This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Wells Fargo is seeking a Senior Information Security Engineer.
Job Responsibility
Lead or participate in computer security incident response activities for moderately complex events
Conduct technical investigation of security related incidents and post incident digital forensics to identify causes and recommend future mitigation strategies
Provide security consulting on medium projects for internal clients to ensure conformity with corporate information, security policy, and standards
Design, document, test, maintain, and provide issue resolution recommendations for moderately complex security solutions related to networking, cryptography, cloud, authentication and directory services, email, internet, applications, and endpoint security
Review and correlate security logs
Utilize subject matter knowledge in industry leading security solutions and best practices to implement one or more components of information security such as availability, integrity, confidentiality, risk management, threat identification, modeling, monitoring, incident response, access management, and business continuity
Identify security vulnerabilities and issues, perform risk assessments, and evaluate remediation alternatives
Collaborate and consult with peers, colleagues and managers to resolve issues and achieve goals
Monitor, triage, and investigate security alerts, ensuring timely and effective case handling and resolution
Conduct detailed security investigations, performing analysis, correlation, and validation of potential threats
Collaborate closely with Malware Engineering and Content Development teams to enhance detection capabilities and response strategies
Proactively identify operational challenges, escalate critical issues, and seek guidance from leads when required
Take ownership of Severity 1 (Sev1) incidents, including driving bridge calls, coordinating response activities, and ensuring timely resolution
Follow up on high-priority incidents and effectively coordinate with cross-functional resolver groups to ensure closure
Support leads in activities such as network vulnerability assessments, security audits, and risk assessments, ensuring compliance with corporate security policies and industry best practices
Contribute to continuous improvement by providing feedback on processes, detection use cases, and operational efficiency
Maintain accurate and detailed documentation of investigations, findings, and actions taken
Participate in 24x7 global security operations, including shift-based monitoring and incident response at the Security Operations Center (SOC)
Requirements
4+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
4+ years of hands-on experience in Cyber Security, with a strong focus on Security Operations
4+ years of experience working with enterprise SIEM platforms, preferably Splunk, including use case development, log analysis, and alert tuning
Solid understanding of cybersecurity frameworks and methodologies, including the Cyber Kill Chain, MITRE ATT&CK, and NIST frameworks
Proven experience in Security Incident Response, including detection, investigation, containment, mitigation, and remediation processes
Advanced knowledge of networking concepts, protocols, and security standards, along with deep understanding of Linux/Unix and Windows OS internals and system configurations
Strong analytical and problem-solving skills, with the ability to correlate events and identify potential threats across diverse environments
Bachelor’s and/or Master’s degree in computer science, Information Systems, or a related field
Industry-recognized certifications such as CHFI, OSCP, CEH, or equivalent are highly preferred
Experience with SOAR platforms (e.g., XSOAR), threat intelligence integration, and automation/orchestration is an added advantage
Excellent documentation and communication skills, with the ability to clearly articulate investigation findings and recommendations
Nice to have
Experience with SOAR platforms (e.g., XSOAR), threat intelligence integration, and automation/orchestration is an added advantage