06 Aug
|
Wells Fargo
|
Bengaluru
06 Aug
Wells Fargo
Bengaluru
About this role:
Wells Fargo is seeking a Senior Information Security Engineer.
In this role, you will:
- Lead or participate in computer security incident response activities for moderately complex events
- Conduct technical investigation of security related incidents and post incident digital forensics to identify causes and recommend future mitigation strategies
- Provide security consulting on medium projects for internal clients to ensure conformity with corporate information, security policy, and standards
- Design, document, test, maintain, and provide issue resolution recommendations for moderately complex security solutions related to networking, cryptography, cloud, authentication and directory services, email, internet, applications, and endpoint security
- Review and correlate security logs
- Utilize subject matter knowledge in industry leading security solutions and best practices to implement one or more components of information security such as availability, integrity, confidentiality, risk management, threat identification, modeling, monitoring, incident response, access management, and business continuity
- Identify security vulnerabilities and issues, perform risk assessments, and evaluate remediation alternatives
- Collaborate and consult with peers, colleagues and managers to resolve issues and achieve goals
Required Qualifications:
- 4+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
Desired Qualifications:
- 4+ years of hands-on experience in Cyber Security, with a strong focus on Security Operations.
- 4+ years of experience working with enterprise SIEM platforms, preferably Splunk, including use case development, log analysis, and alert tuning.
- Solid understanding of cybersecurity frameworks and methodologies, including the Cyber Kill Chain, MITRE ATTCK, and NIST frameworks.
- Proven experience in Security Incident Response, including detection, investigation, containment, mitigation,
and remediation processes.
- Advanced knowledge of networking concepts, protocols, and security standards, along with deep understanding of Linux/Unix and Windows OS internals and system configurations.
- Solid analytical and problem-solving skills, with the ability to correlate events and identify potential threats across diverse environments.
- Bachelors and/or Masters degree in computer science, Information Systems, or a related field.
- Industry-recognized certifications such as CHFI, OSCP, CEH, or equivalent are highly preferred.
- Experience with SOAR platforms (e.g., XSOAR), threat intelligence integration, and automation/orchestration is an added advantage.
- Excellent documentation and communication skills, with the ability to clearly articulate investigation findings and recommendations.
Job Expectations:
- Monitor, triage, and investigate security alerts, ensuring timely and effective case handling and resolution.
- Conduct detailed security investigations, performing analysis, correlation, and validation of potential threats.
- Collaborate closely with Malware Engineering and Content Development teams to enhance detection capabilities and response strategies.
- Proactively identify operational challenges, escalate critical issues, and seek guidance from leads when required.
- Take ownership of Severity 1 (Sev1) incidents, including driving bridge calls, coordinating response activities, and ensuring timely resolution.
- Follow up on high-priority incidents and effectively coordinate with cross-functional resolver groups to ensure closure.
- Support leads in activities such as network vulnerability assessments, security audits, and risk assessments, ensuring compliance with corporate security policies and industry best practices.
- Contribute to continuous improvement by providing feedback on processes, detection use cases, and operational efficiency.
- Maintain accurate and detailed documentation of investigations, findings, and actions taken.
- Participate in 24x7 global security operations, including shift-based monitoring and incident response at the Security Operations Center (SOC).
📌 Senior Information Security Engineer - CTFC (Bengaluru)
🏢 Wells Fargo
📍 Bengaluru