Turn this role into an interview — a resume and cover letter built around what this employer wants.
Belk, Inc. and Belk eCommerce LLC. seek a Sr Security Engineer to deploy and optimize security tooling, monitor cloud and AI/ML environments, and lead incident response and threat hunting.
You will develop automation for detections and playbooks across SIEM, XDR, and EDR ecosystems, mentoring the security team. The role emphasizes protecting enterprise infrastructure, generative AI pipelines, and ensuring secure agent execution with strong focus on prompt injections and data leakage.
The Sr Security Engineer is responsible for security system deployments, configuration, monitoring, and automation of security tools and processes. The role will also be responsible for security operations, including the protection of cloud infrastructure and AI/ML systems. Provides support to planning and implementing security controls which safeguard and monitor events for information systems, enterprise applications, cloud environments, outsourced services, and data. Provides Tier II support for security related incidents and issues. Lead automation development for detection, incident response playbooks, and tool orchestration across SIEM, XDR, EDR, and other security and compliance tools. Design defensive solutions to secure enterprise generative AI tools, LLM pipelines, MCPs and autonomous AI agents against prompt injections, data leakage, and unauthorized access. Lead incident response, threat hunting, and SOC operational efficiency improvements. Safely deploy AI-powered security tools and agents to streamline threat triage and SOC workflows. Organize, lead, and mentor the security team members.
Position is onsite in Charlotte 3 days a week.
Bachelor’s degree in Computer Science or related field or equivalent combination of industry related professional experience and education 10 – 15 years combined experience working in both IT and Cyber Security. Experience working within the NIST 2.0 CSF and Mitre Att&ck frameworks. Hands-on experience working with diverse security control stacks and tools. 5+ years experience with scripting languages like Python or Powershell. 5+ years experience in writing SIEM queries, parsers and alerts.
Incident Response & Forensics: Mastery of the full IR lifecycle—from containment and eradication to root-cause analysis, digital forensics, and post-incident remediation across enterprise environments.
SIEM & Log Analytics: Hands-on experience architecting, managing, and optimizing SIEM platforms (e.g., Splunk, Microsoft Sentinel, Elastic) to write custom detection rules, parser logic, and correlation queries.
EDR/XDR Engineering: Expertise in deploying, fine-tuning, and managing Endpoint Detection & Response solutions (e.g., CrowdStrike Falcon, SentinelOne, Microsoft Defender) to minimize false positives and maximize coverage.
AI Security & Governance: Hands-on experience evaluating, securing, and monitoring enterprise AI tools, LLM pipelines, and autonomous AI agents against risks like prompt injection, data poisoning, and unauthorized tool execution.
AI-Assisted Operations: Practical skill in integrating AI assistants and agents into Blue Team workflows to accelerate threat hunting, log analysis, and alert triage.
Identity & Access Management (IDAM): Deep knowledge of securing IDAM and PAM ecosystems (e.g., Azure AD/Entra ID, Okta, CyberArk), enforcing Zero Trust principles, RBAC, and conditional access policies.
Security Automation & SOAR: Proficiency in automating manual operational tasks and incident response playbooks using SOAR tools (e.g., Palo Alto Cortex XSOAR, Swimlane) or custom scripting in Python and PowerShell.
Blue Team Leadership: Directing, organizing, and mentoring security operation teams.
Incident Response Lifecycle: Managing containment, eradication, forensics, and post-incident remediation.
SIEM Platform Management: Architecting and tuning platforms like Splunk, Microsoft Sentinel, or Elastic.
EDR/XDR Deployment: Engineering and optimizing agents (CrowdStrike, SentinelOne) to reduce false positives.
AI & LLM Security: Securing enterprise AI systems and pipelines against prompt injections and data leakage.
AI Agent Operations: Governing and monitoring autonomous AI agents and execution permissions.
Proactive Threat Hunting: Hypothesis-driven querying of telemetry to spot undetected adversaries.
Detection-as-Code: Managing detection logic and alert rules using Git and CI/CD pipelines.
MITRE ATT&CK Mapping: Aligning defensive coverage and gap analysis against known adversary TTPs.
Cloud Infrastructure Security: Securing workloads, IAM, and configurations across AWS, Azure, or GCP.
Vulnerability Management: Prioritizing asset exposure and orchestrating risk remediation.
#LI-CM1 #IND3
We set trends through our merchandise and, more importantly, through the way we work. At Belk you will find a positive, inclusive, vibrant and fast-paced environment where you have access to all the tools and resources necessary to be effective in your job. Furthermore, we know access to senior leadership is critical to making company-wide initiatives a reality and getting great ideas to the forefront of our business. Time and time again, our associates are grateful for the opportunities they have to meet with Belk´s senior most leaders. Diversity is about embracing our differences and realizing they are what makes us stronger. We believe in an inclusive environment where everyone feels valued, respected, and welcomed to bring their whole selves to work or to shop. We are on a mission to break down inequality and leverage our influence to make a position impact against racism every day. Above all else, here you’ll find opportunities to make huge impact. It´s the result of dynamic initiatives, financial and structural support, and strong investments in the areas that are taking Belk to new heights.
Belkcareers.com is committed to making the online application experience easy and accessible to individuals with disabilities. We’re constantly making improvements to comply with the "Americans with Disabilities Act" and the Web Content Accessibility Guidelines. If you can’t access information on belkcareers.com due to a disability, you may contact one of our friendly Shared Services representatives at 1-800-588-3700 to help you with the application process.
We are an Equal Opportunity Employer Belk is an equal-opportunity employer committed to providing a workplace free from harassment or discrimination. All employment decisions are to be made without regard to race, color, age, sex, gender identity, sexual orientation, hair style, hair texture, religion, marital status, pregnancy, national origin/ancestry, citizenship, physical/mental disability, genetic information, military/veteran status, or any other basis prohibited by law.