Hiring.Camp

Senior Information Security Principal

Pepsi Co

·

Yesterday

Salary
$94k – $156k
Location
Plano, TX, US
Type
Full-time
Department
IT
Seniority
Senior
Experience
6+ years
Education
Bachelor
Closing date
Today
Source
iCIMS

Description

Overview

PepsiCo’s Global Emerging Technologies Security Team is responsible for building and operationalizing security solutions in emerging technology areas like data security, containers, API. Our mission is to effectively and efficiently make security risks visible to the business and actionable by them.

 

Within the Cyber Fusion Center, the Emerging Technologies Security Team is looking for an experienced and highly technical Senior Information Security Principal with 6 to 7 years of expertise in Vulnerability Management, Data Security, Software Development, Security Automation, and Enterprise Security Operations. This role demands advanced coding skills (Python, PowerShell, Bash, or equivalent) to develop automation frameworks that integrates security tools, and optimizes vulnerability remediation workflows.

 

As a seasoned professional, you will lead strategic security initiatives for building and operationalizing security solutions in emerging technology areas like data security, containers, API, AI/ML. You will design scalable security architectures and solutions, review and suggest COTS products, and mentor junior analysts.

Responsibilities

  • Develop, optimize, and scale automation scripts (Python, PowerShell, Bash) to improve vulnerability detection, tracking, and remediation.
  • Design custom API integrations between data security tools, ServiceNow VR & CC, and ITSM platforms to automate security workflows.
  • Implement security automation playbooks that reduce manual efforts and accelerate response times.
  • Build security solutions leveraging COTS tools to streamline vulnerability scanning and compliance reporting.
  • Implement automated risk-based vulnerability prioritization models, leveraging AI/ML-driven insights where applicable.
  • Leverage and optimize the ServiceNow VR module for scalable vulnerability tracking, exception management, and automated ticketing.
  • Work closely with IT and business stakeholders to define remediation SLAs, risk thresholds, and compliance requirements.
  • Lead the security assessment of data security environments, ensuring compliance with industry standards and best practices.
  • Automate the ingestion of data security findings into ServiceNow VR for enhanced tracking and resolution.
  • Ensure that security data is accurate, actionable, and seamlessly integrated with ITSM and GRC platforms.
  • Apply expert-level knowledge of networking and security protocols (e.g., TCP/IP, HTTP/S, SSH, FTP, DNS, SSL/TLS, VPNs, RDP).
  • Develop tools to generate automated compliance reports, track remediation progress, and reduce audit preparation time.
  • Stay ahead of emerging threats, regulatory changes, and vulnerability trends, continuously refining security automation strategies.
  • Conduct technical design reviews, evaluate security tools, and lead architectural discussions to improve tool effectiveness.
  • Provide technical leadership in vulnerability management, container/API security, and security automation.
  • Define and track KPIs to gauge security effectiveness and direct continuous improvement efforts.
  • Mentor junior and mid-level security analysts, sharing best practices in automation, API development, and risk prioritization.
  • Develop comprehensive security documentation, playbooks, and process improvements.

Accountabilities

  • Execute on projects, objectives, and deliverables in alignments with team vision, mission, and goals. 
  • Routinely develop and update security documentation, processes, and technologies to adapt to emerging threat landscape. 
  • Develop automation to scale global resilient security capabilities.
  • Collaborate with partner teams, service owners, and senior leadership to influence, prioritize, and drive the resolution of discovered security findings.
  • Participate in security reviews, audits, on-site engagements, and support incidents after-hours when required.

Compensation and Benefits:

  • The expected compensation range for this position is between $93,500 - $156,450.
  • Location, confirmed job-related skills, experience, and education will be considered in setting actual starting salary. Your recruiter can share more about the specific salary range during the hiring process.
  • Bonus based on performance and eligibility target payout is 10% of annual salary paid out annually.
  • Paid time off subject to eligibility, including paid parental leave, vacation, sick, and bereavement.
  • In addition to salary, PepsiCo offers a comprehensive benefits package to support our employees and their families, subject to elections and eligibility: Medical, Dental, Vision, Disability, Health, and Dependent Care Reimbursement Accounts, Employee Assistance Program (EAP), Insurance (Accident, Group Legal, Life), Defined Contribution Retirement Plan.

