Skip to main content

This job has expired

Senior Information Security Engineer (Mainframe Encryption)

Employer
Wells Fargo
Location
Minneapolis
Salary
Competitive

View more

Industry
Technology
Role
Engineer
Job Type
Long-Term
Hours
Full Time
The Mainframe Encryption and Physical Key Management Team, within the Wells Fargo Technology Infrastructure - Secure Network Services - Critical Security Infrastructure organization , is seeking a Senior Information Security Engineer to work on end-to-end engineering and management of mainframe information protection, encryption, and key management technologies, along with production support responsibilities. The position is responsible for performing "hands-on" engineering support, troubleshooting/technical support, implementations and documentation for mainframe information protection, encryption and key management technologies, along with physical key management. This position may also be engaged to supporting security/crypto appliance Infrastructure, as well as agent software packages on the Windows/Unix/Linux for associated products. This position reports directly to the manager of the Mainframe Encryption and Physical Key Management Team.

In this role you will
  • Provide support and perform engineering for IBM mainframe information protection, encryption and Cryptographic Technology capabilities: including ICSF (IBM Integrated Crypto Services Facility) and IBM Pervasive Encryption.
  • Provide Mainframe support for job failures/abends
  • Create/Maintain encryption key labels for Mainframe Applications as part of Pervasive Encryption implementations
  • Provide Mainframe Subject Matter Expert (SME) support during Business Continuity Process exercises
  • Act as a SME/Technical Advisor for creating documentation, reviewing policy changes, etc.
  • Design, develop and implement automation for manual processes via scripting and other automation tools.
  • Implement automated solutions in the mainframe environment.
  • Manage the online transaction management systems on z/OS using CICS (Customer Information Control System)
  • Need to be capable of creating technical/engineering documentation and have excellent written and oral communication.
  • Provide security engineering/design for cryptographic solutions and ensure risk mitigation via effective security configuration standards, best practices and while ensuring engineering discipline and quality security technology and business outcomes.
  • Participate in the research, analysis, design, testing and implementation of complex information protection technologies, alongside other teams within our organization.
  • Design, document, test, maintain, and provide issue resolution recommendations for highly complex security and cryptographic technology solutions.
  • Work with vendors to understand the technology vendor's roadmap, help to influence that roadmap, and ensure requests for technology/product enhancements are meeting the needs of Wells Fargo.
  • Work with partner engineering teams on identification and remediation of security vulnerabilities and may also conduct risk assessments of Infrastructure to ensure compliance with corporate security policies and adherence to best practices.
  • Collaborate and influence all levels of professionals, including managers.
  • Provide periodic 24/7 on-call support rotation and some work will be required to be done during off hours.
Required Qualifications:
  • 5+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education.
  • 3+ years of experience with IBM Mainframes and z/OS security
  • 2+ years of Virtual Storage Access Method (VSAM) experience
  • Proven experience successfully designing, developing and deploying automation solutions for technical and engineering processes.
  • Demonstrated experience implementing automation solutions in the mainframe environment
  • Experience with Agile Scrum or Kanban methodologies.
  • Proven experience with change and incident management practices in medium to large enterprise environments.
  • Intermediate to advanced skills with M365/MS Office: PowerPoint, Excel, Word, Outlook, MS Teams, MS SharePoint Online
Desired Qualifications:
  • 2+ years of experience in programming or scripting languages like REXX, COBAL, JCL, etc.
  • 2+ years of experience with 2 or more of the following: CICS, CA-7, JCL/IDCAMS/IEBGENER and Endevor
  • Experience with or understanding of IBM Pervasive Encryption
  • Knowledge, understanding and/or experience with RACF (Resource Access Control Facility), ICSF (Integrated Cryptographic Service Facility) and Easytrieve Plus
  • Mainframe Linux experience
  • Experience with and the ability to thrive in a complex and fast-paced technology and/or information security organization, within a large enterprise environment.
  • Experience with application support in Linux and Windows server environments.
  • Experience performing technical product assessments, including development of implementation plans, in a large enterprise.
  • Experience mentoring/guiding less experienced staff.
  • Strong analytical skills with high attention to detail and accuracy.
  • Advanced critical thinking, problem solving and technical troubleshooting abilities.
  • Ability to identify and assess issues then make sound decisions.
  • Security certifications such as CISSP, GIAC or equivalent.
  • Cloud certifications such as AZ-900, MS-900 or equivalent/higher.
  • Strong verbal, written, and interpersonal communication skills.
  • Advanced scripting skills specifically around log rotation, data collection, error collection and alerting.
  • Knowledge and understanding of implementing infrastructure upgrades, security patches, or version upgrades.
  • Experience designing, developing and implementing synthetic transactions for the monitoring of applications and/or infrastructure.
  • Experience with Puppet/Chef/Ansible or similar automation tools.
  • Public cloud engineering or support experience.
  • Knowledge and understanding of Splunk.
  • Knowledge and understanding of Cryptographic Technologies and Key Management.
  • Knowledge and understanding of banking or the financial services industry.
  • Ability to coordinate completion of multiple tasks and meet aggressive time frames.
  • Application development experience.
Job Expectations:
  • Ability to work on call / off-hours as assigned per the Team on-call rotation.
  • Ability to travel up to 10% of the time.
We Value Diversity

At Wells Fargo, we believe in diversity, equity and inclusion in the workplace; accordingly, we welcome applications for employment from all qualified candidates, regardless of race, color, gender, national origin, religion, age, sexual orientation, gender identity, gender expression, genetic information, individuals with disabilities, pregnancy, marital status, status as a protected veteran or any other status protected by applicable law.

Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit's risk appetite and all risk and compliance program requirements.

Candidates applying to job openings posted in US: All qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Candidates applying to job openings posted in Canada: Applications for employment are encouraged from all qualified candidates, including women, persons with disabilities, aboriginal peoples and visible minorities. Accommodation for applicants with disabilities is available upon request in connection with the recruitment process.

Get job alerts

Create a job alert and receive personalized job recommendations straight to your inbox.

Create alert