Vice President, Application Cyber Security Specialist
Iselin, NJ jobs
Job information:
Functional title - Application Security Specialist
Department - IT Security
Corporate level - Vice President
Report to - Director, Application Security
Expected full-time salary range between $ 140,000- $180,000 + variable compensation + 401(k) match + benefits.
What you will be doing:
Perform Application Security scans (e.g. DAST and SCA) on applications and APIs to identify security vulnerabilities and weaknesses,
Triage security findings and collaborate with development teams to prioritize and remediate identified vulnerabilities.
Drive threat modelling as a standard part of the SDLC, and develop and maintain threat models for critical applications, identifying potential security risks and proposing mitigations.
Drive the Security Champions program, and define and promote secure coding practices, patterns, and standards across development teams.
Conduct security reviews and provide guidance on security requirements for new features and projects.
Assist in the analysis, selection and rollout of new application security tools, processes, and standards.
Stay up to date with the latest security threats, vulnerabilities, and industry best practices.
What we're looking for:
Proven experience in application security with a focus on application security testing and vulnerability management.
Hands-on experience with Application Security tools.
Strong understanding of common application vulnerabilities (e.g., OWASP Top 10) and mitigation techniques.
Experience with threat modelling methodologies and tools.
Proficiency in at least one programming language (e.g., Java, Python, JavaScript).
Excellent communication and collaboration skills, with the ability to work effectively in cross functional teams.
Strong understanding of risk management.
Professional qualifications / certifications
Degree in a technology discipline (Computer Science, Information Management, Computer Engineering, Cybersecurity or equivalent).
Relevant security certifications (e.g. CISSP, CEH, CSSLP) or equivalent is preferred.
Lead Information Security Architect
Chicago, IL jobs
In this role hybrid role, you will act as a senior technical advisor to the organization partnering with cross-functional teams to define information security requirements for enterprise information technology systems and internally developed applications. Proactively define security requirements for assigned applications, whether purchased or developed in-house.
Responsibilities
Analyze various technology environments such as on-prem, cloud, SaaS to detect critical security deficiencies and recommend solutions for improvement. Advise various teams such as Information Security and Information Technology as well as collaborate cross-functionally to develop solutions that ensure compliance with security requirements, best practices, applicable state and federal laws, company procedures, and policies.
Develop an implementation plan for enterprise security architecture based on business requirements and varying strategies for project-driven or product-driven delivery teams. Advise various teams such as Information Security and Information Technology teams as well as collaborate cross-functionally to implement solutions.
Conduct detailed threat modeling and security testing of enterprise systems and their interactions to resolve problems cost effectively and enable business objectives.
Ensure secure development lifecycle of applications including design, implementation, testing and maintenance of simple to highly complex computer programs and subsystems. Conduct secure code review to ensure compliance with security requirements, best practices, applicable state and federal laws, company procedures, and policies.
Education:
Bachelors Degree - Computer Science or Related - Minimum
Graduate Degree - Computer Science or Related - Preferred
Years of Experience:
5 Years - Information Technology or Related - Minimum
5 Years - Information Security, Application Security, or Related - Minimum
In Lieu of Education:
8 Years - Information Security or Related
License/Certifications/Training:
CISSP - Preferred
One or more Azure certifications: AZ-500, AZ-305 - Preferred
Compensation & Benefits:
Typical hiring range: $148,800 - $215,800 Annually. Actual compensation will be determined using factors such as experience, skills & knowledge.
Additional Compensation: Annual performance bonus
Benefits: Alliant provides a benefits package including health care, vision, dental, and 401k with employer match.
Additional Benefits:
Work from home up to 3 days a week
Paid parental leave
Employee discount programs
Time off including paid personal and sick days
11 paid holidays
Education reimbursement
*Note that eligibility and cost of benefits can vary depending on the number of regularly scheduled hours, and job status such as regular full-time, regular part-time, or temporary employment.
Adhere to and ensure compliance of all business transactions with policy and process of the Bank Secrecy Act. Ensures compliance with all applicable state and federal laws, company procedures and policies. Maintains integrity and ethics in all actions and conversations with or regarding credit union members and their accounts; complies with Privacy Act directives.
The responsibilities listed do not contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this position. Duties, responsibilities and activities may change at any time with or without notice.
Auto-ApplySr Principal AI Security Architect
Chicago, IL jobs
Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889.
Northern Trust is proud to provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by remaining true to our enduring principles of service, expertise, and integrity. With more than 130 years of financial experience and over 22,000 partners, we serve the world's most sophisticated clients using leading technology and exceptional service.
As artificial intelligence transforms the financial services sector, the need for robust and forward-looking security architecture has never been more critical. We are seeking a Principal AI Security Architect to lead the secure design, integration, and governance of AI systems across the enterprise.
This role is responsible for defining AI security strategies that span internal LLM deployments, Microsoft Copilot, and managed third-party AI platforms provided by SaaS providers and other counterparties. You will drive architecture, risk governance, and security enforcement for AI adoption across the organization-balancing innovation with regulatory, operational, and reputational risk.
The successful candidate will serve as a trusted advisor to Security & Technology Leadership, internal governance boards, and senior business stakeholders to ensure AI is adopted securely, accountably, and in alignment with industry-leading standards.
Key Responsibilities
Enterprise AI Security Architecture
- Define and enforce enterprise-wide AI security architecture patterns across:
- First-party AI/LLM deployments
- Microsoft Copilot and GitHub Copilot
- Azure OpenAI and plugin architectures
- Third-party managed AI platforms (e.g., Workday, ServiceNow, Solytics, and other integrated AI services)
- Ensure AI systems and plugins are securely integrated with Microsoft 365, Entra ID, Defender suite, Purview, and Azure services.
- Architect Model Context Protocol (MCP) patterns for safe containerized deployments:
- Secure pod-to-pod communication via microsegmentation
- API gateway authentication and rate limiting
- Container image integrity validation
- Grounding data access policy enforcement
- Centralized monitoring and logging for auditability
AI Governance & Risk Management
- Develop and maintain enterprise-wide AI security policy frameworks
- Partner with Data Protection, Legal, Procurement, and Business Units
- Design and implement policy-as-code and workflow-based governance controls
Threat Modeling, Detection & Mitigation
- Build and maintain AI-specific threat models
- Design AI-aware detection and response strategies
- Support red teaming, abuse case development, and adversarial testing
Integration with Microsoft and Third-Party Ecosystems
- Enable seamless and secure integration of Microsoft and third-party AI platforms
- Ensure data classification and DLP enforcement using Microsoft Purview
- Ensure AI interactions respect network boundaries
Controls Alignment & Regulatory Compliance
- Map AI-specific controls to CRI v2.1, NIST AI RMF, and OWASP Top 10 for LLMs
- Enforce end-to-end controls across the AI lifecycle
- Implement controls to protect confidentiality, integrity, and availability
Executive Influence & Cross-Functional Leadership
- Act as a recognized authority on AI security
- Advise Security Leadership, Technology Leadership, and governance boards
- Present AI security strategy and posture to stakeholders
- Mentor security architects, engineers, and data scientists
Qualifications
Required:
- 10+ years in enterprise security architecture or engineering
- Expertise in Microsoft security ecosystem
- Strong scripting and query experience with PowerShell, KQL
- Experience securing AI pipelines and plugin-based architectures
- Proven leadership in AI-specific threat modeling and risk treatment
- Familiarity with model lifecycle governance
- Regulatory alignment: CRI v2.1, NIST AI RMF, OWASP LLM Top 10, FFIEC, GDPR, Basel III
Desired:
- Experience with a Global Systemically Important Bank (G-SIB)
- Experience with Solytics, Snowflake integrations, or other third-party platforms
- Knowledge of shadow principal, token abuse, and adversary tactics
- Recognition as an industry expert
Salary Range:
$164,600 - 288,000 USD
Salary range is a good faith estimate of base pay. Northern Trust provides a comprehensive benefits package including retirement benefits (401k and pension), health and welfare benefits (medical, dental, vision, spending accounts and disability), paid time off, parental and caregiver leave, life & accident insurance, and other voluntary and well-being benefits. Northern Trust also provides a discretionary bonus program that may include an equity component.
Working with Us:
As a Northern Trust partner, greater achievements await. You will be part of a flexible and collaborative work culture in an organization where financial strength and stability is an asset that emboldens us to explore new ideas.
Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to assisting the communities we serve! Join a workplace with a greater purpose.
We'd love to learn more about how your interests and experience could be a fit with one of the world's most admired and sustainable companies! Build your career with us and apply today. #MadeForGreater
Reasonable accommodation
Northern Trust is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at *****************.
We hope you're excited about the role and the opportunity to work with us. We value an inclusive workplace and understand flexibility means different things to different people.
Apply today and talk to us about your flexible working requirements and together we can achieve greater.
Auto-ApplyEnterprise Security Architect
Colorado Springs, CO jobs
Ent Credit Union exists to improve the financial quality of life of the people we serve. This mission drives us every day, but we are more than our mission. We're also individuals using our unique abilities to make our organization, and the communities we serve, better than they were yesterday. We're a not-for-profit that puts people above profits and actively invests in our community. Our rapidly growing team is expanding our reach to serve more people throughout Colorado. To spread our mission far and wide, we need people like you. If you're interested in a paycheck with a purpose, apply with us today. Our people make the difference, and we truly believe you are our greatest asset.
Job Description
The Enterprise Security Architect is responsible for designing and implementing comprehensive security frameworks that protect the organization's information assets and ensure compliance with regulatory standards. This role involves assessing current security measures, identifying vulnerabilities, developing security strategy and roadmaps to mitigate risks, as well as developing security standards and best practices in collaboration with engineering teams and information security department for application development, cloud solutions and IT infrastructure. By collaborating with cross-functional teams and stakeholders, the Enterprise Security Architect plays a critical role in fostering a culture of security awareness and resilience within the organization.
Essential Functions
Security Strategy and Architecture: Develop Security Vision and Strategy: Design an overarching security architecture that aligns with the organization's business goals, ensuring it is adaptable to both current and emerging threats. Security Policy Assessment and Compliance: Participate in evaluating security policies, procedures, and controls to ensure compliance with industry regulations and organizational requirements. System and Application Security Design: Work with engineering, development, and IT teams to integrate security protocols into system design, application development, and IT infrastructure. Ensure adherence to principles like least privilege, secure coding, and secure system design.
Innovation and Emerging Technologies: Evaluate Emerging Technologies: Investigate new technologies, such as AI, ML, and blockchain, for potential applications to enhance security posture and processes. Drive Security Innovation: Encourage innovation within security practices and solutions, staying ahead of potential threats and adopting advanced security tools and technologies.
