Senior IT Security Engineer

1 month ago


San Antonio, United States TransPecos Banks Full time
Job DescriptionJob Description

Job Description


Job Title: Senior IT Security Engineer

This position is a remote assignment.

Summary:
The Senior IT Security Engineer leads efforts to integrate security practices seamlessly into our DevOps and Platform Engineering processes. As a key member of the enterprise risk management team, the Senior IT Security Engineer leads secure platform engineering efforts, focused on the secure development, and operations of our banking and cloud-based environments.

Wage Type: Salaried


Essential Duties & Responsibilities:
To perform this job successfully, an individual must be able to perform each of the essential duties satisfactorily. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

  • Develop and execute a comprehensive IT Security review strategy that integrates ongoing security practices, controls and reporting into our bank, Banking as a Service (BaaS), and DevOps processes and workflows.
  • Lead the secure architecture and secure design and development of robust AWS cloud infrastructure to support scalable and secure applications.
  • Create and maintain the security processes including, code security reviews, secure application development, data security, and secure API integrations.
  • Perform ongoing, day to day monitoring, logging, and disposition of security alerts to ensure timely response to security vulnerabilities and threats.
  • Implement security best practices for cloud infrastructure on platforms such as AWS, Azure, or Cloudflare, including identity and access management, network security, and data encryption.
  • Implement security best practices bank-wide including BaaS frameworks, transaction movements and data sharing.
  • Implement monitoring and logging solutions to detect security threats and anomalies in real-time and develop incident response procedures to address security incidents promptly.
  • Ensure compliance with federal and state banking security regulations and security industry standards including but not limited to FFIEC, NIST, GDPR, HIPAA, PCI-DSS, OWASP and SOC 2, and lead efforts to obtain and maintain relevant certifications.
  • Serve as SME on secure by design principals, working with key business partners including a team of Security engineers, providing guidance, support, and technical expertise to drive security initiatives and foster a culture of security excellence.
  • Enrich application architecture with security standards, best practices and define baseline configuration.
  • Partner with teams to define key performance indicators (KPIs), key risk indicators (KRIs) and distribute useful security related metrics to key stakeholders.
  • Maintain comprehensive documentation of security controls, policies, procedures, and incidents to ensure compliance and facilitate knowledge sharing.
  • Collaborate with cross-functional teams, including development, operations, security, and business units, to ensure seamless integration and alignment of DevSecOps practices with business goals.
  • Carries out responsibilities in a manner consistent with our values and operating principles, in accordance with policy and applicable laws, and with a commitment to commitment to continuous improvement and process excellence.
  • Other duties as assigned.

Organizational Structure:

Reports to: Chief Compliance Officer / Chief Information Security Officer



Qualifications:


Education:

  • Bachelor's degree in Computer Science, Engineering, or related field

Required Knowledge/Skills:

  • Deep expertise building, securing, monitoring, and scaling workloads in AWS.
  • Deep understanding of security principles, best practices, and compliance standards.
  • Demonstrated ability to implement and enforce security policies and practices throughout the DevOps lifecycle.
  • Hands-on experience with security tools and frameworks such as static code analysis, vulnerability scanning, and security testing.
  • Expertise in Cloud Security tooling including EDR, SIEM, IDS toolset including vendor selection and management
  • Proficiency with Terraform and Infrastructure as Code including creating and maintaining modules.
  • Experience with CI/CD tooling and creating pipelines to support the security lifecycle.
  • Knowledge of containerization technologies such as Docker and container orchestration platforms like Kubernetes, with a focus on container security.
  • Strong understanding of networking, encryption, access controls, and authentication mechanisms.
  • Solid understanding of networking concepts, security best practices, and compliance standards.
  • Strong scripting experience in Python, PowerShell, Bash, or other scripting language
  • Experience with security principles relating to, IAM, DLP, SDLC, IT asset management, secure architecture and Incident Response.
  • Experience with Agile methodologies and leading Agile teams.
  • Ability to analyze information and make logical recommendations.

Desired Skills:

  • Experience working for a bank or in another highly regulated industry.
  • Experience working with offshore resources in EMEA.
  • Experience with IT Governance as Code and Policy as Code.
  • Experience working with New Relic or other SAAS monitoring platforms.
  • Experience working with Azure DevOps, Github Actions, or other CICD Tooling
  • Familiarity with OWASP top 10 framework and other security frameworks.
  • Experience working with Cloudflare.
  • Experience working with Ansible or other configuration as code tools.
  • Experience with repository and artifact management.
  • Relevant security certifications (e.g., CISSP, CEH, AWS Certified Security Specialty) are a plus.
  • Willingness to learn and adapt to new technologies.
  • Knowledge of agile methodologies is desirable.
  • The ideal candidate will possess a deep understanding of banking applications, core provider integrations, AWS cloud services, DevOps, expertise in security practices, and a passion for driving a culture of security-first mindset.

