Kraft Heinz, The Company

As one of the world’s largest food and beverage companies, we are proud to spark joy around mealtimes with a global portfolio of more than 200 brands. Some are iconic master brands like Heinz, Kraft and Planters. Others are fast growing new sensations that defy status quo like DEVOUR and Primal Kitchen. No matter the brand, we are united under one vision To Be the Best Food Company, Growing a Better World. Bringing this vision to life are our 36,000+ teammates around the world, making food people love.

Together, we help provide meals to those in need through our global partnership and commitment with Rise Against Hunger. And we also stand committed to sustainability, and the health of our planet and its people.

Every day, we are transforming the food industry with bold thinking and unprecedented results. If you’re passionate like us -- and ready to create the future, build on a storied legacy, and participate as a conscientious global citizen -- there’s one thing to do join us.

Our Culture of Ownership, Meritocracy and Collaboration

We're not afraid to think differently. Embrace new ideas. Dream big. It all comes down to the way we empower our people to own their work. It’s true Our employees are our competitive advantage.

As part of the Kraft Heinz family you’re supported to grow and achieve. You’re recognized and rewarded for outstanding performance at every level. You’re given the opportunity to leave your mark and build legacies. But you won’t do it alone. This is where our values and teamwork thrives and collaborative spirit fuels every day.

General information

All posting locations: Chicago, Illinois, United States of America

Job Function: 04 - IT

Department: 04 - 06 - Security & Compliance

Date Published: 10-Feb-2021

Job Type: Regular

Description & Requirements

Senior Manager- Infrastructure Security and Data Protection
The Senior Manager for Infrastructure Security and Data Protection will focus on security and governance around data center- network infrastructure and IT supply chain risk at KraftHeinz. This role will be responsible for the development- execution- and governance of security programs around disaster recovery- business continuity- configuration management- network security- and critical vendors in the IT supply chain. In addition- this role will work with cross functional teams to introduce and advocate for adoption of these security programs through global initiatives. We are looking for someone with a passion for building IT resiliency and governance through technology with a foundation of people and process   

Primary Responsibilities

  • Secure design- development- protection of our networks- compute- storage- servers- endpoints- mobile devices- and managing the solutions to secure them
  • Develop and manage the disaster recovery and business continuity modernization roadmap to achieve a global- holistic DR/BCP playbook
  • IT configuration management transformation – identify and implement best practices for asset tracking and ongoing maintenance and governance
  • Align and coordinate information security plans with the executive management team- needed stakeholders- analyze relevant feedback- and incorporate this information into IT network security solutions
  • Achieve alignment throughout IT to ensure technology risks are visible to the business and included in the overall risk rating for site and/or critical business processes
  • Conduct third party risk assessments and internal project assessments to assess the level of security and privacy risk to the organization and impact on critical business processes. Develop- document and track risk remediation plans and gain appropriate business alignment with the approach to mitigate identified risks
  • Support SASE and zero trust initiatives
  • Coordinate- schedule- and lead the annual disaster recovery exercise
  • Perform supply chain risk assessments
  • Responsible for continuous review of infrastructure security configurations against set standards and working with key stakeholders to revert to known approved state


  • Bachelor’s degree and 5+ years of relevant information security
  • Experience executing a disaster recovery drill is preferable- or coordinating global- large-scale IT ops activities involving many stakeholders
  • Knowledge of or experience implementing IT configuration management governance and best practices
  • Experience writing standard operating procedures- system requirements- and other technical documents
  • Experience with security practices such as security incident response and risk management
  • Ability to apply network security architecture concepts including topology- protocols- components- and principles (e.g.- application of defense-in-depth)
  • Knowledge of or experience in third-party/vendor risk management programs and processes

Equal Opportunity Employer–minorities/females/veterans/individuals with disabilities/sexual orientation/gender identity