  • Retirement and Savings Plan
  • Short- and Long-Term Disability options
  • Tuition Reimbursement for professional development
  • Flexible/Hybrid Work Schedules with remote options
  • On-Site amenities including fitness center and daycare
  • Company outings and dining discounts
  • A vibrant and engaging work environment
Full Job Description
Position Description

The Senior Security Engineer is responsible for strengthening Flynn Group's cyber defense posture across infrastructure, endpoint, cloud, identity, and network environments. This role designs and maintains security hardening standards, supports incident response and security investigations, leads purple-team and tabletop exercises, manages remediation risk tracking, and partners with technology and business teams to assess security risk in new solutions. The ideal candidate is a hands-on security engineer who can operate security tools, translate technical risk into business impact, and drive practical remediation across a distributed enterprise environment.

Essential Responsibilities and Duties

Security Engineering & Hardening
  • Develop, maintain, and continuously improve security hardening standards for servers, endpoints, networks, cloud services, and identity platforms.
  • Partner with IT and business technology teams to embed secure configuration and least-privilege principles into new and existing solutions.
  • Assist with security reviews of key enterprise platforms, tools, and technologies.

Threat Detection, Response & Security Tooling
  • Operate, tune, and improve security platforms such as EDR, antivirus, email security, SIEM, vulnerability management, and related monitoring tools.
  • Investigate cybersecurity incidents, document findings, coordinate remediation, and escalate risks based on business impact.
  • Develop and improve detection, alerting, response, and remediation playbooks.

Purple Team, Testing & Resilience
  • Lead or coordinate tabletop exercises, attack simulations, penetration testing follow-up, and other purple-team activities.
  • Manage honeypot/deception capabilities and use findings to improve detection, response, and control effectiveness.
  • Track remediation of security findings from testing, audits, vulnerability scans, and incident reviews.

Risk, Governance & Business Partnership
  • Maintain a security risk roster, document remediation options, and communicate risk clearly to technical and business stakeholders.
  • Review new business and technology solutions for security risks, including third-party/vendor risk and AI-related risks.
  • Contribute to security policy, standards, audit evidence, and control documentation.

Education and Experience

Required
  • 5+ years of experience in cybersecurity, security engineering, infrastructure security, incident response, vulnerability management, or related disciplines.
  • Hands-on experience with security tools such as EDR, SIEM, email security, vulnerability management, endpoint management, or firewall/security platforms.
  • Experience identifying, documenting, prioritizing, and driving remediation of security risks.
  • Strong written and verbal communication skills, including the ability to explain technical risk to non-technical stakeholders.

Preferred
  • Experience with Industry Leading EDR solutions, Cloud Security Principles, Industry leading Firewall technology, & Sentinel SIEM.
  • Experience with tabletop exercises, penetration testing coordination, red-team/purple-team activities, adversary simulation, or detection engineering.
  • Familiarity with NIST CSF, MITRE ATT&CK, ISO 27001, or similar frameworks.
  • Experience assessing third-party/vendor security risk and AI-enabled business solutions.
  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or equivalent experience.
  • Security certifications such as CISSP, Security+, CySA+, GCIH, GCIA, GCFA, CEH, PNPT, or OSCP.

Why Work For Flynn?

Flynn Group offers a variety of benefits and perks to encourage and empower our employees. We are committed to helping each employee work and live to his or her fullest potential. We offer a variety of benefits and perks while working for us:
  • Medical/Dental/Vision
  • Retirement and Savings Plan
  • Short- and Long-Term Disability
  • Basic Life Insurance
  • Voluntary Life Insurance
  • Tuition Reimbursement
  • Paid Time Off
  • Flexible/Hybrid Work Schedules (In Office Monday - Thursday, Work from Home Friday)
  • Company Outings
  • Dining Discounts
  • On-Site Fitness Center
  • On-Site Daycare
  • On-Site Café
  • FUN Work Environment!

About Restaurant Brands International Inc.

Restaurant Brands International Inc. (RBI) is a Canadian multinational fast food holding company. RBI was formed in 2014 as a result of a merger between American fast food restaurant chain Burger King and Canadian coffee shop and restaurant chain Tim Hortons, and expanded in 2017 with the acquisition of American fast food chain Popeyes Louisiana Kitchen. RBI is one of the world's largest fast food restaurant companies with over 27,000 locations in more than 100 countries. The company's brands include Burger King, Tim Hortons, and Popeyes. RBI is headquartered in Oakville, Ontario, Canada.
Learn more about Restaurant Brands International Inc.
Size
5,700 employees
Market Cap
$19.8 billion
Industry
5 Year Trend
+6.7%
NASDAQ

Similar Jobs

More Jobs at Restaurant Brands International Inc.

More Information Technology Jobs

Find similar Security Engineer II jobs: