Experience Inc. Jobs

Job Information

NCR VOYIX Information Security Engineer II in BELGRADE, Serbia

About NCR VOYIX

NCR VOYIX Corporation (NYSE: VYX) is a leading global provider of digital commerce solutions for the retail, restaurant and banking industries. NCR VOYIX is headquartered in Atlanta, Georgia, with approximately 16,000 employees in 35 countries across the globe. For nearly 140 years, we have been the global leader in consumer transaction technologies, turning everyday consumer interactions into meaningful moments. Today, NCR VOYIX transforms the stores, restaurants and digital banking experiences with cloud-based, platform-led SaaS and services capabilities.

Not only are we the leader in the market segments we serve and the technology we deliver, but we create exceptional consumer experiences in partnership with the world’s leading retailers, restaurants and financial institutions. We leverage our expertise, R&D capabilities and unique platform to help navigate, simplify and run our customers’ technology systems.

Our customers are at the center of everything we do. Our mission is to enable stores, restaurants and financial institutions to exceed their goals – from customer satisfaction to revenue growth, to operational excellence, to reduced costs and profit growth. Our solutions empower our customers to succeed in today’s competitive landscape.

Our unique perspective brings innovative, industry-leading tech to all the moving parts of business across industries. NCR VOYIX has earned the trust of businesses large and small — from the best-known brands around the world to your local favorite around the corner.

About NCR VOYIX Corporation

NCR VOYIX Corporation (NYSE: VYX) is a leading global provider of digital commerce solutions for the retail, restaurant and digital banking industries. NCR VOYIX transforms retail stores, restaurant systems and digital banking experiences with comprehensive, platform-led SaaS and services capabilities. NCR VOYIX is headquartered in Atlanta, Georgia, with approximately 15,000 employees in 35 countries across the globe.

Information Security Engineer II

This role is part of the NCR VOYIX Digital First Banking

Information Security team, responsible for the development, implementation, and maintenance of NCR VOYIX’s Digital First Banking information security program. The primary objective of this program is to safeguard the confidentiality, integrity, and availability of information resources. Key functions include architecture and design of information security controls, policy and standards development, security awareness training, risk management, assessment and testing, monitoring and metrics, incident management, threat and vulnerability management, and fraud prevention. This specific role focuses on vulnerability management and patch compliance reporting, analyzing vulnerabilities, tracking patch compliance for virtual machines (VMs) and containers, and providing actionable reports to enhance the organization's security posture and mitigate risks effectively.

The Information Security Engineer II will be responsible for both vulnerability management and patch management compliance / reporting. The role involves identifying, assessing, prioritizing, and planning the remediation of vulnerabilities in systems, networks, and applications. The engineer will monitor, track, and report on the status of vulnerabilities and ensure compliance with security standards and regulations. Additionally, the engineer will focus on reporting patch compliance percentages for virtual machines (VMs) and containers, analyzing data to identify trends and gaps, and collaborating with IT and operations teams to ensure accurate and timely reporting. The ideal candidate will have strong analytical skills, experience with vulnerability management tools, and the ability to communicate effectively with stakeholders to enhance the organization's security posture.

Key Responsibilities

• Identify Vulnerabilities: Conduct regular scans and assessments to identify vulnerabilities in systems, networks, and applications.

• Risk Assessment: Evaluate the severity and potential impact of identified vulnerabilities on the organization's operations.

• Prioritize Vulnerabilities: Prioritize vulnerabilities based on risk assessment, considering factors such as exploitability, potential impact, and exposure.

• Remediation Planning: Develop and implement remediation plans to address identified vulnerabilities, including patching, configuration changes, or other mitigations.

• Patch Management: Monitor and identify relevant patches released by software vendors, assess their applicability, and ensure they are tested and validated. Track and report patch compliance percentages for virtual machines (VMs) and containers.

• Collaboration: Work closely with IT, development, and operations teams to ensure vulnerabilities and patches are addressed in a timely and effective manner. • Monitor and Track: Continuously monitor the status of vulnerabilities and track remediation efforts, including patch deployment, to ensure timely resolution.

• Data Analysis: Analyze patch compliance data to identify trends, gaps, and areas for improvement.

