Innovate in Charlotte
Thank you for dedicating your time and talent to Lowe’s.  We want to give you more opportunities to learn and grow, so if you find a position you’re interested in below, we encourage you to apply!
The primary purpose of this role is to lead the implementation and ongoing delivery of information security tools and processes. This includes responsibility for creating, executing, and improving processes and procedures with limited direct guidance from more senior level security associates.
This role solves complex problems while creating and optimizing processes and often takes a lead role in implementing new services and technologies.
This role requires a strong understanding of most tools and processes supported by the team, including many of the key integration points with other parts of technology, works mostly independently, and provides coaching and direction to more junior level associates.
When focused on Identity & Access Management (IAM), this role delivers timely, accurate, and controlled system access for the company's global workforce. This includes creating and maintaining processes, tools, controls, and governance mechanisms such as roles, reports, metrics, and issue resolution services.
When focused on Security Architecture, this role is dedicated to the evaluation and enhancement of robust security solutions and frameworks. This includes developing and maintaining comprehensive security architectures, ensuring alignment with industry standards and best practices.Â
When focused on Security Threat & Vulnerability, this role executes processes focused on vulnerability identification or remediation. This includes information security and risk activities such as oversight of vulnerability assessments and remediation programs serving both internal and external stakeholders.
When focused on Security Governance, Risk, and Compliance (GRC), this role completes activities that help drive awareness and adherence to information security policies and standards.
Key Responsibilities
- Support the planning, coordination, execution, and evaluation of Disaster Recovery (DR) exercises across applications, infrastructure, platforms, and critical technology services, including documenting results, identifying recovery gaps, and tracking remediation activities.
- Partner with application, infrastructure, platform, and operations teams to develop and maintain actionable recovery plans and runbooks that document recovery procedures, dependencies, recovery requirements, roles, and validation criteria.
- Support resilience assurance and validation activities by evaluating demonstrated recovery capabilities against established recovery objectives, resiliency standards, and documented business and technology requirements.
- Build and maintain technology dependency intelligence across applications, infrastructure, platforms, data, and third-party services to improve understanding of upstream and downstream relationships that may affect recovery.
- Support the development and adoption of automation for dependency discovery and mapping, recovery planning, testing, evidence collection, measurement, and reporting to improve the scale and efficiency of the DR program.
- Analyze incidents, operational events, recovery exercises, and other sources of reliability intelligence to identify resilience gaps, recurring failure patterns, and opportunities for targeted recovery validation or remediation.
- Collect, analyze, and report recovery and resilience metrics, including recovery exercise performance, demonstrated recovery times, identified gaps, remediation progress, and other indicators of technology recovery readiness.
- Partner with technology teams to validate that recovery strategies and documented capabilities remain aligned with changes to application architecture, infrastructure, dependencies, and operational environments.
- Support continuous improvement of DR and IT Operational Resilience processes, procedures, tooling, testing methodologies, and recovery standards based on exercise results, operational events, technology changes, and lessons learned.
- Develop working knowledge across applications, infrastructure, cloud, networking, platforms, and other technology domains to understand how interconnected technology services support critical business capabilities and influence end-to-end recoverability.
Required Qualifications
- Bachelor’s degree in computer science, computer information systems (CIS), engineering, business administration, cybersecurity, or related field or equivalent years of experience in lieu of education requirement, if applicable.
- Experience supporting technology operations, production environments, incident management, reliability engineering, application support, infrastructure operations, or related technology functions.
- Experience working across application, infrastructure, platform, cloud, networking, or other technology teams to understand system dependencies and operational requirements.
- Experience using data, metrics, tooling, or automation to support technology operations, testing, reporting, dependency analysis, or continuous improvement activities.
- 2 years of experience in an IT domain (infrastructure, information security, other technology operations or management).
Preferred Qualifications
- Experience coordinating or participating in technology recovery exercises, operational testing, incident response, problem management, or other technology readiness and validation activities.
- Experience analyzing technology incidents, operational issues, or test results to identify gaps, document findings, and support corrective or remediation activities.
- Experience developing or maintaining technical documentation such as recovery plans, operational procedures, runbooks, dependency maps, test plans, or similar technology artifacts.
- IT experience in the retail industry.
- Experience conducting information security risk assessments of vendors and vendor software (specific to Security Governance, Risk & Compliance role).
- CISSP Certified Information Systems Security ProfessionalÂ
About Lowe’s
Lowe’s Companies, Inc. (NYSE: LOW) is a FORTUNE® 100 home improvement company with total fiscal 2025 sales of more than $86 billion. Lowe’s employs approximately 300,000 associates and operates over 1,750 home improvement stores, 540 branches and 120 distribution centers. Based in Mooresville, N.C., Lowe’s supports the communities it serves through programs focused on creating safe, affordable housing, improving community spaces, helping to develop the next generation of skilled trade experts and providing disaster relief to communities in need. For more information, visit Lowes.com. Â
Lowe’s is an equal opportunity employer and administers all personnel practices without regard to race, color, religious creed, sex, gender, age, ancestry, national origin, mental or physical disability or medical condition, sexual orientation, gender identity or expression, marital status, military or veteran status, genetic information, or any other category protected under federal, state, or local law.
Learn more about this Employer on their Career Site
