Cyber Security Engineer: Threat Intelligence and Incident Response (HYBRID)

McCormick & Company, Incorporated

Cockeysville (MD)

Hybrid

USD 110,000 - 170,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

McCormick & Company, Incorporated in Hunt Valley, MD, is seeking a Cyber Security Engineer for Threat Intelligence and Incident Response. This full‑time role supports security operations across on‑premises and cloud environments, collaborating with the SOC and IT teams to detect, analyze, and respond to threats.

You will develop threat intelligence capabilities, manage incident response, and help build secure architectures while communicating effectively with stakeholders and guiding security

Qualifications

  • Bachelor’s degree in Information Technology or in a relevant field.
  • 5 years experience in a SOC environment, incident response, threat hunting, vulnerability management and SIEM.
  • 3 years experience in a 24x7 global enterprise environment.
  • Understanding of NIST CSF, OWASP Top 10, and CIS Controls.
  • Experience with cloud security in hybrid environments (on‑prem and cloud).
  • Proven ability to design security tools and platforms and communicate across teams.
  • Excellent written and verbal communication; ability to operate under pressure.

Responsibilities

  • Assist with development and maintenance of the security roadmap and enterprise security documents.
  • Identify tools, processes, and controls to secure McCormick assets; deploy and operate threat intelligence tools.
  • Support security applications and services including vulnerability management, SIEM, Firewalls, IDS/IPS, Anti‑Malware, and Forensics.
  • Conduct threat hunting, forensics, and incident response as part of daily duties.
  • Monitor traffic and events, advise on remediation actions.
  • Review incident impact and remediation for Tier 1 escalations.
  • Investigate intrusions and perform in‑depth analysis of exploits.
  • Follow SOPs for detecting, classifying, and reporting incidents.
  • Demonstrate network expertise to support incident decisions.
  • Conduct proactive threat research and log analysis across devices.
  • Document activities during incidents and provide status updates.
  • Escalate intrusion information to clients and stakeholders.
  • Track trends and tune systems to reduce false positives.
  • Develop processes to improve incident response times and SOC functions.
  • Provide written analysis for monthly reports as needed.

Skills

Threat intelligence
Incident response
SOC
Threat hunting
Vulnerability management
SIEM
Cloud security
Azure
Windows
Unix
Network security
Communication
Team collaboration

Education

Bachelor’s degree in Information Technology or related field
CCSK
AWS Certified Solutions Architect – Associate
CEH – EC Council Certified Ethical Hacker
ITIL Foundation v4
ITIL Intermediate – IT Service Operation
CISC – Certified Information Security Consultant
CPFA – Certified Professional Forensics Analyst
Microsoft Certified: Azure Security Engineer Associate

Tools

Azure
Rapid7
QRadar
Microsoft AD/Azure AD
Microsoft 365

Job description

Select how often (in days) to receive an alert:

Cyber Security Engineer: Threat Intelligence and Incident Response (HYBRID)

HUNT VALLEY, MD, US, 21031

McCormick & Company, Inc., a global leader in the spice, flavor, and seasonings industry, is seeking a full-time Cy ber Security Engineer for Threat Intelligence and Incident Response. This is position will be located in Hunt Valley, MD This position will report to the Director, Cyber Security Threat Intelligence and Incident Response

McCormick & Company, Incorporated is a global leader in flavor with approximately 13,000 employees worldwide. As a Fortune 500 company with over $5 billion in annual sales across 160 countries and territories, we manufacture, market, and distribute spices, seasoning mixes, condiments, and other flavorful products to the entire food industry including e-commerce, retail, food manufacturers and foodservice businesses. Our most popular brands include McCormick, French's, Frank's RedHot, Stubb's, OLD BAY, Lawry's, Zatarain's, Ducros, Vahiné, Cholula, Schwartz, Kamis, DaQiao, Club House, Aeroplane, and Gourmet Garden. Every day, no matter where or what you eat or drink, you can enjoy food flavored by McCormick. Our Purpose is "To Stand Together for the Future of Flavor and our Vision is "A World United by Flavor—where healthy, sustainable and delicious go hand in hand."

As a company recognized for its exceptional commitment to employees, McCormick offers a wide variety of benefits, programs, and services. Benefits include, but are not limited to, tuition assistance, medical, dental, vision, disability, group life insurance, 401(k), profit sharing, paid holidays, and vacations.