Risk Management and Third-Party Security: Risk Identification and Prioritization: Identify, analyze, and prioritize risks to the organization's IT environment, including data, systems, and networks. Develop Risk Mitigation Strategies: Create both preventive and reactive strategies to manage and mitigate security risks across systems. Third-Party Risk Management: Engage with the third-party risk management team to establish security protocols for data sharing, access control, and secure interactions with external partners.
Governance, Policy, and Compliance: Policy and Governance Frameworks: Develop and advise on policies, standards, and guidelines for data protection, compliance, privacy, and security governance. Policy Enforcement: Collaborate on the creation of a governance framework to enforce security policies and ensure adherence across departments. Stakeholder Engagement and Education: Educate and advise cross-functional teams, including IT, HR, legal, and executive leadership, on security practices and the business impact of cybersecurity.
Security Monitoring, Threat Intelligence, and Continuous Improvement: Security Monitoring Systems: Design and implement systems to detect, monitor, and respond to potential security threats in real-time, ensuring continuous protection. Threat Intelligence and Awareness: Stay informed about the latest cybersecurity threats, vulnerabilities, and trends, applying this knowledge to update and improve security measures. Continuous Improvement: Regularly assess and improve security protocols, systems, and policies to keep pace with evolving threats. Foster a culture of security awareness and adaptability within the organization.
Bank Secrecy Act: Remains cognizant of and adheres to Ent policies and procedures, and regulations pertaining to the Bank Secrecy Act.
Qualifications
Minimum Formal Qualifications for this Position
Bachelor's Degree in Information Technology, Computer Science, or related field. preferred
5+ years' working with security architectures, frameworks, and leading large-scale security initiatives Required
10+ years' experience in Cybersecurity preferred
7+ years' Security Engineering, Risk Management, Security Design preferred
3+ years' experience in cloud security, security governance, regulatory compliance preferred
Technical or Specialized Knowledge/Skills:
Understanding of security architecture frameworks (e.g., SABSA, NIST, ISO 27001).
In-depth knowledge of security technologies, including firewalls, intrusion detection systems, and encryption methods.
Familiarity with cloud security best practices and architectures across various cloud platforms (e.g., AWS, Azure, Google Cloud).
Awareness of compliance regulations (e.g., GDPR, HIPAA, PCI-DSS) and risk management principles.
Proficient in security assessment tools and methodologies (e.g., vulnerability scanning, penetration testing).
Analytical and problem-solving skills for identifying and addressing security vulnerabilities.
Knowledge of threat modeling and compliance to align security strategies with business objectives.
Communication skills, with the ability to convey technical concepts to non-technical stakeholders.
Ability to develop and maintain security documentation, including policies, standards, and incident response plans.
Project management skills, including the ability to coordinate security initiatives and meet deadlines.
Ability to evaluate and recommend new security technologies and tools that enhance overall security posture.
Ability to collaborate effectively with cross-functional teams and build strong relationships with stakeholders.
Capacity to mentor and guide junior security team members in security best practices and methodologies.
Ability to adapt to evolving threats and a willingness to stay current with industry trends.
Ability to think strategically and align security solutions with overall business objectives.
Competence in risk assessment and management related to security decisions and implementations.
Certifications Required:
Cert Info Sys Sec Pro preferred
Cert Info Sec Mgr preferred
Environmental, Physical and Psychological Requirements
Standing - Occasionally
Walking - Occasionally
Sitting - Frequently
Lifting - Rarely (40 Lbs)
Carrying - Rarely
Pushing - Rarely
Pulling - Rarely
Balancing - Rarely
Stooping - Rarely
Kneeling - Rarely
Crouching - Rarely
Crawling - Rarely
Reaching - Occasionally
Handling - Occasionally
Grasping - Occasionally
Feeling - Occasionally
Talking - Frequently
Hearing - Frequently
Repetitive Motions - Frequently
Eye/Hand/Foot Coordination - Occasionally
Noises louder than normal speaking volume - Occasionally
Temperature Changes - Rarely
Atmospheric Conditions - Rarely
Additional Information
The pay range for this position is: $151,590 to $167,564 per Year (CSF)
Final compensation for this position will be determined by various factors such as relevant work experience, specific skills and competencies, education, certifications, and internal pay equity.
This position is eligible for our corporate bonus program based on company performance.
Benefits Summary Sheet
At Ent Credit Union, we offer a comprehensive benefits package, including:
Health Benefits:
Affordable insurance, 24/7 doctor access, and a nationwide provider network.
401(k):
3% automatic contribution after three months, plus up to 6% matching.
Paid Time Off:
During your first year, enjoy 16 days of paid time off (PTO) plus 9 paid holidays. And it grows from there.
Volunteer Time Off:
Paid time off to give back to the community.
Education Support:
Up to $10,000 annually for higher education and assistance for certifications.
Exclusive Discounts:
Significant savings on home, car, and personal loans.
For more information about our outstanding benefits please visit our careers page at ********************
We anticipate this position to close on 12/12/2025. Please submit your application at your earliest convenience to be considered.
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities.
The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor's legal duty to furnish information. 41 CFR 60-1.35(c)
Manager Senior, Information Security
Remote
Why USAA?
At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families.
Embrace a fulfilling career at USAA, where our core values - honesty, integrity, loyalty and service - define how we treat each other and our members. Be part of what truly makes us special and impactful.
The Opportunity
As a dedicated Manager Senior, Information Security (Application Security), you will lead our Application Security Engineering (ASE) Team. ASE team is responsible for supporting the business in the protection and secure development of USAA application by ensuring security throughout the Software Development Process (SDLC). This leader will also be responsible for identifying emerging risks, documenting, and building business cases to address them. This team is a part of our Cyber Threat Operation Center (CTOC), which protects, detects and responds to cyber security events. The CTOC is comprised of several teams that partner as needed to provide centralized and coordinated response and mitigation activities.
Leads one or more analytical, business or technical support functions and is responsible for the implementation and management of enterprise information security policies, standards, processes and solutions that ensure USAA establishes, deepens and retains a best-in-class security posture. Develops, designs and implements security governance and assurance processes within security domains. This role has a direct impact on protecting USAA's brand and reputation within assigned Information Security domains. Plans and organizes activities of professional and administrative staff engaged in providing information security/cyber security services associated with existing and emerging security risks in a complex and highly regulated environment. Partners with the lines-of-business, Enterprise Risk and Compliance, Audit Services, and Legal, to support enterprise information security risk and compliance initiatives.
We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position can be based in one of the following locations: San Antonio, TX, Plano, TX, Phoenix, AZ, Colorado Springs, CO.
Relocation assistance is not available for this position.
What you'll do:
Responsible for ownership and execution of one or more critical security domains or capabilities.
Implements senior leadership's strategic vision and leads their team in the compliant day-to-day completion of their assigned information security domain. Chips in to the organization's short and long-term vision, strategies, goals and metrics.
Leads effective operation of assigned information security domain's day-to-day operations including capacity, resilience and dependability capabilities and how changes in conditions, operations, or the environment will affect the system's operation.
Develops, reviews, and communicates information security risk management policies and procedures to ensure appropriateness and adequacy versus industry standard methodologies and regulatory requirements.
Responsible for developing performance indicators and reporting the status of information security activities and alerting management to potential risks, compliance issues, and operational inefficiencies.
Develops, designs, and delivers a sustainable governance and assurance model within multiple domains.
Identifies, monitors and evaluates operational solutions to reduce information security risk, meet compliance requirements and increase enterprise workforce efficiency, business agility and workforce scalability.
Promotes information security awareness within their teams and across Enterprise Security Group.
Serves as financial steward for the organization and handles workforce and budgets to ensure they cost-effectively meet the needs of the organization.
Builds and oversees a team of employees for assigned functional area through ongoing execution of recruiting, development, retention, coaching and support, performance management, and managerial activities.
Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.
What you have:
Bachelor's degree in Information Security, Information Technology, Computer Science, Business Administration, Information Systems/Management or related field; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree.
6 years of related information security experience in one or more domains, e.g.: Cybersecurity, Identity and Access Management, Information Assurance and Governance, Operational Risk Management and/or Information Technology to include considerable accountability for projects, programs, processes or policies.
2 years of direct team lead, supervisory, or management experience in an Information Security or Information Technology domain.
2 years of researching, designing, or implementing technology, information security or cybersecurity solutions in a large financial institution or large enterprise information security program with a consistent track record of delivering results in compliance with federal/state/regulatory information security and risk management policies, standards, and guidelines.
Working knowledge of relevant regulations and standards related to risk management and information security, e.g.: FFIEC, Gramm-Leach-Bliley, FFIEC Cybersecurity Assessment Tool, NIST Cybersecurity Framework and the Payment Card Industry Data Security Standard.
Strong written and verbal communication skills, including the ability to communicate technical analyses to a non-technical audience.
Strong knowledge of security technologies to include cryptography, authentication, authorization, and controls.
Strong Knowledge of IT risks and experience implementing security solutions.
Knowledge of threats, vulnerabilities, attack methods and countermeasures for web-based applications, networks, and cyber security solutions.
Expertise in risk management processes and principles.
Familiarity with budgets, forecasting, and executing on the budgets for the applicable information security, cybersecurity, or technology support function.
What sets you apart:
Robust understanding of Application Security Standard and Frameworks (OWASP Top 10, OWASP SAMM, BSIMM, NIST SSDF, etc.)
Familiarity with application security testing tools (SAST/DAST/SCA/Containers) and Web Application Firewall (WAF)
Familiarity with Agile Workflows and Software Development Process (SDLC)
Strong relationship management skills and ability to engage business partners across the enterprise.
Compensation range: The salary range for this position is: $138,230.00 - $264,200.00.
USAA does not provide visa sponsorship for this role. Please do not apply for this role if at any time (now or in the future) you will need immigration support (i.e., H-1B, TN, STEM OPT Training Plans, etc.).
Compensation: USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position. The actual salary for this role may vary by location.
Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors.
The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job.
Benefits: At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals.
For more details on our outstanding benefits, visit our benefits page on USAAjobs.com.
Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting.
USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Auto-ApplyEnterprise Security Architect
Colorado Springs, CO jobs
The Enterprise Security Architect is responsible for designing and implementing comprehensive security frameworks that protect the organization's information assets and ensure compliance with regulatory standards. This role involves assessing current security measures, identifying vulnerabilities, developing security strategy and roadmaps to mitigate risks, as well as developing security standards and best practices in collaboration with engineering teams and information security department for application development, cloud solutions and IT infrastructure. By collaborating with cross-functional teams and stakeholders, the Enterprise Security Architect plays a critical role in fostering a culture of security awareness and resilience within the organization.
