What are the responsibilities and job description for the Information Security Engineer 2 - Contingent (contract) position at Wells Fargo?
Description
Title: Information Security Engineer 2 - Contingent
Location: Chandler, AZ
Duration: 18 months
Work Engagement: W2
Work Schedule: Hybrid 3 days in office/2 days remote
Benefits on offer for this contract position: Health Insurance, Life insurance, 401K and Voluntary Benefits
Summary:
In this contingent resource assignment, you may: Participate in low to moderately complex initiatives and identify opportunity for process improvements within Information Security Engineering. Review and analyze basic or tactical Information Security Engineering assignments or challenges that require research, evaluation, and selection of alternatives, related to low-to-medium risk deliverables. Present recommendations for resolving low to moderately complex situations and exercise some independent judgment while developing understanding of function, policies, procedures, and compliance requirements. Provide information to client personnel in Information Security Engineering. Required Qualifications: Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work or consulting experience, training, military experience, education.
Key Responsibilities:
Experience with Endpoint Detection and Response(EDR)product(s)
Knowledge and understanding of security analytics including: incident response and a digital forensics discipline
Knowledge and understanding of data security controls including malware protection, firewalls, intrusion detection systems, content filtering, Internet proxies, encryption controls, endpoint detection response, and log management solutions
Knowledge and understanding of banking or financial services industry
Experience with host and/or network log analysis as applied to incident response / threat hunting
Knowledge of offensive security, with the ability to think like an adversary when hunting and responding to incidents
Knowledge and understanding of security analytics including: incident response and Identity Access Management
Certifications in one or more of the following: Global Information Assurance Certification (GIAC), Offensive Security Certified Professional (OSCP), Offensive Security Wireless Professional (OSWP), Offensive Security Certified Expert (OSCE), Offensive Security Exploitation Expert (OSEE), or Offensive Security Web Expert (OSWE)
Cloud Certifications such as GCP, AWS
Experience in a 24 x 7 x 365 global security operations center environment
Title: Information Security Engineer 2 - Contingent
Location: Chandler, AZ
Duration: 18 months
Work Engagement: W2
Work Schedule: Hybrid 3 days in office/2 days remote
Benefits on offer for this contract position: Health Insurance, Life insurance, 401K and Voluntary Benefits
Summary:
In this contingent resource assignment, you may: Participate in low to moderately complex initiatives and identify opportunity for process improvements within Information Security Engineering. Review and analyze basic or tactical Information Security Engineering assignments or challenges that require research, evaluation, and selection of alternatives, related to low-to-medium risk deliverables. Present recommendations for resolving low to moderately complex situations and exercise some independent judgment while developing understanding of function, policies, procedures, and compliance requirements. Provide information to client personnel in Information Security Engineering. Required Qualifications: Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work or consulting experience, training, military experience, education.
Key Responsibilities:
- Provide information security consultation to improve awareness and compliance with Enterprise Information Security policy, processes and standards
- Perform remediation of security assessment review issues, complex ad hoc data, and reporting to support information security risk management
- Provide guidance and direction in reviewing assessment findings and mitigating controls to optimize information security
- Identify and direct information asset portfolio reconciliations and certifications
- Provide advanced data aggregation and data of information security risk exposure
- Develop and deliver Information Security Education Awareness and Training in accordance with the Enterprise Information Security Program standards
- Review draft and proposed control standards for business impact and recommend modifications or clarifications as required
- Conduct security control testing and consultation with stakeholders
- Evaluate and interpret internal and Enterprise Information Security policies, processes and standards, and provide recommendations to improve them
- Collaborate and consult with peers, colleagues, and managers to resolve issues and achieve goals
- Interact with internal customers
- Serve as a mentor to less experienced staff
- Applicants must be authorized to work for ANY employer in the U.S. This position is not eligible for visa sponsorship.
- Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
- Incident Response Protocols and Tools experience
- Experience with Security Information and Event Management (SIEM) and Security Orchestration, Automation and Response (SOAR) products(s)
- Azure, Office 365 or Cloud technologies
Experience with Endpoint Detection and Response(EDR)product(s)
Knowledge and understanding of security analytics including: incident response and a digital forensics discipline
Knowledge and understanding of data security controls including malware protection, firewalls, intrusion detection systems, content filtering, Internet proxies, encryption controls, endpoint detection response, and log management solutions
Knowledge and understanding of banking or financial services industry
Experience with host and/or network log analysis as applied to incident response / threat hunting
Knowledge of offensive security, with the ability to think like an adversary when hunting and responding to incidents
Knowledge and understanding of security analytics including: incident response and Identity Access Management
Certifications in one or more of the following: Global Information Assurance Certification (GIAC), Offensive Security Certified Professional (OSCP), Offensive Security Wireless Professional (OSWP), Offensive Security Certified Expert (OSCE), Offensive Security Exploitation Expert (OSEE), or Offensive Security Web Expert (OSWE)
Cloud Certifications such as GCP, AWS
Experience in a 24 x 7 x 365 global security operations center environment