Senior Security Engineer, Insider Risk
- Full-Time
- Rockville, MD
- Finra
- Posted 2 years ago – Accepting applications
Job Description
Major Purpose:
The Security Engineer is responsible for supporting the development and maintenance for applications, tools and data feeds in the detection and assessment of insider risks, including anomaly detection, categorization and strategic guidance. Essential Job Functions:
Desirable Security-related Experience with the following:
As standard practice, employees must also execute FINRA’s Employee Confidentiality and Invention Assignment Agreement without qualification or modification and comply with the company’s policy on nepotism. Search Firm Representatives Please be advised that FINRA is not seeking assistance or accepting unsolicited resumes from search firms for this employment opportunity. Regardless of past practice, a valid written agreement and task order must be in place before any resumes are submitted to FINRA. All resumes submitted by search firms to any employee at FINRA without a valid written agreement and task order in place will be deemed the sole property of FINRA and no fee will be paid in the event that person is hired by FINRA. FINRA is an Equal Opportunity and Affirmative Action Employer All qualified applicants will receive consideration for employment without regard to age, citizenship status, color, disability, marital status, national origin, race, religion, sex, sexual orientation, gender identity, veteran status or any other classification protected by federal state or local laws as appropriate, or upon the protected status of the person’s relatives, friends or associates. FINRA abides by the requirements of 41 CFR 60-741.5(a). This regulation prohibits discrimination against qualified individuals on the basis of disability, and requires affirmative action by covered prime contractors and subcontractors to employ and advance in employment qualified individuals with disabilities. FINRA abides by the requirements of 41 CFR 60-300.5(a). This regulation prohibits discrimination against qualified protected veterans, and requires affirmative action by covered prime contractors and subcontractors to employ and advance in employment qualified protected veterans. ©2020 FINRA. All rights reserved. FINRA is a registered trademark of the Financial Industry Regulatory Authority, Inc.
Apply to this Job
The Security Engineer is responsible for supporting the development and maintenance for applications, tools and data feeds in the detection and assessment of insider risks, including anomaly detection, categorization and strategic guidance. Essential Job Functions:
- Supports the development of insider threat tools for correlations and anomaly detection.
- Identifies information gaps and maintains access, use and activity log and contextual data feeds
- Builds and maintains various tools and dashboards, such as a User and Entity Behavior Analytics (UEBA), User Activity Monitoring (UAM) and Security Incident and Event Management (SIEM), and develops risk scoring, activity reports and detection alerts.
- Supports the review of DLP activity and provides feedback and enhancement information for rule development
- Research and implement new technologies used to help detect and assess insider risks.
- Perform other duties and responsibilities as assigned.
- At least one (1) year of professional experience with B.S degree in computer science or at least three (3) years of experience to include:
- One (1) or more years working with SEIM or logging tool with demonstrated ability to create ad-hoc queries.
- One year working with User and Entity Behavioral Analytic (UEBA) tools
Desirable Security-related Experience with the following:
- Knowledge of webservers such as Tomcat, IIS, Nginx and/or Apache.
- Knowledge of Cybersecurity tools a plus.
- Knowledge of virtualization and cloud computing.
- Knowledge/hands-on experiences of AWS fundamentals and security a plus.
- Security+ Certification or comparable.
- A+/Network+.
- Financial services industry (Insurance, Banking, Investments) experience a plus.
- Work is normally performed in an office environment.
- Occasional travel and extended hours may be required
As standard practice, employees must also execute FINRA’s Employee Confidentiality and Invention Assignment Agreement without qualification or modification and comply with the company’s policy on nepotism. Search Firm Representatives Please be advised that FINRA is not seeking assistance or accepting unsolicited resumes from search firms for this employment opportunity. Regardless of past practice, a valid written agreement and task order must be in place before any resumes are submitted to FINRA. All resumes submitted by search firms to any employee at FINRA without a valid written agreement and task order in place will be deemed the sole property of FINRA and no fee will be paid in the event that person is hired by FINRA. FINRA is an Equal Opportunity and Affirmative Action Employer All qualified applicants will receive consideration for employment without regard to age, citizenship status, color, disability, marital status, national origin, race, religion, sex, sexual orientation, gender identity, veteran status or any other classification protected by federal state or local laws as appropriate, or upon the protected status of the person’s relatives, friends or associates. FINRA abides by the requirements of 41 CFR 60-741.5(a). This regulation prohibits discrimination against qualified individuals on the basis of disability, and requires affirmative action by covered prime contractors and subcontractors to employ and advance in employment qualified individuals with disabilities. FINRA abides by the requirements of 41 CFR 60-300.5(a). This regulation prohibits discrimination against qualified protected veterans, and requires affirmative action by covered prime contractors and subcontractors to employ and advance in employment qualified protected veterans. ©2020 FINRA. All rights reserved. FINRA is a registered trademark of the Financial Industry Regulatory Authority, Inc.