Open position: Principal IT Security Engineer; Location: Tampa McLean Boston Jersey City Dallas, TX; Job type: Direct hire; Job function: Information Technology
Job application has been closed
Principal IT Security Engineer
Location: Tampa McLean Boston Jersey City Dallas, TX
Job
type: Direct hire
Job
function: Information Technology
Industry:
Financial Services
Experience
level: Mid-senior
Education
level: Bachelor’s degree
Work
location: Hybrid
Skills: IT Security Engineer, IT Security, Identity Access Management (IAM), Identity Access Management, IAM, Information Security, PKI, Cryptography, on premise, on-premise, cloud, Secrets management, certificate issuance ceremonies, Certificate Lifecycle Management, certificate revocation list (CRLs), certificate revocation list, CRL, CRLs, Venafi, Hashicorp, Thales, Gemalto (SafeNet HSM), DigiCert, Hitachi (HiPAM), Hitachi, HiPAM, SafeNet HSM, Gemalto, SSL certificate management concepts, SSL, Online Certificate Status Protocol
Experience
required: 6 Years
Relocation
assistance: No
JOB
DESCRIPTION:
Being
a member of the Identity Access Management (IAM) Team, you will be responsible
for the functional and technical design of business systems; integration of
business services & information security; driving industry-specific best
practices & standards; understanding regulatory compliance needs;
coordinating test planning & execution; providing leadership to AD teams
and acting as technology liaison to all IT areas within DTCC, to the business
partners, and to the industry.
Leading
projects, teams, code reviews are required to be able to lead by example.
RESPONSIBILITIES:
- As an expert application architect and senior software engineer, mission is to help lead our team of innovators and technologists toward crafting next-generation solutions that improve the way our business is run.
- Defines and factors in performance, scalability, availability, resiliency, security, maintainability, support, testing and cost requirements when making technology selection and application design decisions.
- Define approaches for modernizing legacy applications including migration to public or private cloud infrastructure.
- Own the engineering design practices of our software development organization.
- Lead design reviews session.
- Collaborate with Infrastructure and Solution Architecture to choose efficient hosting environment.
- Focus on industry practices such as lose coupling of applications, standardization, APIs, reusability, concepts of isolation, extensibility, extendibility and consistency of solutions while proposing and reviewing architectures.
- Identify and solve for non-functional requirements for the platform consumers.
- Ensures solutions adhere to security policies and standards of firm and industry.
- Conduct POCs for tools as seen fit for the area.
QUALIFICATIONS:
- Bachelor\'s degree preferred or equivalent experience.
- Minimum of 6 years of related experience
- Strong Information Security experience, specifically in PKI/Cryptography (on premise and cloud) & Secrets management.
- Solid working experience with certificate issuance ceremonies.
- In-depth knowledge of Certificate Lifecycle Management including certificate revocation list (CRLs) standard processes.
- Hands-on experience with 2+ vendors such as: Venafi, Hashicorp, Microsoft, Thales, Gemalto (SafeNet HSM), DigiCert, Hitachi (HiPAM).
- Experience in SSL certificate management concepts, processes, and solution management.
- Expertise with Online Certificate Status Protocol (OCSP) infrastructure, Hardware Security Modules (HSM), CMS Enterprise, Venafi Trust Protection Platform, and Venafi TrustNet software suites.
- Experience in building Certificate Policy (CP) and Certificate Practice Statements (CPS).
- Solid experience with Python, networking fundamentals, OS (Windows/Linux) security.
- Experience with Information Security frameworks (e.g. ISO 27001 and NIST) & security architecture frameworks.
- Deep technical writing skills to support required documentation.
- Demonstrated ability to collaborate between product management, engineering, risk, and IT teams.
- Has good communication skills with the ability to communicate in front of large audience.
ABOUT
DTCC: With 50 years of experience, DTCC is the premier post-trade market
infrastructure for the global financial services industry. From 20 locations
around the world, DTCC, through its subsidiaries, automates, centralizes, and
standardizes the processing of financial transactions, mitigating risk,
increasing transparency, enhancing performance, and driving efficiency for
thousands of broker/dealers, custodian banks and asset managers. Industry owned
and governed, the firm innovates purposefully, simplifying the complexities of
clearing, settlement, asset servicing, transaction processing, trade reporting
and data services across asset classes and bringing increased security,
enhanced resilience, and soundness to financial markets. In 2022, DTCC’s subsidiaries
processed securities transactions valued at U.S. $2.5 quadrillion and its
depository subsidiary provided custody and asset servicing for securities
issues from over 150 countries and territories valued at U.S. $72 trillion.
DTCC’s Global Trade Repository service, through locally registered, licensed,
or approved trade repositories, processes more than 17.5 billion messages
annually.
For
more detail and to apply, click or tap here.
Comments
Post a Comment