McDonald’s growth strategy, Accelerating the Arches, encompasses all aspects of our business as the leading global omni-channel restaurant brand. As the consumer landscape shifts we are using our competitive advantages to further strengthen our brand. One of our core growth strategies is to Double Down on the 3Ds (Delivery, Digital and Drive Thru). McDonald’s will accelerate technology innovation so 65M+ customers a day will experience a fast, easy experience, whether at one of our 25,000 and growing Drive thrus, through McDelivery, dine-in or takeaway.
McDonald’s Global Technology is here to power tomorrow’s feel-good moments.That’s why you’ll find us at the forefront of transformative technology, exploring new and innovative ways to serve our millions of customers and spread happiness one delicious Hot Fudge Sundae-dipped fry at a time. Using AI, robotics and emerging tech, we’re digitizing the Golden Arches. Combine that with our unparalleled global scale, and we’re reshaping all areas of the business, industry and every community that is home to a McDonald’s restaurant. We face complex tech challenges every day. But that’s where our diverse and talented teams come in. They’re made up of the best and brightest from all over the globe, and they thrive in the space where feel-good meets fast-paced.
Check out the McDonald’s Global Technology Technical Blog to learn how technology and our global team are directly enabling the Accelerating the Arches strategy.
Job Description
As a Cyber Defense Analyst within the Security Operations Center (SOC), your role primarily involves using defensive measures and information gathered from various sources to identify, analyze, and report cybersecurity events, protecting McDonald's information assets. You will support the Incident Response process by assisting in crisis situations and responding to immediate and potential cybersecurity threats. This role focuses on security operations, event monitoring, and incident response, demonstrating your strong security skills. The role works directly within Global Cyber Security (GCS), the organization responsible for our Cybersecurity Operations & Incident Response program and critical services, ensuring our leadership makes informed risk-based decisions.
You will collaborate with the Incident Response and Cyber Operations teams, contributing to long-term projects that enhance security. This position offers the opportunity to engage in essential work that safeguards our organization's cybersecurity. We are moving fast and are adding to our best-in-class team, and joining McDonald's means thinking big every day and preparing for a career that will impact the world. We are customer-obsessed and committed to being leaders in our industry.
Responsibilities:
- Continuously monitor and analyze system activity using security operations tools to identify malicious activity.
- Characterize and analyze network traffic and logs to identify potential threats to McDonald’s assets.
- Analyze network alerts from various sources within the enterprise to determine their root cause.
- Provide timely detection, identification, and analysis of possible attacks and intrusions, differentiating them from benign activities.
- Collaborate with the Incident Response (L3) team, market stakeholders, and SOC to validate security events and provide tuning input.
- Perform event correlation to gain situational awareness and assess the effectiveness of observed attacks.
- Monitor external data sources to stay informed about cyber defense threat conditions.
- Offer cybersecurity recommendations to leadership based on significant threats and vulnerabilities.
- Collaborate with stakeholders to resolve computer security incidents and ensure vulnerability compliance.
Benefits eligible: Yes
Bonus eligible: Yes
Long term incentive eligible: Yes
The expected salary range for this role is $98,140– $125,130.00 / per year
The above represents the expected salary range for this job requisition. Ultimately, in determining your pay, we may also consider your experience, and other job-related factors.
Qualifications
- Formal education or certifications in Cyber Security, Security Event/Incident Response
- 1 – 3 years of experience working in a security operations or incident response role
The ideal candidate for this role should possess a foundational understanding of cybersecurity practices, cloud technologies, detection and response frameworks, and incident handling procedures (containment, eradication, recovery, and lessons learned). They should be familiar with adhering to established incident response playbooks and practices, have an attention to detail, and be willing to work collaboratively across global cross-functional teams. The candidate must have:
- Basic knowledge of computer networking concepts, protocols, and network security methodologies.
- Entry-level ability to analyze cyber threats and vulnerabilities.
- Awareness of authentication, authorization, and access control methods.
- Basic skills in utilizing intrusion detection methodologies and techniques for detecting host and network-based intrusions.
- Recognition of common system and application security threats and vulnerabilities.
- Understanding of network attacks and their relationship to threats and vulnerabilities.
- Familiarity with common adversarial tactics, techniques, and procedures.
- Basic knowledge of Windows, MacOS, and/or Linux operating systems.
Desired Skills:
- Professional certification such as GSEC, SSCP, Security+, CEH.
- Experience working from Incident Response Playbooks.
- Experience working with case management tools, SOAR, email security solutions, SIEM, and EDR technologies.
- Experience developing automation through scripting languages such as Python.
Additional Information
Benefits eligible: This position offers health and welfare benefits, a 401(k) plan, adoption assistance program, educational assistance program, flexible ways of working, and time off policies (including sick leave, parental leave, and vacation/PTO). Eligibility requirements apply to some benefits and may depend on job classification and length of employment.
Bonus eligible: This position is eligible for a bonus, calculated based on individual and company performance.
Long term Incentive eligible: This position is eligible for stock or other equity grants pursuant to McDonald’s long-term incentive plan.
McDonald’s is an equal opportunity employer committed to the diversity of our workforce. We promote an inclusive work environment that creates feel-good moments for everyone. McDonald’s provides reasonable accommodations to qualified individuals with disabilities as part of the application or hiring process or to perform the essential functions of their job. If you need assistance accessing or reading this job posting or otherwise feel you need an accommodation during the application or hiring process, please contact mcdhrbenefits@us.mcd.com. Reasonable accommodations will be determined on a case-by-case basis.
McDonald’s provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to sex, sex stereotyping, pregnancy (including pregnancy, childbirth, and medical conditions related to pregnancy, childbirth, or breastfeeding), race, color, religion, ancestry or national origin, age, disability status, medical condition, marital status, sexual orientation, gender, gender identity, gender expression, transgender status, protected military or veteran status, citizenship status, genetic information, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.
Nothing in this job posting or description should be construed as an offer or guarantee of employment.