Information Security Engineering Manager

EagleBank
  • Silver Spring, Maryland
  • $141,076–$241,844 Per Year
  • Full-time
4 days ago

Job Description

Overview:

We are a values driven organization putting Relationships FIRST. EagleBank (NASDAQ – EGBN) is focused on being Flexible, Involved, Responsive, Strong, and Trusted. By prioritizing meaningful connections with our customers, employees, and shareholders, we relentlessly deliver the most compelling, valuable service to our customers.

EagleBank is committed to inclusion, equity, and respect. We celebrate diversity and intentionally seek out opportunities to learn from one another’s experience. We believe employees are essential to the building of relationships and we prioritize investing in employee growth and wellbeing. Employee involvement is fostered through resource groups, mentorship programs, community service, and scholarship opportunities for continued education. With features including maternity and parental leaves, wellness discounts, healthcare premium sharing, employer funding in your HSA account, and 100% 401(k) matching up to 4%, we pride ourselves in the ways we support our internal relationships. The minimum and maximum projected annualized salary for this position is: $141,076.00 to $241,844.00. Additional compensation may be possible based on experience and skills.

Responsibilities:

The Information Security Manager is responsible for monitoring, analyzing and maintaining EagleBank's technical security engineering controls in support of EagleBank's Information Security Program. This role will be focused on security engineering of the EagleBank applications and network which includes creation and timely execution of project plans, tool installations, assisting with upgrades of EagleBank's technology environments and ensuring that appropriate external feeds and threat intelligence are integrated into the operational tools. The role executes controls to maintain the confidentiality, integrity and availability of EagleBank's information systems and infrastructure and supports the bank's operational goals.

 

 

Major duties and responsibilities:

  • Lead a team of five (5) Information Security Engineers.
  • Independently identify and propose remediations for risks related to Bank IT infrastructure.
  • Support information security projects and lead engineers, vendors, and consultants.
  • Review, analyze, and update network security tool configuration and architecture, and document, troubleshoot, and remediate issues.
  • In collaboration with the CISO, identify opportunities to mature information security engineering capabilities and processes, executing some and assigning tasks to others for execution.
  • Interfaces directly with senior members of IT Operations team to address cross-cutting issues and events.
  • Acts as backup Incident Response lead for Information Security team.
  • Work with managed service providers, network administrators, and Security Operations to resolve problems, evaluate new solutions, recommend changes, and investigate incidents.
  • Analyze reports, identify, and distribute action items or service tickets to support teams or vendors to address InfoSec engineering issues.
  • Document and submit Change Management requests on behalf of the InfoSec engineering team and present changes to Change Advisory Board when appropriate.
  • Sets weekly tasks and runs regular security engineering team meetings and one on one is with direct reports. Responsible for performance, setting annual goals including employee development and training.
  • Manage and distribute the triage and analysis of security events escalated from the Tier-2 support teams.
  • Act as Backup to the CISO.
Qualifications:

Requirements:

  • Bachelor’s Degree in Arts/Sciences (BA/BS) in Computer Science or Information Systems, Information Technology or related focused technical training or in lieu 4 additional years of engineering and project management experience
  • 10 years experience in a combination of information security operations/engineering/administration with emphasis on deploying security tools and capabilities
  • 8 years experience configuring and implementing information security technologies
  • 8 years experience working in Microsoft network security environment with knowledge of Active Directory, Intune, Azure AD and Azure Sentinel, O365 / Security Center
  • 4 years experience leading a team of technical professionals
  • One or more of the following certifications (or equivalent): CASP (CompTIA Advanced Security Practitioner) or ISC2 CISSP EC-Council Certified Ethical Hacker (CEH) AZ-500 Microsoft Azure Security Engineer Associate
  • Expert knowledge of security tools used for vulnerability management (Tenable Nessus, Qualys, Nexpose), privileged access management (CyberArk), Security Event Incident Management (Microsoft Sentinel), Microsoft Endpoint Security (EDR)
  • Expert knowledge of scripting languag(es) such as PowerShell, KQL
  • Expert knowledge of Microsoft Defender for Cloud
  • Expert knowledge of Active Directory (AD)
  • Expert knowledge of TCP/IP networking: networking topology, protocols and services
  • Expert knowledge of Palo Alto firewalls, Panorama and firewall operations
  • Experience with operations and optimization of Secure Web Gateway (preferably Netskope)
  • Experience with Email Security tooling (Proofpoint, Purview) and optimization
  • Experience leading tool, application, and system security assessments / evaluations
  • Experience with security elements of Intune, Conditional Access Policy implementations
  • Experience with security engineering of Linux servers
  • Strong Active Directory and Windows Group Policy (GPO) knowledge
  • Experience leading security collaboration with operations teams responsible for networking technology and protocols, including routers, switches, VPNs, email gateways