Essential Functions
* Security Strategy and Architecture: Develop Security Vision and Strategy: Design an overarching security architecture that aligns with the organization's business goals, ensuring it is adaptable to both current and emerging threats. Security Policy Assessment and Compliance: Participate in evaluating security policies, procedures, and controls to ensure compliance with industry regulations and organizational requirements. System and Application Security Design: Work with engineering, development, and IT teams to integrate security protocols into system design, application development, and IT infrastructure. Ensure adherence to principles like least privilege, secure coding, and secure system design.
* Innovation and Emerging Technologies: Evaluate Emerging Technologies: Investigate new technologies, such as AI, ML, and blockchain, for potential applications to enhance security posture and processes. Drive Security Innovation: Encourage innovation within security practices and solutions, staying ahead of potential threats and adopting advanced security tools and technologies.
* Risk Management and Third-Party Security: Risk Identification and Prioritization: Identify, analyze, and prioritize risks to the organization's IT environment, including data, systems, and networks. Develop Risk Mitigation Strategies: Create both preventive and reactive strategies to manage and mitigate security risks across systems. Third-Party Risk Management: Engage with the third-party risk management team to establish security protocols for data sharing, access control, and secure interactions with external partners.
* Governance, Policy, and Compliance: Policy and Governance Frameworks: Develop and advise on policies, standards, and guidelines for data protection, compliance, privacy, and security governance. Policy Enforcement: Collaborate on the creation of a governance framework to enforce security policies and ensure adherence across departments. Stakeholder Engagement and Education: Educate and advise cross-functional teams, including IT, HR, legal, and executive leadership, on security practices and the business impact of cybersecurity.
* Security Monitoring, Threat Intelligence, and Continuous Improvement: Security Monitoring Systems: Design and implement systems to detect, monitor, and respond to potential security threats in real-time, ensuring continuous protection. Threat Intelligence and Awareness: Stay informed about the latest cybersecurity threats, vulnerabilities, and trends, applying this knowledge to update and improve security measures. Continuous Improvement: Regularly assess and improve security protocols, systems, and policies to keep pace with evolving threats. Foster a culture of security awareness and adaptability within the organization.
* Bank Secrecy Act: Remains cognizant of and adheres to Ent policies and procedures, and regulations pertaining to the Bank Secrecy Act.
Minimum Formal Qualifications for this Position
* Bachelor's Degree in Information Technology, Computer Science, or related field. preferred
* 5+ years' working with security architectures, frameworks, and leading large-scale security initiatives Required
* 10+ years' experience in Cybersecurity preferred
* 7+ years' Security Engineering, Risk Management, Security Design preferred
* 3+ years' experience in cloud security, security governance, regulatory compliance preferred
Technical or Specialized Knowledge/Skills:
* Understanding of security architecture frameworks (e.g., SABSA, NIST, ISO 27001).
* In-depth knowledge of security technologies, including firewalls, intrusion detection systems, and encryption methods.
* Familiarity with cloud security best practices and architectures across various cloud platforms (e.g., AWS, Azure, Google Cloud).
* Awareness of compliance regulations (e.g., GDPR, HIPAA, PCI-DSS) and risk management principles.
* Proficient in security assessment tools and methodologies (e.g., vulnerability scanning, penetration testing).
* Analytical and problem-solving skills for identifying and addressing security vulnerabilities.
* Knowledge of threat modeling and compliance to align security strategies with business objectives.
* Communication skills, with the ability to convey technical concepts to non-technical stakeholders.
* Ability to develop and maintain security documentation, including policies, standards, and incident response plans.
* Project management skills, including the ability to coordinate security initiatives and meet deadlines.
* Ability to evaluate and recommend new security technologies and tools that enhance overall security posture.
* Ability to collaborate effectively with cross-functional teams and build strong relationships with stakeholders.
* Capacity to mentor and guide junior security team members in security best practices and methodologies.
* Ability to adapt to evolving threats and a willingness to stay current with industry trends.
* Ability to think strategically and align security solutions with overall business objectives.
* Competence in risk assessment and management related to security decisions and implementations.
Certifications Required:
* Cert Info Sys Sec Pro preferred
* Cert Info Sec Mgr preferred
Environmental, Physical and Psychological Requirements
* Standing - Occasionally
* Walking - Occasionally
* Sitting - Frequently
* Lifting - Rarely (40 Lbs)
* Carrying - Rarely
* Pushing - Rarely
* Pulling - Rarely
* Balancing - Rarely
* Stooping - Rarely
* Kneeling - Rarely
* Crouching - Rarely
* Crawling - Rarely
* Reaching - Occasionally
* Handling - Occasionally
* Grasping - Occasionally
* Feeling - Occasionally
* Talking - Frequently
* Hearing - Frequently
* Repetitive Motions - Frequently
* Eye/Hand/Foot Coordination - Occasionally
* Noises louder than normal speaking volume - Occasionally
* Temperature Changes - Rarely
* Atmospheric Conditions - Rarely
Security Architect Engineer
Malvern, PA jobs
At Customers Bank, we believe in working hard, working smart, working together to deliver memorable customer experiences and having fun. Our vision, mission, and values guide us along our path to achieve excellence. Passion, attitude, creativity, integrity, alignment, and execution are cornerstones of our behaviors. They define who we are as an organization and as individuals. Everyone is encouraged to have personal development plans. By doing so, our team members are on their way to achieve their highest potential and be successful in their personal and professional lives.
This role is ONSITE in our Malvern, PA office Monday through Thursday with Friday remote.
Must be eligible to work in the U.S. without requiring sponsorship now or in the future.
Who is Customers Bank?
Founded in 2009, Customers Bank is a super-community bank with over $22 billion in assets. We believe in dedicated personal service for the businesses, professionals, individuals, and families we work with.
We get you further, faster.
Focused on you: We provide every customer with a single point of contact. A dedicated team member who's committed to meeting your needs today and tomorrow.
On the leading edge: We're innovating with the latest tools and technology so we can react to market conditions quicker and help you get ahead.
Proven reliability: We always ground our innovation in our deep experience and strong financial foundation, so we're a partner you can trust.
What you'll do:
Cloud Security Architecture: Design, implement, and maintain secure architectures for cloud platforms (Azure, AWS, or others), ensuring alignment with security policies and regulatory requirements.
Security Tools Configuration: Configure, maintain, and optimize security tools including CNAPP, CASB, SIEM, endpoint detection, vulnerability scanners, and cloud-native security controls.
Defender & CASB Oversight: Manage and tune Microsoft Defender and Defender for Cloud Apps (CASB) to detect, prevent, and remediate threats across cloud environments, SaaS platforms, and endpoints.
Security Baseline Compliance: Review and ensure that environments and resources consistently follow security baselines and frameworks such as CIS, NIST, and FFIEC.
Secure Design & Guidance: Partner with infrastructure, DevOps, and application teams to provide security requirements and guidance for cloud projects and deployments.
Documentation & Reporting: Maintain architecture diagrams, configuration documentation, and compliance reporting to support audits and regulatory exams.
Incident Response Support: Provide expertise in responding to cloud-related security incidents and collaborate on remediation efforts.
Continuous Improvement: Evaluate emerging cloud security tools and best practices to enhance protection and operational efficiency.
API platform monitoring: Assist architecture team implement API monitoring platform. This includes API inventory and related data monitoring
Perform monitoring: Provide metrics (KPIs and KRIs) supporting appropriate security monitoring and underlying processes.
What do you need?
Must-Haves
5+ years' experience in security engineering, architecture, or operations, with at least 2 years in cloud security.
Strong knowledge of cloud platforms (Azure, AWS, or GCP), including native security tools and services.
Experience reviewing and managing network security configurations.
Hands-on experience with configuring and maintaining security tools (SIEM, EDR, vulnerability management, IAM, cloud security posture management).
Solid understanding of networking protocols, routing, and hybrid cloud connectivity.
Bachelor's degree in Information Security, Computer Science, or related field, or equivalent work experience.
Key Skills
Strong troubleshooting and analytical skills.
Ability to balance security needs with business requirements.
Excellent communication skills, with the ability to translate technical findings into clear, actionable recommendations.
Proficiency in Microsoft Office applications for reporting and documentation.
Nice-to-Haves
Cloud security certifications such as AZ-500 (Azure Security Engineer), AWS Security Specialty, CCSP, or CISSP.
Experience with Splunk, CrowdStrike, Tenable, Active Directory, and cloud-native logging/monitoring tools.
Knowledge of DevSecOps practices and integrating security into CI/CD pipelines.
Banking or financial services industry experience.
Customers Bank is an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.
We also provide “reasonable accommodations”, upon request, to qualified individuals with disabilities, in accordance with the Americans with Disabilities Act and applicable state and local laws.
Diversity Statement:
At Customers Bank, we believe in working smart, working together, and having fun while delivering innovative solutions and memorable experiences for our customers. We are committed to the continual advancement of a culture which reflects the value we place on diversity, equity, and inclusion. We honor the diverse experiences, perspectives, and identities of our team members, and we recognize that it is their passion, creativity, and integrity that drives our success. Step into your future with us! Let's take on tomorrow.
Auto-ApplySeller/Servicer Information Security Risk Oversight Manager
McLean, VA jobs
At Freddie Mac, our mission of Making Home Possible is what motivates us, and it's at the core of everything we do. Since our charter in 1970, we have made home possible for more than 90 million families across the country. Join an organization where your work contributes to a greater purpose.
Position Overview:
Freddie Mac is seeking an experienced Manager to join our Third Party Risk Governance (TPRG) Information Security (Cyber) team. Your role will be vital in identifying potential risks and ensuring that effective mitigation strategies are in place. If you have a strong foundation in risk management and cybersecurity, and are committed to protecting organizations from threats, we invite you to apply for this critical role at Freddie Mac.
Our Impact:
The Seller/Servicer Information Security Oversight Team, within Third-Party Risk Management, is responsible for monitoring the information security standards of seller/servicers to ensure the safeguarding of Freddie Mac's data in alignment with the Freddie Mac Guide. Our team of cyber risk specialists is actively involved in monitoring, identifying, detecting, and responding to cyber threats. Through regular vulnerability scans, they work diligently to mitigate information security risks to Freddie Mac.
Your Impact:
As a Manager, you will play a key role in enhancing our oversight of third-party risk management. Your responsibilities will include:
Leading initiatives to conduct thorough cybersecurity risk assessments.
Applying the Cybersecurity Framework (CSF) to structure and improve our risk management processes.
Collaborating with various stakeholders to identify and assess potential information security risks.
Developing and implementing strategic plans to effectively mitigate identified risks.
Ensuring the continuous improvement of our cybersecurity posture through proactive risk management and oversight.
Conducting comprehensive Information Security risk reviews and interviews with seller/servicers as part of the annual Consolidated Origination and Risk Evaluation (CORE) review.
Analyzing findings from these reviews and developing a detailed risk assessment, backed by supporting evidence.