  • tuition assistance
  • medical
  • dental
  • vision
  • disability
  • group life insurance
  • 401(k)
  • profit sharing
  • paid holidays
  • vacations
Position Overview/Primary Purpose:

This role works with the team that defines the strategic vision, roadmap, principals and standards for McCormick’s Threat Intelligence and incident response capabilities. The scope of this role includes providing expertise and understanding of the threat landscape working with different teams to mitigate risk and understand the threats that might impact our business. Provide expert knowledge of Threat Intelligence process and technologies including VM, SIEM, SOC, threat hunting, Incident response, and cloud security. In this role you will track, analyze, and respond to incoming threats and respond to incidents. You will be involved in the evolution of our threat intelligence program as we build new capabilities and enhance current one’s for cloud security. Central to this is building the technology, processes and capabilities identify threats across the infrastructure both on premise and in the cloud. To accomplish this, you will work closely with our internal security teams, managed service providers and other partners to help develop threat intelligence program that is resilient and supportable.

This position will provide the opportunity to assist in monitoring and protecting McCormick cloud applications and infrastructure, local infrastructure, and physical locations against intrusion, hacking attempts, viruses, malware, and vulnerabilities. You would play a key role in assisting the Security teams in implementing various security initiatives. This role will be an integral part of our Security Operations Centre (SOC) aligned with our threat intelligence and incident response teams.

This position will also be responsible for working with other Security team members to respond to incidents, participate in security investigations and forensics, and lead, consult, and participate in IT projects and initiatives.

This role reports to the Director of Cyber Security Threat Intelligence and Incident Response

Responsibilities:
  • Assist with the development and maintenance of our security roadmap. Participate in the creation of enterprise security documents (policies, standards, baselines, guidelines and procedures) under the direction of the IT Security Leadership, where appropriate.
  • Assist with the identification of the tools, processes and controls required to effectively secure the McCormick enterprise ensuring the confidentiality, integrity and availability of the Company’s information assets. Work with security team to deploy and operate the threat intelligence tools and processes
  • Assist with a variety of security applications and services such as Vulnerability management, SIEM, Firewalls, IDS/IPS, Content Filtering, Anti-Malware, Anti-Virus, Forensic and Data Loss / Leakage tools. The escalation of threats and incidents to management and the development of recommendations based on incident findings
  • Threat hunting, forensics, and incident response is included in daily responsibilities.
  • Monitor and analyze traffic and events/alerts and advise on remediation actions
  • Review and assess impact and remediation actions for incidents escalated by Tier 1
  • Investigate intrusion attempts and perform in-depth analysis of exploits by correlating various sources and determining which system or data set is affected.
  • Follow standard operating procedures for detecting, classifying, and reporting incidents
  • Demonstrate network expertise to support timely and effective decision making of when to declare an incident
  • Conduct proactive threat research
  • Analyze a variety of network and host-based security appliance logs (Firewalls, NIDS, HIDS, Sys Logs, etc.) to determine the correct remediation actions and escalation paths for each incident
  • Independently follow procedures to identify, contain, analyze, document and eradicate malicious activity
  • Document all activities during an incident and provide leadership with status updates during the life cycle of the incident
  • Escalate information regarding intrusion events, security incidents, and other threat indications and warning information to the client
  • Track trends and configure systems as required to reduce false positives from true events.
  • Assist with the development of processes and procedures to improve incident response times, analysis of incident, and overall SOC functions
  • Provide written analysis for monthly reports on an as-needed basis
Required Qualifications:
  • Bachelor’s degree in Information Technology or in a relevant field.
  • 5 years experience working in a SOC environment, incident response, threat hunting, vulnerability management and SIEM.
  • 3 years experience working in a 24x7 global enterprise environment.
  • Understanding of Security principles, techniques and technologies such as SANS Top 20 Critical Security Controls, NIST Cybersecurity Framework, CIS Controls and OWASP Top 10.
  • Understanding of incident handling and forensics, Risk Assessment & Quantification methodologies, and familiarity with automated security monitoring systems and log correlation. Microsoft Windows and Unix Operating Systems basics
  • Proven experience in IT systems design and development of security tools and platforms such as Azure, Rapid 7, QRadar, Sentinel, Microsoft AD/Azure AD, and 365. Experience working with offensive security tools and processes.
  • Possess an enterprise-wide view of security operations with varying degrees of appreciation for strategy, processes and capabilities, enabling technologies, and governance.
  • Understand complex architecture concepts across multiple technologies within systems in a hybrid cloud architecture
  • Experience working in a team-oriented, collaborative environment.
  • Exceptional communication skills and the ability to communicate appropriately at all levels of the organization; this includes written and verbal communications as well as visualizations.
  • Positive approach to customer service with demonstrated ability to handle high pressure support needs in a calm, respectful, and efficient manner.
  • Ability to maintain confidential and personal information
Preferred Qualifications:
A combination of the following
  • CCSK – Certificate of Cloud Security Knowledge
  • AWS Certified Solutions Architect – Associate (T59B3N3CL141QH51)
  • CEH – EC | Council Certified Ethical Hacker (ECC3072461958)
  • ITIL Foundation v4 (GR671013561MO)
  • ITIL Intermediate – IT Service Operation (GR754062762MO)
  • CISC – Certified Information Security Consultant
  • CPFA – Certified Professional Forensics Analyst
  • Microsoft Certified: Azure Security Engineer Associate

