Information Security Engineering Lead, Dir.

1 week ago


San Francisco, United States Federal Home Loan Bank of San Francisco Full time

Purpose: This role contributes to the development of the IT organization's security strategy and technical activities to implement and manage security infrastructure and processes in close partnership with the Deputy CISO. The role is part of a diverse team of highly technical engineers who work to accomplish organizational goals. This role must have strong technical background, as well as an ability to work with IT, Risk and operational leadership staff members to help align priorities to key business objectives. Responsibilities also include assessing technical compliance of Information Services policies, standards, and strategies defined by the Chief Information Security Officer (CISO).This role collaborates with the Deputy CISO and the CISO to develop and maintain the Information Security strategy, roadmap, and architecture in alignment with business objectives and serve as an interface between strategic and tactical risk activities and the work of the technology-focused staff within the Information Security organization.Major Accountabilities:Planning:Provide requirements and strategy input to continue the maturation of the Security Engineering function within the Information Security department.Maintain the department's information security risk profile and key activities schedule, which includes security threat and vulnerability analysis, reviews and audits of application and server compliance to configuration baselines, and control validation for key service assets.Lead the process of gathering, analyzing, and assessing the current and future security threat landscape; provide IT Risk and Compliance with a realistic overview of security risks and threats in the enterprise environment.Serve as the senior team member on a staff of information security engineering professionals; collaborate and share leadership skills, support development programs for team members, and contribute to a high performing team culture.Maintain relationships in the security technology industry to stay current on evolving technologies enabling effective and efficient solution delivery.Security Engineering:Member of the Information Security Engineering team responsible for ongoing security activities and projects related to the detection, analysis, containment, and eradication of security vulnerabilities that impact the availability, integrity, and confidentiality of Bank information.Provide security expertise for key processes supporting information security activities including, systems administration, change management, quality assurance, software development, risk gap analysis, technology evaluation and enhancements, and architecture and design.Work with business unit stakeholders and with architecture and operations teams in researching, evaluating, designing, and testing, or recommending and planning the transition and implementation of new or updated information security technology and services to:ensure solutions and service levels are aligned with security policies and standards and legal, regulatory, and audit requirements.analyze impact on existing security controls environment and standards;provide technical and managerial expertise for the administration of security tools.Participate in the execution of periodic security risk assessments and initiate any corrective actions that are needed.Skills/Knowledge:RequiredBachelor's degree in computer science or the equivalent work experience is required.Five years or more prior work experience in information security is required.Must have a working knowledge of information management systems: networking, operating systems, database management systems, user identity and access control systems, firewalls and intrusion detection systems, and security monitoring and reporting systems.Must have working knowledge of security vulnerability detection tools and processes.Must have working knowledge of incident response techniques and vulnerability remediation.Must have experience with security architecture design and management.Must have experience with common information security management frameworks.Must have threat intelligence and analysis experience.Ability to operate effectively in a highly collaborative, heavily regulated technical team comprised of a staff with diverse mindsets and cultural backgrounds.Strong interpersonal communication, analysis, and writing skills.Strong soft skills including ability to work effectively with business unit managers and IS engineering and IS operations staff and the ability to effectively navigate and be a leader in a matrix environment is required.PreferredExperience in financial or banking services industry highly desirable.Information security certifications, such as CISSP, CISM, or equivalent preferred. Information systems auditing certification such as CISA or GISA is highly desirable.Experience developing and maintaining information security policies, standards, processes, guidelines, and procedures for financial services preferred.SALARY RANGE: $195K - $210KThe Federal Home Loan Bank of San Francisco is an Equal Employment Opportunity employer and is committed to a diverse workforce. We value and actively seek to recruit, develop, and retain individuals with varied backgrounds and experiences reflecting the full diversity of the communities that we serve. It is the policy of the Bank to comply with all applicable laws concerning the employment of persons with disabilities.Salary ranges reflect the base salary that the Bank reasonably expects to pay for a given role and is not inclusive of annual incentive award opportunities, retirement benefits or the value of other health and welfare or other ancillary benefits. We consider many factors when determining base salaries such as individual background and experience, the competitive environment, education, particular skill set(s), and industry and institutional knowledge.The Bank is committed to offering all team members challenging and engaging work with market competitive pay, retirement, and benefit offerings. In support of this commitment, the Bank routinely engages in market competitive benchmarking surveys and analysis to ensure our team members continue to be paid fairly and competitively.
#J-18808-Ljbffr



  • San Francisco, California, United States X (formerly Twitter) Full time

    Are you ready to become a key player in the X team and contribute to the development of a groundbreaking real-time information-sharing application that transforms the way individuals connect? At X, our mission is to establish a reliable global digital public square, dedicated to safeguarding freedom of expression and creating a future of limitless...


  • San Francisco, United States Motion Recruitment Full time

    Outstanding long-term contract opportunity! A well-known Financial Services Company is looking for a Information Security Engineer in San Francisco (Hybrid). Work with the brightest minds at one of the largest financial institutions in the world. This is long-term contract opportunity that includes a competitive benefit package! Our client has been around...


  • San Francisco, United States Rippling Full time

    About Rippling Rippling gives businesses one place to run HR, IT, and Finance. It brings together all of the workforce systems that are normally scattered across a company, like payroll, expenses, benefits, and computers. For the first time ever, you can manage and automate every part of the employee lifecycle in a single system. Take onboarding, for...


  • San Francisco, United States TEEMA Full time

    Job DescriptionJob DescriptionJob Title: Information Security EngineerJob ID: AR71490337Location: San Francisco, CAOverview:Our client is looking for an Information Security Engineer to help them build the world’s knowledge engine and unlock data-native product experiences. Their vision is to create a decentralized knowledge graph protocol that maps 10...


