Cyber Security Engineer
Job Description
Banco de Credito e Inversiones is hiring a hands-on Cyber Security Engineer for its Information Security team. The role supports the protection of digital assets, sensitive customer information, and internal systems through vulnerability management, security monitoring, incident response, and control alignment to recognized banking frameworks.
Onsite Location
Miami, FL (onsite)
Role Summary
This position leads enterprise patch management, maintains critical security platforms, performs threat hunting and monitoring, and supports incident response activities. The engineer also ensures technical controls and operating procedures align with the NIST Cybersecurity Framework and applicable banking regulations.
Key Responsibilities
- Lead enterprise patch management by planning, testing, scheduling, and executing patch deployments across endpoints, mobile devices, servers, and network infrastructure to reduce attack surface.
- Perform continuous vulnerability scans and assessments, prioritize findings, and coordinate with IT teams to drive remediation before exploitation occurs.
- Establish, document, and enforce enterprise security hardening baselines across assets and systems.
- Monitor security event logs for suspicious behavior, anomalies, and potential breach indicators, with continuous updates to detection logic to address emerging AI-driven threats such as automated phishing, adversarial machine learning, and deepfake social engineering.
- Support red and blue team activities (purple teaming) to validate control effectiveness, identify gaps, and tune alerting based on simulated real-world attacks.
- Lead incident investigation and containment during high-impact security events.
- Manage EDR operations and adjacent controls, including Anti-Virus, DLP, and device access controls.
- Provide hands-on oversight of critical security platforms such as Security Email Gateways, IPS/IDS, and database security controls.
- Support secure cloud configurations and continuous monitoring across AWS, Azure, SaaS, and Office 365 in alignment with industry frameworks.
- Map technical controls, architectures, and operating procedures to NIST CSF and NIST SP 800-53, and maintain an understanding of banking regulatory expectations at a high level (FFIEC, GLBA, FINRA).
- Enforce security policies and supporting documentation, including network and architecture diagrams and SOPs, and assist internal and external auditors during security reviews.
Required Qualifications
- Ability to understand, speak, read, and write English and Spanish.
- Ability to speak effectively before groups of customers or employees.
- Ability to assume evolving duties and responsibilities.
- Ability to work all hours required, including weekends, evenings, and holidays as needed.
- Travel as required.
- Provide coverage for other positions as requested.
- Ability to carry and lift objects weighing between 10 and 25 pounds.
- Perform additional duties and responsibilities as assigned by management.
- Ability to operate IBM compatible personal computers, and fluency with Microsoft Word, Microsoft Excel, Microsoft PowerPoint, and additional tools as applicable.
Technologies
- NIST Cybersecurity Framework (CSF)
- NIST SP 800-53
- FFIEC, GLBA, FINRA
- EDR, Anti-Virus, DLP
- Security Email Gateways, IPS/IDS
- Database security controls
- AWS, Azure, Office 365
- Microsoft Word, Microsoft Excel, Microsoft PowerPoint
- Python, Bash, PowerShell
- LLMs, artificial intelligence, automated phishing, adversarial machine learning, deepfake social engineering
Core Security Certifications
- CISSP, CISA, OSCP, CHFI, or CISM
Operations & Cloud Certifications
- CCSP, AWS Certified Security, Azure Security Engineer, Google Secops
Education
A degree in Information Security, Computer Science, Software Engineering, Management Information Systems, or practical equivalent experience (as indicated in the source).
Minimum Experience
3 years
Experience and Competencies
- Proactive mindset for vulnerability lifecycle management and in-depth understanding of enterprise patch deployment processes.
- Working knowledge and practical experience implementing the NIST Cybersecurity Framework.
- Familiarity with red and blue teaming methodologies and translating offensive findings into defensive engineering improvements.
- Up-to-date awareness of emerging AI threats and how LLMs and artificial intelligence are changing the cyber threat landscape.
- Experience configuring and supporting EDR tools, firewalls, Secure Email Gateways, and vulnerability scanners.
- Proficiency with Python, Bash, or PowerShell for automation and task execution.
- Excellent verbal and written communication skills, including the ability to explain complex regulatory and technical topics to non-technical business partners.