- Location
- New Canaan, CT
- Workplace
- Remote, Hybrid, Onsite
- Department
- Engineering
- Seniority
- Senior
- Education
- Bachelor
- Source
- Paylocity
Description
Description
About Bankwell:
Bankwell is a commercial bank with more than $3 billion in assets that serves the banking needs of businesses and individuals. At Bankwell, we pride ourselves on our unique ability to bring you high touch, high quality banking with the expertise and dedication of our experienced team of professionals. When it comes to business, our deep industry knowledge, flexibility and innovative treasury and financing services enable us to find the right solutions for our business and commercial clients. We’re passionate about giving back and are actively involved with many not-for-profit organizations that help shape and improve the lives of others. We’re dedicated to giving our time and talent to support the communities we serve. More about Bankwell can be found at www.mybankwell.com.
Summary of Position:
The Senior Security Engineer is responsible for the design, implementation, administration, and support of the Bank's cybersecurity infrastructure and network security architecture. This hands-on engineering role serves as a technical lead in securing critical business systems, maintaining perimeter defenses, supporting vulnerability management activities, and ensuring the reliability and effectiveness of enterprise security controls.
The successful candidate will possess extensive experience with Next Generation Firewalls (NGFWs), network security engineering, security monitoring technologies, vulnerability management platforms, and secure network architecture. The Senior Security Engineer will collaborate closely with Information Technology, Risk Management, and business stakeholders to support regulatory compliance, operational resiliency, and cybersecurity program objectives.er.
This is a hybrid position requiring onsite presence four (4) days per week at Bankwell's New Canaan headquarters, with one (1) remote workday per week, subject to business needs.
Responsibilities include:
Security Engineering & Architecture
• Design, implement, maintain, and optimize enterprise security solutions and network security controls.
• Develop secure network architectures supporting business and regulatory requirements.
• Lead implementation of cybersecurity technologies and participate in infrastructure modernization initiatives.
• Evaluate emerging technologies and recommend security solutions to mitigate evolving threats.
• Maintain technical standards, diagrams, procedures, and security documentation.
Firewall & Network Security Administration
• Administer security policy and troubleshoot Next Generation Firewalls.
• Manage security policies, rule reviews, VPN connectivity, and threat prevention services.
• Configure and support next-gen firewall centralized management environments.
• Plan and execute firewall migrations, upgrades, and cutover activities.
• Monitor firewall performance and optimize security rulebases to ensure operational efficiency.
Security Operations & Incident Support
• Support security incident investigation, containment, remediation, and recovery activities.
• Assist with threat detection, monitoring, and event analysis across security platforms.
• Participate in incident response activities and cybersecurity exercises.
• Perform root cause analysis and recommend corrective actions for security incidents.
Vulnerability & Exposure Management
• Administer and support Tenable and related vulnerability management platforms.
• Conduct vulnerability assessments and assist with remediation planning.
• Track remediation efforts and validate corrective actions.
• Support external attack surface management and exposure reduction initiatives.
• Identify and communicate technical risks to management and stakeholders.
Network Engineering Support
• Support secure remote access technologies and network connectivity solutions.
• Collaborate with Infrastructure teams on network-related projects and enhancements.
Compliance & Risk Management
• Support cybersecurity regulatory compliance requirements, including FFIEC, GLBA, NIST Cybersecurity Framework, and applicable banking regulations.
• Participate in audits, examinations, penetration testing activities, and security reviews.
• Assist in the development and maintenance of security standards, procedures, and technical controls.
• Provide technical expertise during risk assessments and security reviews.
Change Management & Documentation
• Adhere to Change Management processes and procedures.
• Create, update, and maintain technical documentation and operational procedures.
• Document activities, changes, incidents, and configurations within approved ticketing systems.
• Participate in after-hours maintenance activities and incident response efforts, as necessary.
Requirements
Qualifications & Skills:
Education:
• Bachelor's Degree in Information Security, Cybersecurity, Computer Science, Information Technology, Network Engineering, or related field.
• Equivalent combination of education and relevant experience may be considered.
Experience:
• Minimum five (5) years of information security and network security engineering experience.
• Minimum three (3) years of hands-on administration of enterprise-class firewall technologies.
• Experience implementing and supporting cybersecurity technologies in complex enterprise environments.
• Demonstrated experience with network troubleshooting and security infrastructure management.
