Principal Security Engineer - Reliability
Wells Fargo
Dallas, TX, United States
10 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source
Tech stack
Application Programming Interfaces (APIs)
Amazon Web Services
Automation of Tests
Microsoft Azure
Cloud Computing Security
Configuration Management
Cyber Security
Software Design Patterns
Domain Name System (DNS)
Python (Programming Language)
Network Security
Routing
+16 more
Packet Analyzer
Site Reliability Engineering Practices
Ansible
Zero Trust Network Access
TCP/IP
Data Logging
Scripting
Transport Layer Security
Load Balancing
Mttr
Firewalls (Computer Science)
Information Technology
Performance Monitor
Fortinet
Firewall Services Module
Terraform
Job description
- Role Type: Individual contributor; this is not a people-manager role.
- Work Model: Hybrid work model with three days per week in the office.
- Eligible Locations: Dallas, TX metro; Charlotte, NC metro; or Chandler, AZ metro.
- Escalation Expectations: Provides senior technical escalation for critical incidents and high-risk changes. This role is expected to support critical incident response as needed; any recurring on-call rotation will be clearly defined before offer acceptance.
- Travel Expectations: 5% or less., You will provide senior technical leadership, hands-on engineering guidance, and cross-functional influence across the following areas:
- Network Security Product Strategy: Define and drive reliability, security posture, policy governance, service health indicators, risk measures, and improvement plans for security platforms.
- Security Platform Engineering: Guide engineering decisions for proxy, firewall, NAC, WAF, secure access, and segmentation platforms to improve scalability, resiliency, and operational simplicity.
- Policy and Control Maturity: Strengthen firewall rules, proxy policies, NAC/WAF controls, segmentation models, exception handling, certification practices, and compliance-aligned controls.
- Incident Leadership: Lead major incident response and service restoration for security product incidents, and drive root cause analysis and prevention of repeat issues.
- Automation and Observability: Expand telemetry, alerting, service health reporting, policy validation, configuration management, automated testing, and self-service capabilities.
- Architecture Influence: Review and guide designs to improve security effectiveness, failure isolation, availability, inspection performance, and operational readiness.
- Cross-Functional Leadership: Partner with cybersecurity, network, cloud, infrastructure, application, architecture, risk, and compliance teams while mentoring engineers and influencing senior stakeholders., Success in this role is measured by stronger security platform reliability, improved control maturity, and reduced risk:
- Improved availability, stability, MTTD, MTTR, and incident trends for security services.
- Reduced repeat incidents, policy errors, and control gaps.
- Stronger policy hygiene and governance across firewall, proxy, NAC, and WAF.
- Increased automation and reduced manual operational toil.
- Broader adoption of security standards, design patterns, and operational playbooks.
- Increased stakeholder confidence in security platform stability, effectiveness, and change readiness., Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit’s risk appetite and all risk and compliance program requirements.
Requirements
You should demonstrate principal-level technical depth, operational judgment, and cross-functional influence, including:
- 7+ years of experience in network security, network engineering, or security infrastructure supporting business-critical enterprise network services.
- 5 plus years of expert knowledge of network security platforms including firewalls, proxy, NAC, WAF, ZTNA, segmentation, and secure access.
- 5 plus years experience with a strong understanding of TCP/IP, routing, switching, DNS, load balancing, TLS/SSL, and application-layer protocols.
- 5 plus years experience applying reliability or SRE practices to infrastructure or security platforms, including service health measurement, problem management, operational health metrics, and continuous improvement.
- 5 plus years experience improving operational stability and reducing repeat incidents through root cause analysis, post-incident reviews, corrective action planning, systemic remediation, and measurable recurrence prevention.
- 5 plus years experience owning corrective actions from post-incident review through implementation, validation, and closure.
- 5 plus years experience improving change success rates through risk assessment, peer review, validation testing, rollback planning, and post-change verification.
- 5 plus years experience conducting operational readiness reviews, production readiness assessments, failure-mode reviews, or service acceptance reviews.
- 5 plus years experience managing vendor escalations, product defects, support cases, and platform lifecycle risks that impact service stability.
- 5 plus years experience improving security control effectiveness, audit readiness, exception governance, and policy compliance across network security platforms.
- 5 plus years experience with hands-on automation or scripting experience with tools such as Python, Ansible, Terraform, APIs, or equivalent technologies.
- 5 plus years experience improving monitoring, telemetry, logging, and service health visibility., The following qualifications are beneficial and will help a candidate be successful in this role:
- Experience influencing enterprise network security architecture and standards.
- Strong leadership, communication, mentoring, and stakeholder influence skills.
- Relevant certifications such as PCNSE, CCNP Security, Fortinet NSE, CISSP, AWS/Azure security, ITIL, or equivalent credentials.
- Ability to prioritize reliability improvements based on business impact, operational risk, service criticality, control effectiveness, and incident trends
- Proven ability to lead complex incident response, troubleshoot high-impact issues under pressure, restore service, and communicate clearly to stakeholders.
- Deep expertise in one or more domains including proxy, firewall, NAC, WAF, or secure access.
- Experience with firewall rule lifecycle, policy hygiene, segmentation, and least-privilege models.
- Experience tuning WAF policies, reducing false positives, and protecting public applications.
- Experience designing NAC policies, identity integration, and zero trust access models.
- Experience with network security modernization, cloud security connectivity, or SASE/ZTNA transformation.
- Experience in regulated or critical industries such as financial services, healthcare, telecommunications, or similar environments.
- Experience reading and interpreting packet captures, proxy logs, firewall logs, WAF events, and NAC telemetry.
- Master’s degree in Cybersecurity, Network Engineering, or a related field., Education: Bachelor’s degree in Computer Science, Cybersecurity, or a related field, or equivalent practical experience.
About the company
Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy (https://www.wellsfargojobs.com/en/wells-fargo-drug-and-alcohol-policy) to learn more.
Wells Fargo Recruitment and Hiring Requirements:
a. Third-Party recordings are prohibited unless authorized by Wells Fargo.
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on dejobs.orgGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
LM
Luis Minvielle
over 2 years ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
6 months ago
DC
Daniel Cranney
Understanding and Mitigating Common Web Vulnerabilities
over 1 year ago
LM
Luis Minvielle
Why Upskilling And Reskilling is Important For Developers
over 2 years ago
LM
Luis Minvielle
How Much FAANG Companies Actually Pay Software Engineers in 2025
about 3 years ago
PZ
Pat Zawadzki
Top Characteristics of a Software Engineer
over 3 years ago