Risk Expert III, Information Security
Summary
An information security role at Walmart in Shanghai focused on running vulnerability management—integrating cloud vulnerabilities into Walmart's VM systems, driving remediation to SLA, and reporting risk posture—plus building and tuning DLP detection logic, policies, and dashboards. Core areas: vulnerability management, DLP, cloud security, and security reporting.
Risk Expert III, Information Security Location: Shanghai
About Team:
At Walmart, we prioritize innovation and data security. Our team is dedicated to maintaining a secure operating environment and preserving the trust of our customers, suppliers, sellers, associates, and stakeholders. We combine a range of services and expertise to prevent fraud, detect threats, and manage digital risk and access. Our focus is on mitigating attack risks, securing cloud transformation, and fostering a culture of security and reliability within our team.
What you'll do:
1. Lead integration of vulnerabilities and misconfigurations from cloud environment to feed into the Walmart Vulnerability Management and Standards Enforcement systems and processes.
2. Develop vulnerability reports and dashboard that demonstrates current security risk posture to stakeholders
3. Manage all the vulnerability remediation to meet SLA requirements and as cybersecurity SME to assist on remediation
4. Respond to critical escalations and Bug Bounty issues promptly.
5. Continually improve vulnerability management process driven by data analysis.
6. Advise and Influence DLP detections and the detection framework
7. Build, tune, and maintain DLP detection logic, classification rules, and protection policies to improve accuracy, reduce false positives, and enhance risk-based alerting.
8. Create and maintain operational dashboards and metrics that measure control effectiveness, alert quality, response times, and risk trends.
What you'll bring:
1. Proven experience in DLP or vulnerability
2. Strong knowledge of infrastructure, application, and servers.
3. Ability to independently drive technical tasks and support broader initiatives.
4. Strong written and verbal communication skills, with the ability to collaborate across teams
Qualifications:
1. Certifications in Security+, Network+, GISF, GSEC, CISSP, CCSP, or GCIH,
2. Bachelor’s degree in information security, Cybersecurity, Computer Science, Information Technology, Engineering, or related area and at least 6 years’ experience of leading/ working on Information Security / Cyber Security Projects
Walmart, Inc. is an Equal Opportunity Employer By Choice. We believe we are best equipped to help our associates, customers and the communities we serve live better when we really know them. That means understanding, respecting and valuing unique styles, experiences, identities, ideas and opinions while being welcoming of all people.
Walmart doesn’t charge any recruitment or similar fee in the recruitment process, including but not limited to interview, offering, and onboarding.