Desired Experiences:

  • 8+ years of relevant experience in DevOps, SecOps, or similar roles, with a strong focus on AWS cloud services.
  • 2+ years of experience in a leadership role
  • 2+ years of experience in one or more domains in security:
    • Identity & Access Management
    • Detection & Response
    • Vulnerability Management

Talents:

    • Ability to think creatively, stimulate new ideas and challenge existing thinking.
    • Excellent leadership, communication, and interpersonal skills.
    • Ability to present information to wide variety of audiences, including senior management.
    • Strong positivity
    • Mission driven, competitive, goal oriented, enthusiastic, and motivated to develop themselves and others.
    • Energetic, resourceful, and appropriate work intensity to get the work done.
    • Organized, detail-oriented, and able to focus in distracting environments.
    • Curious natured and willing to try and enjoy new experiences.
    • Strong people acumen and relationship skills; naturally pre-disposed to quickly establish positive personal and professional relationships.

Other:

  • Ability to interpret a variety of instructions furnished in written, oral, diagram or schedule form.
  • Must be able to lift to 20 pounds.



TransPecos Banks will not accept unsolicited resumes from any source other than the candidate. We will consider any candidate for whom an Agency submits an unsolicited resume, to have been referred to us by the Agency free of any charges or fees, other than those agencies we engage on a specific search. TransPecos Banks will not pay a fee for any placement resulting from the receipt of an unsolicited resume.



  • San Antonio, United States Bridgehead IT Full time

    Job DescriptionJob DescriptionSalary: Because of our commitment to customer satisfaction, Bridgehead IT has grown into an industry leader. We are actively looking for a personable, passionate, and highly driven individual for the Senior Cybersecurity Engineer position with a focus on Microsoft 365 security.Position Summary:The Senior Cybersecurity Engineer...


  • San Antonio, Texas, United States Capital Group Full time

    About the RoleWe are seeking a highly skilled Senior Security Engineer to join our team at Capital Group. As a key member of our security team, you will be responsible for enabling the secure use of Microsoft products across our organization.Key ResponsibilitiesInfrastructure Security: Review and enhance our infrastructure to ensure it meets the highest...


  • San Antonio, United States TransPecos Banks Full time

    Job DescriptionJob Title: Senior IT Security Engineer This position is a remote assignment.Summary: The Senior IT Security Engineer leads efforts to integrate security practices seamlessly into our DevOps and Platform Engineering processes. As a key member of the enterprise risk management team, the Senior IT Security Engineer leads secure platform...


  • San Antonio, Texas, United States Shuvel Digital Full time

    CLEARANCE: An active TS/SCI clearance is required.YEARS OF EXPERIENCE: 7-10 years of pertinent experience.EDUCATION LEVEL: A Bachelor’s Degree is preferred; relevant experience may substitute for educational qualifications.POSITION DESCRIPTION: The Senior Cloud Security Engineer will possess extensive software engineering expertise in constructing and...


  • San Antonio, Texas, United States Capital Group Full time

    About the RoleWe are seeking a highly skilled Senior IAM Security Engineer to join our Identity and Access Management (IAM) Engineering team at Capital Group. As a key member of our team, you will play a pivotal role in designing, implementing, and maintaining secure identity and access management systems that support our business functions.Key...


  • San Antonio, Texas, United States Capital Group Full time

    About the RoleWe are seeking a highly skilled Senior IAM Security Engineer to join our Identity and Access Management (IAM) Engineering team at Capital Group. As a key member of our team, you will play a pivotal role in designing, implementing, and maintaining secure identity and access management systems for our enterprise.Key ResponsibilitiesDesign and...

  • Senior IT Engineer

    5 days ago


    San Antonio, Texas, United States Rx Technology Full time

    Job Title: Senior IT Engineer - Network and Security ExpertAt Rx Technology, we are seeking a highly skilled Senior IT Engineer to join our team as a Network and Security Expert. As a key member of our IT department, you will be responsible for designing, implementing, and maintaining our company's network infrastructure and ensuring the highest level of...


  • San Antonio, Texas, United States Sigma Defense Full time

    Job OverviewSigma Defense is in search of a Senior Cloud Security Engineer who will be responsible for scripting, documenting, advising, and facilitating the establishment of various cloud Azure environments for the Department of Defense. The ideal candidate will possess a strong understanding of implementing new frameworks across diverse environments and...


