Information Technology Security Engineer

2 months ago


new york city, United States Crédit Agricole CIB Full time

Summary


The Security Engineer will be responsible for the IT Security review and assessment of the corporate desktops and servers, infrastructure applications & network in CA-CIB NY. He is also responsible for enforcing the security policy and complying with requirements of external security audits and recommendations.


Other responsibilities include monitoring of alerts for any reported anomalies and malicious activities on network and host levels as well as responding to audit findings.


Key Responsibilities


  • Prepare, organize, conduct & follow-up on vulnerability scans and remediation on all scopes;
  • Prepare, organize, review & follow-up on pentests and remediation on all scopes;
  • Prepare, organize, review & follow-up on team exercises and its remediation projects;
  • Conduct annual Firewall rule review and monitor Firewall rule change management;
  • Provide cybersecurity expertise for all IT and IT Security projects;
  • Respond to internal Audit findings by developing controls and documentation packages;
  • Review network architecture designs;
  • Ensuring that all areas of CA-CIB remain in full compliance with Security directives related to IT Security management as received from Head Office and other guidelines (FFIEC, NIST);
  • Perform cybersecurity controls;
  • Support Continuous Monitoring Framework by effectively reporting the Key Risk Indicators (KRIs) and Key Control;
  • Evolve the Security function by continuous assessment of our risks, threats & vulnerabilities;
  • Maintain and update all local policies, procedures and standards;
  • Perform scheduled host discoveries to ensure all servers and desktops are accounted for and meet Head Office Standards in monitoring & coverage;
  • Ensure security monitoring tools such as AV, DLP, patch agents are registered & monitored;
  • Optimize all IS Security controls / processes through automation via scripts, tools and other means;
  • Continuous monitoring all Hosts to ensure continuous compliance to Head Office technical security standards and Server build standards;
  • Perform Scheduled Security Patch Assessments to validate that all servers and desktops are compliant;
  • Keep current in IT Security and cybersecurity industry trends;
  • Awareness and development of controls and detection solutions to address malware, cybersecurity and advanced persistent attacks;
  • Function as the Backup for IT Sec Engineering Manager;
  • Support IT Security and cybersecurity Awareness campaigns.


Management and Reporting

Reports to the IT Security Engineering Manager


Key Internal contacts

All GIT/SIT/ISS groups in Americas & Paris

Internal Audit team


Key External contacts

Varies per projects/incidents (IT, Business, Management, etc.)


Qualifications/Education Required

  • 4-year accredited college/university BA or MS in MIS, Engineering, Computer System or Computer Science
  • Certification: CISM, CEH, CRISC desirable
  • CISSP preferred


Experience Required:

  • Minimum 6 to 8 years' experience in technical Cybersecurity engineering functions
  • KALI desirable
  • PYTHON coding desirable


Competencies Required:

  • IS Security industry standards, policies, best practices


Skills & Knowledge Requirements:

  • Working knowledge of Windows, network, Unix, firewalls, proxies, security vulnerabilities


Any other relevant information:

  • Team player
  • Top notch English communication skills written and spoken
  • Able to multitask
  • Able to work independently
  • Comfortable talking to different stakeholders
  • Self-driven and want to excel



  • new york city, United States Brooksource Full time

    Senior IT Security Engineer1 year contractBrooklyn, NY - hybrid up to 5 days per monthManage security architecture and engineering integration for NG911 system.Perform cyber security and technical threat analysis for NG911 System.Evaluate security protocols for intrusion prevention using NIST 800-53 framework.Ensure security regulations and standards are...


  • new york city, United States Brooksource Full time

    Senior IT Security Engineer1 year contractBrooklyn, NY - hybrid up to 5 days per monthManage security architecture and engineering integration for NG911 system.Perform cyber security and technical threat analysis for NG911 System.Evaluate security protocols for intrusion prevention using NIST 800-53 framework.Ensure security regulations and standards are...


  • new york city, United States Crédit Agricole CIB Full time

    SummaryThe Security Engineer will be responsible for the IT Security review and assessment of the corporate desktops and servers, infrastructure applications & network in CA-CIB NY. He is also responsible for enforcing the security policy and complying with requirements of external security audits and recommendations.Other responsibilities include monitoring...


  • New York, United States Brooksource Full time

    Senior IT Security Engineer1 year contractBrooklyn, NY - hybrid up to 5 days per monthManage security architecture and engineering integration for NG911 system.Perform cyber security and technical threat analysis for NG911 System.Evaluate security protocols for intrusion prevention using NIST 800-53 framework.Ensure security regulations and standards are...


  • new york city, United States Robert Half Full time

    The IT Support Engineer is responsible for resolving escalated technical issues from IT Support Specialist I and IT Support Specialist II support team members. This position requires a deep understanding of IT systems and the ability to follow incidents through to resolution. The technician will work closely with various departments, including Security,...


