Sr. Offensive Security Engineer, Security Monitoring
7 days ago
Merrick Bank employees share in our mission to delight our customers and empower underserved consumers to achieve their credit goals. In return, we delight our associates; ensuring they are noticed, heard, appreciated and understand the importance of their role(s). For over 20 years, our Guiding Principles of; doing the right thing, putting the customer first, and Earn, Learn, Have Fun (aka E.L.F.), have defined who we are as an Employer of Choice. Give Yourself Credit, Work at Merrick
Position Summary:
The Senior Offensive Security Engineer operates, monitors, and improves information security processes and systems that protect the Bank's data, customers, and computer systems from business disruption, data/identity compromise, cyber fraud, and regulatory criticism. This role focuses on application and development security, application penetration testing capabilities, and cloud infrastructure/platform security.
Essential Functions:
Key Offensive Security responsibilities include:
- Conducting Red Team Exercises to simulate Advanced Persistent Threats (APTs) against web, mobile, and cloud-based applications to identify security weaknesses and assess the effectiveness of security controls.
- Perform in-depth manual and automated penetration testing against Cloud and On Prem Networks and applications to discover vulnerabilities and weaknesses that could be exploited.
- Work with development teams to identify potential security threats early in the software development lifecycle (SDLC) and provide recommendations to mitigate risks.
- Develop and enhance tools, scripts, and frameworks to automate testing and reporting processes, including setting up continuous integration (CI) security checks.
- Document findings in detailed, actionable reports for both technical and non-technical stakeholders. Communicate effectively with developers, engineers, and executive leadership on remediation strategies.
- Collaborate with Blue Team (defensive security), DevOps, and engineering teams to improve detection and response capabilities.
- Stay updated on the latest security threats, vulnerabilities, and exploits, and apply this knowledge to enhance Red Team operations.
- Security Monitoring & Response - Detects and responds to security events by identifying, reporting, mitigating, and recovering from security incidents.
- Security Control Engineering and Operations - Enables and protects business services with appropriate access, endpoint, network, data storage, and data loss prevention controls, including vulnerability and controls testing.
- Security Risk & Program Management - Assesses and advises technology and business groups by identifying, prioritizing, managing, and reporting security risk.
- Performs other duties as assigned.
- Responsible for complying with all of the Bank's internal control policies and procedures.
- Responsible for understanding and complying with all laws and regulations to which the Bank is subject.
- Responsible for communicating problems in operations, noncompliance with the code of conduct, noncompliance with laws and regulations, policy violations, or illegal acts.
- Bachelor's degree in computer science, Cybersecurity, Information Security, or a related field. Equivalent experience will also be considered.
- 5-8+ years of experience in application security, penetration testing, or Red Team operations.
- Proficient in programming/scripting languages such as C#, Python, JavaScript, PowerShell, Bash, or other relevant to security testing.
- Strong Foundational Linux skills.
- Expertise in using security testing tools (e.g., Burp Suite, Nessus, C2 Frameworks, SQLMap, NMAP etc.).
- Strong knowledge of web application frameworks, APIs, microservices, and cloud environments (AWS, Azure, GCP).
- Familiarity with Secure Software Development Lifecycle (SSDLC) and DevSecOps practices.
- Familiarity with highly regulated industries, and specifically the banking industry (including FDIC regulations) is preferred.
- Demonstrated skills with security concepts, defense-in-depth strategies, security tools, and protocols.
- "White-hat" mentality, with a healthy sense of paranoia (security awareness and risk).
- Positive, inquisitive, can-do attitude.
- Self-starter, requires minimal oversight to perform as expected, work well independently and as part of a team.
- Comfortably perform well under pressure, deliver to commitments on tight deadlines.
- Meticulous attention to detail.
- Passion for cybersecurity and technology trends, news, and hacking techniques.
- May require some travel to company, partner, or vendor locations for various job duties.
- May require some lifting of up to 50 pounds to rack/maintain IT or security equipment
This classification requires heightened security awareness to safeguard the Bank's data, including customer non-public personal information. This security level means that the job includes exposure to all categories of Bank data, including customer non-public personal information.
General Disclosure:
The above statements reflect the general information considered necessary to describe the principal functions of the job and should not be considered as a detailed description of all work requirements that may be inherent to the position. In addition, the incumbent may be called upon to personally handle projects or assignments not usually related to the position's day-to-day activities. Understand and comply with laws and regulations that are applicable to my job function. Understand and comply with company policies and procedures that are applicable to my job function.
