United Airlines - Chicago, IL

posted 5 months ago

Full-time - Senior
Chicago, IL
5,001-10,000 employees
Air Transportation

About the position

As a Senior Manager - Product Cybersecurity at United Airlines, you will play a pivotal role in safeguarding the airline's digital assets and ensuring the security of its products and services. This position is not just about managing a team; it is about leading a cultural shift towards embedding cybersecurity into the very fabric of the organization. You will be responsible for developing and maintaining a comprehensive security architecture that spans across all products within United's portfolio. Your leadership will guide a team of innovative cybersecurity engineers, fostering an environment where security is prioritized and integrated into every aspect of product development. In this role, you will oversee the cybersecurity process management and administration, which includes providing regular updates and education to staff and management on various cybersecurity topics. You will be accountable for the administrative management of cybersecurity professionals, including HR administration, salary management, and time reporting. Your responsibilities will also encompass defining and prioritizing work assignments, tracking project statuses, and managing departmental budgets and resource allocations. You will act as a key interface between cybersecurity and other functional areas within the business, building relationships to raise awareness and support for cybersecurity initiatives. This includes monitoring changes in legislation and compliance standards, ensuring that the organization remains compliant and that security practices are updated accordingly. You will coordinate department activities with internal and external technology and business owners, providing overall resource and project management to ensure the security, confidentiality, integrity, and availability of United's systems, products, and services. Your execution and support responsibilities will involve managing the development and implementation of cybersecurity strategies, working with cross-functional teams to document and implement cybersecurity standards, and coordinating remediation efforts for non-compliant items. You will also be available to respond to unplanned cybersecurity events, demonstrating your commitment to maintaining a secure environment for both customers and employees.

Responsibilities

  • Manage a team of cybersecurity engineers responsible for developing and maintaining end-to-end security architecture of United's products and services.
  • Provide periodic updates, education, and presentations on cybersecurity to staff and management.
  • Accountable for administrative management of cybersecurity professionals, including HR administration and salary management.
  • Define, prioritize, allocate resources, and track work assignments, projects, and programs.
  • Review and manage departmental budgets and resource allocations.
  • Monitor changes in legislation and compliance standards affecting cybersecurity practices.
  • Coordinate and evaluate the work of the cybersecurity department to ensure security and confidentiality of systems and services.
  • Build relationships with functional areas to raise awareness and support for cybersecurity initiatives.
  • Coordinate department activities with internal and external technology and business owners.
  • Manage the development and implementation of cybersecurity strategies and standards.
  • Coordinate remediation of non-compliant items to meet compliance standards.
  • Respond to unplanned cybersecurity and risk management events.

Requirements

  • Bachelor's degree in a STEM field required.
  • At least 9 years of related experience in cybersecurity or a related field.
  • Strong ability to communicate technical concepts to non-technical audiences.
  • Experience with threat modeling and risk management techniques.
  • Proven experience managing teams to identify strategic and tactical risks.
  • Ability to partner and influence multi-functional teams to drive security improvements.
  • Strong analytical and quantitative skills to use data and metrics for decision-making.
  • Excellent oral and written communication skills.
  • Demonstrated problem-solving and critical thinking skills.
  • Knowledge of the threat landscape and security monitoring and analytics.
  • Must be legally authorized to work in the United States without sponsorship.

Nice-to-haves

  • Master's degree or equivalent experience.
  • Certifications such as CEH, GSEC, CISM, CompTIA Security+, CISSP, CISA, SSCP, CASP+, OSCP, AWS Solution Architect Pro.
  • 12+ years of relative experience in cybersecurity.
  • Working knowledge of operating system and platform security, networking security, and web-related protocols.
  • Strong subject matter expertise in IT security and risk management.
  • Experience with cloud-native products and microservice architectures.
  • Expertise in application development and DevOps security technologies.
  • Experience transforming traditional data center security measures into cloud technologies.
  • Proven track record with compliance frameworks and requirements.
  • Experience providing training and mentorship.
  • Ability to perform manual security code reviews and interpret analysis tools.

Benefits

  • Competitive salary range of $126,225 - $185,130.
  • Parental leave benefits.
  • 401k retirement plan options.
  • Space available travel privileges.
  • Employee-run Business Resource Group communities.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service