Marmon Holdings Logo

Marmon Holdings

Information Security Specialist

Posted One Month Ago
Be an Early Applicant
In-Office
Carol Stream, IL, USA
80K-120K Annually
Mid level
In-Office
Carol Stream, IL, USA
80K-120K Annually
Mid level
Support and operate security controls across endpoints, cloud, identities, applications, and infrastructure. Monitor and track vulnerabilities, access reviews, and remediation. Collaborate with engineering and product teams on application and cloud security. Maintain evidence, reports, and inventories; assist with security tooling, automation, and continuous improvement to keep controls audit-ready.
The summary above was generated by AI
Marmon Foodservice Technologies, Inc.

As a part of the global industrial organization Marmon Holdings—which is backed by Berkshire Hathaway—you’ll be doing things that matter, leading at every level, and winning a better way. We’re committed to making a positive impact on the world, providing you with diverse learning and working opportunities, and fostering a culture where everyone’s empowered to be their best.

Though you may not know us by name, you’ve most likely enjoyed meals and refreshments supported by our industry-leading brand portfolio. For decades, we’ve designed and manufactured foodservice equipment for some of the world’s biggest, most recognized consumer brands.

We are driven to innovate with a clear purpose in mind: revolutionizing the future of foodservice. Guided by our commitment to Doing Things That Matter, Leading at Every Level, and Winning a Better Way, we focus on delivering meaningful impact for our customers, our communities, and each other.

The Information Security Specialist supports the organization’s security program by helping operate, maintain, and mature security controls across infrastructure, cloud environments, identities, applications, and governance processes. This role works closely with global IT, security, and software engineering teams to ensure security requirements are consistently implemented, monitored, and improved.

The ideal candidate has broad security exposure, strong operational discipline, and an interest in improving how security is embedded into day‑to‑day technology operations and new product development.

Key Responsibilities

Security Operations & Control Execution

  • Support day‑to‑day execution of security controls across endpoints, servers, identities, applications, and cloud platforms

  • Track adherence to security requirements and follow up on gaps with regional teams

  • Maintain accurate records, evidence, and reporting related to security control coverage

  • Ensure security tasks and remediation actions are progressing and documented

Cloud & Infrastructure Security

  • Support security operations within Azure and AWS environments, including visibility into workloads and configurations

  • Assist with monitoring security tooling and baseline controls for cloud-hosted systems

  • Help validate security requirements for new cloud resources and services

  • Identify configuration or control gaps and escalate or coordinate remediation

Vulnerability Management & Risk Handling

  • Assist with vulnerability tracking, triage, and remediation coordination

  • Help ensure systems that cannot meet security standards have documented and approved risk exceptions

  • Maintain inventories of vulnerabilities, exceptions, and associated remediation or compensating controls

  • Support periodic reviews to ensure risk records remain accurate and current

Identity & Access Support

  • Participate in access reviews, entitlement validations, and privilege attestations

  • Track review outcomes and remediation activities

  • Support documentation and evidence related to access management controls

  • Promote least‑privilege and appropriate access practices through consistent execution

Application & Product Security Collaboration

  • Work with software engineers and product teams during design and implementation of new systems

  • Assist with security reviews for applications, SaaS tools, and internal services

  • Help validate security considerations such as authentication, authorization, data protection, and logging

  • Support integration of security requirements into development and deployment workflows

Security Tools, Automation & Process Improvement

  • Assist in operationalizing security tools that are newly implemented or not yet fully adopted

  • Help define and document workflows, procedures, and ownership for security technologies

  • Identify opportunities to improve existing automations or reduce manual effort

  • Contribute ideas and support efforts to modernize and scale security operations

Security Program & Gap Identification

  • Identify gaps, inefficiencies, or inconsistencies across security processes and controls

  • Assist with developing practical, risk‑based plans to address identified gaps

  • Track progress and support implementation of improvement initiatives

  • Help establish metrics and reporting to measure control effectiveness

Required Qualifications

  • 3–6 years of experience in information security, IT operations, or risk-related roles

  • Exposure across multiple security areas (security operations, access management, governance, or risk)

  • Basic understanding of application security concepts and how software is built and deployed

  • Strong organizational, documentation, and follow‑up skills

  • Ability to work effectively with distributed teams across regions

Preferred Qualifications

  • Experience with endpoint security, vulnerability management, or SIEM tooling

  • Familiarity with security frameworks or control-based programs (SOC 2, ISO, NIST, CIS)

  • Experience working alongside software engineers or platform teams

  • Exposure to security automation, scripting, or workflow tools

  • Exposure and understanding of AI and LLM

  • Curiosity and initiative to identify improvements beyond assigned tasks

Core Competencies

  • Operational Excellence: Executes security tasks consistently and accurately

  • Collaboration: Works effectively with IT, engineering, and security stakeholders

  • Risk Awareness: Understands tradeoffs and supports risk‑based decisions

  • Problem Solving: Identifies gaps and contributes to practical solutions

  • Continuous Improvement: Seeks ways to improve processes, tooling, and coverage

What Success Looks Like

  • Security requirements are consistently tracked and followed up across environments