#LI-NP2

McCormick & Company is an equal opportunity/affirmative action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion,national origin, disability, protectedveteran status, age, or any other characteristic protected by law.

As a general policy, McCormick does not offer employment visa sponsorships upon hire or in the future.

WHY WORK AT MCCORMICK?

United by flavor. Driven by results.

As a McCormick employee you’ll be empowered to focus on more than your individual responsibilities. You’ll have the opportunity to be part of something bigger than yourself—to have a say in where the company is going and how it’s growing.

Between our passion for flavor, our 130-year history of leadership and integrity, the competitive and comprehensive benefits we offer, and our culture, which is built on respect and opportunities for growth, there are many reasons to join us at McCormick.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Cybersecurity Engineering and Operations Manager (HYBRID)
Sr. Cybersecurity Engineering and Operations Manager (HYBRID)

McCormick & Company, Incorporated • Cockeysville (MD)

Hybrid
USD 150,000 - 210,000
Sr Cybersecurity Manager, Strategy & Programs (REMOTE)
Sr Cybersecurity Manager, Strategy & Programs (REMOTE)

McCormick & Company, Incorporated • Cockeysville (MD)

Hybrid
USD 180,000 - 240,000
Career growth opportunities
Flexibility and Support for Diverse St
Wellbeing programs
IDENTITY & ACCESS MANAGEMENT ENGINEER (Hybrid)
IDENTITY & ACCESS MANAGEMENT ENGINEER (Hybrid)

McCormick & Company, Incorporated • Cockeysville (MD)

Hybrid
USD 110,000 - 150,000
Director, Technology Risk & Digital Enablement
Director, Technology Risk & Digital Enablement

McCormick & Company, Incorporated • Northern (KY)

Hybrid
USD 180,000 - 240,000
401k
Health insurance
Paid time off
Director, Technology Risk & Digital Enablement
Director, Technology Risk & Digital Enablement

McCormick & Company, Incorporated • Cockeysville (MD)

Hybrid
USD 150,000 - 230,000
401k
Health insurance
Paid time off
+2
Senior Process Engineer
Senior Process Engineer

McCormick & Company, Incorporated • Northern (KY)

Hybrid
USD 110,000 - 150,000
401k
Health insurance
Paid time off
+1
Director, ERP Solution Tower Lead
Director, ERP Solution Tower Lead

McCormick & Company, Incorporated • Cockeysville (MD)

Hybrid
USD 180,000 - 240,000
50/50 hybrid program
Tuition assistance
401(k) and profit sharing
Global Sustainability Director, Operations & Value Chain Resilience
Global Sustainability Director, Operations & Value Chain Resilience

McCormick & Company, Incorporated • Cockeysville (MD)

Hybrid
USD 180,000 - 240,000
401k
Health insurance
Paid time off
+2
Director, Americas & Function Operations
Director, Americas & Function Operations

McCormick & Company, Incorporated • Cockeysville (MD)

Hybrid
USD 180,000 - 240,000
401k
Health insurance
Paid time off
+1
FLAVOR MANUFACTURING TECH I
FLAVOR MANUFACTURING TECH I

McCormick & Company, Incorporated • Northern (KY)

Hybrid
USD 55,000 - 75,000
Comprehensive health plans
Paid holidays and vacations
401(k) and profit sharing