Qualifications:
8+ years of experience in risk management, internal controls, audit, or compliance, preferably within financial services or mortgage operations
8 to 10 years of experience in cybersecurity or cyber risk management, with a focus on highly regulated industries.
Bachelor's degree in computer science, engineering, or a related field, or equivalent work experience, preferred.
Proficiency in performing risk analyses, vulnerability assessments, and threat modeling.
Proven track record of leading risk assessment and controls initiatives across business functions
Proven experience engaging with senior leadership to understand and align with strategic goals.
Experience in IT governance, risk, and controls, including familiarity with frameworks such as COBIT, FFIEC, ISO 2700x, and NIST.
Strong analytical and problem-solving skills.
Excellent communication skills for articulating technical risks to non-technical audiences.
In-depth knowledge of cybersecurity principles, networks, and operating systems, with experience in relevant frameworks like NIST and ISO 27001.
Industry certifications such as Sec+, SSCP, GSEC or C|EH, preferred
Keys to Success:
Significant understanding of the Third-Party Risk Governance process
Ability to perform additional duties as assigned to support the organization's evolving needs.
Strong analytical and problem-solving skills.
Excellent communication skills for articulating technical risks to non-technical audiences.
In-depth knowledge of cybersecurity principles, networks, and operating systems, with experience in relevant frameworks like NIST and ISO 27001
Possess a deep understanding of NIST standards and evaluate seller/servicers' compliance with the Freddie Mac Guide.
Identify and assess potential risks and vulnerabilities to our systems and data posed by third parties, utilizing approved monitoring tools.
Conduct thorough risk assessments, analyze potential threats, and evaluate third-party information security processes and procedures.
Identify associated risks and provide a comprehensive risk assessment with supporting evidence.
Current Freddie Mac employees please apply through the internal career site.
We consider all applicants for all positions without regard to gender, race, color, religion, national origin, age, marital status, veteran status, sexual orientation, gender identity/expression, physical and mental disability, pregnancy, ethnicity, genetic information or any other protected categories under applicable federal, state or local laws. We will ensure that individuals are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.
A safe and secure environment is critical to Freddie Mac's business. This includes employee commitment to our acceptable use policy, applying a vigilance-first approach to work, supporting regulatory mandates, and using best practices to protect Freddie Mac from potential threats and risk. Employees exercise this responsibility by executing against policies and procedures and adhering to privacy & security obligations as required via training programs.
CA Applicants: Qualified applications with arrest or conviction records will be considered for employment in accordance with the
Los Angeles County Fair Chance Ordinance
for Employers and the
California Fair Chance Act.
Notice to External Search Firms: Freddie Mac partners with BountyJobs for contingency search business through outside firms. Resumes received outside the BountyJobs system will be considered unsolicited and Freddie Mac will not be obligated to pay a placement fee. If interested in learning more, please visit ****************** and register with our referral code: MAC.
Time-type:Full time FLSA Status:Exempt
Freddie Mac offers a comprehensive total rewards package to include competitive compensation and market-leading benefit programs. Information on these benefit programs is available on our Careers site.
This position has an annualized market-based salary range of $142,000 - $214,000 and is eligible to participate in the annual incentive program. The final salary offered will generally fall within this range and is dependent on various factors including but not limited to the responsibilities of the position, experience, skill set, internal pay equity and other relevant qualifications of the applicant.
Auto-ApplySystems Engineer - Physical Security
New York, NY jobs
Hudson River Trading (HRT) is looking for a Systems Engineer with a focus on physical security systems to join our Enterprise Technology team. This role will liaise closely with our Workplace and various Security teams to conduct research, design, and maintain physical security platforms. You'll join a lean and technical team with opportunities to architect, own, and evolve HRT's global physical security infrastructure, driving both strategic vision and hands-on execution, to help HRT stay secure while providing a great employee experience.
Responsibilities
Research, architect, and deploy physical security systems across our offices and supporting sites around the globe
Conduct audits and risk assessments of the physical security of equipment and locations globally
Curate an enjoyable employee experience while helping to maintain safety, security and compliance
Manage user roles, permissions, and system access in compliance with company policies and best practices
Troubleshoot hardware/software issues, perform diagnostics, and provide Level 2/3 support
Create and maintain documentation of configurations, procedures, and system architecture
Help lead technical response and forensic analysis for physical security incidents in collaboration with Workplace and Security Operations teams
Collaborate with internal stakeholders to evaluate and adopt next-generation physical security technologies, such as AI-driven analytics, mobile credentials, or zero-trust physical systems
Qualifications
5+ years of experience in the systems architecture, engineering, and administration of physical security systems (camera infrastructure, badge platforms, biometrics, environmental sensors, access control, etc.)
Experience with open protocols and standards in physical security (OSDP, SNMP, etc.)
Experience with consolidating and automating identity management, configuration, and logging for disparate physical security, access control, and digital IAM platforms
Experience with data center physical security systems (VSS, ACS, IDS, anti-tailgating, anti-passback, mantraps, etc.)
Experience automating through code (Python, Go, PowerShell) and working with SDKs/APIs
Strong knowledge of networking concepts and protocols
Familiarity with securing IP-based physical systems and awareness of modern physical security threats (e.g., firmware supply chain, OT/IT convergence)
Willing to travel 20% of time to visit other offices and facilities as needed
A certification like Certified Protection Professional (CPP) or Physical Security Professional (PSP) is a plus
Experience using Linux is a plus
Experience with public cloud providers (GCP, AWS, Azure) is a plus
The estimated base salary range for this position is $150,000 - $250,000 per year, based on job-related skills and experience. This role will also be eligible for discretionary performance-based bonuses and a competitive benefits package.
Culture
Hudson River Trading (HRT) brings a scientific approach to trading financial products. We have built one of the world's most sophisticated computing environments for research and development. Our researchers are at the forefront of innovation in the world of algorithmic trading.
At HRT we welcome a variety of expertise: mathematics and computer science, physics and engineering, media and tech. We're a community of self-starters who are motivated by the excitement of being at the cutting edge of automation in every part of our organization-from trading, to business operations, to recruiting and beyond. We value openness and transparency, and celebrate great ideas from HRT veterans and new hires alike. At HRT we're friends and colleagues - whether we are sharing a meal, playing the latest board game, or writing elegant code. We embrace a culture of togetherness that extends far beyond the walls of our office.
Feel like you belong at HRT? Our goal is to find the best people and bring them together to do great work in a place where everyone is valued. HRT is proud of our diverse staff; we have offices all over the globe and benefit from our varied and unique perspectives. HRT is an equal opportunity employer; so whoever you are we'd love to get to know you.
Auto-ApplyAzure Cloud Security Architect - ONSITE Branchburg, NJ
Somerville, NJ jobs
Job Description
Financial Resources FCU has been designated one of the Best Places to Work in NJ since 2022! At FRFCU, we are "putting people first" and that starts with our employees! Come see why our team members have voted us for Best Places to Work in NJ for 4 consecutive years!
Financial Resources is a not-for-profit federal credit union with locations in Somerset, Hunterdon, Middlesex, Hudson and Union Counties. With a history of serving our members for more than 100 years, we have grown to more than $650 million in assets serving more than 29,000 members with 6 public access branches and a team of 100 employees. We are available Nationwide!
Financial Resources Federal Credit Union (FRFCU) is looking for an Azure Cloud Security Architect to join our Information Technology team in making a difference in peoples' lives and helping us achieve our digital transformation goals! THIS POSITION IS LOCATED ON SITE IN BRANCHBURG, NJ.
The Azure Cloud Security Architect will lead the design and implementation of secured cloud solutions and data lakes across our financial services cloud infrastructure. This person is critical in deploying solutions on the cloud with ensuring the confidentiality, integrity and availability of sensitive data while maintaining compliance with industry regulations such as FFIEC, PCI-DSS and GLBA.
We are looking for someone who exemplifies the following traits:
Caring
Initiative
Ethics
Job Knowledge
Self-Development
Teamwork
Results Driven
Problem Solving
Communication
Leadership
Some of your essential duties will include, but are not limited to:
Design and deploy secure Azure cloud architectures for financial applications and data platforms.
Develop and enforce security policies, standards, and procedures aligned with financial regulatory frameworks.
Lead risk assessments, threat modeling, and vulnerability management across cloud environments.
Integrate Zero Trust principles, identity and access management (IAM), and encryption strategies.
Collaborate with IT, network, risk and audit teams to ensure regulatory alignment and compliance.
Implement and manage SIEM, SOAR, and cloud-native security tools (e.g., Microsoft Defender for Cloud, Sentinel).
Collaborate with IT team to deploy and maintain Azure virtual desktops.
Provide oversight for DevSecOps practices, embedding security into CI/CD pipelines.
Respond to and investigate security incidents, ensuring rapid containment and remediation.
Conduct security awareness training and provide guidance to engineering and operations teams.
Collaborate with the credit union's network and IT teams during build out of resources on the cloud
Collaborate with the credit union's Data Operations and Automation team to build data resources and pipelines on the cloud
What we offer to our team members:
Work Life Balance Programs that includes a 4 Day Work Week and Hybrid work environment after satisfactory completion of your training period
A competitive salary
Generous paid time off
Health, dental and vision plans for employees and their families
Health Savings and Flex Spending Accounts
Paid Parental Leave Programs
Short and Long-Term Disability Programs
Company provided life insurance and low-cost supplemental insurance plans
401K with 100% employer match, up to 6%, after one year and potential for additional profit-sharing contributions
Paid volunteer days
Opportunities for career advancement with continuous learning and development
Tuition reimbursement
We ask that you have:
Bachelor's Degree in Cybersecurity, Computer Science, Engineering, related field. MS degree will be a plus, but not required
Minimum 4+ years of experience in infrastructure as code (IaC) - such as Terraform, Bicep and ARM
7+ years of experience in cloud architecture and security with 3+ years focused on Azure in financial services
Deep coding and scripting experience in Python, SQL, KQL and Powershell
Strong knowledge in building and securing CI/CD pipelines for cloud infrastructure and digital platforms
Experience in software development lifecycle (SDLC) is preferred
Deep knowledge of Azure security services including Azure Firewalls, Bastion, Key Vault, Log Analytics, Route Tables, Network Security Groups, Security Center, Sentinel and Azure Policies
Previous experience in deploying and maintaining enterprise grade of Azure virtual desktops (AVD) is preferred
Strong understanding of financial compliance standards (e.g., SOX, GLBA, PCI-DSS, FFIEC)
Experience with network security, IAM, encryption and secure data architecture
Certifications such as AZ-500, CISSP, CCSP OR CISM are preferred
Familiarity with hybrid cloud and multi-cloud environments preferred
Experience with container security (AKS, Kubernetes) preferred
Background in incident response and digital forensics preferred
Knowledge of data loss prevention (DLP) and endpoint protection in cloud environments preferred
If you want to work in a friendly environment and with an organization that is looking to expand its footprint, please consider applying for this opportunity.