Required Technical Skills:
• Palo Alto and Fortinet Networks Next Generation Firewalls
• Firewall Management Platform
• VPN Technologies (IPSec and SSL VPN)
• Network Security Architecture
• Intrusion Prevention Systems (IPS)
• Network Segmentation
• Security Policy Administration
• Vulnerability Management Platforms
• Tenable Security Solutions
• Cisco Routing and Switching
• TCP/IP Networking
• DNS, DHCP, and Routing Protocols
• Security Event Monitoring
PREFERRED QUALIFICATIONS:
• Certifications
• One or more of the following certifications are strongly preferred:
• CISSP (Certified Information Systems Security Professional)
• Security+
• GIAC Security Certifications
• Tenable Certifications
• Cloud Security Certifications (Azure or AWS)
Preferred Experience:
• Financial services or banking industry experience.
• Security Operations Center (SOC) experience.
• Exposure management and attack surface management programs.
• Security automation and orchestration technologies.
• Cloud security architecture and implementation.
KNOWLEDGE, SKILLS, AND ABILITIES:
• Strong technical aptitude with the ability to design, implement, troubleshoot, and support complex security and network infrastructure.
• Excellent analytical and problem-solving skills with the ability to identify root causes and implement effective solutions.
• Ability to independently manage multiple projects and priorities while maintaining attention to detail and meeting established deadlines.
• Strong verbal and written communication skills with the ability to effectively communicate technical information to both technical and non-technical audiences.
• Ability to build collaborative working relationships with Information Technology, Risk Management, Compliance, Audit, business units, vendors, and external service providers.
• Demonstrated ability to exercise sound judgment and make risk-based decisions in support of business and security objectives.
• Ability to adapt to changing business requirements, emerging technologies, and evolving cybersecurity threats.
• Strong organizational and documentation skills.
• Ability to work effectively both independently and as part of a team.
• Commitment to maintaining confidentiality and handling sensitive information in accordance with Bank policies and regulatory requirements.
• Demonstrated initiative, accountability, professionalism, and a customer-service mindset.
• Commitment to continuous learning and professional development within the cybersecurity and technology fields.
PHYSICAL REQUIREMENTS:
• Ability to sit and work at a computer for extended periods.
• Occasional lifting of equipment up to 25 pounds.
• Ability to participate in after-hours maintenance and incident response activities when required.
WORK ENVIRONMENT:
The Senior Security Engineer operates in a professional office environment and may be required to support cybersecurity incidents, maintenance activities, or technology implementations outside normal business hours. This position serves as a key technical resource within the Information Security Program and plays a critical role in protecting the confidentiality, integrity, and availability of Bank information assets.
BANKWELL COMPETENCIES:
• Integrity and Accountability
• Customer Focus
• Collaboration and Teamwork
• Risk Awareness and Compliance
• Continuous Improvement
• Technical Excellence
• Problem Solving and Innovation
• Professionalism and Communication
FLSA Status: Exempt
Competitive compensation and benefits, including:
- Medical, dental, and vision coverage
- Employer-paid life and disability insurance
- HSA option
- Employee Assistance Program (EAP)
- Telehealth and wellness resources
- Supplemental insurance options
- Pet insurance and legal plan benefits
Benefits become effective on the first day of the month following date of hire.
This job description is a general description of essential job functions. It is not intended as an employment contract, nor is it intended to describe all duties someone in this position may perform. All employees are expected to perform tasks assigned by supervisory personnel, regardless of job titles or routine job duties.
Bankwell is committed to a policy of Equal Employment Opportunity and will not discriminate against any applicant or employee on the basis of race, color, religion, sex, sexual orientation, national origin or ancestry, age, physical or mental disability, veteran or military status, marital status, or any other legally recognized protected basis under federal, state or local laws.
Applicants with disabilities may be entitled to reasonable accommodation under the terms of Americans with Disabilities Act and certain other state or local laws. Please inform Bankwell’s Human Resources representative if you need assistance completing any forms or to otherwise participate in the application process.
All employees are responsible for complying with banking regulations that apply to Bankwell. This includes, but is not limited to, adhering to the BSA and various consumer protection regulations, and complying with OFAC sanctions. Employees are required to complete compliance training and follow policies and procedures for applicable regulations based on their role. An employee’s failure to comply with banking regulations will be individually reviewed and assessed. The result of non-compliance may impact job performance ratings and may be serious enough to require termination of employment.