Information Security Engineer

Wells Fargo BankCharlotte, NC
26dHybrid

About The Position

About this role: Wells Fargo is seeking an Information Security Engineer in Technology as part of Cybersecurity. Learn more about the career areas and lines of business at wellsfargojobs.com. Wells Fargo is seeking a Senior Information Security Engineer to support the Cyber Threat Fusion Center. In this role, you will: Provide information security consultation to improve awareness and compliance with Enterprise Information Security policy, processes and standards Perform remediation of security assessment review issues, complex ad hoc data, and reporting to support information security risk management Provide guidance and direction in reviewing assessment findings and mitigating controls to optimize information security Identify and direct information asset portfolio reconciliations and certifications Provide advanced data aggregation and data of information security risk exposure Develop and deliver Information Security Education Awareness and Training in accordance with the Enterprise Information Security Program standards Review draft and proposed control standards for business impact and recommend modifications or clarifications as required Conduct security control testing and consultation with stakeholders Evaluate and interpret internal and Enterprise Information Security policies, processes and standards, and provide recommendations to improve them Collaborate and consult with peers, colleagues, and managers to resolve issues and achieve goals Interact with internal customers Serve as a mentor to less experienced staff

Requirements

  • 2+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
  • 1+ years of Incident Response Protocols and Tools experience
  • 1+ years experience with Security Information and Event Management (SIEM) and Security Orchestration, Automation and Response (SOAR) products(s)
  • 1+ years of Azure, Office 365 or Cloud technologies
  • Experience in Information Security Engineering, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education

Nice To Haves

  • 2+ years experience with Endpoint Detection and Response(EDR)product(s)
  • Knowledge and understanding of security analytics including: incident response and a digital forensics discipline
  • Knowledge and understanding of data security controls including malware protection, firewalls, intrusion detection systems, content filtering, Internet proxies, encryption controls, endpoint detection response, and log management solutions
  • Knowledge and understanding of banking or financial services industry
  • Experience with host and/or network log analysis as applied to incident response / threat hunting
  • Knowledge of offensive security, with the ability to think like an adversary when hunting and responding to incidents
  • Knowledge and understanding of security analytics including: incident response and Identity Access Management
  • Certifications in one or more of the following: Global Information Assurance Certification (GIAC), Offensive Security Certified Professional (OSCP), Offensive Security Wireless Professional (OSWP), Offensive Security Certified Expert (OSCE), Offensive Security Exploitation Expert (OSEE), or Offensive Security Web Expert (OSWE)
  • Cloud Certifications such as GCP, AWS
  • Experience in a 24 x 7 x 365 global security operations center environment
  • Ability to work nights, weekends, and/or holidays as needed or scheduled
  • Flexibility to work in a 24/7 environment, including weekends and holidays

Responsibilities

  • Provide information security consultation to improve awareness and compliance with Enterprise Information Security policy, processes and standards
  • Perform remediation of security assessment review issues, complex ad hoc data, and reporting to support information security risk management
  • Provide guidance and direction in reviewing assessment findings and mitigating controls to optimize information security
  • Identify and direct information asset portfolio reconciliations and certifications
  • Provide advanced data aggregation and data of information security risk exposure
  • Develop and deliver Information Security Education Awareness and Training in accordance with the Enterprise Information Security Program standards
  • Review draft and proposed control standards for business impact and recommend modifications or clarifications as required
  • Conduct security control testing and consultation with stakeholders
  • Evaluate and interpret internal and Enterprise Information Security policies, processes and standards, and provide recommendations to improve them
  • Collaborate and consult with peers, colleagues, and managers to resolve issues and achieve goals
  • Interact with internal customers
  • Serve as a mentor to less experienced staff

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Education Level

No Education Listed

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service