Information Security Engineering Manager
McLean, VA jobs
**About this role:** Wells Fargo is seeking an Information Security Engineering Manager in Technology as part of Cybersecurity. Learn more about the career areas and lines of business at wellsfargojobs.com. Wells Fargo is seeking an Information Security Engineering Manager to lead a cross-functional team of talented detection engineers and operationalize innovative capabilities within the SIEM platform.
This team provides 24x7 on-call support for security incidents as well as data onboarding and normalization, data feed health and maintenance, data model health and maintenance, and ad-hoc support requests for the SIEM. This team operates under the Agile Scrum framework supporting multiple security monitoring focused teams.
**In this role, you will:**
+ Manage a team of talented engineers that design, document, test, maintain and provide issue resolution recommendations for highly complex security solutions related to networking, cryptography, cloud, authentication or directory services, email, internet, applications or endpoint security
+ Manage security consulting on large projects for internal clients to ensure conformity with corporate information security policy, and standards
+ Possess subject matter expertise at a mastery level in current and emerging security solutions and best practices
+ Review and correlate security logs, including overseeing data onboarding and normalization best practices
+ Manage computer security incident response activities for highly complex events
+ Conduct technical investigation of security-related incidents, and conduct post-incident digital forensics to identify causes and recommend future mitigation strategies
+ Manage implementation of information security such as availability, integrity, confidentiality, risk management, threat identification, modeling, monitoring, incident response, access management, and business continuity
+ Define, track and report on key performance indicators to demonstrate value add for the team
+ Implement and refine established best practices, processes and workflows to increase team efficiency and continuous improvement
+ Mentor and guide talent development of direct reports and assist in hiring talent
**Required Qualifications:**
+ 4+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
+ 2+ years of Leadership experience
**Desired Qualifications:**
+ Experience leading a Scrum team and a deep knowledge of Agile practices
+ Experience with data onboarding and normalization in a large SIEM environment
+ Experience with detection engineering for advanced security use cases
+ Experience leading a cross-functional team of advanced security engineers
+ Proven ability to lead, develop, coach and mentor technical teams
+ Deep understanding of the MITRE ATT&CK framework
+ Experience with SDLC practices and CI/CD deployment
+ Deep understanding of cyber threats, adversary tactics, techniques and procedures as it relates to detection development
+ Strong written and verbal communication skills
**Job Expectations:**
+ 10% Travel may be required
**Pay Range**
Reflected is the base pay range offered for this position. Pay may vary depending on factors including but not limited to achievements, skills, experience, or work location. The range listed is just one component of the compensation package offered to candidates.
$119,000.00 - $224,000.00
**Benefits**
Wells Fargo provides eligible employees with a comprehensive set of benefits, many of which are listed below. Visit Benefits - Wells Fargo Jobs (*************************************************************** for an overview of the following benefit plans and programs offered to employees.
+ Health benefits
+ 401(k) Plan
+ Paid time off
+ Disability benefits
+ Life insurance, critical illness insurance, and accident insurance
+ Parental leave
+ Critical caregiving leave
+ Discounts and savings
+ Commuter benefits
+ Tuition reimbursement
+ Scholarships for dependent children
+ Adoption reimbursement
**Posting End Date:**
11 Dec 2025
***** **_Job posting may come down early due to volume of applicants._**
**We Value Equal Opportunity**
Wells Fargo is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.
Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit's risk appetite and all risk and compliance program requirements.
**Applicants with Disabilities**
To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo (****************************************************************** .
**Drug and Alcohol Policy**
Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy (********************************************************************** to learn more.
**Wells Fargo Recruitment and Hiring Requirements:**
a. Third-Party recordings are prohibited unless authorized by Wells Fargo.
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.
**Req Number:** R-492824
Physical Security Systems Engineer
Washington jobs
Centersquare is a global data center leader in retail colocation and interconnection services. Centersquare brings proven operational excellence, global scale, flexibility, and customer-focused innovation together to provide a comprehensive portfolio of data center and interconnection solutions.
The Security Systems Engineer (SSE) position has a high degree of responsibility and strategic impact on critical business functions. The SSE serves as an expert for physical security systems and technologies in a data center environment including access control, Closed-Circuit Television (CCTV) surveillance cameras and recorders, biometric equipment, anti-tailgating equipment and wireless devices. The SSE is responsible for providing technical problem solving or troubleshooting on security asset fault escalations and outages in support of the 24x7 Physical Security Operations Center (PSCC) and the test/turn-up support of security assets in Centersquare data centers.
Primary Responsibilities
Implement, administer, and maintain physical security systems and programs.
Perform Tier 2 technical problem solving or troubleshooting and/or testing of security systems on both client and server-side issues.
Design and manage critical physical security global infrastructure.
Maintain physical security build standards.
Manage the system health of access control and video surveillance platforms.
Perform system upgrades and maintenance.
Implement, administer, and maintain physical security systems by creating and maintaining security information systems, databases, reports, perform back-ups and other security systems application software at company facilities as assigned.
Complete projects involving security systems, hardware, building systems and technology as assigned, ensuring status reports are regularly submitted to department management and that targeted completion dates are met.
Serve as an expert for physical security systems and technologies, staying up-to-date and recommending new security technologies for implementation based on objectives and business needs.
Recognize, respond to, and recommend actions to address both potential and realized physical security threats and emergencies affecting personnel or property.
Be responsible for frontline support and maintenance of physical security systems and applications and serve as a subject matter expert on physical security systems.
Debug and resolve application, server, database issues with a variety of operating system combinations (Linux, Windows, and Mac), server hardware and network topologies.
Manage/configure/debug specialized endpoints such as card readers, surveillance cameras, biometric equipment, wireless devices. Automate patch application, hotfixes, and custom functionality using scripts and packaging tools.
Project manage the buildout of new systems and remediation of existing systems while coordinating with physical security team members, system administrators and database engineers.
Enforcement of company policies and procedures.
Travel required.
Experience & Qualifications
Bachelor's degree in Computer Science, Computer Engineering, Telecommunications, or 4-years' experience with physical security systems or security integrator field experience.
Hands-on experience with physical security systems, including access control, digital and analog video surveillance and/or identity management solutions.
Knowledge of Microsoft Office Productivity Tools and SharePoint.
Strong analytical and problem-solving skills.
Able to exercise good judgment under pressure and critical conditions.
Excellent verbal and written communication skills.
Demonstrate flexibility and the ability to quickly adapt to changes and prioritize tasks/responsibilities.
Able to respond to system issues on a 24-hour basis and to work a flexible work schedule as required.
Strong customer service, organizational, prioritization, multitasking, communication, and leadership skills.
Strong working knowledge and experience with electronics, PCs, networks, communications devices, door & locking hardware, alarm devices, CCTV technology and software with emphasis on card access systems.
Support experience with various operating systems (Linux/Mac/Windows) in the context of both clients and servers.
Extensive experience with access control systems. Lenel certification is preferred.
Experience implementing, configuring, and integrating third-party software solutions.
Experience with various mantrap and anti-tailgating technologies (Newton T-Dar, IEE).
Understanding of LAN/WAN and mobile computing environments.
Physical Security Professional (PSP) or Certified Protection Professional (CPP) is preferred.
The employer will not sponsor visas for this role
Centersquare is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.
Information Security Engineering Manager
Minneapolis, MN jobs
**About this role:** Wells Fargo is seeking an Information Security Engineering Manager in Technology as part of Cybersecurity. Learn more about the career areas and lines of business at wellsfargojobs.com. Wells Fargo is seeking an Information Security Engineering Manager to lead a cross-functional team of talented detection engineers and operationalize innovative capabilities within the SIEM platform.
This team provides 24x7 on-call support for security incidents as well as data onboarding and normalization, data feed health and maintenance, data model health and maintenance, and ad-hoc support requests for the SIEM. This team operates under the Agile Scrum framework supporting multiple security monitoring focused teams.
**In this role, you will:**
+ Manage a team of talented engineers that design, document, test, maintain and provide issue resolution recommendations for highly complex security solutions related to networking, cryptography, cloud, authentication or directory services, email, internet, applications or endpoint security
+ Manage security consulting on large projects for internal clients to ensure conformity with corporate information security policy, and standards
+ Possess subject matter expertise at a mastery level in current and emerging security solutions and best practices
+ Review and correlate security logs, including overseeing data onboarding and normalization best practices
+ Manage computer security incident response activities for highly complex events
+ Conduct technical investigation of security-related incidents, and conduct post-incident digital forensics to identify causes and recommend future mitigation strategies
+ Manage implementation of information security such as availability, integrity, confidentiality, risk management, threat identification, modeling, monitoring, incident response, access management, and business continuity
+ Define, track and report on key performance indicators to demonstrate value add for the team
+ Implement and refine established best practices, processes and workflows to increase team efficiency and continuous improvement
+ Mentor and guide talent development of direct reports and assist in hiring talent
**Required Qualifications:**
+ 4+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
+ 2+ years of Leadership experience
**Desired Qualifications:**
+ Experience leading a Scrum team and a deep knowledge of Agile practices
+ Experience with data onboarding and normalization in a large SIEM environment
+ Experience with detection engineering for advanced security use cases
+ Experience leading a cross-functional team of advanced security engineers
+ Proven ability to lead, develop, coach and mentor technical teams
+ Deep understanding of the MITRE ATT&CK framework
+ Experience with SDLC practices and CI/CD deployment
+ Deep understanding of cyber threats, adversary tactics, techniques and procedures as it relates to detection development
+ Strong written and verbal communication skills
**Job Expectations:**
+ 10% Travel may be required
**Pay Range**
Reflected is the base pay range offered for this position. Pay may vary depending on factors including but not limited to achievements, skills, experience, or work location. The range listed is just one component of the compensation package offered to candidates.
$119,000.00 - $224,000.00
**Benefits**
Wells Fargo provides eligible employees with a comprehensive set of benefits, many of which are listed below. Visit Benefits - Wells Fargo Jobs (*************************************************************** for an overview of the following benefit plans and programs offered to employees.
+ Health benefits
+ 401(k) Plan
+ Paid time off
+ Disability benefits
+ Life insurance, critical illness insurance, and accident insurance
+ Parental leave
+ Critical caregiving leave
+ Discounts and savings
+ Commuter benefits
+ Tuition reimbursement
+ Scholarships for dependent children
+ Adoption reimbursement
**Posting End Date:**
11 Dec 2025
***** **_Job posting may come down early due to volume of applicants._**
**We Value Equal Opportunity**
Wells Fargo is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.
Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit's risk appetite and all risk and compliance program requirements.
**Applicants with Disabilities**
To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo (****************************************************************** .
**Drug and Alcohol Policy**
Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy (********************************************************************** to learn more.
**Wells Fargo Recruitment and Hiring Requirements:**
a. Third-Party recordings are prohibited unless authorized by Wells Fargo.
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.
**Req Number:** R-492824
Information Security Engineering Manager
Philadelphia, PA jobs
**About this role:** Wells Fargo is seeking an Information Security Engineering Manager in Technology as part of Cybersecurity. Learn more about the career areas and lines of business at wellsfargojobs.com. Wells Fargo is seeking an Information Security Engineering Manager to lead a cross-functional team of talented detection engineers and operationalize innovative capabilities within the SIEM platform.
This team provides 24x7 on-call support for security incidents as well as data onboarding and normalization, data feed health and maintenance, data model health and maintenance, and ad-hoc support requests for the SIEM. This team operates under the Agile Scrum framework supporting multiple security monitoring focused teams.
**In this role, you will:**
+ Manage a team of talented engineers that design, document, test, maintain and provide issue resolution recommendations for highly complex security solutions related to networking, cryptography, cloud, authentication or directory services, email, internet, applications or endpoint security
+ Manage security consulting on large projects for internal clients to ensure conformity with corporate information security policy, and standards
+ Possess subject matter expertise at a mastery level in current and emerging security solutions and best practices
+ Review and correlate security logs, including overseeing data onboarding and normalization best practices
+ Manage computer security incident response activities for highly complex events
+ Conduct technical investigation of security-related incidents, and conduct post-incident digital forensics to identify causes and recommend future mitigation strategies
+ Manage implementation of information security such as availability, integrity, confidentiality, risk management, threat identification, modeling, monitoring, incident response, access management, and business continuity
+ Define, track and report on key performance indicators to demonstrate value add for the team
+ Implement and refine established best practices, processes and workflows to increase team efficiency and continuous improvement
+ Mentor and guide talent development of direct reports and assist in hiring talent
**Required Qualifications:**
+ 4+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
+ 2+ years of Leadership experience
**Desired Qualifications:**
+ Experience leading a Scrum team and a deep knowledge of Agile practices
+ Experience with data onboarding and normalization in a large SIEM environment
+ Experience with detection engineering for advanced security use cases
+ Experience leading a cross-functional team of advanced security engineers
+ Proven ability to lead, develop, coach and mentor technical teams
+ Deep understanding of the MITRE ATT&CK framework
+ Experience with SDLC practices and CI/CD deployment
+ Deep understanding of cyber threats, adversary tactics, techniques and procedures as it relates to detection development
+ Strong written and verbal communication skills
**Job Expectations:**
+ 10% Travel may be required
**Pay Range**
Reflected is the base pay range offered for this position. Pay may vary depending on factors including but not limited to achievements, skills, experience, or work location. The range listed is just one component of the compensation package offered to candidates.
$119,000.00 - $224,000.00
**Benefits**
Wells Fargo provides eligible employees with a comprehensive set of benefits, many of which are listed below. Visit Benefits - Wells Fargo Jobs (*************************************************************** for an overview of the following benefit plans and programs offered to employees.
+ Health benefits
+ 401(k) Plan
+ Paid time off
+ Disability benefits
+ Life insurance, critical illness insurance, and accident insurance
+ Parental leave
+ Critical caregiving leave
+ Discounts and savings
+ Commuter benefits
+ Tuition reimbursement
+ Scholarships for dependent children
+ Adoption reimbursement
**Posting End Date:**
11 Dec 2025
***** **_Job posting may come down early due to volume of applicants._**
**We Value Equal Opportunity**
Wells Fargo is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.
Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit's risk appetite and all risk and compliance program requirements.
**Applicants with Disabilities**
To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo (****************************************************************** .
**Drug and Alcohol Policy**
Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy (********************************************************************** to learn more.
**Wells Fargo Recruitment and Hiring Requirements:**
a. Third-Party recordings are prohibited unless authorized by Wells Fargo.
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.
**Req Number:** R-492824
Information Security Engineering Manager
Iselin, NJ jobs
**About this role:** Wells Fargo is seeking an Information Security Engineering Manager in Technology as part of Cybersecurity. Learn more about the career areas and lines of business at wellsfargojobs.com. Wells Fargo is seeking an Information Security Engineering Manager to lead a cross-functional team of talented detection engineers and operationalize innovative capabilities within the SIEM platform.
This team provides 24x7 on-call support for security incidents as well as data onboarding and normalization, data feed health and maintenance, data model health and maintenance, and ad-hoc support requests for the SIEM. This team operates under the Agile Scrum framework supporting multiple security monitoring focused teams.
**In this role, you will:**
+ Manage a team of talented engineers that design, document, test, maintain and provide issue resolution recommendations for highly complex security solutions related to networking, cryptography, cloud, authentication or directory services, email, internet, applications or endpoint security
+ Manage security consulting on large projects for internal clients to ensure conformity with corporate information security policy, and standards
+ Possess subject matter expertise at a mastery level in current and emerging security solutions and best practices
+ Review and correlate security logs, including overseeing data onboarding and normalization best practices
+ Manage computer security incident response activities for highly complex events
+ Conduct technical investigation of security-related incidents, and conduct post-incident digital forensics to identify causes and recommend future mitigation strategies
+ Manage implementation of information security such as availability, integrity, confidentiality, risk management, threat identification, modeling, monitoring, incident response, access management, and business continuity
+ Define, track and report on key performance indicators to demonstrate value add for the team
+ Implement and refine established best practices, processes and workflows to increase team efficiency and continuous improvement
+ Mentor and guide talent development of direct reports and assist in hiring talent
**Required Qualifications:**
+ 4+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
+ 2+ years of Leadership experience
**Desired Qualifications:**
+ Experience leading a Scrum team and a deep knowledge of Agile practices
+ Experience with data onboarding and normalization in a large SIEM environment
+ Experience with detection engineering for advanced security use cases
+ Experience leading a cross-functional team of advanced security engineers
+ Proven ability to lead, develop, coach and mentor technical teams
+ Deep understanding of the MITRE ATT&CK framework
+ Experience with SDLC practices and CI/CD deployment
+ Deep understanding of cyber threats, adversary tactics, techniques and procedures as it relates to detection development
+ Strong written and verbal communication skills
**Job Expectations:**
+ 10% Travel may be required
**Pay Range**
Reflected is the base pay range offered for this position. Pay may vary depending on factors including but not limited to achievements, skills, experience, or work location. The range listed is just one component of the compensation package offered to candidates.
$119,000.00 - $224,000.00
**Benefits**
Wells Fargo provides eligible employees with a comprehensive set of benefits, many of which are listed below. Visit Benefits - Wells Fargo Jobs (*************************************************************** for an overview of the following benefit plans and programs offered to employees.
+ Health benefits
+ 401(k) Plan
+ Paid time off
+ Disability benefits
+ Life insurance, critical illness insurance, and accident insurance
+ Parental leave
+ Critical caregiving leave
+ Discounts and savings
+ Commuter benefits
+ Tuition reimbursement
+ Scholarships for dependent children
+ Adoption reimbursement
**Posting End Date:**
11 Dec 2025
***** **_Job posting may come down early due to volume of applicants._**
**We Value Equal Opportunity**
Wells Fargo is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.
Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit's risk appetite and all risk and compliance program requirements.
**Applicants with Disabilities**
To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo (****************************************************************** .
**Drug and Alcohol Policy**
Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy (********************************************************************** to learn more.
**Wells Fargo Recruitment and Hiring Requirements:**
a. Third-Party recordings are prohibited unless authorized by Wells Fargo.
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.
**Req Number:** R-492824
Mgr Information Security - Pen Testing
Fort Lauderdale, FL jobs
Hours: 40 Pay Details: $87,000 - $151,000 USD TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
Line of Business:
Technology Solutions
:
The Manager Information Security manages / leads a team of Technology Controls / Information Security experts in the development and/ or management of relevant strategies, programs, tools, frameworks and policies and provides specialized oversight / control / governance activities for a key business line/segment or transformational (change the bank) strategic initiative / program, liaising across the organization and primarily interfacing with executive and/or functional stakeholders to minimize overall technology risks to the Bank for own area.
Job Description:
This position manages junior level penetration testers, vendor coordination for multiple testing services, processes, procedures and scheduling for penetration, dynamic scanning, and manual code review testing services.
Responsibilities:
* Vendor Management: Manage and coordinate penetration testing engagements with vendors.
* People Management: Manage a team of Junior level penetration testers and their development.
* DAST: Manage the DAST program and tooling. Familiarity with current industry tooling and technologies and those being introduced.
* Facilitate Penetration Tests: Perform thorough and methodical penetration testing.
* Evaluate and Assign: penetration tests to appropriate resources.
* Vulnerability Assessment: Assess and analyze security weaknesses, and provide actionable recommendations to mitigate risks and improve overall security posture.
* Report Findings: Document and communicate findings clearly and effectively to both technical and non-technical stakeholders. Prepare comprehensive reports with recommendations for remediation.
* Develop Test Procedures: Design and execute detailed test requirements.
* Stay Current: Keep up-to-date with the latest security trends, vulnerabilities, and tools to ensure testing methodologies are current and effective.
* Collaborate with Teams: Work closely with IT and development teams to understand system architectures, provide guidance on security best practices, and support the implementation of security improvements; work closely with advisory and SDLC pipeline teams to ensure compliance; work closely with PCS team to manage PCI testing requirements. This position will collaborate with many application security teams.
* Perform Risk Assessments: Evaluate and assess potential security risks related to new and existing systems and technologies.
* Compliance: Ensure that penetration testing practices comply with relevant regulations, standards, and organizational policies.
* Incidents: Act as a testing SME on incident calls; support testers on the calls.
Depth & Scope:
* Advanced knowledge of Bank, technology standards and managing people / projects
* Leads a small team of IT professionals; coaches/ educates, monitors and manages team members
* Strong communication, negotiation and organizational skills specifically including the ability to present options in business terms to both IT and business staff including executives
Education & Experience:
* Bachelor's degree preferred
* Information security certification / accreditation an asset
* 7+ years of relevant experience
Preferred Qualifications :
* Technical Skills:
* Proficiency in penetration testing tools such as Metasploit, Burp Suite, Nmap, and Kali.
* Knowledge of common web application vulnerabilities (e.g., OWASP Top Ten) and network security principles.
* Penetration testing, DAST, Manual Code Review knowledge.
* Analytical Skills: Strong analytical and problem-solving abilities with attention to detail.
* Organizational Skills: Manage documents and procedures for testing team.
* Multi-tasking: This job requires exceptional ability to multi-task with multiple workstreams to manage daily.
* Communication: Excellent verbal and written communication skills, with the ability to convey complex technical concepts to non-technical stakeholders.
* Ethical Standards: Demonstrated understanding of ethical hacking principles and a commitment to maintaining high ethical standards.
* Experience with penetration testing in AI, cloud environments (e.g., AWS, Azure) and PCI testing.
* Familiarity with security standards and frameworks.
* Previous experience managing and developing teams.
* Certifications: Relevant certifications such as Offensive Security Certified Professional (OSCP), Certified Ethical Hacker (CEH), or GIAC Penetration Tester (GPEN) are highly desirable.
* Provide support and consulting in preparation for Audits and in composing management responses and appropriate remediation activities
* Participate in computer security incident responses relevant to business (or enterprise wide) and represent respective function and Enterprise position to the business, and business needs to incident response team
#TDCyberSecurity #Hybrid
Physical Requirements:
Never: 0%; Occasional: 1-33%; Frequent: 34-66%; Continuous: 67-100%
* Domestic Travel - Occasional
* International Travel - Never
* Performing sedentary work - Continuous
* Performing multiple tasks - Continuous
* Operating standard office equipment - Continuous
* Responding quickly to sounds - Occasional
* Sitting - Continuous
* Standing - Occasional
* Walking - Occasional
* Moving safely in confined spaces - Occasional
* Lifting/Carrying (under 25 lbs.) - Occasional
* Lifting/Carrying (over 25 lbs.) - Never
* Squatting - Occasional
* Bending - Occasional
* Kneeling - Never
* Crawling - Never
* Climbing - Never
* Reaching overhead - Never
* Reaching forward - Occasional
* Pushing - Never
* Pulling - Never
* Twisting - Never
* Concentrating for long periods of time - Continuous
* Applying common sense to deal with problems involving standardized situations - Continuous
* Reading, writing and comprehending instructions - Continuous
* Adding, subtracting, multiplying and dividing - Continuous
The above statements are intended to describe the general nature and level of work being performed by people assigned to this job. They are not intended to be an exhaustive list of all responsibilities, duties and skills required. The listed or specified responsibilities & duties are considered essential functions for ADA purposes.
Who We Are:
TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.
TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing. As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether you've got years of banking experience or are just starting your career in financial services, we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs, we're here to support you towards your goals. As an organization, we keep growing - and so will you.
Our Total Rewards Package
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical and mental well-being goals. Total Rewards at TD includes base salary and variable compensation/incentive awards (e.g., eligibility for cash and/or equity incentive awards, generally through participation in an incentive plan) and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off (including Vacation PTO, Flex PTO, and Holiday PTO), banking benefits and discounts, career development, and reward and recognition. Learn more
Additional Information:
We're delighted that you're considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we're committed to providing the support our colleagues need to thrive both at work and at home.
Colleague Development
If you're interested in a specific career path or are looking to build certain skills, we want to help you succeed. You'll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. Whether you have a passion for helping customers and want to expand your experience, or you want to coach and inspire your colleagues, there are many different career paths within our organization at TD - and we're committed to helping you identify opportunities that support your goals.
Training & Onboarding
We will provide training and onboarding sessions to ensure that you've got everything you need to succeed in your new role.
Interview Process
We'll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.
Accommodation
TD Bank is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, status as a protected veteran or any other characteristic protected under applicable federal, state, or local law.
If you are an applicant with a disability and need accommodations to complete the application process, please email TD Bank US Workplace Accommodations Program at ***************. Include your full name, best way to reach you and the accommodation needed to assist you with the applicant process.
Auto-ApplyMgr Information Security - Pen Testing
Mount Laurel, NJ jobs
Mount Laurel, New Jersey, United States of America **Hours:** 40 **Pay Details:** $87,000 - $151,000 USD TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
**Line of Business:**
Technology Solutions
**:**
The Manager Information Security manages / leads a team of Technology Controls / Information Security experts in the development and/ or management of relevant strategies, programs, tools, frameworks and policies and provides specialized oversight / control / governance activities for a key business line/segment or transformational (change the bank) strategic initiative / program, liaising across the organization and primarily interfacing with executive and/or functional stakeholders to minimize overall technology risks to the Bank for own area.
**Job Description:**
This position manages junior level penetration testers, vendor coordination for multiple testing services, processes, procedures and scheduling for penetration, dynamic scanning, and manual code review testing services.
**Responsibilities:**
+ **Vendor Management:** Manage and coordinate penetration testing engagements with vendors.
+ **People Management:** Manage a team of Junior level penetration testers and their development.
+ **DAST:** Manage the DAST program and tooling. Familiarity with current industry tooling and technologies and those being introduced.
+ **Facilitate Penetration Tests:** Perform thorough and methodical penetration testing.
+ **Evaluate and Assign:** penetration tests to appropriate resources.
+ **Vulnerability Assessment:** Assess and analyze security weaknesses, and provide actionable recommendations to mitigate risks and improve overall security posture.
+ **Report Findings:** Document and communicate findings clearly and effectively to both technical and non-technical stakeholders. Prepare comprehensive reports with recommendations for remediation.
+ **Develop Test Procedures:** Design and execute detailed test requirements.
+ **Stay Current:** Keep up-to-date with the latest security trends, vulnerabilities, and tools to ensure testing methodologies are current and effective.
+ **Collaborate with Teams:** Work closely with IT and development teams to understand system architectures, provide guidance on security best practices, and support the implementation of security improvements; work closely with advisory and SDLC pipeline teams to ensure compliance; work closely with PCS team to manage PCI testing requirements. This position will collaborate with many application security teams.
+ **Perform Risk Assessments:** Evaluate and assess potential security risks related to new and existing systems and technologies.
+ **Compliance:** Ensure that penetration testing practices comply with relevant regulations, standards, and organizational policies.
+ **Incidents:** Act as a testing SME on incident calls; support testers on the calls.
**Depth & Scope:**
+ Advanced knowledge of Bank, technology standards and managing people / projects
+ Leads a small team of IT professionals; coaches/ educates, monitors and manages team members
+ Strong communication, negotiation and organizational skills specifically including the ability to present options in business terms to both IT and business staff including executives
**Education & Experience:**
+ Bachelor's degree preferred
+ Information security certification / accreditation an asset
+ 7+ years of relevant experience
**Preferred Qualifications :**
+ **Technical Skills:**
+ Proficiency in penetration testing tools such as Metasploit, Burp Suite, Nmap, and Kali.
+ Knowledge of common web application vulnerabilities (e.g., OWASP Top Ten) and network security principles.
+ Penetration testing, DAST, Manual Code Review knowledge.
+ **Analytical Skills:** Strong analytical and problem-solving abilities with attention to detail.
+ **Organizational Skills:** Manage documents and procedures for testing team.
+ **Multi-tasking** : This job requires exceptional ability to multi-task with multiple workstreams to manage daily.
+ **Communication:** Excellent verbal and written communication skills, with the ability to convey complex technical concepts to non-technical stakeholders.
+ **Ethical Standards:** Demonstrated understanding of ethical hacking principles and a commitment to maintaining high ethical standards.
+ Experience with penetration testing in AI, cloud environments (e.g., AWS, Azure) and PCI testing.
+ Familiarity with security standards and frameworks.
+ Previous experience managing and developing teams.
+ **Certifications:** Relevant certifications such as Offensive Security Certified Professional (OSCP), Certified Ethical Hacker (CEH), or GIAC Penetration Tester (GPEN) are highly desirable.
+ Provide support and consulting in preparation for Audits and in composing management responses and appropriate remediation activities
+ Participate in computer security incident responses relevant to business (or enterprise wide) and represent respective function and Enterprise position to the business, and business needs to incident response team
\#TDCyberSecurity #Hybrid
**Physical Requirements:**
Never: 0%; Occasional: 1-33%; Frequent: 34-66%; Continuous: 67-100%
+ Domestic Travel - Occasional
+ International Travel - Never
+ Performing sedentary work - Continuous
+ Performing multiple tasks - Continuous
+ Operating standard office equipment - Continuous
+ Responding quickly to sounds - Occasional
+ Sitting - Continuous
+ Standing - Occasional
+ Walking - Occasional
+ Moving safely in confined spaces - Occasional
+ Lifting/Carrying (under 25 lbs.) - Occasional
+ Lifting/Carrying (over 25 lbs.) - Never
+ Squatting - Occasional
+ Bending - Occasional
+ Kneeling - Never
+ Crawling - Never
+ Climbing - Never
+ Reaching overhead - Never
+ Reaching forward - Occasional
+ Pushing - Never
+ Pulling - Never
+ Twisting - Never
+ Concentrating for long periods of time - Continuous
+ Applying common sense to deal with problems involving standardized situations - Continuous
+ Reading, writing and comprehending instructions - Continuous
+ Adding, subtracting, multiplying and dividing - Continuous
The above statements are intended to describe the general nature and level of work being performed by people assigned to this job. They are not intended to be an exhaustive list of all responsibilities, duties and skills required. The listed or specified responsibilities & duties are considered essential functions for ADA purposes.
**Who We Are:**
TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.
TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing. As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether you've got years of banking experience or are just starting your career in financial services, we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs, we're here to support you towards your goals. As an organization, we keep growing - and so will you.
**Our Total Rewards Package**
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical and mental well-being goals. Total Rewards at TD includes base salary and variable compensation/incentive awards (e.g., eligibility for cash and/or equity incentive awards, generally through participation in an incentive plan) and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off (including Vacation PTO, Flex PTO, and Holiday PTO), banking benefits and discounts, career development, and reward and recognition. Learn more (***************************************
**Additional Information:**
We're delighted that you're considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we're committed to providing the support our colleagues need to thrive both at work and at home.
**Colleague Development**
If you're interested in a specific career path or are looking to build certain skills, we want to help you succeed. You'll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. Whether you have a passion for helping customers and want to expand your experience, or you want to coach and inspire your colleagues, there are many different career paths within our organization at TD - and we're committed to helping you identify opportunities that support your goals.
**Training & Onboarding**
We will provide training and onboarding sessions to ensure that you've got everything you need to succeed in your new role.
**Interview Process**
We'll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.
**Accommodation**
TD Bank is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, status as a protected veteran or any other characteristic protected under applicable federal, state, or local law.
If you are an applicant with a disability and need accommodations to complete the application process, please email TD Bank US Workplace Accommodations Program at *************** . Include your full name, best way to reach you and the accommodation needed to assist you with the applicant process.
Federal law prohibits job discrimination based on race, color, sex, sexual orientation, gender identity, national origin, religion, age, equal pay, disability and genetic information.
Manager, Information Security (Monitoring and Investigation)
New York, NY jobs
Toronto, Ontario, Canada **Hours:** 37.5 **Line of Business:** Technology Solutions **Pay Details:** 91,200 - 136,800 CAD TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
**Job Description:**
TD Bank is seeking a strategic and technically skilled Manager to join our Information Security team, focused on strengthening our fraud detection, authentication, and CIAM (Customer Identity and Access Management) capabilities. This role will lead the expansion of our monitoring and alerting footprint across enterprise platforms, ensuring control effectiveness, regulatory alignment, and rapid incident response in a complex financial environment.
Key Responsibilities
- Lead the design and deployment of monitoring and alerting strategies using Splunk, Datadog, Dynatrace, and Databricks across TD's digital ecosystem
- Define alert thresholds and tuning logic to minimize false positives while maintaining high sensitivity to fraud and access anomalies
- Oversee triage workflows for triggered alerts, coordinating with global teams to ensure timely investigation and resolution
- Develop governance frameworks for alert lifecycle management, including setup, ownership, escalation, and audit readiness
- Monitor control effectiveness across CIAM, authentication, and fraud domains, driving continuous improvement
- Collaborate with fraud and cybersecurity teams to support incident investigations and mitigation strategies
- Analyze alert trends and performance metrics to inform strategic improvements and risk prioritization
- Champion automation and workflow optimization for alert handling, reporting, and compliance documentation
- Ensure alignment with TD's enterprise risk management and regulatory obligations (e.g., OSFI, OCC)
- Provide mentorship and leadership within the security monitoring team, fostering a culture of accountability and innovation
Required Qualifications & Expertise
- 5+ years of experience in information security, CIAM/fraud detection, or observability engineering within financial services
- Hands-on expertise with Splunk, Datadog, Dynatrace, and Databricks for alert creation, analytics, and dashboarding
- Strong understanding of CIAM, authentication protocols, and fraud risk indicators in regulated environments
- Experience designing governance frameworks and control monitoring programs aligned with financial compliance standards
- Proven ability to lead cross-functional teams and drive incident response processes across geographies
- Excellent communication and documentation skills, with a strategic mindset and attention to regulatory detail
**Who We Are:**
TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.
TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing. As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether you've got years of banking experience or are just starting your career in financial services, we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs, we're here to support you towards your goals. As an organization, we keep growing - and so will you.
**Our Total Rewards Package**
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical, and mental well-being goals. Total Rewards at TD includes a base salary, variable compensation, and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off, banking benefits and discounts, career development, and reward and recognition programs. Learn more (**********************************************************************
**Additional Information:**
We're delighted that you're considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we're committed to providing the support our colleagues need to thrive both at work and at home.
Please be advised that this job opportunity is subject to provincial regulation for employment purposes. It is imperative to acknowledge that each province or territory within the jurisdiction of Canada may have its own set of regulations, requirements.
**Colleague Development**
If you're interested in a specific career path or are looking to build certain skills, we want to help you succeed. You'll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. Whether you have a passion for helping customers and want to expand your experience, or you want to coach and inspire your colleagues, there are many different career paths within our organization at TD - and we're committed to helping you identify opportunities that support your goals.
**Training & Onboarding**
We will provide training and onboarding sessions to ensure that you've got everything you need to succeed in your new role.
**Interview Process**
We'll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.
**Accommodation**
Your accessibility is important to us. Please let us know if you'd like accommodations (including accessible meeting rooms, captioning for virtual interviews, etc.) to help us remove barriers so that you can participate throughout the interview process.
We look forward to hearing from you!
**Language Requirement (Quebec only):**
Sans Objet
Federal law prohibits job discrimination based on race, color, sex, sexual orientation, gender identity, national origin, religion, age, equal pay, disability and genetic information.
Manager, Information Security (Monitoring and Investigation)
New York, NY jobs
Hours: 37.5 Line of Business: Technology Solutions Pay Details: 91,200 - 136,800 CAD TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
Job Description:
TD Bank is seeking a strategic and technically skilled Manager to join our Information Security team, focused on strengthening our fraud detection, authentication, and CIAM (Customer Identity and Access Management) capabilities. This role will lead the expansion of our monitoring and alerting footprint across enterprise platforms, ensuring control effectiveness, regulatory alignment, and rapid incident response in a complex financial environment.
Key Responsibilities
* Lead the design and deployment of monitoring and alerting strategies using Splunk, Datadog, Dynatrace, and Databricks across TD's digital ecosystem
* Define alert thresholds and tuning logic to minimize false positives while maintaining high sensitivity to fraud and access anomalies
* Oversee triage workflows for triggered alerts, coordinating with global teams to ensure timely investigation and resolution
* Develop governance frameworks for alert lifecycle management, including setup, ownership, escalation, and audit readiness
* Monitor control effectiveness across CIAM, authentication, and fraud domains, driving continuous improvement
* Collaborate with fraud and cybersecurity teams to support incident investigations and mitigation strategies
* Analyze alert trends and performance metrics to inform strategic improvements and risk prioritization
* Champion automation and workflow optimization for alert handling, reporting, and compliance documentation
* Ensure alignment with TD's enterprise risk management and regulatory obligations (e.g., OSFI, OCC)
* Provide mentorship and leadership within the security monitoring team, fostering a culture of accountability and innovation
Required Qualifications & Expertise
* 5+ years of experience in information security, CIAM/fraud detection, or observability engineering within financial services
* Hands-on expertise with Splunk, Datadog, Dynatrace, and Databricks for alert creation, analytics, and dashboarding
* Strong understanding of CIAM, authentication protocols, and fraud risk indicators in regulated environments
* Experience designing governance frameworks and control monitoring programs aligned with financial compliance standards
* Proven ability to lead cross-functional teams and drive incident response processes across geographies
* Excellent communication and documentation skills, with a strategic mindset and attention to regulatory detail
Who We Are:
TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.
TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing. As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether you've got years of banking experience or are just starting your career in financial services, we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs, we're here to support you towards your goals. As an organization, we keep growing - and so will you.
Our Total Rewards Package
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical, and mental well-being goals. Total Rewards at TD includes a base salary, variable compensation, and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off, banking benefits and discounts, career development, and reward and recognition programs. Learn more
Additional Information:
We're delighted that you're considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we're committed to providing the support our colleagues need to thrive both at work and at home.
Please be advised that this job opportunity is subject to provincial regulation for employment purposes. It is imperative to acknowledge that each province or territory within the jurisdiction of Canada may have its own set of regulations, requirements.
Colleague Development
If you're interested in a specific career path or are looking to build certain skills, we want to help you succeed. You'll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. Whether you have a passion for helping customers and want to expand your experience, or you want to coach and inspire your colleagues, there are many different career paths within our organization at TD - and we're committed to helping you identify opportunities that support your goals.
Training & Onboarding
We will provide training and onboarding sessions to ensure that you've got everything you need to succeed in your new role.
Interview Process
We'll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.
Accommodation
Your accessibility is important to us. Please let us know if you'd like accommodations (including accessible meeting rooms, captioning for virtual interviews, etc.) to help us remove barriers so that you can participate throughout the interview process.
We look forward to hearing from you!
Language Requirement (Quebec only):
Sans Objet
Auto-ApplySystems Engineer - Physical Security
Day, NY jobs
Hudson River Trading (HRT) is looking for a Systems Engineer with a focus on physical security systems to join our Enterprise Technology team. This role will liaise closely with our Workplace and various Security teams to conduct research, design, and maintain physical security platforms. You'll join a lean and technical team with opportunities to architect, own, and evolve HRT's global physical security infrastructure, driving both strategic vision and hands-on execution, to help HRT stay secure while providing a great employee experience.
Responsibilities
Research, architect, and deploy physical security systems across our offices and supporting sites around the globe
Conduct audits and risk assessments of the physical security of equipment and locations globally
Curate an enjoyable employee experience while helping to maintain safety, security and compliance
Manage user roles, permissions, and system access in compliance with company policies and best practices
Troubleshoot hardware/software issues, perform diagnostics, and provide Level 2/3 support
Create and maintain documentation of configurations, procedures, and system architecture
Help lead technical response and forensic analysis for physical security incidents in collaboration with Workplace and Security Operations teams
Collaborate with internal stakeholders to evaluate and adopt next-generation physical security technologies, such as AI-driven analytics, mobile credentials, or zero-trust physical systems
Qualifications
5+ years of experience in the systems architecture, engineering, and administration of physical security systems (camera infrastructure, badge platforms, biometrics, environmental sensors, access control, etc.)
Experience with open protocols and standards in physical security (OSDP, SNMP, etc.)
Experience with consolidating and automating identity management, configuration, and logging for disparate physical security, access control, and digital IAM platforms
Experience with data center physical security systems (VSS, ACS, IDS, anti-tailgating, anti-passback, mantraps, etc.)
Experience automating through code (Python, Go, PowerShell) and working with SDKs/APIs
Strong knowledge of networking concepts and protocols
Familiarity with securing IP-based physical systems and awareness of modern physical security threats (e.g., firmware supply chain, OT/IT convergence)
Willing to travel 20% of time to visit other offices and facilities as needed
A certification like Certified Protection Professional (CPP) or Physical Security Professional (PSP) is a plus
Experience using Linux is a plus
Experience with public cloud providers (GCP, AWS, Azure) is a plus
The estimated base salary range for this position is 150,000 to 250,000 USD per year (or local equivalent). The base pay offered may vary depending on multiple individualized factors, including location, job-related knowledge, skills, and experience. This role will also be eligible for discretionary performance-based bonuses and a competitive benefits package.
Culture
Hudson River Trading (HRT) brings a scientific approach to trading financial products. We have built one of the world's most sophisticated computing environments for research and development. Our researchers are at the forefront of innovation in the world of algorithmic trading.
At HRT we welcome a variety of expertise: mathematics and computer science, physics and engineering, media and tech. We're a community of self-starters who are motivated by the excitement of being at the cutting edge of automation in every part of our organization-from trading, to business operations, to recruiting and beyond. We value openness and transparency, and celebrate great ideas from HRT veterans and new hires alike. At HRT we're friends and colleagues - whether we are sharing a meal, playing the latest board game, or writing elegant code. We embrace a culture of togetherness that extends far beyond the walls of our office.
Feel like you belong at HRT? Our goal is to find the best people and bring them together to do great work in a place where everyone is valued. HRT is proud of our diverse staff; we have offices all over the globe and benefit from our varied and unique perspectives. HRT is an equal opportunity employer; so whoever you are we'd love to get to know you.
Please be advised: Use of AI tools during interviews or assessments is strictly prohibited, unless otherwise instructed or agreed upon. We employ various methods to evaluate the authenticity of candidate responses. If we determine that AI assistance was used during any stage of the hiring process, we reserve the right to immediately disqualify your candidacy or rescind any job offers extended.
Auto-Apply