Preferences:

  • 4 years experience with AD tools for inventory, analysis and report on Active Directory structure, objects, permissions, etc
  • 4 years experience with malware analysis using sandboxes
  • 4 years security engineering/administration in the financial sector
  • One or more of the following certifications (or equivalent): CCNA EC-Council Certified Security Analyst (ECSA) SC-100 Microsoft Cybersecurity Architect ISC2 System Security Certified Practitioner (SSCP) ISACA certifications (CRISC) GSE GIAC Security Expert GIAC Certifications such as GPPA, GCHI, GPEN GSAE (GIAC Security Audit Essentials) GWAPT (GIAC Certified Web Application Penetration Tester)
  • Experience with network auditing tools such as StealthBits, Varonis
  • Experience leading engineering support for escalations, investigations, and incident response



Don't meet all the requirements? We encourage you to still apply if you think you are the right person to join our community. We are always interested connecting with people inspired by our mission and values. If you aren't hired for this position, your resume will remain available for the next year and might be considered for future openings. Note: You can update your resume as often as needed.

Numbers & Facts

LocationSilver Spring, Maryland
Job TypeFull-time
Salary$141,076–$241,844 Per Year

Skills

  • Analysis Skillsunmatched
  • Applications Securityunmatched
  • Auditingunmatched
  • Banking Operationsunmatched
  • CCNA - Cisco Certified Network Associateunmatched
  • CEH - Certified Ethical Hackerunmatched
  • CISSP - Certified Information Systems Security Professionalunmatched
  • Cloud Computingunmatched
  • Community and Social Servicesunmatched
  • CompTIA - Computing Technology Industry Associationunmatched
  • Computer Scienceunmatched
  • Computer Securityunmatched
  • Customer Support/Serviceunmatched
  • EC-Councilunmatched
  • Email Securityunmatched
  • Endpoint Securityunmatched
  • Engineering Managementunmatched
  • Establish Prioritiesunmatched
  • Financeunmatched
  • Financial Administrationunmatched
  • Firewallsunmatched
  • Fundingunmatched
  • GIAC - Global Information Assurance Certificationunmatched
  • GPEN - GIAC Penetration Testerunmatched
  • GSE - GIAC Security Expertunmatched
  • Healthcareunmatched
  • ISACA (Information Systems Audit and Control Association)unmatched
  • Incident Managementunmatched
  • Incident Responseunmatched
  • Information Technology & Information Systemsunmatched
  • Information/Data Security (InfoSec)unmatched
  • International Information Systems Security Certification Consortium (ISC)2unmatched
  • Internet Applicationunmatched
  • Internet Securityunmatched
  • Leadershipunmatched
  • Linux Operating Systemunmatched
  • Machine Toolunmatched
  • Malware Analysisunmatched
  • Mentoringunmatched
  • Microsoft Access Databaseunmatched
  • Microsoft Active Directoryunmatched
  • Microsoft Product Familyunmatched
  • Microsoft Windows Azureunmatched
  • Microsoft Windows NT Group Policyunmatched
  • Nessusunmatched
  • Network Administration/Managementunmatched
  • Network Configuration Managementunmatched
  • Network Performance/Analysisunmatched
  • Network Protocolsunmatched
  • Network Routersunmatched
  • Network Securityunmatched
  • Network Switchingunmatched
  • Network Topologyunmatched
  • Penetration Testingunmatched
  • Performance Goal Settingunmatched
  • Policy Implementationunmatched
  • Problem Solving Skillsunmatched
  • Project Engineeringunmatched
  • Project Planningunmatched
  • Project/Program Managementunmatched
  • SSCP - Systems Security Certified Practitionerunmatched
  • Scholarshipunmatched
  • Scripting (Scripting Languages)unmatched
  • Security Analysisunmatched
  • Security Attacksunmatched
  • Security Auditingunmatched
  • Security Information and Event Management (SIEM)unmatched
  • Security Monitoringunmatched
  • Software Administrationunmatched
  • Software Engineeringunmatched
  • Software Testingunmatched
  • Staff Developmentunmatched
  • System Architectureunmatched
  • Systems Analysisunmatched
  • TCP/IP (Transmission Control Protocol/Internet Protocol)unmatched
  • Team Lead/Managerunmatched
  • Testingunmatched
  • Time Managementunmatched
  • Training/Teachingunmatched
  • VPN (Virtual Private Network)unmatched
  • Windows PowerShellunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder