Information Security Engineer

New Hampshire Mutual BancorpLaconia, NH
2h$76,000 - $105,000

About The Position

Under the direction of the SVP of Information Technology and in accordance with established policies and procedures, the Operational Security Engineer is responsible for protecting the confidentiality, integrity, and availability of the Bank’s information systems through day‑to‑day operational security practices. This role focuses on security operations, threat detection and response, access control, infrastructure security, and audit readiness across network, server, cloud, and endpoint environments. The incumbent works closely with infrastructure, networking, and information security teams to ensure security controls are implemented, monitored, tested, and continuously improved in alignment with regulatory expectations and industry best practices for financial institutions.

Requirements

  • Five to ten years of progressive experience in information security, network security, or IT operations, preferably within a regulated or financial services environment.
  • Hands‑on experience with: Network security (firewalls, VPNs, routing, switching, VLANs) Windows Server, Active Directory, and access control administration Security monitoring, log analysis, vulnerability scanning, and incident response Virtualized environments (VMware or similar)
  • Experience communicating security risks and incidents to both technical and non‑technical audiences.
  • Experience working in audit‑driven, deadline‑oriented environments.
  • Strong understanding of operational security principles and regulatory expectations for banking environments.
  • Ability to analyze complex security events and develop practical remediation strategies.
  • Excellent documentation, organization, and prioritization skills.
  • Strong verbal and written communication skills.
  • Ability to work independently while collaborating effectively with cross‑functional teams.

Nice To Haves

  • Experience with vendor coordination and third‑party security reviews preferred.
  • Any combination of relevant certifications such as: CCNA, CCNP, or CCSP CISSP or SSCP CompTIA Security+ VMware or Microsoft security‑related certifications

Responsibilities

  • Model behaviors consistent with the Bank’s A+ Merits to foster a culture of accountability, integrity, and security awareness.
  • Operate and maintain security controls across network, server, endpoint, and cloud environments, ensuring systems remain in a secure and auditable state.
  • Monitor, analyze, investigate, and respond to security alerts, threats, and incidents, including malware, unauthorized access, and anomalous activity.
  • Perform end‑user, system, and network forensic investigations as required and document findings clearly for management and auditors.
  • Administer and review user access controls, privileged access, and security configurations to ensure least‑privilege and regulatory compliance.
  • Conduct routine security monitoring activities, including log reviews, vulnerability scans, penetration testing coordination, and configuration reviews.
  • Work with internal teams and vendors to manage patches, updates, remediation efforts, and security‑related changes within defined timelines.
  • Maintain awareness of emerging threats, vulnerabilities, and attack trends impacting the financial services industry and proactively recommend mitigations.
  • Provide timely communication, escalation, and reporting of security events, risks, and remediation status to IT leadership.
  • Adhere to all Bank policies, regulatory requirements, and security standards applicable to the role.
  • Monitor security tools and platforms, focusing on security patching and configuration of endpoint systems.
  • Review logs and alerts from network, server, application, and endpoint systems to identify potential threats or policy violations.
  • Investigate and respond to security incidents, coordinating containment, remediation, and recovery activities with IT and business partners.
  • Support disaster recovery and business continuity efforts by ensuring secure replication, backups, and recovery controls are functioning as designed.
  • Maintain and support secure network infrastructure, including LAN, WAN, VPN, wireless, and telecommunications systems.
  • Assist in the design, implementation, and enforcement of security policies, standards, and procedures related to operational security.
  • Perform routine and ad‑hoc access reviews, system hardening, and configuration validation across platforms.
  • Prepare security reports, metrics, and summaries for leadership, auditors, and regulators as required.
  • Provide advanced technical support during security‑related incidents, outages, or crisis situations.
  • Collaborate with IT teams to securely implement upgrades, replacements, and new technologies.
  • Satisfactorily complete required compliance training and maintain technical knowledge through continuing education.
  • Perform additional duties as assigned in support of Bank security operations.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service