Jobs
BTECH - Computer Science / Information Technology:
Responsibilities:
- Partner with US teams to provide security guidance as a subject matter expert around application security and operate YUM! application security services for the brand.
- Aligning with a risk-based approach, collaborate with third-party engineers, and product owners to identify, prioritize, and remediate vulnerabilities in mobile and web applications across YUM! systems. These include e-commerce websites, e-commerce mobile apps, and restaurant operations apps.
- Leveraging established YUM! security services, review vulnerability scanner reports/results and work with application and/or engineering teams to communicate and address/remediate issues. This includes ensuring adherence to established remediation timelines, including recommending and monitoring remediation activities.
- Maintain the brand’s application security scan profiles and scan policies as per baseline standards across scanning tools for containers, SAST, DAST, and crowd sourced pen testing. This will include reviewing findings of security scans and onboarding new applications into scanning tools or services.
- Conduct awareness campaigns with engineering teams to ensure application development adheres to YUM! Global Technology Risk Management development standards.
- Continuously monitor published vulnerabilities for various applications, operating systems, and databases. Based on the publicly disclosed vulnerabilities determine the remediation priority and engage the stakeholders. Review the solution by re-scanning the disclosed vulnerabilities. (Familiar with OWASP Top 10, etc.)
- Conduct threat modeling exercises to identify potential risks at the design and architecture stages and provide guidance to development teams in secure design and best practices.
- Coordinate with incident response teams to contain, remediate, and perform root cause analysis on security incidents affecting applications.
Minimum Requirements:
- Bachelor's degree and at least 4 years of experience in cybersecurity and/or software development. Additional years of relevant cybersecurity or development experience may be considered in lieu of bachelor's degree.
- Experience with reviewing application cybersecurity vulnerabilities for risk and relevance as well as in vulnerability mitigations/remediation planning, for identified vulnerabilities
- Able to successfully communicate with technical personnel and third parties.
- Knowledge of continuous integration and continuous delivery platforms
- Familiarity with relevant compliance and data privacy regulations (e.g. PCI DSS, GDPR, CCPA) and how they impact application security with the ability to incorporate compliance requirements into security testing and remediation processes.
- Knowledge of common programming languages and paradigms ( OOP, functional, concurrent, etc)
Preferred Requirements
- Knowledge of cloud environment topics including secrets management, infrastructure as code, and serverless technologies
- Knowledge of CI/CD techniques and build/deployment pipeline technologies
- Knowledge of application scanning tools using both dynamic and static techniques
- Knowledge of containers and container management tools (e.g. Docker, Kubernetes) including how to interpret and remediate security findings and best practices for securing container images and deployments.
- Knowledge of HTTP communication
- Knowledge of package management tools for languages and operating systems (e.g. npm, pip, apt, yum)
Total Views
0
Apply Clicks
0
Mock Applicants
0
Scraps
0
Similar Jobs

Senior Security Engineer
Interactive Brokers · India

Industrial System Cybersecurity Referent Engineer
Schneider Electric · New Cairo, Egypt
FA
Senior Cybersecurity Engineer - Secrets Management
FactSet · India, Hyderabad, DVS, SEZ-1 – Orion B4; FL 7,8,9,11 (Hyderabad - Divyasree 3)

Senior Security Researcher
Microsoft · India, Karnataka, Bangalore
About Yum! Brands

Yum! Brands
PublicYum! Brands, Inc. is an American multinational fast food corporation. It was formed in 1977 as a subsidiary of PepsiCo, after the company acquired KFC, Pizza Hut, and Taco Bell. PepsiCo divested the brands in 1997, and these consolidated as Yum!.
10,001+
Employees
Louisville
Headquarters
Reviews
3.9
11 reviews
Work Life Balance
3.6
Compensation
4.3
Culture
3.9
Career
4.3
Management
3.6
87%
Recommend to a Friend
Pros
Cutting-edge technology stack and interesting technical challenges
Flexible remote work options and good work-life balance
Competitive compensation packages with equity
Cons
Internal politics in some teams
Organizational changes and restructuring can be disruptive
Work-life balance can be challenging during product launches
Salary Ranges
117 data points
Junior/L3
Junior/L3 · Cybersecurity Analyst
0 reports
$123,000
total / year
Base
-
Stock
-
Bonus
-
$105,000
$142,000
Interview Experience
47 interviews
Difficulty
3.7
/ 5
Duration
14-28 weeks
Offer Rate
38%
Experience
Positive 65%
Neutral 25%
Negative 10%
Interview Process
1
Phone Screen
2
Technical Interview
3
System Design
4
Behavioral
5
Team Fit
Common Questions
Tell me about a challenging project
System design question
Coding problem
Why this company
News & Buzz
Yum! Brands, Inc. $YUM Stock Position Lessened by Summit Global Investments - MarketBeat
Source: MarketBeat
News
·
5w ago
Yum Brands to spend $12M to renovate new downtown Louisville headquarters - The Courier-Journal
Source: The Courier-Journal
News
·
5w ago
Yum! Brands plans $12 million renovation of downtown Louisville office tower - WDRB
Source: WDRB
News
·
5w ago
Yum Brands plans $12M renovation of 5 floors at PNC Tower for new HQ - Louisville Business First - The Business Journals
Source: The Business Journals
News
·
5w ago