  • Cloud and application security needs are addressed early and clearly

  • Vulnerabilities and exceptions are well‑maintained and audit‑ready

  • Access reviews and security attestations are completed on time

  • Security tools and processes continue to mature and scale

Benefits

We support your well-being with comprehensive and easy-to-use benefits that you’ll be eligible to enroll in on your first day of employment. Here are some of the highlights:
 

  • Medical, Dental, Vision, and Prescription Drug insurance plans

  • Access to a Health Advocate who is an expert in Marmon’s health plan and can help you select the best health benefits for you and your family

  • Tax advantaged spending accounts for health and dependent care expenses

  • Wellness programs and resources including Telehealth, Mental Health, Fitness, and Family Planning

  • Generous paid time off for personal use, holidays, and parental leave

  • Company-sponsored life insurance

  • 401(k) with fully vested company match; Marmon may also make an additional annual discretionary contribution to your account, whether or not you contribute on your own

  • Financial and retirement advising

About Marmon Holdings

Marmon Holdings, Inc., a Berkshire Hathaway company, comprises 11 groups and more than 100 autonomous businesses with total annual revenue of $10 billion. Marmon’s 28,000-plus team members are celebrating the company's 70th anniversary in 2023 and helping write the next chapter of Marmon's story.

Pay Range:

80,000.00 - 120,000.00

We offer a comprehensive benefits package that may include medical, dental, vision, 401k matching, and more!

Following receipt of a conditional offer of employment, candidates will be required to complete additional job-related screening processes as permitted or required by applicable law.

We are an equal opportunity employer, and all applicants will be considered for employment without attention to their membership in any protected class. If you require any reasonable accommodation to complete your application or any part of the recruiting process, please email your request to [email protected], and please be sure to include the title and the location of the position for which you are applying.

HQ

Marmon Holdings Chicago, Illinois, USA Office

Chicago, IL, United States

Marmon Holdings Chicago, Illinois, USA Office

Chicago, IL , United States

Similar Jobs

12 Days Ago
In-Office or Remote
United States
37K-132K Annually
Senior level
37K-132K Annually
Senior level
Agency • Information Technology
Manages enterprise information security governance, risk, and compliance initiatives. Develops security policies and frameworks, leads data classification and threat modeling, conducts risk assessments, oversees vulnerability remediation, evaluates security controls, supports audits, and prepares risk metrics and executive reports. Partners with technical teams to embed security requirements and promotes governance best practices across the organization.
Top Skills: Audit ReadinessCompliance ManagementCybersecurityData ClassificationInformation Security GovernanceRisk AssessmentSecurity ControlsSecurity DashboardsSecurity FrameworksThreat ModelingVulnerability Management
Junior
Consulting
Manages and implements industrial cybersecurity controls and standards within automotive manufacturing facilities. The role coordinates cybersecurity initiatives, supports vulnerability and incident management practices, communicates requirements across plant teams, reports progress to corporate stakeholders, and shares best practices across facilities. Candidates must have manufacturing plant-floor experience with exposure to industrial IT systems and controls, cybersecurity education or certifications, and the ability to work fully onsite with travel and occasional off-shift support.
Top Skills: Industrial Control Systems (Ics)Industrial It SystemsMicrosoft Office Suite
5 Minutes Ago
In-Office or Remote
United States
87K-166K Annually
Expert/Leader
87K-166K Annually
Expert/Leader
Automotive
Leads global employer brand content strategy and recruitment marketing for Europe and Canada. Develops employee stories, talent value propositions, messaging frameworks, career-site content, social media, email, CRM, event materials, and campaigns. Partners with recruiters and regional stakeholders to support talent attraction, analyzes performance data, and recommends improvements to candidate experiences. The role also manages connected content across channels, supports specialized talent communities, and ensures alignment with Ford’s global employer value proposition and brand standards.
Top Skills: CRM

What you need to know about the Chicago Tech Scene

With vibrant neighborhoods, great food and more affordable housing than either coast, Chicago might be the most liveable major tech hub. It is the birthplace of modern commodities and futures trading, a national hub for logistics and commerce, and home to the American Medical Association and the American Bar Association. This diverse blend of industry influences has helped Chicago emerge as a major player in verticals like fintech, biotechnology, legal tech, e-commerce and logistics technology. It’s also a major hiring center for tech companies on both coasts.

Key Facts About Chicago Tech

  • Number of Tech Workers: 245,800; 5.2% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: McDonald’s, John Deere, Boeing, Morningstar
  • Key Industries: Artificial intelligence, biotechnology, fintech, software, logistics technology
  • Funding Landscape: $2.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Pritzker Group Venture Capital, Arch Venture Partners, MATH Venture Partners, Jump Capital, Hyde Park Venture Partners
  • Research Centers and Universities: Northwestern University, University of Chicago, University of Illinois Urbana-Champaign, Illinois Institute of Technology, Argonne National Laboratory, Fermi National Accelerator Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account