Do your Best Work in Mooresville
This position is based at our headquarters in Mooresville, North Carolina. Our corporate office is a space where you can collaborate and do your best work. Take a walk, grab a bite (or a cup of coffee), work out or get a check-up – we invest in you so you can find your inspiration.
Your Impact
The primary purpose of this role is to lead the implementation and ongoing delivery of information security tools and processes. This includes responsibility for creating, executing, and improving processes and procedures with limited direct guidance from more senior-level security associates. This role solves complex problems while creating and optimizing processes and often takes a lead role in implementing new services and technologies. This role requires a strong understanding of most tools and processes supported by the team, including many of the key integration points with other parts of technology, works mostly independently, and provides coaching and direction to more junior-level associates.
As a Senior Analyst of Offensive Security, you will conduct advanced penetration tests and red team assessments across our applications, networks, and systems. You will collaborate with cross-functional teams to analyze security vulnerabilities and provide actionable recommendations for remediation.
This role solves complex problems while creating and optimizing processes and often takes a lead role in implementing new services and technologies.
What You Will Do
Minimum Qualifications
Bachelor’s degree in computer science, computer information systems, engineering, business administration, cybersecurity, or related field, or equivalent years of experience in lieu of education requirement, if applicable4 years of experience in information security2–4 years of experience developing malware techniques and designing preventative measures.Preferred Skills/Education
IT experience in the retail industryHands-on experience on GRC applications & TPRM tools (e.g., Archer, LogicGate, SAP GRC, OneTrust, ProcessUnity, ServiceNow, BitSight, Prevalent, Black Kite, etc.)Experience with vulnerability identification & penetration testing toolsExperience with vulnerability management in public/hybrid cloud environments.Experience with IAM technology implementation and operations (e.g., CA, SailPoint, OKTA, SSO, MFA, IGA, Microsoft AD) (specific to IAM role)Experience developing cybersecurity or information assurance policies, standards, awareness training, or equivalent issuances (specific to Security GRC role)Payment Card Industry Internal Security Assessor (PCI ISA)Certified in Risk and Information Systems Control (CRISC)Offensive Security Certified Professional (OSCP)GIAC Penetration Tester Certification (GPEN)Practical Network Penetration Tester (PNPT)eLearnSecurity Certified Professional Penetration Tester (eCPPT)Certified Third-Party Risk Professional (CTPRP)Certified Third Party Risk Assessor (CTPRA)CompTIA PenTest+ CertificationOr other relevant information security certificationsWhere You’ll Be
Associates are required to relocate to the Charlotte region to foster collaboration and facilitate improved testing and support.Lowe’s supports a Flex Office concept where in-person work is required three days per week at the Charlotte Tech HubMost business meetings are planned around the Eastern time zone.About Lowe’s
Lowe’s Companies, Inc. (NYSE: LOW) is a FORTUNE® 50 home improvement company serving approximately 16 million customer transactions a week in the United States. With total fiscal year 2024 sales of more than $83 billion, Lowe’s operates over 1,700 home improvement stores and employs approximately 300,000 associates. Based in Mooresville, N.C., Lowe’s supports the communities it serves through programs focused on creating safe, affordable housing, improving community spaces, helping to develop the next generation of skilled trade experts, and providing disaster relief to communities in need. For more information, visit www.lowes.com
Lowe’s is an equal opportunity employer and administers all personnel practices without regard to race, color, religious creed, sex, gender, age, ancestry, national origin, mental or physical disability or medical condition, sexual orientation, gender identity or expression, marital status, military or veteran status, genetic information, or any other category protected under federal, state, or local law.