Senior Security Engineer
Cetera Financial Group · Dallas, TX · 1 wk ago
Information TechnologyFull-time
About the role
The person who fills this role will focus on the security and compliance of our customers' systems and processes as well as play a pivotal role in safeguarding our organization's digital assets across our hybrid technology environment.
Responsibilities
- Design, implement, and maintain cybersecurity solutions to protect against evolving threats in both traditional data centers and AWS and Azure cloud hosting.
- Conduct security assessments, vulnerability assessments, and penetration testing in diverse environments.
- Monitor and respond to security incidents and breaches across on-premises and cloud platforms, ensuring swift resolution.
- Collaborate with cross-functional teams to integrate security best practices into systems and applications deployed in hybrid environments.
- Manage and optimize security tools and technologies, including firewalls, IDS/IPS, SIEM solutions, Microsoft Intune, Bitlocker, Defender, Tanium, Crowdstrike Falcon, SMARSH Cyber Compliance and SCCM, in both traditional and cloud environments, including Office365.
- Develop and enforce security policies, standards, and procedures that apply to on-premises and cloud deployments.
- Stay updated on the latest cyber threats and security trends, providing proactive recommendations to mitigate risks in hybrid settings.
- Assist in security audits and compliance efforts, ensuring adherence to relevant security frameworks and standards.
- Provide dedicated support to financial advisors, assisting them in securing their systems and environments to meet regulatory and security standards.
- Emphasize customer service skills and experience by providing exceptional support and guidance to internal and external stakeholders, ensuring their cybersecurity needs are met with professionalism and efficiency.
- Support the Advisor Security Program by working closely with Cetera advisors to secure their systems, provide training, and ensure compliance with security policies and standards.
Requirements
- Proficiency in securing both traditional data center environments and cloud hosting platforms (AWS and Azure), including Office365.
- Experience with a wide range of security tools, including Microsoft Intune, Bitlocker, Defender, Tanium, SCCM, and more, adaptable to on-premises and cloud deployments.
- Familiarity with security frameworks and standards (e.g., NIST, ISO 27001, CSA) applicable to hybrid environments.
- An undergraduate degree is preferred, preferably related to security, technology, engineering, or other relevant area.
- At least 3-5 years relevant experience in IT security preferably in the financial services industry, including experience with related technologies, compliance, and development and implementation of policies and procedures.
- One or more professional certifications preferred (e.g., CISSP, CISM, CISA, CRISC, CEH, G-PEN, OSCP, G-SEC, etc.) but not required.
- Ability to problem solve as well as provide leadership and guidance to others as needed.
- Familiarity with regulatory and compliance mandates, security standards, and control risk guidance such as NIST CSF & 800-53, NYS-DFS Part 500 (Cybersecurity), FINRA, SEC, FFIEC, etc.
- Strong customer service skills and experience, with the ability to communicate effectively and provide support to a diverse range of stakeholders.
Qualifications
- Undergraduate degree is preferred, preferably related to security, technology, engineering, or other relevant area.
- At least 3-5 years relevant experience in IT security preferably in the financial services industry, including experience with related technologies, compliance, and development and implementation of policies and procedures.
- One or more professional certifications preferred (e.g., CISSP, CISM, CISA, CRISC, CEH, G-PEN, OSCP, G-SEC, etc.) but not required.
Skills
- Proficiency in securing both traditional data center environments and cloud hosting platforms (AWS and Azure), including Office365.
- Experience with a wide range of security tools, including Microsoft Intune, Bitlocker, Defender, Tanium, SCCM, and more, adaptable to on-premises and cloud deployments.
- Familiarity with security frameworks and standards (e.g., NIST, ISO 27001, CSA) applicable to hybrid environments.
- Problem solving and leadership skills.
- Customer service skills and experience.
- Ability to stay updated on the latest cyber threats and security trends.
Benefits
- Inclusive health, dental, vision, and life insurance plans built to support diverse lifestyles, offer preventative care, and protect against hardship.
- Easy access to mental health benefits to meet our team members and their families where they are.
- 20+ days of paid time off (PTO), paid holidays, and 2 paid wellness days to give our employees the time they need to stay close with their loved ones, recharge, and give back to their communities.
- 401(k) savings plan with a generous company contribution (up to 5%), and access to a financial professional to offer our employees the opportunity to plan-ahead for a strong financial future well beyond their working years.
- Paid parental leave to support all team members with birth, adoption, and fostering.
- Health Savings and Flexible Spending Account options to help you save money on healthcare, daycare, commuting, and more.
- Employee Assistance Program (EAP), LifeLock, Pet Insurance and more.
- Paid caregiver leave to provide time away from work when caring for an ill or recovering family member.
- Additional benefits such as an Employee Assistance Program (EAP), identity theft protection (LifeLock), pet insurance, and other voluntary benefits to provide extra peace of mind.
Pay
Competitive salary.
Schedule
Full-time.