Qualifications

Education & Years of experience

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field (or equivalent hands-on experience).
  • 6 to 7 years of experience in cybersecurity, vulnerability management, software development and security automation.

Mandatory Technical Skills

  • Strong programming skills in Python, PowerShell, Bash, or equivalent languages for security automation.
  • Deep expertise in data security and vulnerability management.
  • Proficiency in Infrastructure-as-Code security (Terraform, CloudFormation), container security (Kubernetes, Docker) and serverless environment security.
  • Knowledge in multiple areas of data security and operations: Data Loss Prevention (DLP), data minimization, data discovery, cloud data protection, Privileged Access Management (PAM), data privacy, data labeling, data classification and rights management, data encryption, and data access governance.
  • Excellent technical cybersecurity and engineering/development skills, with experience in using APIs to integrate disparate security technologies and security platforms (ex: ProofPoint, Cyera, ServiceNow, ITSM).
  • Familiarity or hands-on experience with: Networking configurations, routing, firewalling; DevOps ecosystem: CICD tools, orchestration tools; Cloud computing environments (AWS, Azure, and Google Compute)
  • Proven ability to lead security automation initiatives and mentor junior analysts.
  • Strong analytical, troubleshooting, and problem-solving skills.

Non-technical Skills

  • A proactive and positive team player who is impact-focused, driven, curious, analytical, and a self-starter.
  • High level of integrity and ethical standards.
  • Excellent problem-solving skills, with a focus on long-term system sustainability.
  • Ability to establish trust relationships and influence others to positively impact the security posture and the business.
  • Solid customer orientation with excellent oral and written communication skills in English.
  • Operates extremely well under pressure, balancing multiple priorities in a fast-paced environment.

Differentiating Behaviors:

  • Focuses on scalable security solutions rather than individual tool deployments.
  • Uses automation and data-driven decision-making to improve security tooling.
  • Proactively eliminates security bottlenecks in development workflows.
  • Ensures security signals are high-fidelity, prioritized, and developer friendly.
  • Ability to weigh the relative costs/benefits/trade-offs of potential actions and identify the best resolution.
  • Demonstrates leadership by driving security innovation, defining best practices, and influencing security culture.

>

Our Company will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of the Fair Credit Reporting Act, and all other applicable laws, including but not limited to, San Francisco Police Code Sections 4901-4919, commonly referred to as the San Francisco Fair Chance Ordinance; and Chapter XVII, Article 9 of the Los Angeles Municipal Code, commonly referred to as the Fair Chance Initiative for Hiring Ordinance. All qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, or disability status. PepsiCo is an Equal Opportunity Employer: Female / Minority / Disability / Protected Veteran / Sexual Orientation / Gender Identity / Age If you'd like more information about your EEO rights as an applicant under the law, please download the available EEO is the Law & EEO is the Law Supplement documents. View PepsiCo EEO Policy. Please view our Pay Transparency Statement

Skills

PythonAWSAzureDockerKubernetesTerraformServiceNowCybersecurityTCP/IPDevOpsComplianceLoss Prevention

Similar Jobs

30

Senior Information Security Engineer

ASRC Federal · Reston, VA, USA · Remote

Yesterday

Senior Information Security Principal

Pepsi Co · Plano, TX, US

Yesterday

(USA) Senior Network Engineer, Information Security

Walmart · (USA) ISD Office - DGTC AR BENTONVILLE Home Office, United States of America