  • San Francisco, United States Gridware Full time

    Job DescriptionJob DescriptionGridware's mission is to create a future where power outages and electric grid hazards (think wildfire ignition) are a thing of the past. We provide a truly full-stack (hardware + firmware + software) solution for the real time monitoring of America’s critical infrastructure. The system centers around low-cost hardware...


  • San Francisco, United States Gridware Full time

    Job DescriptionJob DescriptionGridware's mission is to create a future where power outages and electric grid hazards (think wildfire ignition) are a thing of the past. We provide a truly full-stack (hardware + firmware + software) solution for the real time monitoring of America’s critical infrastructure. The system centers around low-cost hardware...


  • San Francisco, United States Gridware Full time

    Job DescriptionJob DescriptionGridware exists to enhance and protect the mother of all networks: the electrical grid. The grid touches everyone and makes our modern economy possible. But it’s also fragile. When the grid goes down, everything grinds to a halt, and the consequences can be dire: wildfires burn, land is destroyed, property is damaged, progress...


  • San Francisco, California, United States Gridware Full time

    Job OverviewAt Gridware, we are dedicated to pioneering a future where electrical outages and grid-related risks are eliminated. Our innovative approach combines hardware, firmware, and software to deliver real-time monitoring solutions for critical infrastructure across the nation. Our system is centered on cost-effective hardware that can be seamlessly...

  • Security Engineer

    5 days ago


    San Francisco, California, United States Security Bank & Trust Co. Full time

    About the RoleWe are seeking a highly skilled Security Engineer - Detection and Response to join our team at Security Bank & Trust Co. as a key member of our Security team. As a Detection and Response Security Engineer, you will play a critical role in implementing and maintaining our security infrastructure, detecting and responding to security incidents,...


  • San Diego, California, United States AERMOR LLC Full time

    Job OverviewAERMOR LLC is in search of a skilled Information Security Engineer. Below, we outline the essential qualifications, educational background, and preferred skills for this role.Essential Skills and Qualifications:Proven experience in guiding and mentoring diverse teams and large groups.A minimum of eight (8) years of experience in Command, Control,...


  • San Francisco, California, United States Avant Digital, Inc. Full time

    Job Overview:Position: Information Security Governance LeadLocation: RemoteContract Duration: 6+ MonthsTime Zone: PSTKey Responsibilities: Facilitate the establishment and oversight of Information Security Management Systems in alignment with ISO27001 standards.Assist in the Risk Management framework and coordinate risk evaluation initiatives.Refine existing...


  • San Francisco, California, United States Gridware Full time

    Position OverviewAt Gridware, we are dedicated to shaping a future where power interruptions and electric grid threats are eliminated. Our mission involves delivering a comprehensive solution that encompasses hardware, firmware, and software for the real-time oversight of critical infrastructure across the nation. Our innovative system is built around...


  • San Francisco, California, United States BlueVoyant Full time

    Senior Security Engineer - Splunk Enterprise SecurityLocation: Remote in the United StatesUS Citizenship requiredBlueVoyant is on the lookout for a seasoned Senior Security Engineer to enhance our Splunk Deployment Engineering Team. In this pivotal role, you will leverage your extensive expertise in Splunk security, SIEM platforms, and associated...


  • San Francisco, California, United States CSAA Insurance Group Careers Full time

    About CSAA Insurance Group:CSAA Insurance Group (CSAA IG), a leading insurer affiliated with AAA, stands among the foremost personal lines property and casualty insurance providers in the United States. Our workforce embodies our core values and is dedicated to our enduring mission of assisting members in preventing, preparing for, and recovering from life's...


  • San Francisco, United States Stars Group Full time

    As our Application Security Lead Engineer, you will be responsible for the security of our apps/services – Web, Mobile and API–based at Scale. You will be responsible for threat modeling products from the ground up, implementing and managing security controls at various points of the Secure Software Development Lifecycle, and setting up processes and...


  • San Francisco, California, United States Abnormal Security Full time

    Job OverviewAbnormal Security is seeking a Lead Backend Software Engineer to enhance our Detection Team. This division is dedicated to developing cutting-edge technology that identifies and mitigates email and cloud-based threats that were previously undetectable, contributing to a safer digital environment.Role ResponsibilitiesAs a Backend Software Engineer...


  • San Francisco, California, United States Gridware Technologies Inc. Full time

    Job Description**About Gridware Technologies Inc.**Gridware Technologies Inc. is a leading provider of innovative solutions for the real-time monitoring of critical infrastructure. Our mission is to create a future where power outages and electric grid hazards are a thing of the past.**Role Summary**We are seeking an experienced Information Security Lead to...


  • San Antonio, Texas, United States Insignia Technology Services, a 9th Way Solutions Company Full time

    About Insignia Technology Services, a 9th Way Solutions CompanyWe are a service-disabled, veteran-owned small business bringing transformative technology to our government customers so they can achieve their missions. Our specialties include cybersecurity, cloud modernization, software development, data analytics, enterprise architecture, enterprise IT, and...


  • San Francisco, California, United States Robust Intelligence Full time

    Company OverviewRobust Intelligence is dedicated to mitigating AI-related risks. As AI becomes integral to automated decision-making, we face significant challenges that require innovative solutions. Our primary offering is designed to seamlessly integrate with existing AI frameworks, addressing both inadvertent and deliberate failure modes. With the rise of...


  • San Francisco, California, United States BlueVoyant Full time

    Position: Senior Security Engineer - Splunk Enterprise SecurityLocation: RemoteEligibility: US Citizenship requiredBlueVoyant is in search of a highly skilled Senior Security Engineer to become a vital part of our Splunk Deployment Engineering Team. This role demands a deep understanding of Splunk security, SIEM platforms, and associated technologies. You...