  • San Antonio, Texas, United States By Light Professional IT Services Full time

    Position OverviewBy Light Professional IT Services is a premier provider of advanced Information Technology (IT) solutions and communication support to various governmental entities. We are seeking qualified individuals to deliver support to the U.S. Army Installation and Management Command (IMCOM) with a focus on Information Technology (IT) Risk Management...


  • San Antonio, Texas, United States Yochana IT Full time

    Position OverviewJob Title: Senior Actimize Solutions EngineerLocation: RemoteContract Duration: 1+ yearEssential Qualifications:The ideal candidate will possess a robust background in the ACTIMIZE platform, particularly in:Integrated Fraud Management (IFM)Actimize One (Act One)/AISEnterprise Risk Management (RCM)Key Competencies:Proficient in Actimize...


  • San Antonio, Texas, United States Capital Group Full time

    "I can excel as a Senior Manager of Application Security at Capital Group." In the role of Senior Manager of Application Security, you will be an integral part of the application security division, responsible for architecting, validating, and guiding secure solutions for various IT projects within Capital Group. This position requires a robust...


  • San Antonio, Texas, United States Capital Group Full time

    "I can excel as a Senior Manager of Application Security at Capital Group." In the role of Senior Manager of Application Security, you will be an integral part of the application security division, responsible for architecting, validating, and guiding secure solutions for various IT projects within Capital Group. This position requires a robust...


  • San Antonio, Texas, United States Capital Group Full time

    "I can excel as a Senior Manager of Application Security at Capital Group." As a Senior Manager of Application Security within the application security division, you will play a pivotal role in designing, validating, and guiding secure solutions for various IT projects at Capital Group. You will operate in a highly technical and multifaceted...


  • San Francisco, California, United States Abnormal Security Full time

    Position OverviewAbnormal Security is in search of a Senior Software Engineer to spearhead significant projects within our core Research and Development sectors. Our team is responsible for creating reusable components such as Account Management, Notifications, and Feature Flags, which empower other teams to swiftly develop their applications.At Abnormal,...

  • Senior DevOps Engineer

    2 months ago


    San Antonio, United States MTK Technologies Full time

    Greeting from Mtk Technologies....... We're hiring on urgent basis for Senior DevOps Engineer on W2. Please let me know if you are actively looking for new position opportunity. Title Senior DevOps Engineer Location San Antonio TX Onsite Monday - Friday -W2 only GC USC Responsibilities We are on the hunt for a passionate and experienced Sr...

  • Senior DevOps Engineer

    2 months ago


    San Antonio, Texas, United States MTK Technologies Full time

    Greeting from Mtk Technologies We're hiring on urgent basis for Senior DevOps Engineer on W2. Please let me know if you are actively looking for new position opportunity. Title Senior DevOps Engineer Location San Antonio TX Onsite Monday Friday W2 only GC USC Responsibilities We are on the hunt for a passionate and experienced Sr DevOps/DevOps Engineer to...


  • San Diego, United States Agile IT Full time

    Job DescriptionJob DescriptionCompany DescriptionAre you ready to join an exciting company that's all about making cloud magic happen? We absolutely thrive on cloud technology. If you're a fan of the latest Microsoft technologies and you're looking for a workplace where your ideas are not only welcomed but celebrated, you're in the right...


  • San Antonio, United States SecuriGence LLC Full time

    Job DescriptionJob DescriptionJob Title: Senior Network Engineer Location: San Antonio, TXClearance Level: Secret Clearance. Top Secret with SCI eligibility preferredSummaryWe deliver essential technology services to our customers in support of their missions to sustain the national security and economic interests of our nation. SecuriGence is seeking an...


  • San Antonio, United States Astrion Full time

    Senior Security ManagerAstrion - San Antonio, TXOverview:Senior Security Manager Be the Difference Astrion offers comprehensive services that boost preparedness, optimize performance, and ensure success across various domains, from Cyber to Digital, Mission and Systems, servicing our nation's Civilian, Defense and Space communities. We support customers...

  • Cyber Security Analyst

    2 months ago


    San Antonio, United States Bridgehead IT Full time

    Job DescriptionJob DescriptionSalary: Position Summary:Cyber security analysts are responsible for managing, monitoring, troubleshooting, and protecting the security of the internal environment and that of our customers in real time. The Cyber Security Analyst is tasked with providing technical expertise in all areas of network, system, and application...