Vulnerability & Application Security Manager at Sysco

Concord, North Carolina, United States

Sysco Logo
Not SpecifiedCompensation
Senior (5 to 8 years), Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
UnknownVisa
N/AIndustries

Requirements

  • Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Information Technology, or a related field
  • 7+ years of experience in cybersecurity, with at least 2 years in a leadership role or vulnerability management
  • CISSP, CISM, OSCP, or GIAC, or equivalent certification
  • Strong knowledge of vulnerability management tools (e.g., Tenable, Wiz, Armis)
  • Proven hands-on experience with vulnerability management and application security tools and techniques
  • Familiarity with CVSS, MITRE ATT&CK, and threat modeling
  • Experience with cloud platforms (AWS, Azure, GCP) and container security
  • Excellent communication, analytical, and project management skills
  • Currently authorized to work in the United States

Responsibilities

  • Scanning, assessment, prioritization, remediation coordination, and tool management (e.g., Tenable, Wiz, Armis)
  • SDLC integration, SAST/DAST/SCA scans, threat modeling, secure coding collaboration, bug bounty management
  • Identifying gaps, implementing automation, improving processes, staying current with threats and technologies
  • Developing dashboards and tracking remediation progress, vulnerability trends, and risk posture
  • Ensuring adherence to OWASP, NIST, PCI-DSS, HIPAA, and other relevant frameworks
  • Mentoring staff, leading analysts/engineers, fostering growth and collaboration

Skills

Key technologies and capabilities for this role

TenableWizArmisSASTDASTSCAOWASPNISTPCI-DSSHIPAAthreat modelingbug bountySDLC integrationvulnerability managementremediation coordination

Questions & Answers

Common questions about this position

What is the compensation for this Vulnerability & Application Security Manager role?

The pay range provided is not indicative of Sysco’s actual pay range but is merely algorithmic and provided for generalized comparison. Factors that may be used to determine rate of pay include specific skills, work location, work experience and other individualized factors.

Is this Vulnerability & Application Security Manager position remote or onsite?

This information is not specified in the job description.

What technical skills are required for the Vulnerability & Application Security Manager role?

Required skills include strong knowledge of vulnerability management tools like Tenable, Wiz, Armis; hands-on experience with vulnerability management and application security tools; familiarity with CVSS, MITRE ATT&CK, and threat modeling; experience with cloud platforms (AWS, Azure, GCP) and container security.

What is the company culture like at Sysco for this role?

Sysco fosters growth and collaboration through mentoring staff, leading analysts/engineers, and offering opportunities to grow personally and professionally while contributing to a dynamic organization.

What qualifications make a strong candidate for this Vulnerability & Application Security Manager position?

A strong candidate has a Bachelor’s or Master’s degree in Cybersecurity, Computer Science, IT, or related field; 7+ years of cybersecurity experience with at least 2 years in leadership or vulnerability management (10+ years with 4+ in leadership preferred); and certifications like CISSP, CISM, OSCP, or GIAC.

Sysco

Foodservice distribution for restaurants and healthcare

About Sysco

Sysco Corporation specializes in foodservice distribution, primarily serving restaurants, healthcare facilities, and educational institutions. The company offers a variety of products and services, including food items, kitchen equipment, and marketing support, tailored to meet the specific needs of its clients. Sysco differentiates itself from competitors by providing comprehensive solutions, such as the "Restaurants Rising Toolkit" during the COVID-19 pandemic, which helps restaurants adapt to new dining trends. The goal of Sysco is to make running a restaurant easier and more profitable for its clients.

Houston, TexasHeadquarters
1970Year Founded
IPOCompany Stage
Food & AgricultureIndustries

Benefits

Health Insurance
401(k) Retirement Plan
401(k) Company Match
Professional Development Budget
Performance Bonus

Risks

Increased competition from tech-driven solutions could impact Sysco's market share.
Reliance on partnerships for technology advancements may pose risks if results are unmet.
Socially responsible investing trends may pressure Sysco to improve ESG standards.

Differentiation

Sysco offers comprehensive B2B solutions, including food products, equipment, and marketing services.
The company provides flexible payment options and waives delivery minimums for scheduled deliveries.
Sysco's 'Restaurants Rising Toolkit' supports restaurants adapting to new dining trends.

Upsides

Sysco can capitalize on the demand for plant-based and alternative protein products.
The rise of ghost kitchens offers Sysco opportunities for specialized supply chain solutions.
Digital transformation in foodservice allows Sysco to enhance service offerings and engagement.

Land your dream remote job 3x faster with AI