Yesterday

Senior Information Security Analyst

Wf · 102462-AZ-B Building, Chandler Campus, United States of America · Hybrid

Yesterday

Senior Business Information Security Officer- Managing Director

Statestreet · Hyderabad, India

Yesterday

Senior Information Systems Security Officer (III)

Leidos · 3325 Fort George G. Meade MD, United States of America

Yesterday

Senior Manager, Information Security

Tonixpharmaceuticals · Frederick, MD +2

3 days ago

Senior Information Security Engineer

KPA · Lafayette, CO · Remote

3 days ago

Senior Information Technology Security Analyst

Upenn · 3401 Walnut Street, United States of America · Hybrid

4 days ago

Senior Information Security Engineer - AWS Cloud Security

Wells Fargo · 112646-OH-Easton, Columbus, United States of America +2

4 days ago

Senior Information Technology Security Analyst

Upenn · 3401 Walnut Street, United States of America · Hybrid

4 days ago

Senior Information Security Analyst (Fraud Incident Response)

Td · 310/320 Front Street West Corporate, Toronto, Ontario, Canada · Onsite

4 days ago

Senior Information Security Administrator

Public Storage · Frisco, TX, United States

4 days ago

[Job-31160] Senior Information Security Analyst, Brazil

Ciandt · Brazil · Remote

4 days ago

Senior Project Manager, Information Security

American Tower Global · Boston, MA, United States, US · Hybrid

4 days ago

Senior Conformity Assessment Program Specialist - Information Security Management System

UL Solutions · Basingstoke, Hampshire, United Kingdom, GB

4 days ago

Senior Information Systems Security Manager (ISSM)

KBR Careers · USA, Washington, 110 Luke Ave SW, Suite 300, Building 56B1, District of Columbia, United States of America +1

5 days ago

Senior Information Security Analyst

Thesilverlining · West Bend, WI, US · Hybrid

5 days ago

Information Security Sr. Principal (Azure Security Senior Engineer)

GDIT · USA DC Washington - Other (DCC135), United States of America

5 days ago

Senior Information Security Analyst (TS/SCI)

Deltasands · Los Angeles Air Force Base, CA · Onsite

5 days ago

Senior Information Security Analyst (TS/SCI)

Deltasands · Boulder, CO · Onsite

5 days ago

Senior Information Security Analyst

Golden 1 Talent Acquisition Team · 8945 Cal Center Dr, Sacramento, CA 95826, USA · Remote

5 days ago

Sr Information Security Officer - ETS

DLL Group · Eindhoven, Netherlands, NL · Onsite

5 days ago

Senior Information Systems Security Engineer (ISSE)

Anavationllc · Reston, VA · Onsite

6 days ago

Senior Associate, Information Security Analyst

The Future of Health Starts with You · Irving, TX, USA - 6555 North State Highway 161 (P001), United States of America · Hybrid

6 days ago

Operational Resilience Senior Advisor (Information Security Senior Advisor)

Elevancehealth · IN-INDIANAPOLIS, 220 VIRGINIA AVE, United States of America · Remote, Hybrid, Onsite

6 days ago

Senior Information Systems Security Engineer (Government)

Att · USA:VA:Reston / Isaac Newton Sq S - Co:11425 Isaac Newton Sq S, United States of America · Remote

6 days ago

Senior Information Security Analyst (Vulnerability Governance)

Td · 310/320 Front Street West Corporate, Toronto, Ontario, Canada · Hybrid

6 days ago

Senior Information System Security Engineer (ISSE) II – Tucson, AZ

RTX · US-AZ-TUCSON-M05 ~ 1151 E Hermans Rd ~ BLDG M05 (External Site), United States of America · Onsite

6 days ago

Senior Information Systems Security Officer (ISSO) II - Tucson, AZ

RTX · US-AZ-TUCSON-M05 ~ 1151 E Hermans Rd ~ BLDG M05 (External Site), United States of America · Onsite

6 days ago
Senior Information Security Principal at Pepsi Co • $94k – $156k | Hiring.Camp