Senior Security Engineer

Bankwell Financial Group•New Canaan, CT
•Hybrid

About The Position

The Senior Security Engineer is responsible for the design, implementation, administration, and support of the Bank's cybersecurity infrastructure and network security architecture. This hands-on engineering role serves as a technical lead in securing critical business systems, maintaining perimeter defenses, supporting vulnerability management activities, and ensuring the reliability and effectiveness of enterprise security controls. The successful candidate will possess extensive experience with Next Generation Firewalls (NGFWs), network security engineering, security monitoring technologies, vulnerability management platforms, and secure network architecture. The Senior Security Engineer will collaborate closely with Information Technology, Risk Management, and business stakeholders to support regulatory compliance, operational resiliency, and cybersecurity program objectives. This is a hybrid position requiring onsite presence four (4) days per week at Bankwell's New Canaan headquarters, with one (1) remote workday per week, subject to business needs.

Requirements

  • Bachelor's Degree in Information Security, Cybersecurity, Computer Science, Information Technology, Network Engineering, or related field.
  • Equivalent combination of education and relevant experience may be considered.
  • Minimum five (5) years of information security and network security engineering experience.
  • Minimum three (3) years of hands-on administration of enterprise-class firewall technologies.
  • Experience implementing and supporting cybersecurity technologies in complex enterprise environments.
  • Demonstrated experience with network troubleshooting and security infrastructure management.
  • Palo Alto and Fortinet Networks Next Generation Firewalls
  • Firewall Management Platform
  • VPN Technologies (IPSec and SSL VPN)
  • Network Security Architecture
  • Intrusion Prevention Systems (IPS)
  • Network Segmentation
  • Security Policy Administration
  • Vulnerability Management Platforms
  • Tenable Security Solutions
  • Cisco Routing and Switching
  • TCP/IP Networking
  • DNS, DHCP, and Routing Protocols
  • Security Event Monitoring

Nice To Haves

  • CISSP (Certified Information Systems Security Professional)
  • Security+
  • GIAC Security Certifications
  • Tenable Certifications
  • Cloud Security Certifications (Azure or AWS)
  • Financial services or banking industry experience.
  • Security Operations Center (SOC) experience.
  • Exposure management and attack surface management programs.
  • Security automation and orchestration technologies.
  • Cloud security architecture and implementation.

Responsibilities

  • Design, implement, maintain, and optimize enterprise security solutions and network security controls.
  • Develop secure network architectures supporting business and regulatory requirements.
  • Lead implementation of cybersecurity technologies and participate in infrastructure modernization initiatives.
  • Evaluate emerging technologies and recommend security solutions to mitigate evolving threats.
  • Maintain technical standards, diagrams, procedures, and security documentation.
  • Administer security policy and troubleshoot Next Generation Firewalls.
  • Manage security policies, rule reviews, VPN connectivity, and threat prevention services.
  • Configure and support next-gen firewall centralized management environments.
  • Plan and execute firewall migrations, upgrades, and cutover activities.
  • Monitor firewall performance and optimize security rulebases to ensure operational efficiency.
  • Support security incident investigation, containment, remediation, and recovery activities.
  • Assist with threat detection, monitoring, and event analysis across security platforms.
  • Participate in incident response activities and cybersecurity exercises.
  • Perform root cause analysis and recommend corrective actions for security incidents.
  • Administer and support Tenable and related vulnerability management platforms.
  • Conduct vulnerability assessments and assist with remediation planning.
  • Track remediation efforts and validate corrective actions.
  • Support external attack surface management and exposure reduction initiatives.
  • Identify and communicate technical risks to management and stakeholders.
  • Support secure remote access technologies and network connectivity solutions.
  • Collaborate with Infrastructure teams on network-related projects and enhancements.
  • Support cybersecurity regulatory compliance requirements, including FFIEC, GLBA, NIST Cybersecurity Framework, and applicable banking regulations.
  • Participate in audits, examinations, penetration testing activities, and security reviews.
  • Assist in the development and maintenance of security standards, procedures, and technical controls.
  • Provide technical expertise during risk assessments and security reviews.
  • Adhere to Change Management processes and procedures.
  • Create, update, and maintain technical documentation and operational procedures.
  • Document activities, changes, incidents, and configurations within approved ticketing systems.
  • Participate in after-hours maintenance activities and incident response efforts, as necessary.

Benefits

  • Medical, dental, and vision coverage
  • Employer-paid life and disability insurance
  • HSA option
  • Employee Assistance Program (EAP)
  • Telehealth and wellness resources
  • Supplemental insurance options
  • Pet insurance and legal plan benefits
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service