• Reporting: Generate detailed reports on vulnerability status, patch compliance, trends, and remediation progress for management and stakeholders.

• Compliance: Ensure compliance with relevant security standards, regulations, and best practices.

• Incident Response: Assist in the investigation and response to security incidents related to vulnerabilities and patches.

• Tool Management: Maintain and configure vulnerability and patch management tools and technologies.

• Education and Training: Provide guidance and training to staff on vulnerability and patch management practices and security awareness.

• Policy Development: Develop and maintain policies and procedures related to vulnerability and patch management.

• Continuous Improvement: Stay updated on the latest vulnerabilities, threats, and security trends to continuously improve vulnerability and patch management practices. • Stakeholder Communication: Communicate vulnerability and patch compliance status and any associated risks to relevant stakeholders, ensuring transparency and accountability.

Skills and Qualifications

• Experience: Minimum of 3 years of work experience in cybersecurity.

• Vulnerability Management: Proficiency in identifying, assessing, and prioritizing vulnerabilities.

• Patch Management Reporting: Experience in tracking and reporting patch compliance percentages for virtual machines (VMs) and containers.

• Tool Proficiency: Experience with vulnerability management tools and CNAPP tools such as Orca or Wiz.

• Risk Assessment: Strong skills in evaluating the severity and potential impact of vulnerabilities.

• Data Analysis: Ability to analyze patch compliance data and identify trends, gaps, and areas for improvement.

• Compliance: Knowledge of security standards, regulations, and best practices. • Communication: Excellent communication skills for effectively reporting to and collaborating with stakeholders.

• Continuous Learning: Interest in and knowledge of the latest trends in threats and exploits.

• Problem-Solving: Strong analytical and problem-solving skills.

• Collaboration: Ability to work closely with IT, development, and operations teams.

• Policy Development: Experience in developing and maintaining security

polices and procedures.

EEO Statement

Integrated into our shared values is NCR VOYIX's commitment to diversity.

NCR VOYIX is committed to being a globally inclusive company where all people are treated fairly, recognized for their individuality, promoted based on performance and encouraged to strive to reach their full potential.

We believe in understanding and respecting differences among all people.

This concept encompasses but is not limited to human differences with regard to race, ethnicity, religion, gender, culture and physical ability.

Every individual at NCR VOYIX has an ongoing responsibility to respect and support a globally diverse environment.

Offers of employment are conditional upon passage of screening criteria applicable to the job

EEO Statement

Integrated into our shared values is NCR Voyix’s commitment to diversity and equal employment opportunity. All qualified applicants will receive consideration for employment without regard to sex, age, race, color, creed, religion, national origin, disability, sexual orientation, gender identity, veteran status, military service, genetic information, or any other characteristic or conduct protected by law. NCR Voyix is committed to being a globally inclusive company where all people are treated fairly, recognized for their individuality, promoted based on performance and encouraged to strive to reach their full potential. We believe in understanding and respecting differences among all people. Every individual at NCR Voyix has an ongoing responsibility to respect and support a globally diverse environment.

Statement to Third Party Agencies To ALL recruitment agencies: NCR Voyix only accepts resumes from agencies on the preferred supplier list. Please do not forward resumes to our applicant tracking system, NCR Voyix employees, or any NCR Voyix facility. NCR Voyix is not responsible for any fees or charges associated with unsolicited resumes

“When applying for a job, please make sure to only open emails that you will receive during your application process that come from a @ncrvoyix.com email domain.”

Help us run the world's top brands.

At NCR Voyix (http://www.ncr.com/) , we specialize in turning routine transactions into meaningful connections. With a rich history (http://www.ncr.com/about/history) of innovation, we've been at the forefront of problem-solving through technology. Operating globally in over 30 countries, we lead in Retail, Restaurant, Digital banking, and Payments. Our solutions optimize banking operations, streamline restaurant services, enhance retail interactions, and foster trust through secure payment systems.

We take pride in our strong culture (http://www.ncr.com/about) and a history of providing robust career paths. Come work for a leading technology company where you can grow your career. Join us and be part of revolutionizing transactions across these pivotal industries.

DirectEmployers