IT Security - Sr. Analyst

CKE Restaurants, Inc.

Franklin (TN)

On-site

USD 85,000 - 110,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

CKE Restaurants, Inc. is looking for a Sr. Analyst - IT Security to design, implement, and support enterprise security technologies. This role focuses on engineering security platforms and ensuring compliance within hybrid environments.

The ideal candidate has over 5 years of experience in cybersecurity and holds relevant certifications. Responsibilities include integrating security tools and conducting risk assessments, making it essential for candidates to possess strong technical skills and the ability to communicate complex risks effectively.

Qualifications

  • 5+ years of hands-on experience in cybersecurity engineering or infrastructure security roles.
  • Preferred certifications: CISSP, OSCP, GIAC or equivalent.
  • Deep technical knowledge of network protocols, firewalls, proxies, IDS/IPS.

Responsibilities

  • Design, deploy, and manage security solutions for hybrid environments.
  • Integrate security tooling into cloud and on-prem environments.
  • Conduct risk assessments on business applications and track remediation.

Skills

Cybersecurity engineering
Cloud platforms
Scripting skills (Python, PowerShell)
Incident response
Security monitoring
Compliance frameworks

Education

Bachelor’s degree in Computer Science or related field

Tools

SIEM solutions (Elastic, Splunk)
Vulnerability scanning tools
EDR tools

Job description

Position Summary

The Sr. Analyst - IT Security designs, implements, and supports enterprise security technologies and processes that protect information assets in hybrid (cloud + on-premises) environments. Primary duties include engineering and hardening security platforms, integrating security controls into CI/CD pipelines, automating detection and response workflows, conducting risk and vulnerability assessments, and serving as a technical lead during cybersecurity incidents. The role collaborates with infrastructure, DevOps, application, and operations teams to ensure systems are securely configured, monitored, and compliant with applicable frameworks and business requirements.

Essential Functions

May perform any or all of the following duties:

  • Design, deploy, and manage security solutions (firewalls, Cloudflare WAF/bot mitigation, SIEM, EDR/AV, IDS/IPS, DLP, vulnerability‑management platforms).
  • Harden Linux (Ubuntu), Windows, network, and cloud services in alignment with CIS, NIST, and vendor best practices.
  • Integrate security tooling into cloud (AWS/Azure/GCP) and on‑prem environments, ensuring continuous logging and monitoring.
  • Develop scripts to automate security tasks, orchestration workflows, and reporting.
  • Build automated detection and response playbooks within SOAR/SIEM or equivalent platforms.
  • Maintain high‑fidelity alerts, dashboards, and security metrics in SIEM and related logging platforms.
  • Monitor Cloudflare traffic for DDoS, bot, and application‑layer attacks, tuning rules and rate‑limiting policies as needed.
  • Gather and disseminate threat‑intelligence indicators to stakeholders.
  • Serve as a key member of the Cybersecurity Incident Response Team (CIRT/IRT), leading forensic investigations, root‑cause analysis, containment, and recovery.
  • Optimize SIEM use‑cases and maintain runbooks for both automated and manual response procedures.
  • Participate in a rotating on‑call schedule for after‑hours security events.
  • Conduct secure source‑code reviews and perform SAST, DAST, and software‑composition analysis for new and existing applications.
  • Integrate security checks into CI/CD pipelines; enforce secure configuration in infrastructure‑as‑code and deployment workflows.
  • Provide secure‑coding guidance to development and digital‑integration teams.
  • Perform risk assessments on business applications, cloud resources, and data‑center systems, document findings and track remediation.
  • Engineer and document controls that satisfy PCI‑DSS, SOX, NIST, GDPR, and related requirements.
  • Create and maintain key cybersecurity metrics and compliance dashboards.
  • Contribute to security‑architecture decisions for network, endpoint, and cloud solutions.
  • Evaluate emerging security technologies and recommend adoption or configuration changes based on threat landscape and business needs.
  • Act as a subject‑matter expert (SME) for security best practices across infrastructure, DevOps, and application teams.
  • Partner with stakeholders to design secure solutions and support vulnerability remediation initiatives.
  • Maintain current knowledge of evolving threats, tools, and mitigation strategies.
  • Produce executive‑level security reports and assist with other cybersecurity tasks as assigned.
Position Qualifications/Core Competencies
  • Bachelor’s degree in Computer Science, Information Security, Engineering, or related field (or equivalent experience).
  • 5+ years of hands‑on experience in cybersecurity engineering or infrastructure security roles.
  • Preferred certifications: CISSP, OSCP, GIAC (GSEC, GCIA, GCIH), or equivalent.
  • Deep technical knowledge of: Network protocols, firewalls, proxies, IDS/IPS.
  • Cloud platforms (e.g., AWS, Azure, GCP) and securing cloud‑native services.
  • Endpoint protection and EDR tools.
  • Security monitoring and SIEM solutions (e.g., Elastic, Splunk, Sentinel).
  • Vulnerability scanning tools (e.g., Tenable, Burp Suite).
  • Identity and access management (IAM), MFA, and SSO.
  • Strong scripting or automation skills (e.g., Python, PowerShell, Bash).
  • Knowledge of secure software development and DevSecOps practices is a plus.
  • Experience engineering controls for compliance with security standards and frameworks (PCI, NIST, GDPR, CCPA).
  • Excellent communication skills and ability to translate technical risk into business impact.
Work Environment

Restaurant Support Center that is a fast‑paced setting with high volume of activity and a deadline‑driven environment.

Physical Demands
  • Sitting for extended periods of time, using telephone, typing and/or operating a computer and/or mouse.
  • Travel as needed: approximately five (5)%.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

Hiring Our Heroes • Arlington (VA)

On-site
USD 120,000 - 150,000
Senior Security Engineer
Senior Security Engineer

Zermount, Inc. • United States Virgin Islands

On-site
USD 100,000 - 150,000
Senior Security Engineer
Senior Security Engineer

Zermount, Inc. • United States

On-site
USD 120,000 - 150,000
Information Security Engineer
Information Security Engineer

eTrepid • Mechanicsville (MD)

On-site
USD 90,000 - 130,000
Security Operations Engineer
Security Operations Engineer

Reserv • Atlanta (GA)

Hybrid
USD 80,000 - 100,000
Generous health-insurance package
401(k) retirement plan with employer matching
Competitive PTO policy
+1
Sr. Application Engineer, Cyber Security
Sr. Application Engineer, Cyber Security

inmar • Winston-Salem (NC)

On-site
USD 120,000 - 180,000
Director of Cyber Security
Director of Cyber Security

The Security Executive Council • Kansas City (MO)

On-site
USD 180,000 - 240,000
Unlimited PTO
401(k) match (4%)
Health, dental, & vision insurance
+4
Security Engineer
Security Engineer

RouteOne • Farmington Hills (MI)

On-site
USD 85,000 - 115,000
Engineer, Cyber Security
Engineer, Cyber Security

Memorial Physician Practices • Brentwood (TN)

Hybrid
USD 80,000 - 110,000
Security Analyst
Security Analyst

Indigo Beam LLC • St. Louis (MO)

On-site
USD 75,000 - 100,000