We offer a total rewards package comprised of a competitive base rate of pay, variable pay incentive programs based on the role, and a comprehensive benefit suite. Offered rates of pay are determined based on job-related knowledge, relevant experience, skills, certifications, and geographic location. Our benefits offerings include medical, dental, vision, life insurance, 401(k) plan with company match, paid vacation time, sick time, as well as other benefits and programs to meet the needs of our employees. Further details will be shared during the interview or offer process, as appropriate and applicable.
We are an equal opportunity employer, and we evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status or any other legally protected characteristic. We will conduct a thorough background check for all hires in compliance with applicable law which includes (but may not be limited to) a review of factors including drug testing and employment/personal references.
Other details
- Pay Type Salary
Apply Now
-
Offensive Security Engineer I
2 weeks ago
South Jordan, Utah, United States Merrick Bank Full timeMerrick Bank is committed to delivering exceptional customer experiences and empowering underserved consumers to achieve their credit goals. To support this mission, we are seeking a highly skilled Offensive Security Engineer I to join our team.This role is responsible for operating, monitoring, and improving information security processes and systems that...
-
Offensive Security Engineer I
2 weeks ago
South Jordan, Utah, United States Merrick Bank Full timeMerrick Bank is committed to delivering exceptional customer experiences and empowering underserved consumers to achieve their credit goals. To support this mission, we are seeking a highly skilled Offensive Security Engineer I to join our team.The successful candidate will operate, monitor, and improve information security processes and systems that protect...
-
Engineer I
7 days ago
South Jordan, United States Merrick Bank Full timeMerrick Bank employees share in our mission to delight our customers and empower underserved consumers to achieve their credit goals. In return, we delight our associates; ensuring they are noticed, heard, appreciated and understand the importance of their role(s). For over 20 years, our Guiding Principles of; doing the right thing, putting the customer...
-
Sr. Engineer, Security Monitoring
7 days ago
South Jordan, United States Merrick Bank Full timeMerrick Bank employees share in our mission to delight our customers and empower underserved consumers to achieve their credit goals. In return, we delight our associates; ensuring they are noticed, heard, appreciated and understand the importance of their role(s). For over 20 years, our Guiding Principles of; doing the right thing, putting the customer...
-
Senior Security Engineer
1 week ago
South Jordan, United States Merrick Bank Full time $107,000*Position Summary:*Do you have the following skills, experience and drive to succeed in this role Find out below.Seeking a Senior Security Engineer to be a guide and mentor amongst the Security Management and Response (SMR) team. The primary responsibilities include improving, maintaining and building visibility, detection, and response amongst SMR...
-
South Jordan, United States Genesis Healthcare, Inc. Full timeGenesis10 is currently seeking a Security Engineer- Identity and Access Management with our consumer finance lender firm client. This is a 6 month and right to hire contract position. Strong preference for someone who is located close enough to work hybrid in one of the following areas: South Jordan, Utah, Pittsburgh, PA., Orlando, FL., Woodbury, NY. Remote...
-
Airport Security Officer
2 weeks ago
South Burlington, Vermont, United States Transportation Security Administration Full timeSecure the Future of TransportationAt the Transportation Security Administration, we're seeking a dedicated Transportation Security Officer to join our team at Patrick Leahy Burlington International Airport. As a key member of our security team, you'll play a vital role in ensuring the safety of travelers and the integrity of our nation's transportation...
-
South Jordan, United States Genesis10 Full timeGenesis10 is currently seeking a Security Engineer- Identity and Access Management with our consumer finance lender firm client. This is a 6 month and right to hire contract position. Strong preference for someone who is located close enough to work hybrid in one of the following areas: South Jordan, Utah, Pittsburgh, PA., Orlando, FL., Woodbury, NY. Remote...
-
Security Officer
1 month ago
West Jordan, United States GardaWorld Security Services US Full timeJob Description: GardaWorld – Security ServicesJob Snapshot:Job Title : Security Officer ArmedLocation: West Jordan and DraperShift: Monday to Wednesday in West Jordan 4- midnightThursday Friday in Draper 4- midnight Compensation : $19.50Your background:You have a high school education or equivalent (GED)You’re able to ace (and pass) an extensive...