  • New York, United States Crédit Agricole CIB Full time

    SummaryThe Security Engineer will be responsible for the IT Security review and assessment of the corporate desktops and servers, infrastructure applications & network in CA-CIB NY. He is also responsible for enforcing the security policy and complying with requirements of external security audits and recommendations.Other responsibilities include monitoring...


  • new york city, United States Employvision Inc. Full time

    Summary- The Security Engineer will be responsible for the IT Security review and assessment of the corporate desktops and servers, infrastructure applications & network in NY. He is also responsible for enforcing the security policy and complying with requirements of external security audits and recommendations. Other responsibilities include monitoring of...


  • New York, United States Robert Half Full time

    The IT Support Engineer is responsible for resolving escalated technical issues from IT Support Specialist I and IT Support Specialist II support team members. This position requires a deep understanding of IT systems and the ability to follow incidents through to resolution. The technician will work closely with various departments, including Security,...


  • New York, New York, United States Fidelity Information Services Full time

    Job SummaryWe are seeking a skilled Firewall Security Engineer to join our team at Fidelity Information Services. As a key member of our Remote Infrastructure Management team, you will be responsible for designing, implementing, and maintaining secure firewall configurations to protect our network infrastructure.Key ResponsibilitiesDesign and implement...


  • New York, United States Employvision Inc. Full time

    Summary- The Security Engineer will be responsible for the IT Security review and assessment of the corporate desktops and servers, infrastructure applications & network in NY. He is also responsible for enforcing the security policy and complying with requirements of external security audits and recommendations. Other responsibilities include monitoring of...


  • New York, New York, United States Fidelity Information Services Full time

    About the Role:We are seeking a skilled Firewall Security Engineer to join our Remote Infrastructure Management Team at Fidelity Information Services.Key Responsibilities:Review, analyze, develop, install, modify, maintain, and/or support major subsystem software components in a large computing environment across multiple production data centers.Network...


  • Oklahoma City, OK, United States General Dynamics Information Technology Full time

    Information Security Information Security, Information Security Management, Information System Security Certifications: Cisco Certified Network Associate (CCNA) Security - Cisco, GICSP: Global Industrial Cyber Security Professional - Global Information Assurance Certification (GIAC), GSEC: GIAC Security Essentials Certification - Global Information...


  • New York, New York, United States Information Technology Strategies LLC Full time

    Job Summary:We are seeking a highly skilled Senior Software Engineer to join our dynamic team at Information Technology Strategies LLC. This role demands a strong background in software development, DevSecOps practices, and cloud computing.Key Responsibilities:Software Development: Design, code, test, and deploy robust software solutions. Ensure the delivery...


  • New York, United States The Institute for Family Health Full time

    SUMMARY: The Director of Information Technology is accountable for the resiliency, security, design, and high availability of the Institute’s IP network, data centers, Institute-managed endpoints, as well as critical on-premise and cloud applications (including, but not limited to, the electronic health record, email, file storage, authentication, and...


  • New York, United States MarketAxess Full time

    About Us  MarketAxess is on a journey to digitally transform one of the world’s largest financial markets, enabling the shift from analog, phone-based trading to a fully electronic marketplace. Why does this matter? Because our platform makes trading fixed-income more accessible, ultimately improving transparency, efficiency, and competition in the...


  • Oklahoma City, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:NoneJob Family:Information SecurityJob Qualifications:Skills:Information Security, Information Security Management, Information System SecurityCertifications:Cisco Certified...


  • Oklahoma City, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphPublic Trust/Other Required:NoneJob Family:Information SecurityJob Qualifications:Skills:Information Security, Information Security Management, Information System SecurityCertifications:Cisco Certified Network...


  • City of Industry, United States Brio Water Technology Full time

    Brio Water Technology is the market leading water product company that has helped millions get hydrated by its unique and innovative product line. We offer full home water solutions and systems designed and engineered to continuously push the boundaries of the way we hydrate. Our company combines sophisticated technology with innovative, top-tier designs to...


  • New Baden, United States Paragon Technology Full time

    Job DescriptionJob DescriptionThe Security Engineer III provides technical support in the areas of vulnerability assessment, risk assessment, network security, product evaluation, and security implementation. Responsible for designing and implementing solutions for protecting the confidentiality, integrity and availability of sensitive information. Provides...


  • New Baden, United States Paragon Technology Full time

    Job DescriptionJob DescriptionThe Security Engineer II provides technical support in the areas of vulnerability assessment, risk assessment, network security, product evaluation, and security implementation. Responsible for designing and implementing solutions for protecting the confidentiality, integrity and availability of sensitive information. Provides...