This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Wells Fargo is seeking a Senior Information Security Engineer.
Job Responsibility:
Lead or participate in computer security incident response activities for moderately complex events
Conduct technical investigation of security related incidents and post incident digital forensics to identify causes and recommend future mitigation strategies
Provide security consulting on medium projects for internal clients to ensure conformity with corporate information, security policy, and standards
Design, document, test, maintain, and provide issue resolution recommendations for moderately complex security solutions related to networking, cryptography, cloud, authentication and directory services, email, internet, applications, and endpoint security
Review and correlate security logs
Utilize subject matter knowledge in industry leading security solutions and best practices to implement one or more components of information security such as availability, integrity, confidentiality, risk management, threat identification, modeling, monitoring, incident response, access management, and business continuity
Identify security vulnerabilities and issues, perform risk assessments, and evaluate remediation alternatives
Collaborate and consult with peers, colleagues and managers to resolve issues and achieve goals
Knowledge in maintaining, configuration, upgrades of Palo Alto platforms and configuring the Global Protect as per design
Troubleshoot, identify and resolve Global Protect VPN issues and providing detailed root cause analysis regarding the problem
Strong knowledge and experience in Palo Alto HIP/ Host-Checker policies, alert configuration
Good knowledge of the TCP, HTTP, SSL protocol and headers, as well as packet-level protocol analysis capabilities
Knowledge of Active Directory (machine/user objects, Organizational Units, group policy processing, etc.)
Strong knowledge and experience in the areas of IP routing, switching, load-balancing, and advanced network automation techniques and solutions
Strong knowledge in the development of secure Network architectures and standards
Strong experience with the application of advanced network-based technical security controls in large enterprise network environments
Knowledge of DNS, DHCP, proxy technology, and Unix-based network appliances
Experience with large-scale enterprise security solutions spanning multiple business functions and geographic locations
Experience working with multifactor authentication
Ability to work periodic after-hours work including participation in an on-call rotation
Demonstrated enterprise experience in change management process
Strong working knowledge of providing/understanding network security documentation
Provide enterprise risk and threat communication efforts to key groups and the enterprise regarding potential threats and remediation efforts - including the ability to develop blog posts with effective analysis and actionable intelligence based on relevant security events
Providing checklist, guidelines and implementation for Palo Alto Global Protect polices and investigation of security
Intimate knowledge of the TCP, HTTP, SSL protocol and headers, as well as packet-level protocol analysis capabilities
Track record of consistent proven experience with network infrastructure systems and Internet technologies
Maintain an awareness of bank security policies and government regulations pertaining to information security
Create and deliver information security presentations and reports to internal support teams, LOB s and leadership
Develop and maintain operational documentation and procedures
Participates in the research, analysis, design, testing and implementation of complex computer network security/protection technologies for company information and network systems/applications
Assists customers in identifying security solutions for the company's networks and virtual private networks, application systems, key public infrastructures, authentication and directory services to ensure the security of the network and confidential data
Participates in computer security incident response activities and the technical investigations of security-related incidents
Experience working in an environment utilizing Agile methodology and processing workflow using Jira tool
Experience with logging, monitoring and data analysis tools such as Splunk, Google Cloud Platform and Grafana
Experience at on-call support for network security related issues
Collaborate and influence all levels of professionals including managers
Responsible for staging/configuration of network security products and implementations by following strict change management guidelines
Knowledge and understanding of Zero Trust Network Access concepts, systems, methodologies
Assist other security engineers at analysis or implementation work as needed
Periodic assignment to the team on-call rotation
Document project progress and milestones
Document monthly initiative updates to keep management abreast of progress
The primary goal for this role is to ensure system reliability of secure remote access with enhanced operational procedures and troubleshooting end users’ issues
Designing secure remote access policies to meet business requirements
Contribute to planning, testing and documenting environment changes which include new integrations as well as the existing environment
Will be actively involved in Audit-related activities
Support production deployments after-hours for Palo Alto infrastructure maintenance activities which involve communication and coordination with Engineering, Operations, Project Management, and Customer Application resources to ensure the scheduled deployments are successful
Requirements:
4+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
Experience working in the Palo Alto Firewall / Global Protect
Recent experience in implementing and supporting Palo Alto Global Protect VPN solution
CCNA or CCNA-Security or Palo Alto Networks Certified Network Security Engineer (PCNSE) certified
Leading and/or supporting the Palo Alto Global Protect VPN infrastructure operations with on-call responsibilities
2+ years of Intermediate to Advanced level experience with scripting/automation using tools such as: Bash, Ansible Playbook/Role Development, PowerShell, Python, etc.
2+ years advanced understanding of Network concepts like DNS, Firewall and Load Balancing
Proven experience with change and incident management practices in medium to large enterprise environments
Basic understanding of TLS, Certificates, and MTLS
Intimate knowledge of the inner workings of the Internet
Experience with Agile Scrum or Kanban methodologies
Excellent verbal, written, and interpersonal communication skills
Advanced Information Security technical skills and solid knowledge and understanding of information security practices and policies
ServiceNow, Jira and Confluence experience
Technical documentation experience
Strategic planning experience in translating leadership vision into executable strategies and initiatives
Technology experience in the Financial Services sector
Ability to coordinate completion of multiple tasks and meet aggressive time frames
Advanced critical thinking, problem solving and technical troubleshooting abilities
Strong analytical skills with high attention to detail and accuracy
Experience with and the ability to thrive in a complex and fast-paced technology and/or information security organization, within a large enterprise environment
Experience with Information Security Frameworks and standards (FFIEC, NIST, ISO)
Ability to work off hours and occasional weekends to support change activities
Nice to have:
Managed service delivery certifications like ITIL, Six Sigma will be beneficial