-
Transportation Security Officer
3 weeks ago
South Bend, Indiana, United States Transportation Security Administration Full timeJob SummaryAs a Transportation Security Officer with the Transportation Security Administration, you will play a critical role in ensuring the safety and security of air travelers, airports, and aircraft. Your responsibilities will include operating various screening equipment and technology to identify dangerous objects, performing searches and screenings,...
-
South Jordan, United States Genesis10 Full timeGenesis10 is currently seeking a Security Engineer- Identity and Access Management with our consumer finance lender firm client. This is a 6 month and right to hire contract position. Strong preference for someone who is located close enough to work hybrid in one of the following areas: South Jordan, Utah, Pittsburgh, PA., Orlando, FL., Woodbury, NY. Remote...
-
South Jordan, United States Genesis10 Full timeGenesis10 is currently seeking a Security Engineer- Identity and Access Management with our consumer finance lender firm client. This is a 6 month and right to hire contract position. Strong preference for someone who is located close enough to work hybrid in one of the following areas: South Jordan, Utah, Pittsburgh, PA., Orlando, FL., Woodbury, NY. Remote...
-
Security Engineer
3 weeks ago
South Jordan, Utah, United States Genesis Healthcare, Inc. Full timeJob SummaryGenesis10 is seeking a skilled Security Engineer - Identity and Access Management to join our team. This is a 6-month contract position with the possibility of being converted to a full-time role.The ideal candidate will have experience with SailPoint Recertification and manual API integrations. They will work closely with the security team to...
-
South Jordan, United States Genesis10 Full timeGenesis10 is currently seeking a Security Engineer- Identity and Access Management with our consumer finance lender firm clientThis is a 6 month and right to hire contract positionStrong preference for someone who is located close enough to work hybrid in one of the following areas: South Jordan, Utah, Pittsburgh, PA., Orlando, FL., Woodbury, NYRemote...
-
Security Professional
3 weeks ago
South Hadley, Massachusetts, United States Securitas Security Services USA Full timeSecurity Officer RoleWe are seeking a skilled Security Officer to join our team at Securitas Security Services USA. As a Security Officer, you will play a critical role in maintaining a safe and secure environment for our clients and their employees.Key Responsibilities:Provide security services to clients, including patrolling premises and responding to...
-
South Jordan, Utah, United States Genesis10 Full timeJob SummaryGenesis10 is seeking a highly skilled Security Engineer- Identity and Access Management to join our team. This is a 6-month contract position with the possibility of being converted to a permanent role.The ideal candidate will have a strong background in identity and access management, with experience in implementing and managing IAM systems. They...
-
Administrative Security Professional
2 weeks ago
South Burlington, Vermont, United States Transportation Security Administration Full timeProtecting America's Transportation InfrastructureAs an Administrative Security Professional with the Transportation Security Administration, you will play a vital role in safeguarding the country's transportation systems. This high-stakes environment requires a dedicated individual who can ensure the smooth operation of airports, seaports, railroads,...
-
Overnight Weekend Gatehouse Security Officer
1 month ago
South Kingstown, United States St. Moritz Security Services Full timeOvernight Weekend Gatehouse Security OfficerJob Title: Unarmed Security OfficerLocation: North Kingstown, RI Schedule: Saturday and Sunday 11pm-7amPay: $18.50 per hourGatehouse post - This is a traditional security post; process and monitor/inspect trailers entering and exiting the facility as well as general observation of the perimeter and pertinent...
-
South Jordan, UT, United States Genesis10 Full timeGenesis10 is currently seeking a Security Engineer- Identity and Access Management with our consumer finance lender firm clientThis is a 6 month and right to hire contract positionStrong preference for someone who is located close enough to work hybrid in one of the following areas: South Jordan, Utah, Pittsburgh, PA., Orlando, FL., Woodbury, NYRemote...
-
Lead, Systems Engineer
1 month ago
South Patrick Shores, United States L3Harris Technologies Full timeJob Title: Lead, Systems Engineer – Offensive Cyber Operations (Active TS/SCI Clearance Required) Job Code: 16325 Job Location: Palm Bay, FL Job Description: As a Systems Engineer – Cyber Effects, you will lead and contribute to architecting, implementing, testing, and troubleshooting cyber applications. Evaluate development and COTS products and...