Information Security Engineer 3
Information Security Engineer IIIOur Financial Services Industry Client is seeking an experienced Information Security Engineer III to join its cybersecurity organization. This role is ideal for security professionals with expertise in network security, identity and access management, security engineering, software development, or risk and governance functions within large enterprise environments.The Information Security Engineer III will support the design, implementation, assessment, and governance of security controls that protect critical infrastructure, applications, systems, and data. The individual will partner with technology and business stakeholders to identify security risks, recommend appropriate controls, and ensure alignment with enterprise security standards and regulatory requirements.This position requires a strong technical foundation, excellent problem-solving skills, and the ability to communicate effectively with both technical and non-technical stakeholders.Key ResponsibilitiesEvaluate and assess information security risks across infrastructure, applications, cloud environments, and enterprise systems.Review proposed technology changes and provide recommendations for security controls and risk mitigation strategies.Support the implementation, integration, and maintenance of security tools, platforms, and services.Analyze firewall configurations, network security controls, and access management solutions.Develop, maintain, and support secure applications, APIs, automation scripts, and system integrations.Participate in security architecture reviews, governance processes, and security approval boards.Investigate security issues, identify root causes, and recommend corrective actions.Collaborate with infrastructure, application development, cloud, networking, and business teams to ensure compliance with security standards.Assist with vulnerability remediation, risk assessments, incident reviews, and control validation activities.Conduct research on emerging technologies, threats, and security trends to support continuous improvement initiatives.Support compliance initiatives related to regulatory and industry security frameworks.Required Qualifications5+ years of experience in Information Security, Cybersecurity, Network Engineering, Software Engineering, Identity & Access Management, or related fields.Strong understanding of information security principles including: Confidentiality, Integrity, Availability (CIA Triad), Risk Management, Defense-in-Depth, Least Privilege, Zero Trust Architecture.Experience working within complex enterprise environments.Strong analytical, troubleshooting, and problem-solving skills.Excellent verbal and written communication skills.Ability to work effectively with cross-functional teams and stakeholders.Technical SkillsCandidates should possess experience in several of the following areas:Network SecurityFirewall administration and policy reviewNetwork segmentationRouting and switching conceptsIDS/IPS technologiesTraffic flow analysisSecurity architecture reviewsPreferred Technologies:Palo AltoFortinetCisco Security SolutionsCheck PointSecurity Engineering & DevelopmentJavaPythonPowerShellREST API development and integrationsSQL ServerSecure software development practicesIdentity & Access Management (IAM)LDAPActive DirectoryIdentity Governance Administration (IGA)Privileged Access Management (PAM)Authentication and Single Sign-On (SSO) solutionsCloud & Modern SecurityAWSAzureGoogle Cloud Platform (GCP)Cloud security controlsZero Trust frameworksAI security and governance conceptsCompliance & Risk Management ExperienceExperience with one or more of the following is highly preferred:NIST Cybersecurity FrameworkNIST 800-53PCI-DSSSOXFINRASecurity assessmentsControl reviewsAudit supportRegulatory compliance initiativesExperience within banking, financial services, insurance, or other highly regulated industries.Security architecture or governance experience.Identity and access management experience.Privileged Access Management (PAM) experience.Familiarity with Bravura Password Manager or Bravura Security IDM Suite.Knowledge of emerging cybersecurity trends and technologies.Security certifications such as:CISSPCISMSecurity+CCSPGIAC certifications