Senior Information Security Engineer (contract)

Wells Fargo
Charlotte, NC, United States
2 months ago

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

User Authentication Cloud Computing Security Cyber Security Digital Forensics Domain-Based Message Authentication Reporting and Conformance (DMARC) Identity and Access Management Intrusion Detection and Prevention Intrusion Detection Systems Log Analysis Network Forensics Regular Expressions Phishing
+7 more
Web Application Security Security Information and Event Management Software Vulnerability Management Software Security Cyber Threat Analysis Cybercrime Splunk

Job description

We are seeking a Senior Information Security Engineer to join the Threat Disruptions team within the Advanced Operational Services (AOS) organization. This role focuses on identifying, analyzing, and disrupting cyber threats-particularly phishing campaigns-targeting Wells Fargo customers, employees, and brand., * Review, analyze, and correlate security logs across multiple platforms using Splunk

  • Conduct advanced searches in Splunk to identify indicators of compromise and malicious activity
  • Play a major role in phishing disruption efforts, including:
  • Developing new detection logic, rules, and procedures
  • Identifying phishing attacks impacting customers and employees
  • Lead or participate in computer security incident response for moderately complex incidents
  • Perform technical investigations and post-incident digital forensics to determine root cause and recommend mitigation strategies
  • Provide security consulting to internal partners to ensure compliance with corporate information security policies and standards
  • Design, document, test, maintain, and troubleshoot moderately complex security solutions across:
  • Networking, cryptography, cloud security
  • Authentication and directory services
  • Email, internet, application, and endpoint security
  • Apply industry best practices and subject matter expertise to support:
  • Threat identification, monitoring, and modeling
  • Incident response, access management, risk management, and business continuity
  • Identify security vulnerabilities, perform risk assessments, and evaluate remediation options
  • Collaborate with peers, managers, and cross-functional partners to resolve issues and achieve security objectives

Requirements

Do you have experience in Vulnerability management?, The ideal candidate will have strong hands-on experience with Splunk, cyber threat detection, and incident response, along with the ability to conduct detailed log analysis and security investigations in a fast-paced environment., * Applicants must be authorized to work for ANY employer in the U.S. This position is not eligible for visa sponsorship.

  • Experience in Information Security Engineering or equivalent
  • Knowledge of phishing threats, general cybersecurity principles, and threat detection
  • Hands-on experience conducting log analysis and searches in Splunk
  • Ability to investigate and respond to security incidents
  • Advanced technical skills in information security
  • Experience detecting and mitigating phishing attacks targeting employees and corporate brands
  • Experience creating regular expressions (Regex) and YARA rules (preferred)
  • Ability to manage complex issues and develop effective solutions
  • Experience with one or more of the following:
  • Information security monitoring
  • Incident response
  • Vulnerability management
  • Host and/or network forensics
  • Cyber-crime investigations
  • Domain-based Message Authentication, Reporting and Conformance (DMARC)
  • Cyber threat intelligence
  • Hands-on experience with enterprise security tools, including:
  • SIEM platforms
  • IDS/IPS
  • Endpoint security solutions
  • Email and web security gateways
  • Experience with host and/or network log analysis for incident response and threat hunting
  • Knowledge of offensive security and the ability to think like an adversary
  • Strong experience with operating system and application security hardening best practices
  • Strong investigative mindset with attention to detail
  • Advanced problem-solving skills with the ability to develop long-term solutions
  • Ability to perform effectively in a fast-paced, high-demand environment while managing multiple priorities
  • GIAC or other relevant security certifications (preferred)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:11 min

Securing heterogeneous legacy payment infrastructure against AI

Michele Zuccala Michele Zuccala +4 · WWC Europe 2026

Videos

See all

Related articles

See all