Today

Sr. SecOps Security Engineer


You must sign in to apply for this position. Sign In


Job Description

Competitive Base Salary – Experience Required

****EXCELLENT MEDICAL, DENTAL, VISION BENEFITS: 75% to 90% of premiums covered by PFFCU*****

****401K – PFFCU contributes automatic 6% regardless of employee contribution after 1 year*****

Location: 3325 Street Road, Bensalem, PA 19020

********Great benefits, paid time off, and more! Become a part of the team today!******

We are seeking a highly skilled and experienced Senior Security Engineer to join our dynamic Information Security team. Reporting to the Manager SecOps, the ideal candidate will possess extensive knowledge and hands-on experience with various network security technologies, including SPLUNK, firewalls, web filtering, zero trust network segmentation, intrusion detection/protection systems, data loss prevention, vulnerability scanners, zero-day threat protection, endpoint technologies, Security Information Event Management, identity and access management (IAM) solutions.

As a Sr Security Engineer you will be responsible for designing, implementing, and maintaining robust security architectures to protect our organization’s network infrastructure from cyber threats. You will work closely with all Information Systems department staff to assess and reduce information security risk and ensure compliance with established financial institution regulations.

JOB RESPONSIBILITIES:

  • Design, implement, and manage SPLUNK SIEM solutions for centralized security monitoring, advanced threat detection, and comprehensive incident response, leveraging extensive experience to optimize and enhance security operation
  • Manage and monitor intrusion detection and prevention systems, responding to suspicious activities
  • Deploy and maintain network-based DLP solutions and develop policies to ensure data privacy
  • Conduct regular vulnerability assessments with tools like Nessus and work on remediation
  • Deploy zero-day threat protection and develop response strategies
  • Manage endpoint protection technologies to guard against malware
  • Implement identity and access management solutions like Okta and RSA
  • Architect and configure secure network solutions, including FW, NGFW, Web Content Filtering
  • Maintain security architecture documentation and generate regular security posture reports
  • Collaborate with IT and compliance teams, providing guidance on security best practices

TECHNICAL SKILLS:

In depth working knowledge of a variety of network perimeter security technologies including:

  • SIEM solution (SPLUNK)
  • Web Content Filtering (ForcePoint)
  • Intrusion Detection/ Protection Systems
  • DLP – Network Based Data Loss Prevention
  • Vulnerability Scanners
  • Zero Day platform
  • Endpoint technologies
  • IAM solutions
  • Firewalls & NGFW
  • NetFlow Visibility

MINIMUM REQUIREMENTS:

  • Bachelor’s degree in Computer Science, Information Technology, or a related field. Advanced degree or certifications are the preferred
  • 5 plus years of hands-on information security engineering and administration experience
  • Demonstrated technical knowledge of perimeter security devices and configuration
  • Proficiency in virtualized environments, including substantial experience with VMware and other virtualization technologies
  • Ability to assess problems and situations possesses analytic ability and good judgment
  • Demonstrate effective business communication and technical writing skills
  • In-depth knowledge of financial institution regulations, including NCUA (National Credit Union Administration), GLBA (Gramm-Leach-Bliley Act), and PCI DSS (Payment Card Industry Data Security Standard)

SKILLS/KNOWLEDGE/ABILITIES REQUIRED:

  • In depth working knowledge of a variety of network perimeter security technologies including:
    • Web Filter (ForcePoint)
    • Security Information and Event Management (SIEM) (SPLUNK)
    • Intrusion Detection/ Protection Systems
    • DLP – Network Based Data Loss Prevention
    • Vulnerability Scanners (Nessus)
    • Zero Day technologies (FireEye/Trellix)
    • Email security technologies
    • Cisco Secure Workload (CSW)
    • Cisco Identity Services Engine (ISE)
    • XDR solutions (Cisco AMP, Trellix, MS Defender)
  • FireEye (NX and CMS)
  • MFA (Okta and RSA)
  • StealthWatch
  • Working knowledge of Security Risk Assessment Methodology, Vulnerability Analysis and strong knowledge of SIEM technology (SPLUNK)
  • Monitor and maintain network security appliances to ensure the integrity of all systems from both internal and external entities.
  • Accurately document current and future InfoSec systems configuration and changes following PFFCU’s change control guidelines.
  • Tier 2 problem escalation contact including rotating afterhours support
  • Develop a working knowledge of the business side of PFFCU and be able to effectively interface with other IT teams using the technology.
  • Strong project skills required, specifically the ability to maintain focus and complete projects with multi-month timeframes
  • Worked with third party service provider
  • Ability to handle multiple projects at the same time
  • Ability to think logically and visualize abstract concepts
  • Ability to clearly communicate technical information to individuals at all levels of the organization and with vendors
  • Ability to prioritize multiple tasks
  • Ability to work varying hours, sometimes includes evening and weekend work
  • Ability to participate in an on-call rotation
  • Core hours are Monday-Friday 8:00 AM – 4:00 PM

#PFFCUBO

You must sign in to apply for this position. Sign In

Recent Job Listings


Upgrade Your Security Resume

No more guessing what to put on your resume. With SGO’s resume builder, simply input your information. Our tool makes job applications seamless.