Wells Fargo

Lead Information Security Engineer – Vulnerability Operations Team – Engineering and Automation

Hyderabad, India
.NET SQL Python Azure Node.js Ruby PowerShell GCP C# Shell Bash Java Oracle
This job is closed! Check out or
Description

Lead Information Security Engineer – Vulnerability Operations Team – Engineering and Automation

Department Overview:
Wells Fargo views information security as enabling lines of business to mitigate information security risk in accordance with our risk appetite. Through a framework that addresses policy, process, operations, people, and technology, Cybersecurity team protects our infrastructure, company data, and customer assets while ensuring alignment with applicable regulations and laws.

Our vision is to provide Wells Fargo with world-leading cyber security risk management.
 
The Cybersecurity Vulnerability & Patch Management (VPM) organization’s primary function is to safeguard the confidentiality, integrity, and availability of information systems, identity, and data assets by providing capabilities that empower the enterprise to maintain a resilient and secure environment.

The Vulnerability Operations Team (VO) within VPM leads multiple controls governing remediation of vulnerabilities in vendor software deployed on infrastructure assets across the enterprise footprint.

 
About the Role:
 

Our Vulnerability Operations team is looking for a Lead Information Security Engineer who can leverage strong engineering skills to identify complex vulnerabilities on software libraries or third-party components embedded in other products.

The individual in this role will leverage strong engineering skills to determine the products at systemic level attributes (example – filepaths, ports) executing the vulnerability, and other on-asset nuances.

The individual in this role will create repositories for these vulnerability patterns for mapping them to specific vulnerability. The individual in this role will also provide skills to address other engineering needs across the Vulnerability Operations controls.

The individual in this role will also be responsible for analyzing existing technical tasks performed by engineers and building tools to automate those tasks.  This will require identifying areas where efficiencies can be gained, understanding the existing process, and writing code/building tools that will automate the tasks.  To accomplish these goals, the candidate must possess advanced development/coding skills as well as advanced Server-side system administration/engineering/networking skills.

  • Leads efforts to design, create and implement automation to support operational tasks.
  • Provide security consulting on medium projects for internal clients to ensure conformity with corporate information, security policy, and standards.
  • Design, document, test, maintain, and provide issue resolution recommendations for moderately complex security solutions.
  • Utilize subject matter knowledge in industry leading security solutions and best practices while implementing solutions.
  • Collaborate and consult with peers, colleagues and managers to resolve issues and achieve goals.
  • Provide technical inputs to streamline or automate process and identify risk appropriately.
  • Deliver projects to support technical and business solution individually with minimum guidance.
  • Manage and monitor infrastructure and ensure it operates at optimal level.
  • Participate in and respond reliably to user request/query and support on-call. Understand & analyze business requirements and deliver technical solution.
  • Research new software development methodologies and technologies and analyzes their application to current development and integration needs.
  • Maintain a broad understanding of security technologies and products. 
  • Demonstrated detailed oriented self-starter and the ability to work independently with limited supervision and limited direction, and in collaborative team environments.
  • The ability to provide support after normal business hours as needed.
  • A strong ability to multi-task and manage varying priorities and projects.

Essential Qualifications:

  • 10+ combined years’ experience in software or web development using:
    • Java 8+
    • C# using .NET Framework 4.5+, .NET Core 2.0+, or .NET 5+
  • 5+ combined years’ experience in data wrangling and data analysis.

  • 5+ years’ experience in Structured Query Language (SQL).

  • 5+ combined years’ experience in software or web development using:
    • Python
    • Node.js
    • Visual C++
    • Ruby

  • 5+ combined years’ experience in scripting or automation using:
    • Bourne Shell (sh), Bourne-Again Shell (bash), or KornShell (ksh)
    • PowerShell

  • 5+ combined years’ experience in common web engines including:
    • Microsoft Internet Information Services (IIS)
    • Apache Tomcat
    • Apache HTTP Server
    • Oracle WebLogic Server
    • IBM WebSphere Application Server
    • IBM Open Liberty Server
    • Nginx
    • Red Hat Jboss Enterprise Application Platform

  • 1+ combined years’ experience in:
    • Public cloud providers (emphasis on Google Cloud Platform and Microsoft Azure)
  • Demonstrated excellent written and oral communication skills.

Desired Qualifications:

  • 5+ combined years’ experience in:
    • Virtual Systems
    • Containerized workloads
    • Common container base layers
  • Bachelor’s and/or Master’s degree in computer science or information systems
  • Experience with Agile methodology of project delivery.
  • Knowledge and understanding of Common Vulnerability Exposures (CVE) and Common Vulnerability Scoring System (CVSS) scoring.
  • Ability to take initiative, identify opportunities and implement change.
  • Ability to identify and manage complex issues and negotiate solutions within a geographically dispersed organization.
  • Information Security technical skills and solid knowledge and understanding of information security practices and policies.

Posting End Date: 

29 Apr 2024

*Job posting may come down early due to volume of applicants.

We Value Diversity

At Wells Fargo, we believe in diversity, equity and inclusion in the workplace; accordingly, we welcome applications for employment from all qualified candidates, regardless of race, color, gender, national origin, religion, age, sexual orientation, gender identity, gender expression, genetic information, individuals with disabilities, pregnancy, marital status, status as a protected veteran or any other status protected by applicable law.

Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit’s risk appetite and all risk and compliance program requirements.

Candidates applying to job openings posted in US: All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.

Candidates applying to job openings posted in Canada: Applications for employment are encouraged from all qualified candidates, including women, persons with disabilities, aboriginal peoples and visible minorities. Accommodation for applicants with disabilities is available upon request in connection with the recruitment process.

Applicants with Disabilities

To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo.

Drug and Alcohol Policy

 

Wells Fargo maintains a drug free workplace.  Please see our Drug and Alcohol Policy to learn more.

Wells Fargo
Wells Fargo
Banking Financial Services FinTech Insurance Payments

0 applies

32 views

Other Jobs from Wells Fargo

Principal Software Engineer

Charlotte, NC Irving, TX

Tech Director | Rewards Platform

Chandler, AZ Des Moines, IA

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

50,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 241 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

Cancel anytime / Money-back guarantee

Wall of love from fellow engineers