Senior Information Security Engineer Cyber Threat Hunting
Company: Wells Fargo
Location: Georgetown
Posted on: June 22, 2022
Job Description:
About this role:Wells Fargo is seeking a Senior Information
Security Engineer...In this role, you will:
- Lead or participate in computer security incident response
activities for moderately complex events
- Conduct technical investigation of security related incidents
and post incident digital forensics to identify causes and
recommend future mitigation strategies
- Provide security consulting on medium projects for internal
clients to ensure conformity with corporate information, security
policy, and standards
- Design, document, test, maintain, and provide issue resolution
recommendations for moderately complex security solutions related
to networking, cryptography, cloud, authentication and directory
services, email, internet, applications, and endpoint security
- Review and correlate security logs
- Utilize subject matter knowledge in industry leading security
solutions and best practices to implement one or more components of
information security such as availability, integrity,
confidentiality, risk management, threat identification, modeling,
monitoring, incident response, access management, and business
continuity
- Identify security vulnerabilities and issues, perform risk
assessments, and evaluate remediation alternatives
- Collaborate and consult with peers, colleagues and managers to
resolve issues and achieve goalsRequired Qualifications, US:
- 4+ years of Information Security Engineering experience, or
equivalent demonstrated through one or a combination of the
following: work experience, training, military experience,
education
- 4+ years of Incident Response Protocols and Information
Security Industry Experience
- 4+ years of Security Information and Event Management
(SIEM/SIM/SEM) experience
- 4+ years of experience with network security, endpoint
security, or security threat vectors
- 4+ years of Incident Management System experienceDesired
Qualifications:
- Knowledge and understanding of malware reverse engineering
including: code or behavior analysis for endpoints and the
network
- Provides situational awareness based on team authored threat
reports
- Ability to hunt for IOCs based on attack surface and implement
for security monitoring
- Develop monitoring dashboards based on thresholds or signatures
for security alerting/automated case creation
- Ability to execute in a fast paced, high demand, environment
while balancing multiple priorities
- Experience working in a large enterprise environment Knowledge
and understanding of banking or financial services industry
- Hands-on experience with information security tools such as an
enterprise SIEM solution, IDS/IPS, endpoint security solutions,
email/web security gateways, and other security
detection/mitigation devices
- Experience with host and/or network log analysis as applied to
threat hunting practices
- Knowledge of offensive security, with the ability to think like
an adversary when hunting and responding to incidents
- Strong ability to identify anomalous behavior on endpoint
devices and/or network communications
- Strong investigative mindset with an attention to detail
- Demonstrate the ability to provide written and verbal
communications to management to address real-time issues and
incidents, including writing formal incident reports
- Advanced problem solving skills, ability to develop effective
long-term solutions to complex problems
- Certifications in one or more of the following: Certified
Information Systems Security Professional (CISSP), GIAC Certified
Incident Handler (GCIH), GIAC Reverse Engineering Malware (GREM),
GIAC Certified Forensic Analyst (GCFA), GIAC Network Forensics
Analyst (GNFA), Offensive Security (OSCP/OSCE/etc), or other
relevant certifications.
- Experience with full packet capture solutions and inspection
@RWF22 Job posting locations:
- This position has potential to be 100% remotePay
Range$84,000.00 - $149,400.00 AnnualBenefits
- Information about Wells Fargo's employee benefits We Value
Diversity At Wells Fargo, we believe in diversity, equity and
inclusion in the workplace; accordingly, we welcome applications
for employment from all qualified candidates, regardless of race,
color, gender, national origin, religion, age, sexual orientation,
gender identity, gender expression, genetic information,
individuals with disabilities, pregnancy, marital status, status as
a protected veteran or any other status protected by applicable
law. Employees support our focus on building strong customer
relationships balanced with a strong risk mitigating and
compliance-driven culture which firmly establishes those
disciplines as critical to the success of our customers and
company. They are accountable for execution of all applicable risk
programs (Credit, Market, Financial Crimes, Operational, Regulatory
Compliance), which includes effectively following and adhering to
applicable Wells Fargo policies and procedures, appropriately
fulfilling risk and compliance obligations, timely and effective
escalation and remediation of issues, and making sound risk
decisions. There is emphasis on proactive monitoring, governance,
risk identification and escalation, as well as making sound risk
decisions commensurate with the business unit's risk appetite and
all risk and compliance program requirements. Candidates applying
to job openings posted in US: All qualified applicants will receive
consideration for employment without regard to race, color,
religion, sex, sexual orientation, gender identity, national
origin, disability, or status as a protected veteran.
Keywords: Wells Fargo, Georgetown , Senior Information Security Engineer Cyber Threat Hunting, Engineering , Georgetown, Texas
Didn't find what you're looking for? Search again!
Loading more jobs...