Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailPosition Title: Sr. Security Engineer
Department: Information Security Department
Employee Status: Full Time-Direct Hire with Client
Location: In Office Omaha NE
Purpose:
The Sr. Engineer Information Security Engineering is an individual contributor role within the Information Security department. The engineering team is responsible for driving security strategy and direction developing and executing roadmaps developing and maintaining security policies and strategies developing re-usable solutions and acting as subject matter experts in the services and solutions provided to the organization. The Sr. Engineer reports to the Director of Information Security Engineering responsible for managing the team. The Sr. Engineer is responsible for maintaining security policies developing solutions and acting as subject matter expert in safeguarding company enterprise systems. The role provides preventative detective and corrective controls to company information and computing to maintain security integrity and accessibility of data. Builds and maintains strong relationships with multiple business and technical teams and ensures that the technical security strategy is aligned with those teams objectives and the overall business strategy. Actively participates as a project team member and/or project team leader if necessary. Information Security subject matter expert on a wide variety of departmental and enterprise-wide projects and initiatives. Maintains a deep level of expertise in multiple technical domains (e.g. firewalls intrusion detection/prevention malware prevention web content filtering application security email monitoring and controls etc.) and provides/contributes to thought leadership in these areas.
Responsibilities:
Assist IT staff and end users with technical problems and implementations relative to data and computer system security and access controls
Detecting and responding to security violations and assisting auditors and reporting status of audit issues and managing security-related projects.
Be prepared to handle threats directed against enterprise networks hosts and data on a 7 x 24 x 365 basis.
Development and execution against visions strategies and roadmaps
Creation and maintenance of security policies standards and security patterns
Development of architecture approaches and solutions in the security space including consulting to the business and IT teams on security requirements and risk management
Ensuring the architecture teams acts as subject matter experts and high level support for complex issues
Develop and maintain critical vendor relationships with key strategic vendors on products and consulting.
Assist ISO in Planning forecasting and managing capital spend for the team.
Provide guidance and direction to leadership on key security issues
Contribute to the development of security awareness materials relevant to area of responsibility
Participate in engagement and project oversight
Maintain knowledge and compliance of all industry relevant regulatory requirements.
Leads or participates in projects and other activities involving the use of security technologies related to the protection of Enterprise systems and data.
Participates in the planning development and implementation of data and system security controls.
Conducts technical security risk assessments and participates in development and execution of remediation.
Consults on security direction maintaining a focus on assurance of enterprise information assets.
Analyze gaps between current and target security architecture.
Develops and implements strategies to close identified gaps in security architecture.
System process and procedure improvements
Present security status and project status to management.
Support for other Information Security Teams as assigned.
Performs other related duties incidental to the work described herein.
Work Requirements Experience Education and Skills:
Extensive knowledge of industry and Government standards as applicable to Information Protection and Assurance and knowledge of Information Security best practices and business controls.
Candidates must have in-depth experience in information security and a well-rounded knowledge of IT.
Technical expertise in multiple information security domains. (e.g. firewalls intrusion detection/prevention malware prevention web content filtering application security email monitoring and controls etc.)
Understanding of application security architecture and secure development best practices.
Excellent communication documentation prioritization and change management have broad knowledge of security policies and practices including ISO 17799 (27001) Payment Card Industry (PCI) Federal Financial institution regulatory agencies (OCC FFIEC) and other internal or external governing entities.
A Bachelors degree in computer science information systems business management engineering a physical science or other relevant field is required. Equivalent work experience may be considered as a substitution.
Candidates must have a minimum of 5 years of relevant experience.
Required Experience:
Senior IC
Full Time