Information Security Engineer

4 Hours ago • 5 Years + • $135,000 PA - $155,000 PA

Job Summary

Job Description

This Information Security Engineer role at a commercial bank involves securing networks, systems, and cloud environments, ensuring compliance with standards like GDPR, HIPAA, and PCI DSS. Responsibilities include vulnerability assessments, incident response, SIEM automation, and implementing security best practices across infrastructure and applications. The engineer will collaborate with cross-functional teams, leveraging expertise in cloud security (AWS, M365), scripting, and security frameworks (NIST, ISO 27001). This role is ideal for someone with experience in cyber threats, security technologies, and compliance standards, as well as experience in scripting and cloud security, offering a chance to make a significant impact on the bank's security landscape.
Must have:
  • Experience in Information Security Engineering with security frameworks
  • Proficient in firewall configuration, IDS/IPS, SIEM tools
  • Expertise in patch management, vulnerability assessments, securing systems
  • Experience with securing cloud environments and compliance standards
  • Skilled in scripting for automation and data analysis
Good to have:
  • Familiarity with financial regulations
  • CISSP, CEH, or equivalent certifications

Job Details

Glocomms is partnered with a boutique-style commercial bank, with $182B in assets, seeking an experienced Information Security Engineer with 5+ years of expertise in hands on info sec engineering. This is an exciting opportunity to join a lean security team, where there's exceptional impact potential in our client's the security landscape.

In this role, you will be responsible for securing the network, systems, and cloud environments, ensuring compliance with industry standards (GDPR, HIPAA, PCI DSS), and protecting sensitive financial data. Your responsibilities will include vulnerability assessments, incident response, automating SIEM, and implementing best practices for security across infrastructure and applications. You'll work closely with cross-functional teams, leveraging your expertise in cloud security (AWS, M365), scripting, and security frameworks (NIST, ISO 27001).

Responsibilities

  • Monitor and analyze cyber threats and threat intelligence to proactively mitigate risks.
  • Manage vulnerability assessments, incident response, and threat detection processes.
  • Deploy and maintain security technologies such as SIEM, EDR, SOAR, PIM, and MFA.
  • Automate incident response workflows and improve detection through data correlation and analytics.
  • Enforce identity and access management, including privileged access and multi-factor authentication.
  • Integrate security best practices into IT projects and system development lifecycles.
  • Troubleshoot complex security issues and drive continuous improvement across security operations.
  • Support the execution of the organization's security strategy and long-term roadmap.
  • Collaborate with IT, cross-functional teams, MSPs, and vendors to ensure aligned security efforts.
  • Provide user support and guidance on security controls, policies, and awareness.

Qualifications

  • 5+ years of experience in Information Security Engineering with expertise in security frameworks (NIST, ISO 27001) and internet protocols (HTTP, HTTPS, TLS/SSL, TCP/IP).
  • Proficient in firewall configuration, IDS/IPS, vulnerability scanning, SIEM tools, and network monitoring.
  • Expertise in patch management, vulnerability assessments, securing systems (Windows AD, M365, AWS IAM, Docker/Kubernetes), and event log analysis.
  • Experience with securing cloud environments, DevSecOps practices, and implementing compliance standards (GDPR, HIPAA, PCI DSS).
  • Skilled in scripting (Python, Bash, PowerShell) for automation and data analysis, and securing containerized environments.
  • Strong knowledge of MITRE ATT&CK, CVEs, and security best practices.
  • Experience managing user/device lifecycles, DNS security, and cloud security.
  • Proven ability to lead security projects, work independently, and communicate complex technical concepts to stakeholders.
  • Certifications: CISSP, CEH, or equivalent certifications preferred.
  • Additional: Familiarity with financial regulations (FFIEC, NY DFS 500, GLBA, CCPA), and eligibility to work in the USA without sponsorship.

If you are interested, please apply in directly!

Similar Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Skill Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Jobs in New York, United States

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Category Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

Our client is a global leader in network visibility and cybersecurity solutions, helping enterprises protect their digital ecosystems from disruptions and cyberattacks. With over 40 years of experience, they provide cutting-edge technologies to ensure the resilience of critical systems and applications.

New York, United States (On-Site)

Boston, Massachusetts, United States (On-Site)

Orlando, Florida, United States (Hybrid)

Tampa, Florida, United States (Hybrid)

New York, New York, United States (On-Site)

Atlanta, Georgia, United States (On-Site)

San Francisco, California, United States (On-Site)

Orlando, Florida, United States (Hybrid)

New York, New York, United States (On-Site)

View All Jobs

Get notified when new jobs are added by Glocomms

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug