CrawlJobs Logo

Lead Endpoint Security Engineer

https://www.wellsfargo.com/ Logo

Wells Fargo

Location Icon

Location:
United States, Charlotte

Category Icon
Category:
IT - Software Development

Job Type Icon

Contract Type:
Employment contract

Salary Icon

Salary:

119000.00 - 206000.00 USD / Year

Job Description:

Wells Fargo is seeking a Lead Information Security Engineer to drive the design, implementation, and oversight of endpoint and network security controls across a global enterprise. This role is critical in ensuring over 1 million devices remain secure, compliant, and resilient against evolving cyber threats.

Job Responsibility:

  • Design and implement scalable, automated security controls across a large, distributed endpoint and network infrastructure
  • Define and maintain infrastructure security requirements aligned with enterprise policies and regulatory obligations
  • Evaluate and validate security control designs to ensure compliance, effectiveness, and alignment with Zero Trust principles
  • Lead secure onboarding of new endpoint technologies and ensure secure configurations across hybrid environments
  • Develop and manage strategies for continuous compliance monitoring and threat detection
  • Lead complex security incident response efforts, including root cause analysis and digital forensics
  • Correlate and analyze security logs to identify vulnerabilities, threats, and anomalies
  • Recommend and implement mitigation strategies based on threat intelligence and post-incident findings
  • Partner with Security Architecture, Infrastructure, Risk, and Compliance teams to integrate security into enterprise designs and deployment processes
  • Participate in architecture reviews and risk assessments for infrastructure and security initiatives
  • Present technical designs and security strategies to senior leadership and stakeholders
  • Mentor and provide technical guidance to engineers and security team members
  • Create and maintain technical documentation, security standards, and training materials
  • Translate complex security requirements into actionable, scalable technical solutions
  • Stay current with industry trends, threat intelligence, and regulatory changes to proactively evolve security strategies
  • Promote a security-first mindset and contribute to a culture of continuous improvement and operational excellence

Requirements:

  • 5+ years of Information Security Engineering experience
  • Deep expertise in security tools (e.g., firewalls, EDR, NAC), frameworks (NIST, MITRE), and secure infrastructure design
  • Strong, hands-on knowledge of one or many network security tools (e.g., firewalls, IDS/IPS, proxies, NAC)
  • Familiarity with cloud security (AWS, Azure, GCP) and hybrid environments
  • Solid understanding of network segmentation, Zero Trust architecture, and secure device onboarding practices
  • Proven experience designing and implementing enterprise-scale security solutions
  • Experience developing and executing security tool strategies and roadmaps
  • Deep understanding of security frameworks (e.g., NIST, ISO 27001, MITRE ATT&CK)
  • Strong understanding of endpoint protection platforms (e.g., CrowdStrike, Microsoft Defender for Endpoint, Tanium)
  • Strong grasp of the OSI model and its relevance to cybersecurity
  • Excellent problem-solving, analytical, and communication skills
  • Ability to collaborate across technical and non-technical teams and clearly document technical requirements
  • Certifications: GCIA, CISSP, OSCP

Nice to have:

  • Strong, hands-on knowledge of one or many network security tools (e.g., firewalls, IDS/IPS, proxies, NAC)
  • Familiarity with cloud security (AWS, Azure, GCP) and hybrid environments
  • Solid understanding of network segmentation, Zero Trust architecture, and secure device onboarding practices
  • Proven experience designing and implementing enterprise-scale security solutions
  • Experience developing and executing security tool strategies and roadmaps
  • Deep understanding of security frameworks (e.g., NIST, ISO 27001, MITRE ATT&CK)
  • Strong understanding of endpoint protection platforms (e.g., CrowdStrike, Microsoft Defender for Endpoint, Tanium)
  • Strong grasp of the OSI model and its relevance to cybersecurity
  • Excellent problem-solving, analytical, and communication skills
  • Ability to collaborate across technical and non-technical teams and clearly document technical requirements
  • Certifications: GCIA, CISSP, OSCP
What we offer:
  • Health benefits
  • 401(k) Plan
  • Paid time off
  • Disability benefits
  • Life insurance, critical illness insurance, and accident insurance
  • Parental leave
  • Critical caregiving leave
  • Discounts and savings
  • Commuter benefits
  • Tuition reimbursement
  • Scholarships for dependent children
  • Adoption reimbursement

Additional Information:

Job Posted:
August 01, 2025

Expiration:
August 08, 2025

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.